Dear Maxim Dounin Hello ! Thank you for quick response. I understand your answer. Add if ($ssl_client_i_dn != "...") { return 403; } and I can limit access from issued intermediate CA. Regards, Atsushiby atsushi2550 - Nginx Mailing List - English
Hi there, I'm trying to set up reverse proxy server with client authentication. --- Environment --- My CA is 2 tier. Root CA - intermediate CA - Client Certificate. --- Problem Discripton --- When I accessed proxy server from laptop pc, only the correct client certificate was suggested, and authenticate successfully. But when I accessed proxy server from android phone, ALL insby atsushi2550 - Nginx Mailing List - English