Copy Page/generate-intermediate-capost https://api.akeyless.io/generate-intermediate-caRecent RequestsLog in to see full request historyTimeStatusUser Agent Retrieving recent requests…LoadingLoading…Body Paramsalgstringallowed-domainsstringAllowed domains for future leaf issuance, not inherited into the SCEP subordinate CA certificatecommon-namestringOptional Common Name for the intermediate CA certificatedelete_protectionstringProtection from accidental deletion of this object [true/false]destination-pathstringDestination path for SCEP-issued leaf certificates. Not derived from the CA certificate item path.enable-scepbooleanEnable the fixed SCEP Stage 1 profiletruefalseextended-key-usagestringDefaults to serverauth,clientauthExtended key usage for future leaf issuance (serverauth / clientauth / codesigning)jsonbooleanDefaults to falseSet output format to JSONtruefalsemax-path-lenint64Defaults to 0The maximum path length of the generated intermediate CA certificatenamestringrequiredBase path for derived intermediate CA resourcesparent-ca-namestringParent PKI certificate issuer namescep-passwordstringSCEP static challenge password. Request-only; never returnedsplit-levelint64Defaults to 3The number of fragments that the DFC key will be split intotokenstringAuthentication token (see /auth and /configure)ttlstringMaximum TTL for certificates issued by the new intermediate issuer, supported formats are s,m,h,duid-tokenstringThe universal identity token, Required only for universal_identity authenticationResponses 200GenerateIntermediateCAResponse wraps the response body. defaulterrorResponse wraps any error to return it as a JSON object with one "error" field.Updated about 3 hours ago /generate-csr/get-certificate-valueDid this page help you?YesNo