Forum Discussion

merlin_60429's avatar
merlin_60429
Icon for Nimbostratus rankNimbostratus
Nov 02, 2007

Client certificate authentication

Hello.

 

 

I have some questions about authentication with certificates.

 

 

I configured as described in the helptext a client root certificate (selfsigned) and gave my user also certificate from Firepass and installed it in Windows store.

 

 

Is it nessecary to configure a pre-logon-sequence for the client certificate check?

 

 

I checked the "request client certificate during logon" with the cn. I created a Mastergroup with clientcertificate authentication and my testuser is member of it.

 

 

On the client I installed the certificate in the personal store. How do I have to configure the endpoint inspector? Store Name (MY or Personal?), Store location (local machine), match rule: cn match machines FQDN. In the CN of my certificate, I only have the username and not the FQDN. Can I edit the Matching rule? How?

 

 

But my certificate is never found when logging on.

 

 

 

Any help out there?

 

 

Thank you very much.