Compartilhar via


WindowsClaimsIdentity.CreateFromCertificate Method (X509Certificate2, Boolean)

[Starting with the .NET Framework 4.5, Windows Identity Foundation (WIF) has been fully integrated into the .NET Framework. The version of WIF addressed by this topic, WIF 3.5, is deprecated and should only be used when developing against the .NET Framework 3.5 SP1 or the .NET Framework 4. For more information about WIF in the .NET Framework 4.5, also known as WIF 4.5, see the Windows Identity Foundation documentation in the .NET Framework 4.5 Development Guide.]

Creates a new instance of the WindowsClaimsIdentity class from an X.509 certificate.

Namespace: Microsoft.IdentityModel.Claims
Assembly: Microsoft.IdentityModel (in Microsoft.IdentityModel.dll)

Usage

'Usage
Dim certificate As X509Certificate2
Dim useWindowsTokenService As Boolean
Dim returnValue As WindowsClaimsIdentity

returnValue = WindowsClaimsIdentity.CreateFromCertificate(certificate, useWindowsTokenService)

Syntax

'Declaration
Public Shared Function CreateFromCertificate ( _
    certificate As X509Certificate2, _
    useWindowsTokenService As Boolean _
) As WindowsClaimsIdentity
public static WindowsClaimsIdentity CreateFromCertificate (
    X509Certificate2 certificate,
    bool useWindowsTokenService
)
public:
static WindowsClaimsIdentity^ CreateFromCertificate (
    X509Certificate2^ certificate, 
    bool useWindowsTokenService
)
public static WindowsClaimsIdentity CreateFromCertificate (
    X509Certificate2 certificate, 
    boolean useWindowsTokenService
)
public static function CreateFromCertificate (
    certificate : X509Certificate2, 
    useWindowsTokenService : boolean
) : WindowsClaimsIdentity

Parameters

  • certificate
    The certificate from which to draw the UPN claim to use to map to the associated WindowsClaimsIdentity.
  • useWindowsTokenService
    If true this method will perform an S4U logon executed in the context of the trusted token service. If false, the method performs the logon by invoking CertificateLogon.

Return Value

A WindowsClaimsIdentity representing the user associated with the UPN in the certificate.

Remarks

If configured, the Windows Token Service will be utilized to ensure that this WindowsClaimsIdentity allows impersonation. The Issuer property of the user’s claims will be set to DefaultIssuer.

Thread Safety

Any public static (Shared in Visual Basic) members of this type are thread safe. Any instance members are not guaranteed to be thread safe.

Platforms

Target Platforms

Windows 7, Windows Server 2008 R2, Windows Vista SP2, Windows Server 2008 SP2, Windows Server 2003 SP2 (32-bit or 64-bit)

See Also

Reference

WindowsClaimsIdentity Class
WindowsClaimsIdentity Members
Microsoft.IdentityModel.Claims Namespace

Other Resources

Claims to Windows Token Service (c2WTS) Overview

Copyright © 2008 by Microsoft Corporation. All rights reserved.