aaa authentication certificate username x509-cert-san-email

Prev Next

Configures an email address in the Subject Alternative Name (SAN) field of the X.509 certificate. You are allowed to have multiple subfields for SAN.

Note

Use the no aaa authentication certificate username command to reset the certificate field for the username to use the default x509-cert-san-upn attribute.

For details about the user attributes for the X.509 certificate, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.

Note

This command is not currently used on the Intelligent Virtual Execution - Server compute node.

Syntax

aaa authentication certificate username x509-cert-san-email

no aaa authentication certificate username

Parameters

None

Example

The following example shows how to configure an email address in the Subject Alternative Name (SAN) field of the certificate.

hostname (config) # aaa authentication certificate username x509-cert-san-email

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Central Management System: Release 7.9.1

  • Endpoint Security (HX): Release 2.5

  • Network Security: Release 7.9.1

  • Intelligent Virtual Execution - Server: Release 7.9.1

  • Email Security — Server: Release 7.9.0