Client authentication can be configured in the session configuration properties on the server or on the client workstation.
On the server, take the following steps:
To specify a default location of the client certificate, enter a URL or path and file name. The URL protocols that can be used depends on the capabilities of your browser. Most browsers support HTTP, HTTPS, FTP, and FTPS.
To specify parameters for using smart cards with Host On-Demand, click Setup.
The Setup button is only available when the 'Browser or security device option' is specified as the Certificate Source. |
To specify a default name, choosing 'Any certificate trusted by the server' causes Host On-Demand to search through the Microsoft Internet Explorer Personal Certificate store for the first certificate that is signed by a Certificate Authority trusted by the server requesting the certificate. Choosing a specific name causes Host On-Demand to send only that certificate. You may also add the name of a certificate that is not in the administrator's Certificate Store by clicking the Add Certificate Name button and specifying certificate components, such as the common name, organization, and other components.
To be prompted each time the server requests a client certificate, expand the How often to prompt listbox and click On each connection.
To be prompted once each time you start Host On-Demand, click First time after HOD is started.
Specify whether or not to Retrieve Certificate before
Connecting.
On the client, take the following steps:
To specify a default location of the client certificate, enter a URL or path and file name. The URL protocols that can be used depends on the capabilities of your browser. Most browsers support HTTP, HTTPS, FTP, and FTPS.
To specify parameters for using smart cards with Host On-Demand, click Setup.
To specify a default name, make a selection from the Certificate Name drop-down box. Choosing 'Any certificate trusted by the server' causes Host On-Demand to search through the Microsoft Internet Explorer Personal Certificate store for the first certificate that is signed by a Certificate Authority trusted by the server requesting the certificate. Choosing a specific name causes Host On-Demand to send only that certificate.
To be prompted each time the server requests a client certificate, expand the How often to prompt listbox and click On each connection.
To be prompted once each time you start Host On-Demand, click First time after HOD is started.
If your client supports storing preferences locally, clicking Only once, storing preferences on client causes Host On-Demand to prompt the next time the connection is made, but never after that, unless the connection attempt fails.
Specify whether or not to Retrieve Certificate before
Connecting.
Not all servers request certificates. When you try to connect to a telnet server that does, a window appears prompting you for the location and password of your certificate.
To use secure sessions on a Host On-Demand Redirector, you must set a security level on the port used by the Redirector. On the server, take the following steps: