Groups | Blog | Home
all groups > iis security > june 2006 >

iis security : IIS and client certificate


spiazzi67 NO[at]SPAM gmail.com
6/18/2006 1:04:07 AM
Hi,

I have SBS2003.
I would expose exchange web in internert and intranet.
For intranet I would secure with IP filter.
For internet I would secure witch client certificate.
Now can I combine this methods? That is a person in my intranet that
haven't the certificate can access , because the IP is secure. A person
in internet with client trusted certificate can access also if he
hasn't an IP in the range.

It is possible and if yes what are the configuration?

Thanks
Ken Schaefer
6/20/2006 12:00:00 AM
I don't think you can combine these two requirements in the way that you
wish.

You could create a second virtual directory (e.g. /internalOWA) and point it
to the same location that the existing virtual directory does (/exchange).
Your internal clients would use one virtual directory (with the IP address
restriction), and your external clients would use the other (with the client
certificate restriction).

To make it a bit easier for your users, you could create a single page which
redirects the user to the relevant folder depending on whether they are
internal or external.

Cheers
Ken

[quoted text, click to view]

AddThis Social Bookmark Button