Hi all,

Hi all, I have a customer that have external users that are logging in
to a 3-party directory using smart cards.
My question is if it's possible to have Access Manager to validate if a
users certificate is valid (against the CA) and not bind/login to my
customers user source, and based on that forward the user to a web
If possible also inject some information from the certificate (like card
number) into a authentication header or cookie.
The web service itself will have a user source that can map the card
number to users
I don't know if this is possible or not, I'm not really sure how to work
with user certificates
Any thoughts are welcome


