Deploying certificates in a ClickOnce application



Hi everyone

I'm getting desperate now. We have built an application thats use wse
3.0 x.509 protected web services. During developement we have been
using the test certificates for wse and we have been in control of all
of the machines it has been installed on, no problems there!

The application is now nearing completion and it is being sold as a
product via ClickOnce so we are no longer in control of any of the
machines it will be installed on, we have our real certificates from
Thawte and don't have a problem with deploying the servers public key
in the application. But what about the client private certificate how
are we meant to deploy this?

Unless I am A. crap at searching the internet for help or B. just being
stupid, then I just don't know whats the best approach. I have come
across lots of people asking the same question but never any answers.
Even if this wasn't being deployed via ClickOnce and was just a
standard msi deployment what would be the best way.

There must have been done be for or there are some geniuses that have
the answer. Please for me and everyone else out there thats asking the
question but not getting a straight answer, What are we meant to do?

Thanks in advance
Dan

.



Relevant Pages

  • Re: Error: Refereced security token could not be retrieved
    ... it looks like a problem with the certificates. ... WSE is not being able to get the certificate for the encryptedKey. ... service configuration looks fine with exception of the storeLocation ... attribute (LocalMashine instead of LocalMachine). ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Re: Refresh the policies file cache
    ... WSE keeps the policies in a in-memory cache for performance reasons. ... I have a web service secured with X509 Certificates. ... restart my IIS service to make the webservice update. ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Problem with my x509 makecert certificates for WSE 3.0
    ... I am having problems getting the WSE certificates to work on a simple test ... private key of an X.509 certificate. ... <response signatureOptions="IncludeAddressing, IncludeTimestamp, ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Re: Encryption without Certificates
    ... and/or sign data using WSE 2.0 without using certificates. ... original blog entry here: ... on the client and also his utility functions don't set the SCT's expiry time ... Is this possibly using WSE 2.0? ...
    (microsoft.public.dotnet.framework.webservices.enhancements)
  • Re: WSE 3.0, Signed Assembly, x.509 Certificates etc...
    ... You should buy some certificates from a well-know authority like VeriSign ... WSE provides a set of pre-configured scenarios called Turn-Key scenarios. ... username/password the users has on the website. ...
    (microsoft.public.dotnet.framework.webservices.enhancements)