Yes that is correct for Active Directory service mapping of the
certificates the webserver has to be
a member of the domain. I was not aware that you were using Active
directory. I was not even aware that
a domain was involved when you asked the question. I apologize for any
confusion.
Best Regards,
Jeff MacLeod, MCSD
Microsoft IIS Support Professional
This posting is provided "AS IS" with no warranties, and confers no rights.
>> Stay informed about: Client Certificate User Mapping