All Products
Search
Document Center

Edge Security Acceleration:GetClientCertificate

Last Updated:Nov 07, 2025

Queries information about a client certificate.

Debugging

You can run this interface directly in OpenAPI Explorer, saving you the trouble of calculating signatures. After running successfully, OpenAPI Explorer can automatically generate SDK code samples.

Authorization information

The following table shows the authorization information corresponding to the API. The authorization information can be used in the Action policy element to grant a RAM user or RAM role the permissions to call this API operation. Description:

  • Operation: the value that you can use in the Action element to specify the operation on a resource.
  • Access level: the access level of each operation. The levels are read, write, and list.
  • Resource type: the type of the resource on which you can authorize the RAM user or the RAM role to perform the operation. Take note of the following items:
    • For mandatory resource types, indicate with a prefix of * .
    • If the permissions cannot be granted at the resource level, All Resources is used in the Resource type column of the operation.
  • Condition Key: the condition key that is defined by the cloud service.
  • Associated operation: other operations that the RAM user or the RAM role must have permissions to perform to complete the operation. To complete the operation, the RAM user or the RAM role must have the permissions to perform the associated operations.
OperationAccess levelResource typeCondition keyAssociated operation
esa:GetClientCertificateget
*Site
acs:esa:{#regionId}:{#accountId}:site/{#SiteId}
    none
none

Request parameters

ParameterTypeRequiredDescriptionExample
SiteIdlongYes

The website ID.

1234567890123
IdstringYes

The certificate ID.

baba39055622c008b90285a8838ed09a

Response parameters

ParameterTypeDescriptionExample
object

Schema of Response

SiteIdlong

The website ID.

1234567890123
SiteNamestring

The website name.

example.com
Statusstring

The certificate status.

active
Certificatestring

The certificate content.

-----BEGIN CERTIFICATE-----
Resultobject

The certificate information.

Idstring

The certificate ID.

baba39055622c008b90285a8838ed09a
Namestring

The certificate name.

yourCertName
Statusstring

The certificate status.

active
Typestring

The certificate type.

dcdn
CommonNamestring

The Common Name of the certificate.

www.example.com
NotBeforestring

The time when the certificate takes effect.

2023-03-31 02:08:00
NotAfterstring

The time when the certificate expires.

2024-03-31 02:08:00
Issuerstring

The certificate authority (CA) that issued the certificate.

GlobalSign nv-sa
SANstring

The Subject Alternative Name (SAN) of the certificate.

www.example.com,*.example.com
SignatureAlgorithmstring

The signature algorithm of the certificate.

SHA256-RSA
PubkeyAlgorithmstring

The public-key algorithm of the certificate.

RSA
CreateTimestring

The time when the certificate was created.

2024-06-24 07:48:51
UpdateTimestring

The time when the certificate was updated.

2024-09-22 05:33:13
CACertificateIdstring

The ID of the CA certificate.

babab9db65ee5efcca9f3d41d4b50d66
RequestIdstring

The request ID.

0AEDAF20-4DDF-4165-8750-47FF9C1929C9

Examples

Sample success responses

JSONformat

{
  "SiteId": 1234567890123,
  "SiteName": "example.com\n",
  "Status": "active",
  "Certificate": "-----BEGIN CERTIFICATE-----",
  "Result": {
    "Id": "baba39055622c008b90285a8838ed09a",
    "Name": "yourCertName",
    "Status": "active",
    "Type": "dcdn",
    "CommonName": "www.example.com ",
    "NotBefore": "2023-03-31 02:08:00",
    "NotAfter": "2024-03-31 02:08:00",
    "Issuer": "GlobalSign nv-sa",
    "SAN": "www.example.com,*.example.com",
    "SignatureAlgorithm": "SHA256-RSA",
    "PubkeyAlgorithm": "RSA",
    "CreateTime": "2024-06-24 07:48:51",
    "UpdateTime": "2024-09-22 05:33:13",
    "CACertificateId": "babab9db65ee5efcca9f3d41d4b50d66"
  },
  "RequestId": "0AEDAF20-4DDF-4165-8750-47FF9C1929C9"
}

Error codes

HTTP status codeError codeError messageDescription
400InvalidParameter.SiteIdFailed to query the website based on the SiteID you specified. Check parameter SiteId and try again.Failed to query the website based on the SiteID you specified. Check parameter SiteId and try again.
400MissingSiteIdRequired parameter SiteId missing. Specify SiteId and try again.Required parameter SiteId missing. Specify SiteId and try again.
400InternalExceptionFailed to call the service. Try again later or contact technical support.Failed to call the service. Try again later or contact technical support.
400Id.MissingParameterThe parameter Id is required.The required parameter Id is missing.
403Unauthorized.InvalidTimeThe specified authentication time is invalid.The authentication time parameter you entered is invalid. Check the parameter value and try again.
403Unauthorized.InvalidTokenToken authentication failed.The token you entered is invalid. Please check and enter the correct token and try again.
404Certificate.NotFoundThe specified certificate does not exist.The specified certificate does not exist.

For a list of error codes, visit the Service error codes.

Change history

Change timeSummary of changesOperation
2025-03-12The Error code has changed. The response structure of the API has changedView Change Details