The distributed nonce caching feature enables you to distribute
the cache for a nonce to different servers in a cluster.
In previous releases of WebSphere
® Application Server, the nonce was cached
locally. To use this feature, you must complete the following actions:
- Configure cache replication.
- Verify that you created an appropriate domain setting when you form a
cluster.
- Verify that replication domain is properly secured. The nonce cache is
crucial to the integrity of the nonce validation process. If the nonce cache
is compromised, then you cannot trust the result of the validation process.
- In the WebSphere Application
Server administrative console for the server level, select the Distribute
nonce caching option. You can enable the option by completing the following
steps:
- Click Security > Web services.
- Select the Distribute nonce caching option.
- Restart the servers within your cluster.
When you select the Distribute nonce caching option in the administrative
console, the nonce is propagated to other servers in your environment. However,
the nonce might be subject to a one-second delay in propagation and subject
to any network congestion.
For more information on distributed nonce caching, see Web services security enhancements.