The X.509 Client Certificate and Basic authentication scheme combines Basic authentication and X.509 Client Certificate authentication. This authentication scheme provides an extra layer of security for critical resources.
In order for a user to authenticate successfully, the following two events must occur:
AND
For X.509 Client Certificate authentication, SiteMinder processes authentication using the following steps:
Ensure the following prerequisites are met before configuring a X.509 Client Certificate and Basic authentication scheme:
Note: If the Policy Server is operating in FIPs mode, ensure the certificate was generated using only FIPS-approved algorithms.
Note: For Apache Web servers where Certificates are required or optional, the SSL Verify Depth 10 line in the httpd.conf file must be uncommented.
Copyright © 2012 CA.
All rights reserved.
|
|