Skip to main content

Certificate size check settings

Certificate size check settings control whether the enrollment process validates the size of a certificate before issuance.

Use these settings to define size limits and prevent certificates that exceed supported size constraints from being issued. This can help ensure compatibility with consuming applications, devices, and platforms that have certificate size restrictions.

If certificate_size_check_settings is not defined, no certificate size validation is performed during enrollment.

JSON structure example

"certificate_size_check_settings": {
    "enforce": true,
    "certificate_format": "pem",
    "max_size_in_bytes": 1800
},

Parameters

Table 1. Parameters: Certificate size check settings

Name

Type

Required/optional

Possible values

enforce

Boolean

Required

Specifies whether certificate size validation is enforced during enrollment. Supported values include:

  • true: Validates the certificate size for every enrollment request and rejects certificates that exceed the configured size limit

  • false: Does not perform certificate size validation

certificate_format

String

Required

Specifies the certificate format used when calculating the certificate size. Supported formats include:

  • pem

  • der

max_size_in_bytes

Number

Required

Specifies the maximum allowed certificate size, in bytes. Enrollment fails if the generated certificate exceeds this limit