Enables the policy settings of the Web UI to accept an optional X.509 certificate for user authentication. The administrator can use the aaa authentication certificate web policy allowed command to allow the user to log in to the Web UI using their provided user name and password or using an optional X.509 certificate.
Note
Use the no aaa authentication certificate web policy command to reset the policy not to accept a certificate for user authentication.
Note
The Intelligent Virtual Execution - Server compute node does not have a Web UI.
For details about the policy settings of the Web UI that are used for certificate authentication, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.
Note
This command is not currently used on the Intelligent Virtual Execution - Server compute node.
Syntax
aaa authentication certificate web policy allowed
no aaa authentication certificate web policy
Parameters
None
Example
The following example shows how to allow the user to log in to the Web UI using the user name and password provided by their administrator or using an optional X.509 certificate.
hostname (config) # aaa authentication certificate web policy allowed
User role
Administrator
Command mode
Configuration
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.9.1
Endpoint Security (HX): Release 2.5
Network Security: Release 7.9.1
Intelligent Virtual Execution - Server: Release 7.9.1
Email Security — Server: Release 7.9.0