Web service *server* authentication
from can tell, default policy connecting web services on https accept server credential has been signed certificate in trusted root certification authorities certificate store.
i'm developing internal web service , such, want restrict list of server certificates accepted client.
i'm looking similar service.clientcertificates in opposite direction.
would able point me in direction change level of validation, preferable on per-object-instance basis , not globally through application.
 i'm developing internal web service , such, want restrict list of server certificates accepted client.
i'm looking similar service.clientcertificates in opposite direction.
would able point me in direction change level of validation, preferable on per-object-instance basis , not globally through application.
see here:
http://webservices20.blogspot.com/
wcf security, performance , testing blog
of course in case not disable validation rather use custom logic.
http://webservices20.blogspot.com/
wcf security, performance , testing blog
                                                                          Archived Forums A-B                                                     >                                                                 ASMX Web Services and XML Serialization                                                                           
 
 
Comments
Post a Comment