I just wanted to add this quick post around Client certificate Mapping on IIS. This is focused on 1-to-1/Many-to-1 mapping in IIS 6.0/7.0.
Recently a colleague of mine and I was working on this issue for one of our internal teams and after some real slogging we figured out that one *cannot* set this mapping at any Virtual directory/Application level in IIS.
One has to set the Client certificate mapping at the specific Web site level only!
I couldn't find a documentation on this so thought of putting this as a short post for general audience in case someone is scratching their head over this.