Win2k Cert Server
From: Avi Drabkin (adrabkin@gte.net)
Date: 07/15/02
- Next message: Tony: "ACL and NetUserSetInfo"
- Previous message: bry: "I can't delete two files from tif"
- Next in thread: Avi Drabkin: "Re: Win2k Cert Server"
- Reply: Avi Drabkin: "Re: Win2k Cert Server"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: adrabkin@gte.net (Avi Drabkin) Date: 15 Jul 2002 11:31:57 -0700
Has anyone here played around with the Win2k Cert server? We're trying
to set up secure web services where we control exactly who comes in to
our website, by issuing our own Certificates.
Here's my scenario:
Machine 1: Certserver
Machine 2: IIS Server
Machine 3: Client
I have successfully issued an SSL cert to Machine 2 from Machine 1. I
have also downloaded and installed the Certification Path, as well as
the server revocation list on Machine 2. My Certserver shows up in the
list of Trusted Certificate Authorities on Machine 2.
I am able to go to machine 2 via SSL, when I look at the cert,
everything is peachy.
Using Machine 3, I get a Client Cert from Machine 1. Verify that it
has installed properly.
On Machine 2, I enable Require SSL, and Require Client Cert. I even
export Machine 3's Client cert, and add it to the 1 to 1 Cert Mapping
to the Administrator account.
On Machine 3, whenever I go to the ssl site, it says "This Page
requires a client Certificate"
all machines are on a local LAN.... all machines are on separate
domains, but I don't think that should matter... should it?...
Any insight would be great!
Please send responses to adrabkin@gte.net
Thanks,
Avi
- Next message: Tony: "ACL and NetUserSetInfo"
- Previous message: bry: "I can't delete two files from tif"
- Next in thread: Avi Drabkin: "Re: Win2k Cert Server"
- Reply: Avi Drabkin: "Re: Win2k Cert Server"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|