Infisical PKI Certificate Authorities API

The PKI Certificate Authorities API from Infisical — 48 operation(s) for pki certificate authorities.

Operations 87

GET /api/v1/projects/{projectId}/cas #
GET /api/v1/cert-manager/ca/internal #
POST /api/v1/cert-manager/ca/internal #
GET /api/v1/cert-manager/ca/internal/{id} #
PATCH /api/v1/cert-manager/ca/internal/{id} #
DELETE /api/v1/cert-manager/ca/internal/{id} #
GET /api/v1/cert-manager/ca/internal/{caId}/csr #
POST /api/v1/cert-manager/ca/internal/{caId}/renew #
POST /api/v1/cert-manager/ca/internal/{caId}/certificate
GET /api/v1/cert-manager/ca/internal/{caId}/certificate #
GET /api/v1/cert-manager/ca/internal/{caId}/ca-certificates #
GET /api/v1/cert-manager/ca/internal/{caId}/certificate/{certId}
POST /api/v1/cert-manager/ca/internal/{caId}/sign-intermediate #
POST /api/v1/cert-manager/ca/internal/{caId}/import-certificate #
GET /api/v1/cert-manager/ca/internal/{caId}/crls #
GET /api/v1/cert-manager/ca/internal/{caId}/certificates/{caCertId}/der #
POST /api/v1/cert-manager/ca/internal/{caId}/install-certificate-venafi #
POST /api/v1/cert-manager/ca/internal/{caId}/install-certificate-adcs #
POST /api/v1/cert-manager/ca/internal/{caId}/signing-config #
GET /api/v1/cert-manager/ca/internal/{caId}/signing-config #
PATCH /api/v1/cert-manager/ca/internal/{caId}/signing-config #
GET /api/v1/cert-manager/ca/internal/{caId}/auto-renewal #
PATCH /api/v1/cert-manager/ca/internal/{caId}/auto-renewal #
GET /api/v1/cert-manager/ca/acme #
POST /api/v1/cert-manager/ca/acme #
GET /api/v1/cert-manager/ca/acme/{id} #
PATCH /api/v1/cert-manager/ca/acme/{id} #
DELETE /api/v1/cert-manager/ca/acme/{id} #
GET /api/v1/cert-manager/ca/azure-ad-cs #
POST /api/v1/cert-manager/ca/azure-ad-cs #
GET /api/v1/cert-manager/ca/azure-ad-cs/{id} #
PATCH /api/v1/cert-manager/ca/azure-ad-cs/{id} #
DELETE /api/v1/cert-manager/ca/azure-ad-cs/{id} #
GET /api/v1/cert-manager/ca/aws-pca #
POST /api/v1/cert-manager/ca/aws-pca #
GET /api/v1/cert-manager/ca/aws-pca/{id} #
PATCH /api/v1/cert-manager/ca/aws-pca/{id} #
DELETE /api/v1/cert-manager/ca/aws-pca/{id} #
GET /api/v1/cert-manager/ca/digicert #
POST /api/v1/cert-manager/ca/digicert #
GET /api/v1/cert-manager/ca/digicert/{id} #
PATCH /api/v1/cert-manager/ca/digicert/{id} #
DELETE /api/v1/cert-manager/ca/digicert/{id} #
GET /api/v1/cert-manager/ca/godaddy #
POST /api/v1/cert-manager/ca/godaddy #
GET /api/v1/cert-manager/ca/godaddy/{id} #
PATCH /api/v1/cert-manager/ca/godaddy/{id} #
DELETE /api/v1/cert-manager/ca/godaddy/{id} #
GET /api/v1/cert-manager/ca/aws-acm-public-ca #
POST /api/v1/cert-manager/ca/aws-acm-public-ca #
GET /api/v1/cert-manager/ca/aws-acm-public-ca/{id} #
PATCH /api/v1/cert-manager/ca/aws-acm-public-ca/{id} #
DELETE /api/v1/cert-manager/ca/aws-acm-public-ca/{id} #
GET /api/v1/cert-manager/ca/venafi-tpp #
POST /api/v1/cert-manager/ca/venafi-tpp #
GET /api/v1/cert-manager/ca/venafi-tpp/{id} #
PATCH /api/v1/cert-manager/ca/venafi-tpp/{id} #
DELETE /api/v1/cert-manager/ca/venafi-tpp/{id} #
GET /api/v1/cert-manager/ca #
POST /api/v1/pki/ca #
GET /api/v1/pki/ca/{caId} #
PATCH /api/v1/pki/ca/{caId} #
DELETE /api/v1/pki/ca/{caId} #
GET /api/v1/pki/ca/{caId}/certificates/{caCertId}/der #
GET /api/v1/pki/ca/{caId}/csr #
POST /api/v1/pki/ca/{caId}/renew #
GET /api/v1/pki/ca/{caId}/ca-certificates #
GET /api/v1/pki/ca/{caId}/certificate #
POST /api/v1/pki/ca/{caId}/sign-intermediate #
POST /api/v1/pki/ca/{caId}/import-certificate #
GET /api/v1/pki/ca/internal
POST /api/v1/pki/ca/internal
GET /api/v1/pki/ca/internal/{caName}
PATCH /api/v1/pki/ca/internal/{caName}
DELETE /api/v1/pki/ca/internal/{caName}
GET /api/v1/pki/ca/acme
POST /api/v1/pki/ca/acme
GET /api/v1/pki/ca/acme/{caName}
PATCH /api/v1/pki/ca/acme/{caName}
DELETE /api/v1/pki/ca/acme/{caName}
GET /api/v1/pki/ca/azure-ad-cs
POST /api/v1/pki/ca/azure-ad-cs
GET /api/v1/pki/ca/azure-ad-cs/{caName}
PATCH /api/v1/pki/ca/azure-ad-cs/{caName}
DELETE /api/v1/pki/ca/azure-ad-cs/{caName}
GET /api/v2/pki/ca #
GET /api/v2/workspace/{slug}/cas

Work with this as data

Every API here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for apis

7 MCP tools reach this
  • find_apisBrowse and filter every API in the catalog.
  • get_api_artifactsOne API's artifacts, grouped by type.
  • get_openapiThe primary OpenAPI for this API.
  • find_similar_apisAPIs that look like this one.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This API
curl "https://apis.io/api/v1/apis/infisical-pki-certificate-authorities-api"
All apis
curl "https://apis.io/api/v1/apis?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.

OpenAPI Specification

infisical-pki-certificate-authorities-api-openapi.yml Raw ↑
openapi: 3.2.0
info:
  title: Infisical Admin PKI Certificate Authorities API
  description: List of all available APIs that can be consumed
  version: 0.0.1
servers:
- url: https://us.infisical.com
  description: Production server (US)
- url: https://eu.infisical.com
  description: Production server (EU)
- url: http://localhost:8080
  description: Local server
tags:
- name: PKI Certificate Authorities
paths:
  /api/v1/projects/{projectId}/cas:
    get:
      operationId: listProjectCertificateAuthorities
      tags:
      - PKI Certificate Authorities
      parameters:
      - schema:
          type: string
          enum:
          - active
          - pending-certificate
        in: query
        name: status
        required: false
        description: The status of the CA to filter by.
      - schema:
          type: string
        in: query
        name: friendlyName
        required: false
        description: The friendly name of the CA to filter by.
      - schema:
          type: string
        in: query
        name: commonName
        required: false
        description: The common name of the CA to filter by.
      - schema:
          type: number
          minimum: 0
          maximum: 100
          default: 0
        in: query
        name: offset
        required: false
        description: The offset to start from. If you enter 10, it will start from the 10th CA.
      - schema:
          type: number
          minimum: 1
          maximum: 100
          default: 25
        in: query
        name: limit
        required: false
        description: The number of CAs to return.
      - schema:
          type: string
        in: path
        name: projectId
        required: true
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  cas:
                    type: array
                    items:
                      type: object
                      properties:
                        id:
                          type: string
                          format: uuid
                        createdAt:
                          type: string
                          format: date-time
                        updatedAt:
                          type: string
                          format: date-time
                        projectId:
                          type: string
                        status:
                          type: string
                        enableDirectIssuance:
                          type: boolean
                          default: true
                        name:
                          type: string
                        parentCaId:
                          type:
                          - string
                          - 'null'
                          format: uuid
                        type:
                          type: string
                        friendlyName:
                          type: string
                        organization:
                          type: string
                        ou:
                          type: string
                        country:
                          type: string
                        province:
                          type: string
                        locality:
                          type: string
                        commonName:
                          type: string
                        dn:
                          type: string
                        serialNumber:
                          type:
                          - string
                          - 'null'
                        maxPathLength:
                          type:
                          - number
                          - 'null'
                        keyAlgorithm:
                          type: string
                        activeCaCertId:
                          type:
                          - string
                          - 'null'
                          format: uuid
                        crlDistributionPointUrls:
                          type:
                          - array
                          - 'null'
                          items:
                            type: string
                        disableManagedCrlDistributionPointUrl:
                          type: boolean
                          default: false
                        requireTemplateForIssuance:
                          type: boolean
                        notAfter:
                          type: string
                        notBefore:
                          type: string
                      required:
                      - id
                      - createdAt
                      - updatedAt
                      - projectId
                      - status
                      - name
                      - type
                      - friendlyName
                      - organization
                      - ou
                      - country
                      - province
                      - locality
                      - commonName
                      - dn
                      - keyAlgorithm
                      additionalProperties: false
                required:
                - cas
                additionalProperties: false
        '400':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 400
                  message:
                    type: string
                  error:
                    type: string
                  details: {}
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '401':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 401
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '403':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 403
                  message:
                    type: string
                  details: {}
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '404':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 404
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '422':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 422
                  message: {}
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - error
                additionalProperties: false
        '500':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 500
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
  /api/v1/cert-manager/ca/internal:
    get:
      operationId: listInternalCertificateAuthoritiesV1
      tags:
      - PKI Certificate Authorities
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: array
                items:
                  type: object
                  properties:
                    enableDirectIssuance:
                      type: boolean
                      default: true
                    name:
                      type: string
                    id:
                      type: string
                      format: uuid
                    status:
                      type: string
                      enum:
                      - active
                      - disabled
                      - pending-certificate
                    type:
                      type: string
                      enum:
                      - internal
                    configuration:
                      type: object
                      properties:
                        type:
                          type: string
                          enum:
                          - root
                          - intermediate
                          description: The type of CA to create.
                        friendlyName:
                          type: string
                          description: A friendly name for the CA.
                        commonName:
                          type: string
                          default: ''
                          description: The common name (CN) for the CA.
                        organization:
                          type: string
                          default: ''
                          description: The organization (O) for the CA.
                        ou:
                          type: string
                          default: ''
                          description: The organization unit (OU) for the CA.
                        country:
                          type: string
                          default: ''
                          description: The country name (C) for the CA.
                        province:
                          type: string
                          default: ''
                          description: The state of province name for the CA.
                        locality:
                          type: string
                          default: ''
                          description: The locality name for the CA.
                        notBefore:
                          type: string
                          description: The date and time when the CA becomes valid in YYYY-MM-DDTHH:mm:ss.sssZ format.
                        notAfter:
                          type: string
                          description: The date and time when the CA expires in YYYY-MM-DDTHH:mm:ss.sssZ format.
                        maxPathLength:
                          type:
                          - number
                          - 'null'
                          minimum: -1
                          description: The maximum number of intermediate CAs that may follow this CA in the certificate / CA chain. A maxPathLength of -1 implies no path limit on the chain.
                        keyAlgorithm:
                          type: string
                          enum:
                          - RSA_2048
                          - RSA_3072
                          - RSA_4096
                          - EC_prime256v1
                          - EC_secp384r1
                          - EC_secp521r1
                          - ML-DSA-44
                          - ML-DSA-65
                          - ML-DSA-87
                          - SLH-DSA-SHA2-128f
                          - SLH-DSA-SHA2-128s
                          - SLH-DSA-SHA2-192f
                          - SLH-DSA-SHA2-192s
                          - SLH-DSA-SHA2-256f
                          - SLH-DSA-SHA2-256s
                          - SLH-DSA-SHAKE-128f
                          - SLH-DSA-SHAKE-128s
                          - SLH-DSA-SHAKE-192f
                          - SLH-DSA-SHAKE-192s
                          - SLH-DSA-SHAKE-256f
                          - SLH-DSA-SHAKE-256s
                          description: The type of public key algorithm and size, in bits, of the key pair for the CA; when you create an intermediate CA, you must use a key algorithm supported by the parent CA.
                        dn:
                          type:
                          - string
                          - 'null'
                        parentCaId:
                          type:
                          - string
                          - 'null'
                          format: uuid
                        serialNumber:
                          type:
                          - string
                          - 'null'
                        activeCaCertId:
                          type:
                          - string
                          - 'null'
                          format: uuid
                        crlDistributionPointUrls:
                          type: array
                          items:
                            type: string
                            maxLength: 2048
                            format: uri
                          maxItems: 4
                          description: Additional CRL Distribution Point URLs (HTTP/HTTPS) embedded in every certificate issued by this CA. Up to 4 URLs; the Infisical-managed CRL endpoint is included by default unless disabled.
                        disableManagedCrlDistributionPointUrl:
                          type: boolean
                          default: false
                          description: When set to true, the Infisical-managed CRL endpoint URL will not be embedded in certificates issued by this CA. Only custom CRL Distribution Point URLs (if any) will be included.
                      required:
                      - type
                      - keyAlgorithm
                      additionalProperties: false
                  required:
                  - name
                  - id
                  - status
                  - type
                  - configuration
                  additionalProperties: false
        '400':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 400
                  message:
                    type: string
                  error:
                    type: string
                  details: {}
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '401':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 401
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '403':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 403
                  message:
                    type: string
                  details: {}
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '404':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 404
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '422':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 422
                  message: {}
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - error
                additionalProperties: false
        '500':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 500
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
    post:
      operationId: createInternalCertificateAuthorityV1
      tags:
      - PKI Certificate Authorities
      requestBody:
        required: true
        content:
          application/json:
            schema:
              type: object
              properties:
                name:
                  type: string
                  minLength: 1
                  maxLength: 64
                  description: The name of the Internal Certificate Authority to create. Must be slug-friendly.
                status:
                  type: string
                  enum:
                  - active
                  - disabled
                  - pending-certificate
                  description: The status of the Internal Certificate Authority.
                configuration:
                  type: object
                  properties:
                    type:
                      type: string
                      enum:
                      - root
                      - intermediate
                      description: The type of CA to create.
                    friendlyName:
                      type: string
                      description: A friendly name for the CA.
                    commonName:
                      type: string
                      default: ''
                      description: The common name (CN) for the CA.
                    organization:
                      type: string
                      default: ''
                      description: The organization (O) for the CA.
                    ou:
                      type: string
                      default: ''
                      description: The organization unit (OU) for the CA.
                    country:
                      type: string
                      default: ''
                      description: The country name (C) for the CA.
                    province:
                      type: string
                      default: ''
                      description: The state of province name for the CA.
                    locality:
                      type: string
                      default: ''
                      description: The locality name for the CA.
                    notBefore:
                      type: string
                      description: The date and time when the CA becomes valid in YYYY-MM-DDTHH:mm:ss.sssZ format.
                    notAfter:
                      type: string
                      description: The date and time when the CA expires in YYYY-MM-DDTHH:mm:ss.sssZ format.
                    maxPathLength:
                      type:
                      - number
                      - 'null'
                      minimum: -1
                      description: The maximum number of intermediate CAs that may follow this CA in the certificate / CA chain. A maxPathLength of -1 implies no path limit on the chain.
                    keyAlgorithm:
                      type: string
                      enum:
                      - RSA_2048
                      - RSA_3072
                      - RSA_4096
                      - EC_prime256v1
                      - EC_secp384r1
                      - EC_secp521r1
                      - ML-DSA-44
                      - ML-DSA-65
                      - ML-DSA-87
                      - SLH-DSA-SHA2-128f
                      - SLH-DSA-SHA2-128s
                      - SLH-DSA-SHA2-192f
                      - SLH-DSA-SHA2-192s
                      - SLH-DSA-SHA2-256f
                      - SLH-DSA-SHA2-256s
                      - SLH-DSA-SHAKE-128f
                      - SLH-DSA-SHAKE-128s
                      - SLH-DSA-SHAKE-192f
                      - SLH-DSA-SHAKE-192s
                      - SLH-DSA-SHAKE-256f
                      - SLH-DSA-SHAKE-256s
                      description: The type of public key algorithm and size, in bits, of the key pair for the CA; when you create an intermediate CA, you must use a key algorithm supported by the parent CA.
                    dn:
                      type:
                      - string
                      - 'null'
                    parentCaId:
                      type:
                      - string
                      - 'null'
                      format: uuid
                    serialNumber:
                      type:
                      - string
                      - 'null'
                    activeCaCertId:
                      type:
                      - string
                      - 'null'
                      format: uuid
                    crlDistributionPointUrls:
                      type: array
                      items:
                        type: string
                        maxLength: 2048
                        format: uri
                      maxItems: 4
                      description: Additional CRL Distribution Point URLs (HTTP/HTTPS) embedded in every certificate issued by this CA. Up to 4 URLs; the Infisical-managed CRL endpoint is included by default unless disabled.
                    disableManagedCrlDistributionPointUrl:
                      type: boolean
                      default: false
                      description: When set to true, the Infisical-managed CRL endpoint URL will not be embedded in certificates issued by this CA. Only custom CRL Distribution Point URLs (if any) will be included.
                  required:
                  - type
                  - keyAlgorithm
                  additionalProperties: false
              required:
              - name
              - status
              - configuration
              additionalProperties: false
      responses:
        '200':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  enableDirectIssuance:
                    type: boolean
                    default: true
                  name:
                    type: string
                  id:
                    type: string
                    format: uuid
                  status:
                    type: string
                    enum:
                    - active
                    - disabled
                    - pending-certificate
                  type:
                    type: string
                    enum:
                    - internal
                  configuration:
                    type: object
                    properties:
                      type:
                        type: string
                        enum:
                        - root
                        - intermediate
                        description: The type of CA to create.
                      friendlyName:
                        type: string
                        description: A friendly name for the CA.
                      commonName:
                        type: string
                        default: ''
                        description: The common name (CN) for the CA.
                      organization:
                        type: string
                        default: ''
                        description: The organization (O) for the CA.
                      ou:
                        type: string
                        default: ''
                        description: The organization unit (OU) for the CA.
                      country:
                        type: string
                        default: ''
                        description: The country name (C) for the CA.
                      province:
                        type: string
                        default: ''
                        description: The state of province name for the CA.
                      locality:
                        type: string
                        default: ''
                        description: The locality name for the CA.
                      notBefore:
                        type: string
                        description: The date and time when the CA becomes valid in YYYY-MM-DDTHH:mm:ss.sssZ format.
                      notAfter:
                        type: string
                        description: The date and time when the CA expires in YYYY-MM-DDTHH:mm:ss.sssZ format.
                      maxPathLength:
                        type:
                        - number
                        - 'null'
                        minimum: -1
                        description: The maximum number of intermediate CAs that may follow this CA in the certificate / CA chain. A maxPathLength of -1 implies no path limit on the chain.
                      keyAlgorithm:
                        type: string
                        enum:
                        - RSA_2048
                        - RSA_3072
                        - RSA_4096
                        - EC_prime256v1
                        - EC_secp384r1
                        - EC_secp521r1
                        - ML-DSA-44
                        - ML-DSA-65
                        - ML-DSA-87
                        - SLH-DSA-SHA2-128f
                        - SLH-DSA-SHA2-128s
                        - SLH-DSA-SHA2-192f
                        - SLH-DSA-SHA2-192s
                        - SLH-DSA-SHA2-256f
                        - SLH-DSA-SHA2-256s
                        - SLH-DSA-SHAKE-128f
                        - SLH-DSA-SHAKE-128s
                        - SLH-DSA-SHAKE-192f
                        - SLH-DSA-SHAKE-192s
                        - SLH-DSA-SHAKE-256f
                        - SLH-DSA-SHAKE-256s
                        description: The type of public key algorithm and size, in bits, of the key pair for the CA; when you create an intermediate CA, you must use a key algorithm supported by the parent CA.
                      dn:
                        type:
                        - string
                        - 'null'
                      parentCaId:
                        type:
                        - string
                        - 'null'
                        format: uuid
                      serialNumber:
                        type:
                        - string
                        - 'null'
                      activeCaCertId:
                        type:
                        - string
                        - 'null'
                        format: uuid
                      crlDistributionPointUrls:
                        type: array
                        items:
                          type: string
                          maxLength: 2048
                          format: uri
                        maxItems: 4
                        description: Additional CRL Distribution Point URLs (HTTP/HTTPS) embedded in every certificate issued by this CA. Up to 4 URLs; the Infisical-managed CRL endpoint is included by default unless disabled.
                      disableManagedCrlDistributionPointUrl:
                        type: boolean
                        default: false
                        description: When set to true, the Infisical-managed CRL endpoint URL will not be embedded in certificates issued by this CA. Only custom CRL Distribution Point URLs (if any) will be included.
                    required:
                    - type
                    - keyAlgorithm
                    additionalProperties: false
                required:
                - name
                - id
                - status
                - type
                - configuration
                additionalProperties: false
        '400':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 400
                  message:
                    type: string
                  error:
                    type: string
                  details: {}
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '401':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                properties:
                  reqId:
                    type: string
                  statusCode:
                    type: number
                    enum:
                    - 401
                  message:
                    type: string
                  error:
                    type: string
                required:
                - reqId
                - statusCode
                - message
                - error
                additionalProperties: false
        '403':
          description: Default Response
          content:
            application/json:
              schema:
                type: object
                proper

# --- truncated at 32 KB (684 KB total) ---
# Full source: https://raw.githubusercontent.com/api-evangelist/infisical/refs/heads/main/openapi/infisical-pki-certificate-authorities-api-openapi.yml