Run the IndeedCM.Server.msi file from the Indeed Certificate Manager installation package and follow the wizard instructions to complete the installation. During the installation process, you shall be prompted to select a method of access control for all the system applications (see Figure 8).

Figure 8 – Access control selection.

The Indeed CM system consists of a number of services:

Each service has its own configuration files and access settings.
When Windows authentication is selected, the following access control parameters are set:

When Authentication by user’s personal certificates is selected, the following access control parameters are set:

If the user directory is in Active Directory, then the certificates used for authentication should contain User Principal Name. The certificates without UPN cannot be used for logging into web applications.

After the system is installed, you can set SSL settings for each application separately, using the IIS Management Console.