Custom Certificates

custom_certificates

Methods

Create SSL Configuration -> Envelope<>
post/zones/{zone_id}/custom_certificates

Upload a new SSL certificate for a zone.

Security
API Email + API Key

The previous authorization scheme for interacting with the Cloudflare API, used in conjunction with a Global API key.

Example: X-Auth-Email: user@example.com

The previous authorization scheme for interacting with the Cloudflare API. When possible, use API tokens instead of Global API keys.

Example: X-Auth-Key: 144c9defac04969c7bfad8efaa8ea194

Parameters
zone_id: string

Identifier

Response fields
errors: Array<>
messages: Array<>
success: true

Whether the API call was successful

result:
Optional
Request example
200Example
Delete SSL Configuration -> Envelope<{ id }>
delete/zones/{zone_id}/custom_certificates/{custom_certificate_id}

Remove a SSL certificate from a zone.

Edit SSL Configuration -> Envelope<>
patch/zones/{zone_id}/custom_certificates/{custom_certificate_id}

Upload a new private key and/or PEM/CRT for the SSL certificate. Note: PATCHing a configuration for sni_custom certificates will result in a new resource id being returned, and the previous one being deleted.

SSL Configuration Details -> Envelope<>
get/zones/{zone_id}/custom_certificates/{custom_certificate_id}

SSL Configuration Details

List SSL Configurations -> V4PagePaginationArray<>
get/zones/{zone_id}/custom_certificates

List, search, and filter all of your custom SSL certificates. The higher priority will break ties across overlapping 'legacy_custom' certificates, but 'legacy_custom' certificates will always supercede 'sni_custom' certificates.

Domain types

CustomCertificate = { id, bundle_method, expires_on, 11 more... }
GeoRestrictions = { label }
Status = "active" | "pending_reactivation" | "pending_revocation" | 1 more...

custom_certificates.prioritize

Methods

Re Prioritize SSL Certificates -> Envelope<Array<>>
put/zones/{zone_id}/custom_certificates/prioritize

If a zone has multiple SSL certificates, you can set the order in which they should be used during a request. The higher priority will break ties across overlapping 'legacy_custom' certificates.