Use the CLI commands in this section to remove an LDAP search filter for certificate authorization.
To remove an LDAP search filter for certificate authorization:
Go to CLI configuration mode.
hostname > enablehostname # configure terminalRemove the LDAP search filter.
hostname (config) # no aaa authorization certificate map-ldap search-filterVerify the status of the LDAP search filter.
hostname (config) # show aaa authorization certificateCertificate based authorization settings:
LDAP enabled : yes
LDAP Match Attribute : uid
Certificate field to match : x509-cert-subject
LDAP Search Filter : Not Configured#160; Username override : no
Save your changes.
hostname (config) # write memory