Don't disassemble ATNA, what you are looking for is there.
I have been pulled into many discussions that are not taking 'all' of ATNA . They are either just taking the audit logging, or just taking the Secure Communications. Then there are the discussions that are taking the Secure Communications but don't want to take the Client authentication. All of these discussions are missing the point of ATNA , and/or are missing the configurability that is built into ATNA . Let me explain: 1. ATNA is a grouping of three functions: Security Audit , Secure Communications, and local Access Controls . It is only when you are assured that ALL of these functions exist that you should administratively accept the node/application, and provision a certificate. When I see groups picking and choosing parts, I worry that they might not be understanding the overall. I don’t mind treating them independent as long as this overall design is understood. 2. ATNA Secure Communications (actually Authenticate Node) . is not just mutual-authentica...