|
correct.
Your first case uses implicit mapping - it requires
the UPN of the user match the AltSubjectName in the cert.
Your 2nd and 3rd case are correct as
well.
Here are some more links for you:
Step-by-Step Guide to Mapping Certificates to User
Accounts
http://www.microsoft.com/windows2000/techinfo/planning/security/mappingcerts.asp Mapping Certificates to Windows 2000 User
Accounts
http://www.microsoft.com/technet/prodtechnol/windows2000serv/technologies/activedirectory/howto/mapcerts.mspx IIS 6.0 Operations Guide: Mapping Client
Certificates to User Accounts
http://www.microsoft.com/technet/prodtechnol/WindowsServer2003/Library/IIS/848968f3-baa0-46f9-b1e6-ef81dd09b015.mspx steve
|
- [ActiveDir] time sync script Steve Patrick
- [ActiveDir] time sync script Matt Brown
