Configuring Client Certificate Authentication
-
If the user does not provide a valid certificate during the Secure Sockets Layer (SSL) handshake.
-
The user name extraction fails, authentication fails.
To configure the client certificate as the default authentication type by using the GUI
-
Go to Configuration > NetScaler Gateway, and then click Global Settings.
-
In the details pane, under Authentication Settings, click Change authentication CERT settings.
-
Select ON to enable two factor authentication using the certificate as per your requirement.
-
In User Name Field, select the type of certificate field that holds the user names.
-
In Group Name Field, select the type of the certificate field that holds the group name.
-
In Default Authorization Group, type the name of the default group, and then click OK.