Configures the name of the entry for the subject field in the X.509 certificate.
The subject is the Distinguished Name (DN) and is the X.509 structure. Each entry has a unique identifier. The following example shows the DN format for the Common Access Card (CAC):
C=US, O=Test Government, OU=Test Department, OU=Test Agency, CN=Test Cardholder
Note
Use the no aaa authentication certificate username command to reset the certificate field for the username to use the default
x509-cert-san-upnattribute.
For details about the user attributes for the X.509 certificate, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.
Note
This command is not currently used on the Intelligent Virtual Execution - Server compute node.
Syntax
aaa authentication certificate username x509-cert-subject
no aaa authentication certificate username
Parameters
None
Example
The following example shows how to configure the name of the entry for the subject field in the X.509 certificate.
hostname (config) # aaa authentication certificate username x509-cert-subject
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.9.1
Endpoint Security (HX): Release 2.5
Network Security: Release 7.9.1
Intelligent Virtual Execution - Server: Release 7.9.1
Email Security — Server: Release 7.9.0