Secure LDAPS & Smartcard


hi,

is there way of switching off mutual authentication ldaps on windows 2003 domain controller or on xp client?

i have switched using a smartcard for logon , every ldaps session (from third party sso app) requesting pin. believe app still using kerberos authenticate session, not need mutual authentication , annoying pin request pop ups.

thanks,
dave

hi,

 

according following article:

 

using ssl/tls

http://msdn.microsoft.com/en-us/library/cc223502.aspx

 

 “the dc request (but not require) client's certificate part of ssl/tls handshake [rfc2246]. if client presents valid certificate dc @ time, can used dc authenticate (bind) connection credentials represented certificate”, afraid expected behavior based on specification of rfc2246. thank understanding


Windows Server  >  Directory Services



Comments

Popular posts from this blog

some help on Event 540

WMI Repository 4GB limit - Win 2003 Ent Question

Event ID 1302 (error 1307) DFS replication service encountered an error while writing to the debug log file