---
title: userCertificate
description: X.509 certificate issued to the user, as described in X.509 clause 11.2.1.
component: pingds
version: 8.1
page_id: pingds:schemaref:at-userCertificate
canonical_url: https://docs.pingidentity.com/pingds/8.1/schemaref/at-userCertificate.html
---

# userCertificate

X.509 certificate issued to the user, as described in X.509 clause 11.2.1.

Request and transfer values using the binary option for the attribute description, `userCertificate;binary`.

|                             |                                                                                                                                                                                      |
| --------------------------- | ------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------ |
| *OID*                       | 2.5.4.36                                                                                                                                                                             |
| *Names*                     | userCertificate                                                                                                                                                                      |
| *Syntax*                    | [Certificate](s-Certificate.html)                                                                                                                                                    |
| *Equality matching rule*    | [certificateExactMatch](mr-certificateExactMatch.html)                                                                                                                               |
| *Ordering matching rule*    | [octetStringOrderingMatch](mr-octetStringOrderingMatch.html)                                                                                                                         |
| *Single value*              | false: multiple values allowed                                                                                                                                                       |
| *User modification allowed* | true                                                                                                                                                                                 |
| *Usage*                     | userApplications                                                                                                                                                                     |
| *Origin*                    | [RFC 4523](https://datatracker.ietf.org/doc/html/rfc4523)                                                                                                                            |
| *Schema file*               | 00-core.ldif                                                                                                                                                                         |
| *Used by*                   | [ds-certificate-user](oc-ds-certificate-user.html), [inetOrgPerson](oc-inetOrgPerson.html), [pkiUser](oc-pkiUser.html), [strongAuthenticationUser](oc-strongAuthenticationUser.html) |
