certificates
Creates, updates, deletes, gets or lists a certificates resource.
Overview​
| Name | certificates |
| Type | Resource |
| Id | oci.load_balancer.certificates |
Fields​
The following fields are returned by SELECT queries:
- list
The configuration details of a certificate bundle.<br />For more information on SSL certficate configuration, see<br />[Managing SSL Certificates](/Content/Balance/Tasks/managingcertificates.htm).<br /><br />Warning: Oracle recommends that you avoid using any confidential information when you supply string values using the API.<br />
| Name | Datatype | Description |
|---|---|---|
caCertificate | string | The Certificate Authority certificate, or any interim certificate, that you received from your SSL certificate provider. Example: -----BEGIN CERTIFICATE----- MIIEczCCA1ugAwIBAgIBADANBgkqhkiG9w0BAQQFAD..AkGA1UEBhMCR0Ix EzARBgNVBAgTClNvbWUtU3RhdGUxFDASBgNVBAoTC0..0EgTHRkMTcwNQYD VQQLEy5DbGFzcyAxIFB1YmxpYyBQcmltYXJ5IENlcn..XRpb24gQXV0aG9y aXR5MRQwEgYDVQQDEwtCZXN0IENBIEx0ZDAeFw0wMD..TUwMTZaFw0wMTAy ... -----END CERTIFICATE----- |
certificateName | string | A friendly name for the certificate bundle. It must be unique and it cannot be changed. Valid certificate bundle names include only alphanumeric characters, dashes, and underscores. Certificate bundle names cannot contain spaces. Avoid entering confidential information. Example: example_certificate_bundle (pattern: <code>^[a-zA-Z0-9_.-]*$</code>) |
publicCertificate | string | The public certificate, in PEM format, that you received from your SSL certificate provider. Example: -----BEGIN CERTIFICATE----- MIIC2jCCAkMCAg38MA0GCSqGSIb3DQEBBQUAMIGbMQswCQYDVQQGEwJKUDEOMAwG A1UECBMFVG9reW8xEDAOBgNVBAcTB0NodW8ta3UxETAPBgNVBAoTCEZyYW5rNERE MRgwFgYDVQQLEw9XZWJDZXJ0IFN1cHBvcnQxGDAWBgNVBAMTD0ZyYW5rNEREIFdl YiBDQTEjMCEGCSqGSIb3DQEJARYUc3VwcG9ydEBmcmFuazRkZC5jb20wHhcNMTIw ... -----END CERTIFICATE----- |
Methods​
The following methods are available for this resource:
| Name | Accessible by | Required Params | Optional Params | Description |
|---|---|---|---|---|
list | select | loadBalancerId, region | opc-request-id | Lists all SSL certificates bundles associated with a given load balancer. |
create | insert | loadBalancerId, region, certificateName | opc-request-id, opc-retry-token | Creates an asynchronous request to add an SSL certificate bundle. |
delete | delete | loadBalancerId, certificateName, region | opc-request-id | Deletes an SSL certificate bundle from a load balancer. |
Parameters​
Parameters can be passed in the WHERE clause of a query. Check the Methods section to see which parameters are required or optional for each operation.
| Name | Datatype | Description |
|---|---|---|
certificateName | string | The name of the certificate bundle to delete. Example: example_certificate_bundle |
loadBalancerId | string | The [OCID](/Content/General/Concepts/identifiers.htm) of the load balancer associated with the certificate bundle to be deleted. |
region | string | OCI region identifier (e.g. us-ashburn-1, ap-sydney-1); resolves from OCI_REGION when not supplied in the query. (default: us-ashburn-1, x-stackQL-envVar: OCI_REGION) |
opc-request-id | string | The unique Oracle-assigned identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID. |
opc-retry-token | string | A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (e.g., if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected). |
SELECT examples​
- list
Lists all SSL certificates bundles associated with a given load balancer.
SELECT
caCertificate,
certificateName,
publicCertificate
FROM oci.load_balancer.certificates
WHERE loadBalancerId = '{{ loadBalancerId }}' -- required
AND region = '{{ region }}' -- required
AND opc-request-id = '{{ opc-request-id }}'
;
INSERT examples​
- create
- Manifest
Creates an asynchronous request to add an SSL certificate bundle.
INSERT INTO oci.load_balancer.certificates (
caCertificate,
certificateName,
passphrase,
privateKey,
publicCertificate,
loadBalancerId,
region,
opc-request-id,
opc-retry-token
)
SELECT
'{{ caCertificate }}',
'{{ certificateName }}' /* required */,
'{{ passphrase }}',
'{{ privateKey }}',
'{{ publicCertificate }}',
'{{ loadBalancerId }}',
'{{ region }}',
'{{ opc-request-id }}',
'{{ opc-retry-token }}'
;
# Description fields are for documentation purposes
- name: certificates
props:
- name: loadBalancerId
value: "{{ loadBalancerId }}"
description: Required parameter for the certificates resource.
- name: region
value: "{{ region }}"
description: Required parameter for the certificates resource.
- name: caCertificate
value: "{{ caCertificate }}"
description: |
The Certificate Authority certificate, or any interim certificate, that you received from your SSL certificate provider.
Example:
-----BEGIN CERTIFICATE-----
MIIEczCCA1ugAwIBAgIBADANBgkqhkiG9w0BAQQFAD..AkGA1UEBhMCR0Ix
EzARBgNVBAgTClNvbWUtU3RhdGUxFDASBgNVBAoTC0..0EgTHRkMTcwNQYD
VQQLEy5DbGFzcyAxIFB1YmxpYyBQcmltYXJ5IENlcn..XRpb24gQXV0aG9y
aXR5MRQwEgYDVQQDEwtCZXN0IENBIEx0ZDAeFw0wMD..TUwMTZaFw0wMTAy
...
-----END CERTIFICATE-----
- name: certificateName
value: "{{ certificateName }}"
description: |
A friendly name for the certificate bundle. It must be unique and it cannot be changed.
Valid certificate bundle names include only alphanumeric characters, dashes, and underscores.
Certificate bundle names cannot contain spaces. Avoid entering confidential information.
Example: `example_certificate_bundle`
- name: passphrase
value: "{{ passphrase }}"
description: |
A passphrase for encrypted private keys. This is needed only if you created your certificate with a passphrase.
- name: privateKey
value: "{{ privateKey }}"
description: |
The SSL private key for your certificate, in PEM format.
Example:
-----BEGIN RSA PRIVATE KEY-----
jO1O1v2ftXMsawM90tnXwc6xhOAT1gDBC9S8DKeca..JZNUgYYwNS0dP2UK
tmyN+XqVcAKw4HqVmChXy5b5msu8eIq3uc2NqNVtR..2ksSLukP8pxXcHyb
+sEwvM4uf8qbnHAqwnOnP9+KV9vds6BaH1eRA4CHz..n+NVZlzBsTxTlS16
/Umr7wJzVrMqK5sDiSu4WuaaBdqMGfL5hLsTjcBFD..Da2iyQmSKuVD4lIZ
...
-----END RSA PRIVATE KEY-----
- name: publicCertificate
value: "{{ publicCertificate }}"
description: |
The public certificate, in PEM format, that you received from your SSL certificate provider.
Example:
-----BEGIN CERTIFICATE-----
MIIC2jCCAkMCAg38MA0GCSqGSIb3DQEBBQUAMIGbM..QswCQYDVQQGEwJKU
A1UECBMFVG9reW8xEDAOBgNVBAcTB0NodW8ta3UxE..TAPBgNVBAoTCEZyY
MRgwFgYDVQQLEw9XZWJDZXJ0IFN1cHBvcnQxGDAWB..gNVBAMTD0ZyYW5rN
YiBDQTEjMCEGCSqGSIb3DQEJARYUc3VwcG9ydEBmc..mFuazRkZC5jb20wH
...
-----END CERTIFICATE-----
- name: opc-request-id
value: "{{ opc-request-id }}"
description: The unique Oracle-assigned identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID.
description: The unique Oracle-assigned identifier for the request. If you need to contact Oracle about a particular request, please provide the request ID.
- name: opc-retry-token
value: "{{ opc-retry-token }}"
description: A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (e.g., if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected).
description: A token that uniquely identifies a request so it can be retried in case of a timeout or server error without risk of executing that same action again. Retry tokens expire after 24 hours, but can be invalidated before then due to conflicting operations (e.g., if a resource has been deleted and purged from the system, then a retry of the original creation request may be rejected).
DELETE examples​
- delete
Deletes an SSL certificate bundle from a load balancer.
DELETE FROM oci.load_balancer.certificates
WHERE loadBalancerId = '{{ loadBalancerId }}' --required
AND certificateName = '{{ certificateName }}' --required
AND region = '{{ region }}' --required
AND opc-request-id = '{{ opc-request-id }}'
;