The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

aaa authentication certificate web policy required

Prev Next

Enables the policy settings of the Web UI to require only a client X.509 certificate for user authentication.

Note

Use the no aaa authentication certificate web policy command to reset the policy not to accept a certificate for user authentication.

Note

The Intelligent Virtual Execution - Server compute node does not have a Web UI.

For details about the policy settings of the Web UI that are used for certificate authentication, refer to the "Configuring CAC for Certificate Authentication" appendix of the System Administration Guide.

Note

This command is not currently used on the Intelligent Virtual Execution - Server compute node.

Syntax

aaa authentication certificate web policy required

no aaa authentication certificate web policy

Parameters

None

Example

The following example shows how to allow the user to log in to the Web UI using a mandatory X.509 certificate.

hostname (config) # aaa authentication certificate web policy required

User role

Admin

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Central Management System: Release 7.9.1

  • Endpoint Security (HX): Release 2.5

  • Network Security: Release 7.9.1

  • Intelligent Virtual Execution - Server: Release 7.9.1

  • Email Security — Server: Release 7.9.0