Hi Ram,
The steps remains pretty much the same. Overall the requirements on the proxy are below
Create a Cert realm with the correct CN string mentioned. For authorization, can use LDAP in backend
Authenticate policy to redirect to virtual url
This Virutal to host a HTTPS RP service with the CA cert which also issued the Client certificate. Also the verify client is enabled in this service
Use the User or Group in the Rules.