Layer7 API Management

 View Only
Expand all | Collapse all

Digital signature verification for verifier using bouncy castle API

  • 1.  Digital signature verification for verifier using bouncy castle API

    Posted Aug 04, 2016 01:48 PM

    Hi,

     

    One of our client is using Bouncy Castle library  for verifying digital signature generated at Gateway. However, signature verification not happening. Whereas, if the signature is generated using Bouncy Castle library (java code), it is being verified  successfully. We are stuck due to it.

     

    Please note that we are using (Non-SOAP) Sign XML Element Assertion for signature generation at Gateway.

     

    Thanks,

    Siddharth



  • 2.  Re: Digital signature verification for verifier using bouncy castle API

    Posted Sep 23, 2016 01:28 PM

    Hi Siddharth,

     

    Bouncy Castle can be configured as the default JCE Provder on a Gateway via the following changes:

     

     

    Add the following property to system.properties and restart the gateway

    /opt/SecureSpan/Gateway/node/default/etc/conf/system.properties

    com.l7tech.common.security.jceProviderEngineName=BC

     

    Regards,

     

    Kevin Russell

    Support Engineer, Global Customer Success

    Email: CATechnicalSupport@ca.com

    Phone: +1 800 225 5224

    Outside of North America - ca.com/us/worldwide.aspx

    CA API Management Community: ca.com/talkapi