--- title: google.security.istioca.v1alpha1 layout: protoc-gen-docs generator: protoc-gen-docs number_of_entries: 3 ---

Services

IstioCertificateService

Service for managing certificates issued by the Istio CA.

rpc CreateCertificate(IstioCertificateRequest) returns (IstioCertificateResponse)

Using provided CSR, returns a signed certificate.

rpc CreatePodCertificate(IstioCertificateRequest) returns (IstioCertificateResponse)

Using provided CSR, returns a signed certificate that represents a Kubernetes pod identity.

Types

IstioCertificateRequest

Certificate request message.

Field Type Description
csr string

PEM-encoded certificate request.

subjectId string

Optional subject ID field.

validityDuration int64

Optional: requested certificate validity period, in seconds.

IstioCertificateResponse

Certificate response message.

Field Type Description
certChain string[]

PEM-encoded certificate chain. Leaf cert is element ‘0’. Root cert is element ‘n’.