473,782 Members | 2,465 Online
Bytes | Software Development & Data Engineering Community
+ Post

Home Posts Topics Members FAQ

add Root CA cert in ASP

Hello everyone,

I am in the process of implementing an internal Certificate Authority on a
client's network. The CA will issue certificates to several intranet web
apps that will be accessible to remote users. I would like to
programmaticall y add the Root CA cert to the users' Trusted Root CA store.

I have reviewed dseveral articles offering example code on how to achieve
this using the CEnroll ActiveX control, incluing MS KB 297681. However, all
of the methods I have seen, attempt to add the Root CA cert to the users'
store, without checking first if they already have it installed. I need to
accomplish this in a cleaner way.

I need to check the user's cert store to see if the Root CA cert is already
listed in the Trusted Root CA store. I would then, either redirect the user
to a page that explains why they need to install the certificate and prompts
to them to install it; or if they already trust the Root CA, redirect them
to the web app.

Is there a way I can use the CEnroll ActiveX control to find out if my Root
CA is already trusted by the user? Or would this be a security issue? I
reviewed the CEnroll ActiveX control on the MSDN site, and did not see a
property or method that would allow me to accomplish this.

Thank you,

Dmitry Akselrod
Jul 19 '05 #1
0 1711

This thread has been closed and replies have been disabled. Please start a new discussion.

Similar topics

0
2226
by: Tom | last post by:
Hello, I am running into a roadblock with an app I am writing to pull an HTML doc from a SSL secured internal website. My app works fine to sites with valid certs, but dies to my internal site. The internal site has a OpenSSL generated cert but the issuer is unknown. I expect this to be always be the case. My problem is that I cannot seem to find a way to tell VB.NET to ignore the cert's status. I have found some examples for prior...
0
1193
by: Paul | last post by:
I have an app that calls an https based web service. The server does not and cannot use one of the normal CA roots (Thawte, Verisign etc.) Is there a way to install the root cert programatically? I would presume some sort of message will be kicked up, but that's better than making the user do it manually.
0
1368
by: Guy Macon | last post by:
"Alan J. Flavell" <flavell@ph.gla.ac.uk> wrote: > But the character encoding scheme which is advertised from an HTTP > server via the MIME "charset=" is authoritative, according to RFC2616, > and this attribute should not be omitted according to security alert > CA-2000-02, Just so everything is in one convenient spot for anyone reading this, here are some references. The trusecure.com one is rather chilling...
6
1621
by: Brett | last post by:
I haven't seen any request for MS Certitified C# developers during my current job search. Is there any value to getting the single cert (as opposed to the four)? I don't have quite as much C# experience and believe the cert may compensate for some of that. Is that a valid reasoning? Thanks, Brett
1
1269
by: Grey | last post by:
i have set up a web application. I want to know that how to integrate it with SSL cert?? If I got the cert already, how can I set the web server in order to be SSL enable web ?? Million Thanks..
0
1089
by: Dmitry Akselrod | last post by:
Hello everyone, I am in the process of implementing an internal Certificate Authority on a client's network. The CA will issue certificates to several intranet web apps that will be accessible to remote users. I would like to programmatically add the Root CA cert to the users' Trusted Root CA store. I have reviewed dseveral articles offering example code on how to achieve this using the CEnroll ActiveX control, incluing MS KB...
3
1490
by: Param R. | last post by:
Hi all, I have an aspx page that needs to call a remote website that is protected by client cert authentication. I have installed the client cert and set permissions for IIS_WPG as per http://support.microsoft.com/default.aspx?scid=kb;en-us;817854. I then exported the cert to a DER encoded file. Now here is my code:- Dim h as httpwebrequest h = Ctype(WebRequest.Create(strurl), httpwebrequest)
7
4965
by: Robert Seacord | last post by:
The CERT/CC has just deployed a new web site dedicated to developing secure coding standards for the C programming language, C++, and eventually other programming language. We have already developed significant content for the C programming language that is available at: https://www.securecoding.cert.org/ by clicking on the "CERT C Programming Language Secure Coding Standard"
0
1487
by: hepsubah | last post by:
I'm trying to capture a client cert in my ASP.NET application, and use that cert as the client cert for a call to secure web service. I've used the following code, but am getting a 403 error on the invocation of the service. All the service is supposed to do is return the subject of the passed cert (I'll do more with it later) ...
0
9641
marktang
by: marktang | last post by:
ONU (Optical Network Unit) is one of the key components for providing high-speed Internet services. Its primary function is to act as an endpoint device located at the user's premises. However, people are often confused as to whether an ONU can Work As a Router. In this blog post, we’ll explore What is ONU, What Is Router, ONU & Router’s main usage, and What is the difference between ONU and Router. Let’s take a closer look ! Part I. Meaning of...
0
9480
by: Hystou | last post by:
Most computers default to English, but sometimes we require a different language, especially when relocating. Forgot to request a specific language before your computer shipped? No problem! You can effortlessly switch the default language on Windows 10 without reinstalling. I'll walk you through it. First, let's disable language synchronization. With a Microsoft account, language settings sync across devices. To prevent any complications,...
0
9944
tracyyun
by: tracyyun | last post by:
Dear forum friends, With the development of smart home technology, a variety of wireless communication protocols have appeared on the market, such as Zigbee, Z-Wave, Wi-Fi, Bluetooth, etc. Each protocol has its own unique characteristics and advantages, but as a user who is planning to build a smart home system, I am a bit confused by the choice of these technologies. I'm particularly interested in Zigbee because I've heard it does some...
0
8968
agi2029
by: agi2029 | last post by:
Let's talk about the concept of autonomous AI software engineers and no-code agents. These AIs are designed to manage the entire lifecycle of a software development project—planning, coding, testing, and deployment—without human intervention. Imagine an AI that can take a project description, break it down, write the code, debug it, and then launch it, all on its own.... Now, this would greatly impact the work of software developers. The idea...
1
7494
isladogs
by: isladogs | last post by:
The next Access Europe User Group meeting will be on Wednesday 1 May 2024 starting at 18:00 UK time (6PM UTC+1) and finishing by 19:30 (7.30PM). In this session, we are pleased to welcome a new presenter, Adolph Dupré who will be discussing some powerful techniques for using class modules. He will explain when you may want to use classes instead of User Defined Types (UDT). For example, to manage the data in unbound forms. Adolph will...
0
5378
by: TSSRALBI | last post by:
Hello I'm a network technician in training and I need your help. I am currently learning how to create and manage the different types of VPNs and I have a question about LAN-to-LAN VPNs. The last exercise I practiced was to create a LAN-to-LAN VPN between two Pfsense firewalls, by using IPSEC protocols. I succeeded, with both firewalls in the same network. But I'm wondering if it's possible to do the same thing, with 2 Pfsense firewalls...
0
5511
by: adsilva | last post by:
A Windows Forms form does not have the event Unload, like VB6. What one acts like?
1
4044
by: 6302768590 | last post by:
Hai team i want code for transfer the data from one system to another through IP address by using C# our system has to for every 5mins then we have to update the data what the data is updated we have to send another system
2
3643
muto222
by: muto222 | last post by:
How can i add a mobile payment intergratation into php mysql website.

By using Bytes.com and it's services, you agree to our Privacy Policy and Terms of Use.

To disable or enable advertisements and analytics tracking please visit the manage ads & tracking page.