Active Directory Secret Engine Configuration using Certificate

Hi Everyone, I have been trying to configure AD Secret Engine in vault for dynamic password rotation. Can anyone help me configure this using X.509 PEM Encoded Certificate? When I try to use Certificate it gives me an error - “*** failed to decode PEM block in the certificate**”