SID 800 X.509 digital certificates

Hi everyone,


After a few research i could not find any documentation explaining how to implement user authentication to windows machines through digital certificate only.


What i want to do : 

   Using out Active Directory, i want to declare for a user an SID 800 certificate in order to let him login to his machine only with the USB certificate on the SID 800.

Any help would appreciated.

Thank you.