Technorati tag: iis,ca, certificate, SSL, client certificate, Xiamingliang
the third part client certificate Request "
1. Come to the client server that needs to access the site and run MMC.
650) this.width=650; "title=" clip_image001 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image001 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi0qw-yuuaadihmadavs602.jpg "" 423 "height=" 254 "/>
Here are the steps to apply for a user certificate, relatively simple, there is nothing to explain, look directly at the picture bar.
650) this.width=650; "title=" clip_image003 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image003 "src=" http://s3.51cto.com/wyfs02/M00/5D/FD/ Wkiom1uoi0vyhetoaadrm9_gonc139.jpg "" 558 "height=" 309 "/>
Create a custom request.
650) this.width=650; "title=" clip_image005 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image005 "src=" http://s3.51cto.com/wyfs02/M01/5D/FD/ Wkiom1uoi0zbnqxcaae5i4f5ybw867.jpg "" 558 "height=" 311 "/>
Next
650) this.width=650; "title=" clip_image007 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image007 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi0zyxqocaader5dstoa249.jpg "" 558 "height=" 390 "/>
650) this.width=650; "title=" clip_image009 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image009 "src=" Http://s3.51cto.com/wyfs02/M00/5D/F8/wKioL1UojJnyVpp_ Aadlu-wjphs537.jpg "" 558 "height=" 391 "/>
Template to select a user.
650) this.width=650; "title=" clip_image011 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image011 "src=" http://s3.51cto.com/wyfs02/M01/5D/F8/ Wkiol1uojjrwro8qaadxonfb668606.jpg "" 558 "height=" 390 "/>
Property.
650) this.width=650; "title=" clip_image013 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image013 "src=" http://s3.51cto.com/wyfs02/M00/5D/FD/ Wkiom1uoi07ywu9zaaefmb1zrxa892.jpg "" 558 "height=" 388 "/>
The friendly name writes the user name that requires the certificate to be used.
650) this.width=650; "title=" clip_image014 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image014 "src=" http://s3.51cto.com/wyfs02/M01/5D/FD/ Wkiom1uoi0-hwxj6aaepok34sm0865.jpg "" 509 "height=" 470 "/>
Add a common name for the certificate.
650) this.width=650; "title=" clip_image015 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image015 "src=" http://s3.51cto.com/wyfs02/M02/5D/F8/wKioL1UojJyhRY_ 8aagxik4cuva830.jpg "" "height=" 470 "/>
650) this.width=650; "title=" clip_image016 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image016 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi1caxb8iaag-0pnceqg931.jpg "" 510 "height=" 471 "/>
Next.
650) this.width=650; "title=" clip_image018 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image018 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi1hb39hpaaehku3vnpg897.jpg "" 558 "height=" 392 "/>
And the above server certificate request almost repeated, do not explain.
650) this.width=650; "title=" clip_image020 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image020 "src=" http://s3.51cto.com/wyfs02/M01/5D/F8/ Wkiol1uojj6s61cjaadzxl09aeo677.jpg "" 558 "height=" 391 "/>
650) this.width=650; "title=" clip_image022 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image022 "src=" http://s3.51cto.com/wyfs02/M02/5D/F8/wKioL1UojJ_ Ckjotaal84agqvpm574.jpg "" 557 "height=" 389 "/>
650) this.width=650; "title=" clip_image024 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image024 "src=" http://s3.51cto.com/wyfs02/M00/5D/F8/ Wkiol1uojkczlkntaaftowbwtaq589.jpg "" 558 "height=" 291 "/>
650) this.width=650; "title=" clip_image026 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image026 "src=" http://s3.51cto.com/wyfs02/M01/5D/F8/ Wkiol1uojkhy4x8haac72t7-hte915.jpg "" 558 "height=" 232 "/>
650) this.width=650; "title=" clip_image028 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image028 "src=" http://s3.51cto.com/wyfs02/M02/5D/F8/wKioL1UojKLBzvL5AAD_ 6qg-yei440.jpg "" 557 "height=" 216 "/>
650) this.width=650; "title=" clip_image030 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image030 "src=" http://s3.51cto.com/wyfs02/M00/5D/F8/ Wkiol1uojkkdnzbjaaewpjbel2i883.jpg "" 558 "height=" 317 "/>
650) this.width=650; "title=" clip_image032 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image032 "src=" http://s3.51cto.com/wyfs02/M01/5D/F8/ Wkiol1uojkpi2qreaab1t4aph7a717.jpg "" 558 "height=" 133 "/>
650) this.width=650; "title=" clip_image034 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image034 "src=" http://s3.51cto.com/wyfs02/M01/5D/FD/ Wkiom1uoi1ed8uyuaacej70cbxq904.jpg "" 558 "height="/>
650) this.width=650; "title=" clip_image036 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image036 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi1jcc0ofaaeh-iqswuq815.jpg "" 558 "height=" 213 "/>
650) this.width=650; "title=" clip_image038 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image038 "src=" http://s3.51cto.com/wyfs02/M00/5D/FD/ Wkiom1uoi1najrlzaafmbxbb53e314.jpg "" 558 "height=" 277 "/>
650) this.width=650; "title=" clip_image040 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image040 "src=" http://s3.51cto.com/wyfs02/M01/5D/F8/ Wkiol1uojkws3pvdaadaubmtxd0495.jpg "" 558 "height=" 178 "/>
650) this.width=650; "title=" clip_image042 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image042 "src=" http://s3.51cto.com/wyfs02/M01/5D/FD/ Wkiom1uoi1qwn4fvaadyak1rxau694.jpg "" 558 "height=" 229 "/>
650) this.width=650; "title=" clip_image044 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image044 "src=" http://s3.51cto.com/wyfs02/M02/5D/F8/ Wkiol1uojkfgcm4faaeb1nyzh8a539.jpg "" 558 "height=" 259 "/>
650) this.width=650; "title=" clip_image045 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image045 "src=" http://s3.51cto.com/wyfs02/M02/5D/FD/ Wkiom1uoi1utrt6vaaawybgi2ly565.jpg "" 294 "height="/>
650) this.width=650; "title=" clip_image046 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image046 "src=" http://s3.51cto.com/wyfs02/M00/5D/F8/ Wkiol1uojkiwpndiaafd6s8kgik883.jpg "" 413 "height=" 478 "/>
650) this.width=650; "title=" clip_image047 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image047 "src=" http://s3.51cto.com/wyfs02/M01/5D/F9/ Wkiol1uojknj4aoiaafhyyzceog203.jpg "" 507 "height=" 421 "/>
650) this.width=650; "title=" clip_image048 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image048 "src=" http://s3.51cto.com/wyfs02/M00/5D/FD/ Wkiom1uoi12g1squaafgovog97m859.jpg "" 508 "height=" 424 "/>
650) this.width=650; "title=" clip_image049 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image049 "src=" http://s3.51cto.com/wyfs02/M02/5D/F9/ Wkiol1uojkuax2staaer98otdq0100.jpg "" 502 "height=" 421 "/>
650) this.width=650; "title=" clip_image051 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image051 "src=" http://s3.51cto.com/wyfs02/M00/5D/F9/ Wkiol1uojkujg5knaad7q9w6bk8822.jpg "" 558 "height=" 329 "/>
Let's see if the certificate is installed.
650) this.width=650; "title=" clip_image053 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image053 "src=" http://s3.51cto.com/wyfs02/M01/5D/F9/ Wkiol1uojkzgr8j9aaec6eixzdc971.jpg "" 557 "height=" 310 "/>
Try it on the interview
650) this.width=650; "title=" clip_image055 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; margin:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image055 "src=" http://s3.51cto.com/wyfs02/M01/5D/F9/ Wkiol1uojk3i39xraadvolfodhu738.jpg "" 557 "height="/>
650) this.width=650; "title=" clip_image057 "style=" border-top:0px; border-right:0px; Background-image:none; border-bottom:0px; padding-top:0px; padding-left:0px; border-left:0px; padding-right:0px "border=" 0 "alt=" clip_image057 "src=" http://s3.51cto.com/wyfs02/M02/5D/F9/ Wkiol1uojk2c2jtwaabdfuzrqwe905.jpg "" 558 "height=" 143 "/>
Note: I am logged in using a different account instead of administrator, so it is not directly related to my computer account.
Thinking:
1, send their own certificate to export others use whether it is possible.
2. Whether to apply for a certificate via webpage can also be achieved.
3, the computer is not the same domain access is OK.
4, through the Domain name access (multi-domain certificate).
5. Remove the certificate from the CA server and the client is still available.
Not finished, to be continued ...
Next: IIS SSL client certificate (ignore/accept/must) three--thinking verification
IIS SSL Client certificate (ignore/Accept/must) II--Client certificate request