Dear List!

I need to restrict users to access different resources based on attributes of their client certificate.

I found this tutorial which describes the basic idea: http://krishnasblog.com/2012/12/01/enabling-client-cert-based-authorization-on-tomcat/

Apart from not beeing able the get it working as described in the tutorial my question is whether it is possible to use different attributes than just the subject DN. I am thinking of certificate serial number and/or authority key identifier/subject key identifier.

Thank you for your help!

---------------------------------------------------------------------
To unsubscribe, e-mail: users-unsubscr...@tomcat.apache.org
For additional commands, e-mail: users-h...@tomcat.apache.org

Reply via email to