Secure LDAPS & Smartcard


hi,

is there way of switching off mutual authentication ldaps on windows 2003 domain controller or on xp client?

i have switched using a smartcard for logon , every ldaps session (from third party sso app) requesting pin. believe app still using kerberos authenticate session, not need mutual authentication , annoying pin request pop ups.

thanks,
dave

hi,

 

according following article:

 

using ssl/tls

http://msdn.microsoft.com/en-us/library/cc223502.aspx

 

 “the dc request (but not require) client's certificate part of ssl/tls handshake [rfc2246]. if client presents valid certificate dc @ time, can used dc authenticate (bind) connection credentials represented certificate”, afraid expected behavior based on specification of rfc2246. thank understanding


Windows Server  >  Directory Services



Comments

Popular posts from this blog

WMI Repository 4GB limit - Win 2003 Ent Question

Round Robin is killing performance on our network

Change home folder default permission?