- attribute.lookup.list
-
Name attribute.lookup.listDescription User attributes can be retrieved from a variety of sources, including LDAP directories, databases, Oracle Entity Store, SAML attribute assertions, and so on. All retrieved attributes are stored in the attribute.lookup.listattribute, where they can be looked up at a later stage in the policy.Type java.util.HashMapGenerated By Extract Certificate Attributes Retrieve Attributes from DatabaseRetrieve Attributes from Directory ServerRetrieve Attributes from SAML Attribute AssertionRetrieve Attributes from SAML PDPRetrieve Attributes from User StoreSiteMinder AuthorizationConsumed By Required By Attribute Authorization Insert SAML Attribute Assertion
- attribute.subject.format
-
Name attribute.subject.formatDescription The format of the subject ID that is used to lookup attributes (for example, X.509 DName or username). Type java.lang.StringGenerated By Extract Certificate Attributes Retrieve Attributes from Directory ServerRetrieve Attributes from SAML Attribute AssertionSiteMinder AuthorizationConsumed By Required By Insert SAML Attribute Assertion
- attribute.subject.id
-
Name attribute.subject.idDescription The ID of the subject that is used to look up user attributes. This can either be an X.509 Distinguished Name (DName) or a username. Type java.lang.StringGenerated By Extract Certificate Attributes Retrieve Attributes from Directory ServerRetrieve Attributes from SAML Attribute AssertionSiteMinder AuthorizationConsumed By Required By Insert SAML Attribute Assertion
- authentication.cert
-
Name authentication.certDescription The certificate that was used to authenticate the client. Type java.security.cert.X509CertificateGenerated By HTTP Header Authentication Consumed By Required By
- authentication.issuer.format
-
Name authentication.issuer.formatDescription The format of the authentication.issuer.id attribute. Type java.lang.StringGenerated By HTTP Header Authentication SSL AuthenticationConsumed By Required By
- authentication.issuer.id
-
Name authentication.issuer.idDescription Contains the ID of the issuer of the authenticated client's certificate. This is usually either the X.509 DName or the username of the issuer of the subject's certificate. Type java.lang.StringGenerated By HTTP Header Authentication SSL AuthenticationConsumed By Required By
- authentication.issuer.orig.format
-
Name authentication.issuer.orig.formatDescription Format of the authentication.issuer.orig.id attribute. This is the format of the issuer's ID before any credential mapping was done to the identifier, e.g. DName to username. Type java.lang.StringGenerated By HTTP Header Authentication Consumed By Required By
- authentication.issuer.orig.id
-
Name authentication.issuer.orig.idDescription The ID of the issuer of the subject's credential before any credential mapping took place. An example of credential mapping would involve mapping an issuer's username to a DName. Type java.lang.StringGenerated By HTTP Header Authentication Consumed By Required By
- authentication.method
-
Name authentication.methodDescription The method used by the client to authenticate to API Gateway. Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationHTTP Header AuthenticationSAML AuthenticationSSL AuthenticationSiteMinder Certificate AuthenticationSiteMinder Session ValidationConsumed By Required By SAML Authentication Retrieve Attributes from SAML PDPSAML PDP Authorization
- authentication.subject.format
-
Name authentication.subject.formatDescription The format of the subject's ID, e.g. X.509 DName or username. Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationHTTP Header AuthenticationRetrieve Attributes from SAML Attribute AssertionRetrieve Attributes from SAML PDPRetrieve Attributes from DatabaseRetrieve Attributes from Directory ServerRetrieve Attributes from User StoreSAML AuthenticationSSL AuthenticationSiteMinder Certificate AuthenticationSiteMinder Session ValidationConsumed By Required By Retrieve Attributes from Database Retrieve Attributes from Directory ServerRetrieve Attributes from SAML Attribute AssertionRetrieve Attributes from SAML PDPRetrieve Attributes from User StoreSAML PDP AuthorizationSAML AuthorizationTivoli Authorization
- authentication.subject.id
-
Name authentication.subject.idDescription Contains the ID of the authenticated subject (for example, the username supplied by the client). Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationHTTP Header AuthenticationRetrieve Attributes from SAML Attribute AssertionRetrieve Attributes from SAML PDPRetrieve Attributes from DatabaseRetrieve Attributes from Directory ServerRetrieve Attributes from User StoreSAML AuthenticationSSL AuthenticationSiteMinder Certificate AuthenticationSiteMinder Session ValidationConsumed By Required By Retrieve Attributes from Database Retrieve Attributes from Directory ServerRetrieve Attributes from SAML Attribute AssertionRetrieve Attributes from SAML PDPRetrieve Attributes from User Store
- authentication.subject.orig.format
-
Name authentication.subject.orig.formatDescription The ID of the subject before any credential mapping was performed. For example, the subject's ID may be mapped from an X.509 DName to the username stored in an external database. In this case, the subject's original ID was a DName. Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationHTTP Header AuthenticationConsumed By Required By
- authentication.subject.orig.id
-
Name authentication.subject.orig.idDescription Contains the ID of the authenticated subject before credential mapping is performed (for example, from username to DName). Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationHTTP Header AuthenticationConsumed By Required By
- authentication.subject.password
-
Name authentication.subject.passwordDescription If a user authenticates to the API Gateway using a username and password combination (either with HTTP digest/basic authentication or with a WS-Security Username token), the user's password is stored in this attribute. Type java.lang.StringGenerated By HTTP Basic Authentication HTTP Digest AuthenticationConsumed By Required By
- authentication.ws.wsblockinfo
-
Name authentication.ws.wsblockinfoDescription Contains a WS-Security <Header>block that has been extracted from a message.Type java.lang.StringGenerated By Extract WSS Header Consumed By Required By
- cert.basic.constraints
-
Name cert.basic.constraintsDescription If the subject is a Certificate Authority (CA), and the BasicConstraintsextension exists, this attribute gives the maximum number of CA certificates that may follow this certificate in a certification path. A value of zero indicates that only an end-entity certificate may follow in the path. This contains the value ofpathLenConstraintif theBasicConstraintsextension is present in the certificate and the subject of the certificate is a CA, otherwise its value is -1. If the subject of the certificate is a CA andpathLenConstraintdoes not appear, there is no limit to the allowed length of the certification path.Type java.lang.IntegerGenerated By Extract Certificate Attributes Consumed By Required By
- cert.extended.key.usage
-
Name cert.extended.key.usageDescription A string representing the OBJECT IDENTIFIERs of the ExtKeyUsageSyntaxfield of the extended key usage extension (OID = 2.5.29.37). It indicates a purpose for which the certified public key may be used, in addition to, or instead of, the basic purposes indicated in the key usage extension field.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.hash.md5
-
Name cert.hash.md5Description An MD5 hash of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.hash.sha1
-
Name cert.hash.sha1Description An SHA1 hash of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.alternative.name
-
Name cert.issuer.alternative.nameDescription An alternative name for the certificate issuer from the IssuerAltNameextension (OID = 2.5.29.18)Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id
-
Name cert.issuer.idDescription The Distinguished Name (DName) of the issuer of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.c
-
Name cert.issuer.id.cDescription The cattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.cn
-
Name cert.issuer.id.cnDescription The cnattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.emailaddress
-
Name cert.issuer.id.emailaddressDescription The emailoremailaddressattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.l
-
Name cert.issuer.id.lDescription The lattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.o
-
Name cert.issuer.id.oDescription The oattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.ou
-
Name cert.issuer.id.ouDescription The ouattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.issuer.id.st
-
Name cert.issuer.id.stDescription The stattribute of the issuer of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.cRLSign
-
Name cert.key.usage.cRLSignDescription Set to trueorfalseif the key can be used forcrlSign.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.dataEncipherment
-
Name cert.key.usage.dataEnciphermentDescription Set to trueorfalseif the key can be used fordataEncipherment.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.decipherOnly
-
Name cert.key.usage.decipherOnlyDescription Set to trueorfalseif the key can be used fordecipherOnly.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.digitalSignature
-
Name cert.key.usage.digitalSignatureDescription Set to trueorfalseif the key can be used for digital signature.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.encipherOnly
-
Name cert.key.usage.encipherOnlyDescription Set to trueorfalseif the key can be used forencipherOnly.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.keyAgreement
-
Name cert.key.usage.keyAgreementDescription Set to trueorfalseif the key can be used forkeyAgreement.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.keyCertSign
-
Name cert.key.usage.keyCertSignDescription Set to trueorfalseif the key can be used forkeyCertSign.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.keyEncipherment
-
Name cert.key.usage.keyEnciphermentDescription Set to trueorfalseif the key can be used forkeyEncipherment.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.key.usage.nonRepudiation
-
Name cert.key.usage.nonRepudiationDescription Set to trueorfalseif the key can be used for non-repudiation.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.not.after
-
Name cert.not.afterDescription Not after date for the validity of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.not.before
-
Name cert.not.beforeDescription Not before date for the validity of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.serial.number
-
Name cert.serial.numberDescription Certificate serial number. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.signature.algorithm
-
Name cert.signature.algorithmDescription The signature algorithm for the certificate signature. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.alternative.name
-
Name cert.subject.alternative.nameDescription An alternative name for the subject from the SubjectAltNameextension (OID = 2.5.29.17).Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id
-
Name cert.subject.idDescription The Distinguished Name (DName) of the subject of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.c
-
Name cert.subject.id.cDescription The cattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.cn
-
Name cert.subject.id.cnDescription The cnattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.emailaddress
-
Name cert.subject.id.emailaddressDescription The emailaddressattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.l
-
Name cert.subject.id.lDescription The lattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.o
-
Name cert.subject.id.oDescription The oattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.ou
-
Name cert.subject.id.ouDescription The ouattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.subject.id.st
-
Name cert.subject.id.stDescription The stattribute of the subject of the certificate, if it exists.Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- cert.version
-
Name cert.versionDescription The version of the certificate. Type java.lang.StringGenerated By Extract Certificate Attributes Consumed By Required By
- certificate
-
Name certificateDescription Used to store a certificate in addition to the certificate stored in the authentication.cert attribute. For example, the Find Certificate filter can extract a certificate from an LDAP directory, HTTP header, or the User Store. By default, it sets this certificate to the certificate attribute. Type java.lang.StringGenerated By Find Certificate HTTP Header AuthenticationXML-Signature VerificationSAML PDP XML-Signature Response VerificationSAML PDP Response XML-Signature VerificationSSL AuthenticationConsumed By Required By Create Thumbprint from Certificate Extract Certificate AttributesSiteMinder Certificate Authentication
- certificate.thumbprint
-
Name certificate.thumbprintDescription Contains a human-readable thumbprint (or fingerprint), which is generated from the X.509 certificate stored in the certificatemessage attribute.Type java.lang.StringGenerated By Create Thumbprint from Certificate Consumed By Required By
- certificates
-
Name certificatesDescription Contains an array of X.509 certificates for use in the Certificate Chain Check and Certificate Validation filters. Type java.util.ArrayListGenerated By Find Certificate HTTP Header AuthenticationXML-Signature VerificationSAML PDP XML-Signature Response VerificationSAML PDP Response XML-Signature VerificationSSL AuthenticationConsumed By Required By Certificate Chain Certificate Revocation List (Static)Certificate Revocation List (LDAP)OCSP (Online Certificate Status Protocol)SiteMinder Certificate AuthenticationXKMS (XML Key Management and Security)
- circuit.abort.exception
-
Name circuit.abort.exceptionDescription Whenever a filter throws an exception, the exception is stored in the circuit.abort.exceptionmessage attribute. The exception can then be used, for example, to return customized SOAP faults that describe the verbose details of the error.![[Important]](../common_oracle/images/admon/important.png)
Important A filter only throws an exception if it cannot carry out its core task. For example, an authentication filter throws an exception if it cannot connect to the authentication repository, a Schema validation filter aborts if the request is not XML, and an attribute retrieval filter aborts if it cannot connect to the user profile store (for example, database, LDAP, and so on).
Type java.lang.StringGenerated By circuit.abort.exceptioncan be thrown by all filters.Consumed By Required By circuit.abort.exceptioncan be used as a selector in appropriate filters. For example, you can specify a${circuit.abort.exception}selector in the Set Message filter, which can then be returned to the client using a Reflect filter.
- content.body
-
Name content.bodyDescription Contains the parsed body of the incoming HTTP request. Type com.vordel.mime.BodyGenerated By Load File Consumed By Required By Content Type Filtering ConnectionContent ValidationEntrust GetAccess AuthorizationInsert SAML Attribute AssertionSAML AuthenticationInsert SAML Authorization AssertionXML-Signature VerificationThrottlingMcAfee Anti-VirusOperation NameReflectReflect Message and AttributesRetrieve Attribute from HTTP HeaderRetrieve Attribute from MessageRetrieve Attributes from SAML Attribute AssertionSAML AuthorizationSave to FileSchema ValidationSign MessageSiteMinder Session ValidationSSL AuthenticationXML ComplexityXML-DecryptionXML-EncryptionXSLT TransformationWeb Service Filter
- decryption.properties
-
Name decryption.propertiesDescription Indicates the XML-Encrypted block(s) to decrypt. The actual decryption is performed by the XML-Decryption filter. Type java.util.MapGenerated By XML-Decryption Settings Consumed By Required By XML-Decryption
- encryption.properties
-
Name encryption.propertiesDescription Allows the user to encrypt (part of) the message for a number of recipients so that only those recipients can to decrypt the encrypted data. The encryption is performed by the XML-Encryption filter. Type java.util.MapGenerated By XML-Encryption Settings Consumed By Required By XML-Encryption
- http.destination.host
-
Name http.destination.hostDescription The host on which the destination Web Service is running. Type java.lang.StringGenerated By Dynamic Router Static RouterWeb Service FilterConsumed By Required By Connection
- http.destination.port
-
Name http.destination.portDescription The port on which the destination Web Service is listening. Type java.lang.StringGenerated By Dynamic Router Static RouterWeb Service FilterConsumed By Required By Connection
- http.destination.protocol
-
Name http.destination.protocolDescription Indicates the protocol to use when routing messages to the destination Web Service. Typically, the protocol is either HTTP or HTTPS. Type java.lang.StringGenerated By Dynamic Router Static RouterWeb Service FilterConsumed By Required By Connection
- http.headers
-
Name http.headersDescription Contains a list of all HTTP headers from the incoming request. Type com.vordel.mime.HeaderSetGenerated By Connection Web Service FilterConsumed By Required By Add HTTP Header ConnectionHTTP Basic AuthenticationHTTP Digest AuthenticationHTTP Header AuthenticationReflectReflect Message and AttributesRemove HTTP HeaderReturn WSDLSOAPActionValidate HTTP HeadersWeb Service Filter
- http.request.clientaddr
-
Name http.request.clientaddrDescription Contains the IP address of the client machine from which the HTTP request was sent to API Gateway. Type java.net.InetSocketAddressGenerated By Consumed By Required By IP Address
- http.request.connection.error
-
Name http.request.connection.errorDescription If an error occurs when API Gateway is routing on to the target Web Service, the error status will be recorded in this attribute. Type java.lang.StringGenerated By Connection Web Service FilterConsumed By Required By
- http.request.clientcert
-
Name http.request.clientcertDescription Contains the certificate used by the client in the HTTP request. Type java.security.cert.X509CertificateGenerated By Consumed By Required By
- http.request.path
-
Name http.request.pathDescription Contains the path on which the HTTP request from the client is received by the API Gateway (for example, /test).Type java.lang.StringGenerated By Consumed By Required By
- http.request.uri
-
Name http.request.uriDescription Contains the URI on which the HTTP request is received by the API Gateway (for example, /test?location=dublin).Type java.net.URIGenerated By Web Service Filter Consumed By Required By Connection Dynamic RouterOperation NameRewrite URLRelative PathReturn WSDL
- http.request.verb
-
Name http.request.verbDescription Contains the HTTP verb used in the client HTTP request to the API Gateway. Type java.lang.StringGenerated By Consumed By Required By Connection HTTP Basic AuthenticationHTTP Digest AuthenticationWeb Service Filter
- http.request.version
-
Name http.request.versionDescription Contains the HTTP version used in the request from the client to the API Gateway. Type java.lang.StringGenerated By Consumed By Required By
- http.response.info
-
Name http.response.infoDescription Contains the reason-phrasefrom the HTTP status-line (for example,Not foundfrom the404 Not foundstatus-line).Type java.lang.StringGenerated By Connection Web Service FilterConsumed By Required By
- http.response.status
-
Name http.response.statusDescription Stores the HTTP status-code of the response from the Web Service, (for example, 404from the404 Not foundstatus-line).Type java.lang.IntegerGenerated By Connection Web Service FilterConsumed By Required By
- http.response.version
-
Name http.response.versionDescription Stores the HTTP version used in the response from the Web Service. Type java.lang.StringGenerated By Connection Web Service FilterConsumed By Required By
- kerberos.client.context.established
-
Name kerberos.client.context.establishedDescription Indicates whether the client-side context has been established (true or false). Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.context
-
Name kerberos.contextDescription Used on client-side to reload the context to consume the service-side token, if there is one. Type org.ietf.jgss.GSSContextGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.mechanism.oid
-
Name kerberos.mechanism.oidDescription Contains the mechanism OID ( SPNEFGOorKerberos).Type java.lang.StringGenerated By Kerberos Client Authentication Kerberos Client AuthenticationConsumed By Required By
- kerberos.profile.ap.req.bst.id
-
Name kerberos.profile.ap.req.bst.idDescription Contains the wsu:Idof theBinarySecurityTokencontaining theAP_REQmessage generated by theGssInitiatorFilter.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.profile.ap.req.sha1
-
Name kerberos.profile.ap.req.sha1Description Contains the SHA1 hash of a Kerberos AP_REQmessage. This is generated when a Kerberos service consumes it, or when a Kerberos client generates it.Type java.lang.StringGenerated By Kerberos Client Authentication Kerberos Client AuthenticationConsumed By Required By
- kerberos.service.authenticator.principal
-
Name kerberos.service.authenticator.principalDescription Contains the principal extracted from the AP_REQmessage on the Kerberos acceptor side.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.service.authenticator.realm
-
Name kerberos.service.authenticator.realmDescription Contains the realm extracted from the AP_REQmessage on the Kerberos acceptor side.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.service.authenticator.time
-
Name kerberos.service.authenticator.timeDescription Contains the time extracted from the AP_REQmessage on the Kerberos acceptor side.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.service.context.established
-
Name kerberos.service.context.establishedDescription Indicates whether the service-side context has been established (true or false). Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.service.subject.id
-
Name kerberos.service.subject.idDescription Contains the principal name of the Kerberios service. Type java.lang.StringGenerated By Kerberos Client Authentication Kerberos Client AuthenticationConsumed By Required By
- kerberos.service.ticket.principal
-
Name kerberos.service.ticket.principalDescription Contains the principal extracted from the AP_REQmessage on the Kerberos acceptor side.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.service.ticket.realm
-
Name kerberos.service.ticket.realmDescription Contains the realm extracted from the AP_REQmessage on the Kerberos acceptor side.Type java.lang.StringGenerated By Kerberos Client Authentication Consumed By Required By
- kerberos.session.key
-
Name kerberos.session.keyDescription On the Kerberos server-side, contains the session key extracted from the service ticket and authenticator in the Kerberos AP_REQmessage. On the Kerberos client-side, contains the session key extracted from the private credentials of the client subject in theKerebrosTicket.Type javax.security.auth.kerberos.KerberosKeyGenerated By Kerberos Client Authentication Kerberos Client AuthenticationConsumed By Required By
- mcafee.status
-
Name mcafee.statusDescription Stores the overall message status of all message parts after a McAfee virus scan (for example, NOVIRUS,INFECTED,REPAIRED, andREMOVED).Type java.lang.StringGenerated By McAfee Anti-Virus Consumed By Required By
- message.key
-
Name message.keyDescription Contains a hash of the request message. By default, used as the key to search for objects in the cache. Type java.lang.StringGenerated By Create Key Consumed By Required By Cache Attribute Is Cached?Remove Cached Attribute
- saml.assertion
-
Name saml.assertionDescription Contains the SAML assertion that was used for authentication, authorization, or attribute extraction. Type org.w3c.dom.ElementGenerated By Retrieve Attributes from SAML Attribute Assertion SAML AuthenticationSAML AuthorizationConsumed By Required By
- saml.assertion.position
-
Name saml.assertion.positionDescription Indicates the position of the SAML assertion within a given WS-Security block. There may be more than 1 assertion in a WS-Security block, and so this attribute can be used to select the appropriate one. Type java.lang.IntegerGenerated By Retrieve Attributes from SAML Attribute Assertion SAML AuthenticationSAML AuthorizationConsumed By Required By
- saml.wsblockinfo
-
Name saml.wsblockinfoDescription Stores the WS-Security block that contains the relevant SAML assertion. Type com.vordel.common.util.WSBlockInfoGenerated By Retrieve Attributes from SAML Attribute Assertion SAML AuthenticationSAML AuthorizationConsumed By Required By
- samlpdp.response.assertion
-
Name samlpdp.response.assertionDescription Contains the SAML assertion from the SAMLP response. Type org.w3c.dom.ElementGenerated By Retrieve Attributes from SAML Attribute Assertion SAML PDP AuthorizationConsumed By Required By
- samlpdp.response.doc
-
Name samlpdp.response.docDescription Contains the SAMLP response from the SAML PDP as an XML Document. Type org.w3c.dom.DocumentGenerated By Retrieve Attributes from SAML PDP SAML PDP AuthorizationSAML PDP Response XML-Signature VerificationSAML PDP XML-Signature Response VerificationConsumed By Required By
- samlpdp.response.namespace.saml
-
Name samlpdp.response.namespace.samlDescription Stores the SAML namespace that was used in the SAMLP response. Type java.lang.StringGenerated By Retrieve Attributes from SAML PDP SAML PDP AuthorizationConsumed By Required By
- samlpdp.response.namespace.samlp
-
Name samlpdp.response.namespace.samlpDescription Stores the SAMLP namespace that was used in the SAMLP response. Type java.lang.StringGenerated By Retrieve Attributes from SAML PDP SAML PDP AuthorizationConsumed By Required By
- samlpdp.subject.format
-
Name samlpdp.subject.formatDescription Contains the subject format used in the SAMLP request to the SAML PDP. Type java.lang.StringGenerated By Retrieve Attributes from SAML PDP SAML PDP AuthorizationConsumed By Required By
- samlpdp.subject.id
-
Name samlpdp.subject.idDescription Identifies the subject used in the SAMLP request to the SAML PDP. Type java.lang.StringGenerated By Retrieve Attributes from SAML PDP SAML PDP AuthorizationConsumed By Required By
- service.name
-
Name service.nameDescription Stores the name of the backend Web Service. For example, this is used when the service is displayed in real-time monitoring tools. Type java.lang.StringGenerated By Set Service Name Set Web Service ContextWeb Service FilterConsumed By Required By
- siteminder.agent
-
Name siteminder.agentDescription Indicates the name of the agent that API Gateway uses to connect to SiteMinder as. Type java.lang.StringGenerated By SiteMinder Certificate Authentication SiteMinder Session ValidationConsumed By Required By SiteMinder Authorization SiteMinder Logout
- siteminder.decision
-
Name siteminder.decisionDescription API Gateway can ask SiteMinder to make an authorization decision based on whether or not SiteMinder authenticates the user. SiteMinder returns its decision to API Gateway where it is stored in this attribute. Type com.vordel.circuit.siteminder.SiteMinderDecisionGenerated By SiteMinder Certificate Authentication SiteMinder Session ValidationConsumed By Required By SiteMinder Authorization SiteMinder Logout
- soap.request.action
-
Name soap.request.actionDescription Specifies the SOAP Action in the HTTP header. Type java.lang.StringGenerated By SOAPAction Consumed By Required By
- soap.request.method
-
Name soap.request.methodDescription Stores the SOAP operation name. This is the first element under the SOAP body for an RPC encoded SOAP message. Type java.lang.StringGenerated By Operation Name Consumed By Required By
- soap.request.method.namespace
-
Name soap.request.method.namespaceDescription Contains the namespace of the element identified by the value of the soap.request.method attribute. In other words, this attribute indicates the namespace of the SOAP operation.Type java.lang.StringGenerated By Operation Name Consumed By Required By
- soasecuritymanager.action
-
Name soasecuritymanager.actionDescription Contains the action to take. Type java.lang.StringGenerated By Consumed By Required By
- soasecuritymanager.agent
-
Name soasecuritymanager.agentDescription Contains the name of the agent used by API Gateway to connect to the CA SOA Security Manager. Type java.lang.StringGenerated By CA SOA Security Manager Authentication Consumed By Required By CA SOA Security Manager Authorization
- soasecuritymanager.decision
-
Name soasecuritymanager.decisionDescription Contains the authentication/authorization decision made by CA SOA Security Manager. Type java.lang.StringGenerated By CA SOA Security Manager Authentication Consumed By Required By CA SOA Security Manager Authorization
- soasecuritymanager.realmdef
-
Name soasecuritymanager.realmdefDescription Contains the authentication/authorization realm of the CA SOA Security Manager. Type java.lang.StringGenerated By CA SOA Security Manager Authentication Consumed By Required By CA SOA Security Manager Authorization
- soasecuritymanager.resource
-
Name soasecuritymanager.resourceDescription Contains the name of the resource that the client is attempting to access. Type java.lang.StringGenerated By Consumed By Required By
- soasecuritymanager.resource.context
-
Name soasecuritymanager.resource.contextDescription Describes the context of the resource that the user is attempting to access. Type java.lang.StringGenerated By CA SOA Security Manager Authentication Consumed By Required By CA SOA Security Manager Authorization
- webservice.context
-
Name webservice.contextDescription Stores the Web Service context of the backend Web Service. For example, this is used to identify the service in the Web Service Repository when a WSDL request is received. Type java.lang.StringGenerated By Set Web Service Context Web Service FilterConsumed By Required By Return WSDL Schema Validation
- ws.username.token.name
-
Name ws.username.token.nameDescription Associates the generated UsernameTokenwith the authenticated user.Type java.lang.StringGenerated By Insert WS-Security Username Token Consumed By Required By
- wss.timestamp
-
Name wss.timestampDescription The timestamp in the WSS header block that is obtained from the message for a particular SOAP actor/role. Indicates how long the security data remains valid for. Type java.lang.StringGenerated By Extract WSS Timestamp Consumed By Required By
- wss.usernameToken
-
Name wss.usernameTokenDescription The usernameTokenin the WSS header block that is obtained from the message for a particular SOAP actor/role.Type java.lang.StringGenerated By Extract WSS Username Token Consumed By Required By
- xacml.decision
-
Name xacml.decisionDescription Contains the authorization decision sent by the XACML Policy Decision Point to the XACML Policy Enforcement Point (for example, Permit,Deny,Indeterminate, orNotApplicable).Type java.lang.StringGenerated By XACML PEP Consumed By Required By
- xacml.result.xml
-
Name xacml.result.xmlDescription Contains the XML response message that includes the authorization decision sent by the XACML Policy Decision Point to the XACML Policy Enforcement Point (for example, Permit,Deny,Indeterminate, orNotApplicable).Type java.lang.StringGenerated By XACML PEP Consumed By Required By
- xacml.statuscode
-
Name xacml.statuscodeDescription Contains the XACML status code message (for example, urn:oasis:names:tc:xacml:1.0:status:oksyntax-error,processing-error, ormissing-attribute).Type java.lang.StringGenerated By XACML PEP Consumed By Required By
- xsd.errors
-
Name xsd.errorsDescription Stores validation errors generated when a schema validation check fails. For example, you can return an appropriate SOAP Fault to the client by writing out the contents of this attribute. You can configure a Set Message filter to write a custom response message back to the client, and place it on the failure path of the Schema Validation filter. Type java.lang.StringGenerated By Schema Validation Consumed By Required By

