Previous Next

Thread: Client Certificates + SSL

Last post 06-14-2008 2:52 AM by JaroDunajsky. 1 replies.

Average Rating Rate It (5)

RSS

Page 1 of 1 (2 items)

Sort Posts:

  • 06-11-2008, 5:02 AM

    • herr_raus
    • Not Ranked
    • Joined on 06-11-2008, 8:52 AM
    • Posts 1
    • herr_raus

    Client Certificates + SSL

    Hi all,

    I have a question regarding client certificates that hasn't been quite answered yet.
    I'd like to set up an IIS6 server with SSL and a client certificate. But I would like to create the certificate with custom information, and for use on the internet (!). Ofcourse I preffer not to pay for each client certificate.

    The certificate server is installed on the webserver so should both be accessible. When using certsvr application internally this work perfectly. Only when I need to create the certificate and mail it to a 3rd party over the internet this ceases to work. Is there any way to get this working?

     Thank you.

     Kind Regards,

  • 06-14-2008, 2:52 AM In reply to

    • JaroDunajsky
    • Top 50 Contributor
    • Joined on 04-19-2005, 6:23 PM
    • Redmond
    • Posts 50
    • JaroDunajsky

    Re: Client Certificates + SSL

    Could you provide more details. What do you mean by "create the certificate and mail it to a 3rd party over the internet"? Are you talking about client certificate?

    Cient should be requesting certificate remotely from your certificate authority. Certificate request would be generated based on  the private-public key pair that is stored locally so that the private key stays safe. If you need to generate and send client certificate over the internet that you would need to export it including the private-public key pair (PFX file). But I would not recommend the later approach.

    Well, Maybe I just don't understand what are you up to. So let me know what exactly are your steps and goals for the non-working scenarioj.

    Jaroslav Dunajsky (MSFT, IIS)
Page 1 of 1 (2 items)
Page view counter