Community Tip - New to the community? Learn how to post a question and get help from PTC and industry experts! X
Does anyone have any idea regarding how to support mutual (client/server) authentication in thingworx?
To enable mutual authentication over SSL in JAVA, we generally set the method of authentication in the web.xml application deployment descriptor to CLIENT-CERT so that client authentication is enabled only for a specific resource controlled by the security constraint.
How can we achieve this in thingworx application?
Thingworx supports specific Certs for Server (with .pem on client) as well as specific Client cert.
If you use a client cert, I believe similar to what you've done, you need to adjust the Tomcat settings to accept the client cert.