Updated on 2026-02-10 GMT+08:00

Importing a CA Certificate

Function

Imports a CA certificate.

Debugging

You can debug this API through automatic authentication in API Explorer or use the SDK sample code generated by API Explorer.

Authorization Information

Each account has all the permissions required to call all APIs, but IAM users must be assigned the required permissions.

  • If you are using role/policy-based authorization, see Permissions Policies and Supported Actions for details on the required permissions.
  • If you are using identity policy-based authorization, no identity policy-based permission required for calling this API.

URI

POST /v2/{project_id}/certmanager/private-certificate-authorities/import

Table 1 Path Parameters

Parameter

Mandatory

Type

Description

project_id

Yes

String

Project ID.

Request Parameters

Table 2 Request body parameters

Parameter

Mandatory

Type

Description

distinguished_name

Yes

DistinguishedName object

Distinguished name (DN) of the certificate.

key_algorithm

Yes

String

RSA algorithm for generating key pairs, either RSA-2048 or RSA-3072.

transaction_id

Yes

String

Transaction ID.

crl_configuration

Yes

CrlConfigurationData object

CRL configuration of the certificate.

pem_code

Yes

String

PEM of a certificate.

Table 3 DistinguishedName

Parameter

Mandatory

Type

Description

common_name

Yes

String

CA name.

country

Yes

String

Country or region.

state

Yes

String

Province or state.

locality

Yes

String

City.

organization

Yes

String

Company name.

organizational_unit

Yes

String

Department name.

Table 4 CrlConfigurationData

Parameter

Mandatory

Type

Description

enable

Yes

Boolean

Whether to enable the CRL configuration.

type

Yes

String

CRL configuration type, either SYSTEM or CUSTOMIZE.

crl_url

No

String

Enter a value manually when you want to customize it.

valid_day

Yes

Integer

Update cycle.

Response Parameters

Status code: 200

success

Status code: 400

Table 5 Response body parameters

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

error_detail

String

Error details.

encoded_authorization_message

String

Encrypted detailed reason for rejection. You can call the API decode-authorization-message of STS to decrypt the reason.

Status code: 401

Table 6 Response body parameters

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

error_detail

String

Error details.

encoded_authorization_message

String

Encrypted detailed reason for rejection. You can call the API decode-authorization-message of STS to decrypt the reason.

Status code: 403

Table 7 Response body parameters

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

error_detail

String

Error details.

encoded_authorization_message

String

Encrypted detailed reason for rejection. You can call the API decode-authorization-message of STS to decrypt the reason.

Status code: 404

Table 8 Response body parameters

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

error_detail

String

Error details.

encoded_authorization_message

String

Encrypted detailed reason for rejection. You can call the API decode-authorization-message of STS to decrypt the reason.

Status code: 500

Table 9 Response body parameters

Parameter

Type

Description

error_code

String

Error code.

error_msg

String

Error message.

error_detail

String

Error details.

encoded_authorization_message

String

Encrypted detailed reason for rejection. You can call the API decode-authorization-message of STS to decrypt the reason.

Example Requests

{
  "distinguished_name" : {
    "common_name" : "api_test",
    "country" : "CN",
    "state" : "GuangDong",
    "locality" : "DongGuan",
    "organization" : "Huawei",
    "organizational_unit" : "Workspace"
  },
  "key_algorithm" : "RSA-3072",
  "signature_algorithm" : "SHA-256",
  "transaction_id" : "string",
  "crl_configuration" : {
    "enable" : true,
    "type" : "SYSTEM",
    "crl_url" : "ldap:///CN=hcfactory-AD01-HCFACTORY-CA,CN=AD01-hcfactory,CN=CDP,CN=Public%20Key%20Services,CN=Services,CN=Configuration,DC=hcfactory,DC=huawei,DC=com?certificateRevocationList?base?objectClass=cRLDistributionPoint",
    "valid_day" : 3650
  },
  "pem_code" : "string"
}

Example Responses

None

Status Codes

Status Code

Description

200

success

400

The request cannot be understood by the server due to malformed syntax.

401

Authentication failed.

403

No operation permissions.

404

No resources found.

500

An internal service error occurred. For details about the error code, see the error code description.

Error Codes

See Error Codes.