users@glassfish.java.net

Re: how we can determine groups and role mapping when we are using Client-Cert?

From: Sarah kho <sarah.kho_at_gmail.com>
Date: Fri, 31 Jul 2009 03:38:45 +0430

Hi,
Any comment is welcome.
I am just looking to know how we can determine the group information when we
use client-cert for authentication in a web application.
Thanks.

On Thu, Jul 30, 2009 at 3:09 PM, Sarah kho <sarah.kho_at_gmail.com> wrote:

> Hi,
> When we use Client-cert authentication clients should provide digital
> certificates verifyable by server to be able to connect to the server.
> I am wondering how we can determine roles and groups when we use
> client-cert type.
> does clients digital certificates has some attribute showing which groups
> they belong?
> Thanks
>