Use the CLI commands in this section to enable or disable the LDAP server that is used to authorize users that are already authenticated using the X.509 certificate.
To enable the LDAP server for certificate authorization:
Go to CLI configuration mode.
hostname > enable
hostname # configure terminal
Enable the LDAP server to map a remote user to a local user account for certificate-based authentication.
Network Security (NX) > Common Security Platform Product Docs > System Security Guide Release 2026.1 > Authentication > Common Access Card (CAC) for certificate authentication > Configuring the user attributes for certificate authentication
Network Security (NX) > Common Security Platform Product Docs > System Security Guide Release 2026.1 > Authentication > Common Access Card (CAC) for certificate authentication > Enabling or disabling the policy settings of the Web UI for certificate authentication