Creates an SSL-VPN client certificate by calling the CreateSslVpnClientCert operation.
Operation description
Before you create an SSL-VPN client certificate, make sure that an SSL-VPN server has been created for the VPN gateway instance. For more information, see CreateSslVpnServer.
Try it now
Test
RAM authorization
|
Action |
Access level |
Resource type |
Condition key |
Dependent action |
|
vpc:CreateSslVpnClientCert |
create |
*SslVpnClientCert
*SslVpnServer
|
None | None |
Request parameters
|
Parameter |
Type |
Required |
Description |
Example |
| ClientToken |
string |
No |
The client token that is used to ensure the idempotence of the request. You can use the client to generate the token, but you must make sure that the token is unique among different requests. The token can contain only ASCII characters and cannot exceed 64 characters in length. Note
If you do not specify this parameter, the system automatically uses the RequestId of the API request as the ClientToken. The RequestId may be different for each API request. |
02fb3da4-130e-11e9-8e44-0016e04115b |
| RegionId |
string |
Yes |
The region ID of the VPN gateway. You can call the DescribeRegions operation to query the region ID. |
cn-hangzhou |
| SslVpnServerId |
string |
Yes |
The ID of the SSL-VPN server. |
vss-m5et0q3iy1qex328w**** |
| Name |
string |
No |
The name of the client certificate. The name must be 1 to 100 characters in length and cannot start with |
SslVpnClientCert1 |
Response elements
|
Element |
Type |
Description |
Example |
|
object |
The response parameters. |
||
| RequestId |
string |
The request ID. |
606998F0-B94D-48FE-8316-ACA81BB230DA |
| Name |
string |
The name of the SSL-VPN client certificate. |
SslVpnClientCert |
| SslVpnClientCertId |
string |
The ID of the SSL-VPN client certificate. |
vsc-m5euof6s5jy8vs5kd**** |
Examples
Success response
JSON format
{
"RequestId": "606998F0-B94D-48FE-8316-ACA81BB230DA",
"Name": "SslVpnClientCert",
"SslVpnClientCertId": "vsc-m5euof6s5jy8vs5kd****"
}
Error response
JSON format
{
"SslVpnClientCertId": "vsc-bp1n8wcf134yl0osrcg98",
"RequestId": "606998F0-B94D-48FE-8316-ACA81BB230DA"
}
Error codes
|
HTTP status code |
Error code |
Error message |
Description |
|---|---|---|---|
| 400 | Resource.QuotaFull | The quota of resource is full | |
| 400 | VpnGateway.Configuring | The specified service is configuring. | |
| 400 | VpnGateway.FinancialLocked | The specified service is financial locked. | |
| 400 | InvalidName | The name is not valid | |
| 400 | SslVpnClientCreateTimes.ReachLimits | The number of client cert creation operations reaches the upper limit. | |
| 400 | CreateSslCertsQuotaFull.QuotaFull | Create the number of SSL certificates that exceed the quota limit. | Create the number of SSL certificates that exceed the quota limit. |
| 403 | Forbbiden.SubUser | User not authorized to operate on the specified resource as your account is created by another user. | |
| 403 | Forbidden | User not authorized to operate on the specified resource. | You do not have the permissions to manage the specified resource. Apply for the permissions and try again. |
| 404 | InvalidSslVpnServerId.NotFound | The specified SSL VPN server id does not exist. | |
| 404 | InvalidRegionId.NotFound | The specified region is not found during access authentication. | The specified area is not found during authentication. |
See Error Codes for a complete list.
Release notes
See Release Notes for a complete list.