NetScaler: How to Configure LB Service/ServiceGroup for Client Certicate based Authentication when Backend server request for the certificate

NetScaler: How to Configure LB Service/ServiceGroup for Client Certicate based Authentication when Backend server request for the certificate

book

Article ID: CTX215153

calendar_today

Updated On:

Description

To enable client certificate only at the backend i.e. not requiring the actual client to present the client certificate


Instructions

In order to make sure that the NetScaler presents the client certificate when the backend server requests for it.

Go to the service/ ServiceGroup and then under the Certificates Section, bind the required client certificate that the NS would give to the backend service when the service requests for the client certificate.

User-added image

Note: This option does not enable the NetScaler to request for the client certificate from the actual client.
This option will be only used when the backend server has the requirement of validating the client and that would be the NetScaler in this case.

 

Issue/Introduction

This article shows how you can configure NetScaler to provide a Certficate to Backend Server when a Backend Server request's