GT4 Java WS A&A Quality Report


1. Test coverage reports

2. Code analysis reports

3. Outstanding bugs

  • Bug 2362: location of user proxy for java inconsistencies
  • Bug 2445: Holder problem
  • Bug 2907 Secure Conversation (Encryption) does not provide any message level security for the SOAP headers
  • Bug 3027: Kerberos based authentication option for GT4
  • Bug 3171: add RFC 2253 principal name to JAAS subject
  • Bug 3449 ERROR container.GSIServiceThread
  • Bug 3603: Remotte exceptions thrown contain server specific information
  • Bug 3928: IPv6 addresses in reverse lookups - fix or faq?
  • Bug 3941: Expired credentials detected - candidate for sec error msg improvements
  • Bug 4222 Allow for credential refresh in subscriptions
  • Bug 4403Secure calls for secure context establishment
  • Bug 4442 Security descriptor refresh
  • Bug 5008 voms-proxy-init creates non-critical KeyUsage extension which causes Java GSI to raise exception
  • Bug 5026 Signarure validation failure on GRAM/RFT interaction on some cases
  • Bug 6125: Stack trace and poor error message with no gridmap configured

4. Bug Fixes

  • Bug 4933: mismatched providers in BouncyCastleCertProcessingFactory
  • Bug 5983: Better error for certificate not yet valid
  • Bug 6033: Deny-overrides in GT4.2 authz framework
  • Bug 6034: Two new security logging fixes

5. Performance reports

Secure access of WSRF and WSN operations using GSI Transport and GSI Secure Message have been measured. Test reports are in here.