forms-based with client cert requirement



this scenarion is not working for me.

I have a publishing rule with a listener that uses default forms-based (HTML
Form authentication) authentication (with LDAP) and the Advanced page of the
Authentication tab containes the "require ssl client certificate" ENABLED.
The "ssl client certificate timeout" is grayed out, so I cannot check it on
nor off.

When I connect from a an External client WITHOUT a certificate, the
connection is allowed without any problems.

When I disable the requirement for client certificate, everything is all the
same (certainly, but this was only to ensure everything is working).


O.


.



Relevant Pages

  • Re: Need for encryption in WSE 3.0 if using SS-avoid man-in-middle
    ... for client certificate authentication, simply require SSL client certificates in IIS (directory security tab). ... If you use WSE message layer security, the "mutualCertificate10" and ...
    (microsoft.public.dotnet.framework.aspnet.security)
  • AW: Re: Certificate authentication under IIS
    ... Digest Authentication within Active Directory or Windows Domain ... Require Client Certificate ... I use that configuration live on several sites and it works without any user authentication request. ... it makes sense to use client certificate mapping to external users who are not trusting my own CA and are not controlled ...
    (Focus-Microsoft)
  • urgent: unable to find client certificate
    ... i am trying to consume an external web service in my orchestration. ... authentication process on the external side is a cert-based process: ... i get an error message saying 'client certificate ...
    (microsoft.public.biztalk.general)
  • Re: Authentication using Distinguished name instead of Certificate
    ... the certificate, but I would still have the same issue. ... >:I DO want to a pass-through authentication feature by myself. ... authenticating on a client certificate, I want to authenticate based on ... In order to reduce SSL load and support edge server caching ...
    (microsoft.public.inetserver.iis.security)
  • Re: Directory Services, LDAP or similar
    ... In other projects, we managed the user authentication by creating tables that define all users and its allowed capacities, then the application queryies that data to verify if a user has access to some feature or not. ... The above ID and password are sent to the service at login time. ... They are using Novell eDirectory at the enterprise level; yes it's LDAP. ... We already do that for three different DB servers; ...
    (borland.public.delphi.non-technical)

Loading