<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="http://forums.iis.net/utility/FeedStylesheets/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:cs="http://blogs.iis.net/"><channel><title>IIS7 - Security</title><link>http://forums.iis.net/1043.aspx</link><description>Discussions around the security of IIS 7 including compentization, hidden directories, or authentication\authorization</description><dc:language>en</dc:language><generator>CommunityServer 2007 SP1 (Build: 20510.895)</generator><item><title>Re: Help with Client Certificates</title><link>http://forums.iis.net/thread/1910863.aspx</link><pubDate>Mon, 20 Jul 2009 16:10:18 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1910863</guid><dc:creator>SherriBlane</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1910863.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1043&amp;PostID=1910863</wfw:commentRss><description>Hi, I&amp;#39;m not sure this will be of great help to you but if you have already done what is explained in the blog, you may check out this forum topic. It discusses and then gives a link to how to install on a client machine. Hope this helps. http://forums.iis.net/t/1150242.aspx</description></item><item><title>Help with Client Certificates</title><link>http://forums.iis.net/thread/1909831.aspx</link><pubDate>Fri, 10 Jul 2009 06:43:07 GMT</pubDate><guid isPermaLink="false">50bcf3b4-f6fe-4638-adff-0c150e922e99:1909831</guid><dc:creator>chris.arnold</dc:creator><slash:comments>0</slash:comments><comments>http://forums.iis.net/thread/1909831.aspx</comments><wfw:commentRss>http://forums.iis.net/commentrss.aspx?SectionID=1043&amp;PostID=1909831</wfw:commentRss><description>I am attempting to secure one of our internal IIS7 servers using this Client Certificate stuff and I&amp;#39;ve come across a few questions / issues.

1. I have successfully generated a client certificate on our CA for a domain user. Which format do I export this as in order to install it onto the client machine? e.g. do I need the private key?
2. I want to make Client Certificates a requirement when a user logs on to the website. How do I setup mapping to the domain account? I can see how to enable One-to-One mapping but this seems to require me to know and enter the user&amp;#39;s password!
3. What are the actual benefits of using Client Certificate Mapping?

Many thanks,

Chris</description></item></channel></rss>