Certificate
Configure a Certificate Authority to distribute certificates (Add/Remove
programs / Windows setup). Specify an SSL port in IIS virtual directory, Use
the security tab to require a certificate (in which case clients can only
access via https://www.whatever.com with a valid certificate). Certificates
can then be distributed by an IIS virtual directory.
You'll want to research what CA type you need/ want and whether you need to
map one certificate to multiple users, require admin aprouval, map to AD
accounts, etc... You'll get a fair amount of info from the CA / certificate
help files to get you started.
I'ld suggest testing the various options until you get what you're looking
for. And please: back up your keys. Specially where encryption and the
recovery agent is involved.
|