iis will walk up the chain 'til it reaches the root - so you need the root
loaded in the machine store. also, by default iis5 will check the crl, if
it's location is listed in the client cert.
-----Original Message-----
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of Steve Wang
Sent: Friday, October 27, 2000 11:45 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: IIS client authentication?
Hi, all,
One question for a case where strong CLIENT authentication is needed: we
use open ssl on
client side and use Microsoft IIS on the server side. How will the Microsoft
IIS check the validity
of the client certificate? Will it need to validate the whole certificate
chain? Is it configurable?
Thank you!
Steve
______________________________________________________________________
OpenSSL Project http://www.openssl.org
Development Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]