Skip to main content

Custom attributes to pass additional values

Use custom_oids_excluded_from_cert to define custom attributes that can be included in an enrollment request but are not added to the issued certificate.

This capability is particularly useful for enrollment protocols such as EST, SCEP, and CMPv2, where the request is limited to a certificate signing request (CSR).

Custom attributes enable applications to provide additional enrollment metadata required for processing, validation, or integration purposes without affecting the certificate contents.

JSON structure example

Exclude custom_oids from certificate:

"custom_oids_excluded_from_cert": [
    {
        "oid": "1.2.3.5.7.2874645.1.4",
        "name": "custom attribute"
    },
    {
        "oid": "1.2.3.5.7.2874645.1.5",
        "name": "one more attribute"
    }
]

Parameters

Tabela 1. Parameters: Custom attributes to pass additional values

Name

Type

Description

custom_oids_excluded_from_cert

Array

-

.. oid

String

Specifies the object identifier (OID) of the custom attribute

.. name

String

Specifies a friendly name for the custom attribute.