Web service *server* authentication
from can tell, default policy connecting web services on https accept server credential has been signed certificate in trusted root certification authorities certificate store.
i'm developing internal web service , such, want restrict list of server certificates accepted client.
i'm looking similar service.clientcertificates in opposite direction.
would able point me in direction change level of validation, preferable on per-object-instance basis , not globally through application.
i'm developing internal web service , such, want restrict list of server certificates accepted client.
i'm looking similar service.clientcertificates in opposite direction.
would able point me in direction change level of validation, preferable on per-object-instance basis , not globally through application.
see here:
http://webservices20.blogspot.com/
wcf security, performance , testing blog
of course in case not disable validation rather use custom logic.
http://webservices20.blogspot.com/
wcf security, performance , testing blog
Archived Forums A-B > ASMX Web Services and XML Serialization
Comments
Post a Comment