US DOD uses this for CAC. Essentially, you just store some part of the certificate (say SUBJECT) and then compare it with authentication.
In ASP.Net, you get access to a client certificate:
Request.ClientCertificate.Subject
Many certificate objects will have a unique identifier inside, therefore the certificate identifier is used to cover changes in the name of individuals.
jle
source share