You can configure local user mappings for authorization by using the appliance CLI:
Admin access to the appliance.
A Certificate Authority (CA) certificate bundle has been downloaded, and an imported certificate has been added to an existing bundle from a specified URL. For details about how to download CA certificate bundle, see Downloading a CA certificate bundle using the CLI.
Policy settings of the Web UI for certificate-based authentication have been enabled. For details about how to enable policy settings of the Web UI, see Enabling or disabling the policy settings of the Web UI for certificate-based authentication.
User attributes for certificate authentication have been configured. For details about how to configure the user attributes for certificate authentication, see Configuring the user attributes for certificate authentication.
Online Certificate Status Protocol (OCSP) has been enabled and configured so that the appliance can validate certificate revocation. For details about how to enable and configure OCSP for certificate revocation, see Enabling or disabling OCSP using the CLI and Adding or removing the OCSP URL using the CLI.
Enable all authorization rules. Use the
aaa authorization rules enablecommand.