Administrators can enable Web Services Security (WSS) verification from the Web
Services system properties.
Before you begin
Role required: web_service_admin or admin
Procedure
-
Navigate to .
-
For Require WS-Security header verification for all incoming SOAP
requests, select Yes.
Note: Selecting this option enables WS-Security for all inbound SOAP requests.
It is not possible to enable WS-Security for only some requests.
-
Click Save.
-
Create a WS-security profile.
-
Update the user record for the Mid Server and ODBC
driver to mark these users as internal integration users.
-
Download and install the latest MID Server and ODBC
driver.
-
To validate SOAP request signatures, upload the remote web
service's certificate as a JKS and create the web service's
WSS Username Token Profile.
Note: Because ServiceNow WSS implementation does not
verify the CA certificate, you do not need to upload the web service's CA
certificate.