Enables the LDAP override of the username setting that was specified with the aaa authentication certificate username command.
Note
By default, the username setting in the aaa authentication certificate username command is used.
If the login is mapped to the LDAP account, an administrator can use the ldap login-attribute command to override the username setting, and instead use the username from the LDAP attribute.
For details about configuring LDAP authorization for certificate authentication, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.
Note
This command is not currently used on the Intelligent Virtual Execution - Server compute node.
Syntax
[no] aaa authorization certificate map-ldap username-override
Parameters
no
Use the no form of this command to disable the LDAP override of the username setting that was specified with the aaa authentication certificate username command.
Example
The following example shows how to enable the LDAP override of the username setting that was specified with the aaa authentication certificate username command.
hostname (config) # aaa authorization certificate map-ldap username-override
User role
Admin
Command mode
Config
Supported appliances
This command is supported on the following appliances running the specified releases or later:
Central Management System: Release 7.9.1
Endpoint Security (HX): Release 2.5
Network Security: Release 7.9.1
Intelligent Virtual Execution - Server: Release 7.9.1
Email Security — Server: Release 7.9.0