Title: Client Certificate Authentication
Author: MarioLipinski
Published: <strong>14. Juli 2013</strong>
Last modified: 17. Juli 2013

---

Plugins suchen

Dieses Plugin wurde **nicht mit den 3 neuesten Hauptversionen von WordPress getestet**.
Es wird möglicherweise nicht mehr gepflegt oder unterstützt und kann bei der Verwendung
mit neueren WordPress-Versionen zu Kompatibilitätsproblemen führen.

![](https://s.w.org/plugins/geopattern-icon/client-certificate-authentication.svg)

# Client Certificate Authentication

 Von [MarioLipinski](https://profiles.wordpress.org/mariolipinski/)

[Herunterladen](https://downloads.wordpress.org/plugin/client-certificate-authentication.1.0.2.zip)

 * [Details](https://de.wordpress.org/plugins/client-certificate-authentication/#description)
 * [Rezensionen](https://de.wordpress.org/plugins/client-certificate-authentication/#reviews)
 *  [Installation](https://de.wordpress.org/plugins/client-certificate-authentication/#installation)
 * [Entwicklung](https://de.wordpress.org/plugins/client-certificate-authentication/#developers)

 [Support](https://wordpress.org/support/plugin/client-certificate-authentication/)

## Beschreibung

The Client Certificate Authentication plugin enables WordPress to login a user with
a SSL client certificate. The plugin uses the email address from the subject field
to identify the user by the email address of his wordpress account. Optionally, 
new accounts can be created on the fly by using email address and name from the 
certificate. By limiting login and registration to users providing a client certificate,
bots are locked out and spam is eliminated.

Acknowledgements: This plugin is based on the [HTTP Authentication plugin](https://wordpress.org/plugins/http-authentication/)
by Daniel Westermann-Clark. Ideas taken from Dan B.’s implementation for client 
certificate authentication.

## Installation

 1. Login as an existing user, such as admin.
 2. Upload the `client-certificate-authentication` folder to your plugins folder, usually`
    wp-content/plugins`. (Or simply via the built-in installer.)
 3. Activate the plugin on the Plugins screen.
 4. Logout.
 5. Require certificate authentication for `wp-login.php` and `wp-admin`.
 6. Try logging in with your client certificate.

## FAQ

  How should I set up client certificate authentication?

This depends on your hosting environment and your means of authentication.
 The 
plugin uses the $_SERVER environment variables `SSL_CLIENT_S_DN_Email` (beginning
with) for the email address and `SSL_CLIENT_S_DN_CN` for the name. A working example
is given below:

In Apache HTTP (non-HTTPS) config add:

    ```
    RewriteEngine On
    RewriteRule ^/(wp-(admin|login\.php).*) https://%{HTTP_HOST}/$1
    ```

In Apache HTTPS config:

    ```
    <Location /wp-login.php>
        SSLVerifyClient optional
        <IfModule mod_rewrite.c>
            RewriteEngine   on
            RewriteCond  %{HTTP_USER_AGENT}  .*Safari.*
            RewriteCond  %{SSL:SSL_CLIENT_VERIFY} !=SUCCESS
            RewriteRule  .* /wp-admin [redirect,last]
        </IfModule>
    </Location>
    <Location /wp-admin>
        SSLVerifyClient require
    </Location>
    ```

Also make sure to set SSLCACertificatePath and enable CRL checks.

## Rezensionen

Zu diesem Plugin liegen noch keine Rezensionen vor.

## Mitwirkende und Entwickler

„Client Certificate Authentication“ ist Open-Source-Software. Folgende Menschen 
haben an diesem Plugin mitgewirkt:

Mitwirkende

 *   [ MarioLipinski ](https://profiles.wordpress.org/mariolipinski/)

[Übersetze „Client Certificate Authentication“ in deine Sprache.](https://translate.wordpress.org/projects/wp-plugins/client-certificate-authentication)

### Interessiert an der Entwicklung?

[Durchstöbere den Code](https://plugins.trac.wordpress.org/browser/client-certificate-authentication/),
sieh dir das [SVN-Repository](https://plugins.svn.wordpress.org/client-certificate-authentication/)
an oder abonniere das [Entwicklungsprotokoll](https://plugins.trac.wordpress.org/log/client-certificate-authentication/)
per [RSS](https://plugins.trac.wordpress.org/log/client-certificate-authentication/?limit=100&mode=stop_on_copy&format=rss).

## Änderungsprotokoll

#### 1.0

Initial release.

#### 1.0.1

Documentation updates.

#### 1.0.2

Fixes to the short description.

## Meta

 *  Version **1.0.2**
 *  Zuletzt aktualisiert **vor 13 Jahren**
 *  Aktive Installationen **10+**
 *  WordPress-Version ** 3.1 oder höher **
 *  Getestet bis **3.5.2**
 *  Sprache
 * [English (US)](https://wordpress.org/plugins/client-certificate-authentication/)
 * Schlagwörter
 * [authentication](https://de.wordpress.org/plugins/tags/authentication/)[ssl](https://de.wordpress.org/plugins/tags/ssl/)
 *  [Erweiterte Ansicht](https://de.wordpress.org/plugins/client-certificate-authentication/advanced/)

## Bewertungen

 5 von 5 Sternen.

 *  [  2 5-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/?filter=5)
 *  [  0 4-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/?filter=4)
 *  [  0 3-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/?filter=3)
 *  [  0 2-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/?filter=2)
 *  [  0 1-Sterne-Rezensionen     ](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/?filter=1)

[Your review](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/#new-post)

[Alle Rezensionen anzeigen](https://wordpress.org/support/plugin/client-certificate-authentication/reviews/)

## Mitwirkende

 *   [ MarioLipinski ](https://profiles.wordpress.org/mariolipinski/)

## Support

Möchtest du etwas mitteilen? Brauchst du Unterstützung?

 [Support-Forum anzeigen](https://wordpress.org/support/plugin/client-certificate-authentication/)

## Spenden

Möchtest du die Weiterentwicklung dieses Plugins unterstützen?

 [ Für dieses Plugin spenden ](http://www.cacert.org/index.php?id=13)