The new docs.trellix.com features a modernized UI and AI-powered conversational search. Content is currently available in English, with additional languages launching in early November 2026. We hope you enjoy the updated experience.

Configuring authentication on the CLI

Prev Next

You can select and configure a different authentication method for user logins based on your requirements. Refer to the table below to decide which authentication method to use:

Authentication requirement

Authentication method to choose

To use local user accounts (default)

PAM (selected by default).

No further configuration is needed in this option. See adding a user if you want to create local PAM users.

To authenticate against an external LDAP or Active Directory (AD) server

Select and configure LDAP or Active Directory authentication

To authenticate user information using digital certificates (CAC/PIV)

Select and configure PKI, PKI with LDAP, or PKI with Active Directory authentication

To authenticate against an external RADIUS or TACACS+ server

Select and configure RADIUS or TACACS+ authentication