SOAP Security
In this release, additional SOAP Header security, for outbound communications, has been added to support additional facilities in Service Oriented Architecture integrations and Oracle Web Services Manager. The following additional facilities are now supported in the SOAP Header:
Facility
Description
SOAP Insert Time Stamp
A set of timestamps can be added to the transaction to support WS-Security to avoid replay attacks.
Additional SOAP Security inbuilt
The SOAP Header can now have inbuilt support for TEXT and DIGEST headers in addition to the BASIC support provided in past releases. This feature can be replaced using Oracle Web Services Manager with WS-Policy support for other advanced security configurations.
SOAP Expiration Delay
It is possible to set a transaction expiration, in seconds, to control resource usage of the transaction.
Refer to the online documentation for a more detailed description of these settings.
Note: The only HTTP/HTTPS method supported in this release is POST.