Certificate policies
Certificate policies allow you to define the certificate policy extensions in the certificate.
JSON structure example
"extensions": {
"certificate_policies": {
"critical": false,
"include": "yes",
"source": [
"request",
"template"
],
"value": [
{
"oid":"1.2.4.5",
"cps_uri":"https://www.digicert.com/cps",
"user_notice":"Legal notice"
}, {
"oid":"1.2.615.4"
}
],
"required":
[
{
"oid":"2.23.140.1.2.2"
}, {
"oid":"2.23.140.1.2.3"
}, {
"oid":"2.23.140.1.1"
}, {
"oid":"2.23.140.1.2.1"
}
],
"optional":
[
{
"oid":"2.23.140.1.2.200"
}, {
"oid":"2.23.140.1.2.201"
}
]
}
}Parameters
Name | Type | Required/optional | Possible values |
|---|---|---|---|
| Object | Optional | - |
| Boolean | Optional | Specifies whether the Certificate Policies extension is marked as critical. Supported values include:
|
| String | Optional | Specifies whether the Certificate Policies extension is included in issued certificates. Supported values include:
|
| Array of strings | Optional | Specifies the allowed sources for certificate policy values. If multiple sources are configured and contain values, the source with the highest priority is used. Supported values include (highest to lowest priority):
|
| Object | Optional | Specifies certificate policy values that can be included when template is configured as a source. |
| String | Required | Specifies the certificate policy OID |
| String | Optional | Specifies the URI of the Certification Practice Statement (CPS) |
| String | Optional | Specifies a user notice associated with the certificate policy |
| Object | Optional | Specifies certificate policy values that are always included in issued certificates, regardless of the configured source |
| String | Required | Specifies the certificate policy OID |
| String | Optional | Specifies the URI of the Certification Practice Statement (CPS) |
| String | Optional | Specifies a user notice associated with the certificate policy |
| Object | Optional |
|
| String | Optional | Specifies the URI of the Certification Practice Statement (CPS) associated with the policy |
| String | Optional | Specifies a user notice associated with the certificate policy |