Use the CLI commands in this section to remove an LDAP search filter for certificate authorization.
To remove an LDAP search filter for certificate authorization:
Go to CLI configuration mode.
hostname > enable hostname # configure terminal
Remove the LDAP search filter.
hostname (config) # no aaa authorization certificate map-ldap search-filterVerify the status of the LDAP search filter.
hostname (config) # show aaa authorization certificateCertificate based authorization settings:
LDAP enabled : yes
LDAP Match Attribute : uid
Certificate field to match : x509-cert-subject
LDAP Search Filter : Not ConfiguredUsername override : no
Save your changes.
hostname (config) # write memory