Requesting Client Certificates and Restricting Access

You can require SSL/TLS client certificates in order to restrict access to resources and to allow applications to access the certificates.

To request SSL/TLS client certificates, select the Request Client Certificate check box in the Ports dialog box.

To restrict resource access to only those users who supply valid certificates, select the Certificate Required check box in the Virtual or Physical Directory Security tab.

To restrict application access to only users with valid certificates, select the Certificate Required check box in the Application Property dialog box.

Note: All certificates for use by the Web Transaction Server must be stored in the ROOT store on the MCP.