SSL
SSLAnalyze
Analyze Certificate
SSLCertificate Packs
List Certificate Packs
Get Certificate Pack
Order Advanced Certificate Manager Certificate Pack
Restart Validation or Update Advanced Certificate Manager Certificate Pack
Delete Advanced Certificate Manager Certificate Pack
ModelsExpand Collapse
class CertificatePackListResponse: …A certificate pack with all its properties.
A certificate pack with all its properties.
certificates: List[Certificate]Array of certificates in this pack.
Array of certificates in this pack.
Comma separated list of valid host names for the certificate packs. Must contain the zone apex, may not contain more than 50 hosts, and may not be empty.
certificate_authority: Optional[Literal["google", "lets_encrypt", "ssl_com"]]Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Whether or not to add Cloudflare Branding for the order. This will add a subdomain of sni.cloudflaressl.com as the Common Name if set to true.
dcv_delegation_records: Optional[List[DCVDelegationRecord]]DCV Delegation records for domain validation.
DCV Delegation records for domain validation.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
validation_errors: Optional[List[ValidationError]]Domain validation errors that have been received by the certificate authority (CA).
Domain validation errors that have been received by the certificate authority (CA).
validation_method: Optional[Literal["txt", "http", "email"]]Validation Method selected for the order.
Validation Method selected for the order.
validation_records: Optional[List[ValidationRecord]]Certificates' validation records.
Certificates' validation records.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
class CertificatePackGetResponse: …A certificate pack with all its properties.
A certificate pack with all its properties.
certificates: List[Certificate]Array of certificates in this pack.
Array of certificates in this pack.
Comma separated list of valid host names for the certificate packs. Must contain the zone apex, may not contain more than 50 hosts, and may not be empty.
certificate_authority: Optional[Literal["google", "lets_encrypt", "ssl_com"]]Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Whether or not to add Cloudflare Branding for the order. This will add a subdomain of sni.cloudflaressl.com as the Common Name if set to true.
dcv_delegation_records: Optional[List[DCVDelegationRecord]]DCV Delegation records for domain validation.
DCV Delegation records for domain validation.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
validation_errors: Optional[List[ValidationError]]Domain validation errors that have been received by the certificate authority (CA).
Domain validation errors that have been received by the certificate authority (CA).
validation_method: Optional[Literal["txt", "http", "email"]]Validation Method selected for the order.
Validation Method selected for the order.
validation_records: Optional[List[ValidationRecord]]Certificates' validation records.
Certificates' validation records.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
class CertificatePackCreateResponse: …A certificate pack with all its properties.
A certificate pack with all its properties.
certificates: List[Certificate]Array of certificates in this pack.
Array of certificates in this pack.
Comma separated list of valid host names for the certificate packs. Must contain the zone apex, may not contain more than 50 hosts, and may not be empty.
certificate_authority: Optional[Literal["google", "lets_encrypt", "ssl_com"]]Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Whether or not to add Cloudflare Branding for the order. This will add a subdomain of sni.cloudflaressl.com as the Common Name if set to true.
dcv_delegation_records: Optional[List[DCVDelegationRecord]]DCV Delegation records for domain validation.
DCV Delegation records for domain validation.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
validation_errors: Optional[List[ValidationError]]Domain validation errors that have been received by the certificate authority (CA).
Domain validation errors that have been received by the certificate authority (CA).
validation_method: Optional[Literal["txt", "http", "email"]]Validation Method selected for the order.
Validation Method selected for the order.
validation_records: Optional[List[ValidationRecord]]Certificates' validation records.
Certificates' validation records.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
class CertificatePackEditResponse: …A certificate pack with all its properties.
A certificate pack with all its properties.
certificates: List[Certificate]Array of certificates in this pack.
Array of certificates in this pack.
Comma separated list of valid host names for the certificate packs. Must contain the zone apex, may not contain more than 50 hosts, and may not be empty.
certificate_authority: Optional[Literal["google", "lets_encrypt", "ssl_com"]]Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Certificate Authority selected for the order. For information on any certificate authority specific details or restrictions see this page for more details.
Whether or not to add Cloudflare Branding for the order. This will add a subdomain of sni.cloudflaressl.com as the Common Name if set to true.
dcv_delegation_records: Optional[List[DCVDelegationRecord]]DCV Delegation records for domain validation.
DCV Delegation records for domain validation.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
validation_errors: Optional[List[ValidationError]]Domain validation errors that have been received by the certificate authority (CA).
Domain validation errors that have been received by the certificate authority (CA).
validation_method: Optional[Literal["txt", "http", "email"]]Validation Method selected for the order.
Validation Method selected for the order.
validation_records: Optional[List[ValidationRecord]]Certificates' validation records.
Certificates' validation records.
The set of email addresses that the certificate authority (CA) will use to complete domain validation.
The content that the certificate authority (CA) will expect to find at the http_url during the domain validation.
SSLCertificate PacksQuota
Get Certificate Pack Quotas
SSLRecommendations
SSL/TLS Recommendation
SSLAutomatic Upgrader
SSLUniversal
SSLUniversalSettings
Universal SSL Settings Details
Edit Universal SSL Settings
ModelsExpand Collapse
class UniversalSSLSettings: …
Disabling Universal SSL removes any currently active Universal SSL certificates for your zone from the edge and prevents any future Universal SSL certificates from being ordered. If there are no advanced certificates or custom certificates uploaded for the domain, visitors will be unable to access the domain over HTTPS.
By disabling Universal SSL, you understand that the following Cloudflare settings and preferences will result in visitors being unable to visit your domain unless you have uploaded a custom certificate or purchased an advanced certificate.
- HSTS
- Always Use HTTPS
- Opportunistic Encryption
- Onion Routing
- Any Page Rules redirecting traffic to HTTPS
Similarly, any HTTP redirect to HTTPS at the origin while the Cloudflare proxy is enabled will result in users being unable to visit your site without a valid certificate at Cloudflare's edge.
If you do not have a valid custom or advanced certificate at Cloudflare's edge and are unsure if any of the above Cloudflare settings are enabled, or if any HTTP redirects exist at your origin, we advise leaving Universal SSL enabled for your domain.
SSLVerification
SSL Verification Details
Edit SSL Certificate Pack Validation Method
ModelsExpand Collapse
class Verification: …
certificate_status: Literal["initializing", "authorizing", "active", 4 more]Current status of certificate.
Current status of certificate.
signature: Optional[Literal["ECDSAWithSHA256", "SHA1WithRSA", "SHA256WithRSA"]]Certificate's signature algorithm.
Certificate's signature algorithm.
verification_info: Optional[VerificationInfo]Certificate's required verification information.
Certificate's required verification information.
List[Verification]
certificate_status: Literal["initializing", "authorizing", "active", 4 more]Current status of certificate.
Current status of certificate.
signature: Optional[Literal["ECDSAWithSHA256", "SHA1WithRSA", "SHA256WithRSA"]]Certificate's signature algorithm.
Certificate's signature algorithm.
verification_info: Optional[VerificationInfo]Certificate's required verification information.
Certificate's required verification information.