Authorizations
Bearer authentication header of the form Bearer <token>, where <token> is your auth token.
Headers
Body
the ssh certificate authority that is used to sign this ssh host certificate
a public key in OpenSSH Authorized Keys format that this certificate signs
the list of principals included in the ssh host certificate. This is the list of hostnames and/or IP addresses that are authorized to serve SSH traffic with this certificate. Dangerously, if no principals are specified, this certificate is considered valid for all hosts.
The time when the host certificate becomes valid, in RFC 3339 format. Defaults to the current time if unspecified.
The time when this host certificate becomes invalid, in RFC 3339 format. If unspecified, a default value of one year in the future will be used. The OpenSSH certificates RFC calls this valid_before.
human-readable description of this SSH Host Certificate. optional, max 255 bytes.
arbitrary user-defined machine-readable data of this SSH Host Certificate. optional, max 4096 bytes.
Response
Create a new SSH Host Certificate
unique identifier for this SSH Host Certificate
URI of the SSH Host Certificate API resource
timestamp when the SSH Host Certificate API resource was created, RFC 3339 format
human-readable description of this SSH Host Certificate. optional, max 255 bytes.
arbitrary user-defined machine-readable data of this SSH Host Certificate. optional, max 4096 bytes.
a public key in OpenSSH Authorized Keys format that this certificate signs
the key type of the public_key, one of rsa, ecdsa or ed25519
the ssh certificate authority that is used to sign this ssh host certificate
the list of principals included in the ssh host certificate. This is the list of hostnames and/or IP addresses that are authorized to serve SSH traffic with this certificate. Dangerously, if no principals are specified, this certificate is considered valid for all hosts.
the time when the ssh host certificate becomes valid, in RFC 3339 format.
the time after which the ssh host certificate becomes invalid, in RFC 3339 format. the OpenSSH certificates RFC calls this valid_before.
the signed SSH certificate in OpenSSH Authorized Keys format. this value should be placed in a -cert.pub certificate file on disk that should be referenced in your sshd_config configuration file with a HostCertificate directive