Add a key or create a new certificate for the given software statement
POST/organisations/:OrganisationId/softwarestatements/:SoftwareStatementId/certificates/:SoftwareStatementCertificateOrKeyType
creates a new key or certificate on the specified software statement
Request
Path Parameters
Possible values: non-empty
and <= 40 characters
, Value must match regular expression ^[^<>]*$
The organisation ID
Possible values: <= 40 characters
, Value must match regular expression ^[^<>]*$
The software statement ID
Possible values: [rtstransport
, rtssigning
, sigkey
, enckey
, brcac
, brcac_ext
, brcac_2022
]
Default value: rtssigning
The certificate or key type that can be associated with a software statement
Header Parameters
Possible values: Value must match regular expression ^(Mon|Tue|Wed|Thu|Fri|Sat|Sun), \d{2} (Jan|Feb|Mar|Apr|May|Jun|Jul|Aug|Sep|Oct|Nov|Dec) \d{4} \d{2}:\d{2}:\d{2} (GMT|UTC)$
The time when the PSU last logged in with the TPP. All dates in the HTTP headers are represented as RFC 7231 Full Dates. An example is below: Sun, 10 Sep 2017 19:43:31 UTC
The PSU's IP address if the PSU is currently logged in with the TPP.
An RFC4122 UID used as a correlation id.
Indicates the user-agent that the PSU is using.
- application/x-pem-file
Body
required
PEM file -- the contents of the PEM file will differ depending upon SoftwareStatementCertificateOrKeyType. If SoftwareStatementCertificateOrKeyType is set to brcac, rtssigning or rtstransport then the PEM file should contain a Certificate Signing Request (CSR) for an RTS signing or RTS transport certificate respectively; if SoftwareStatementCertificateOrKeyType is set to sigkey, enckey then the PEM file should contain a public signing or encryption key respectively.
string
Possible values: Value must match regular expression ^[^<>]*$
Responses
- 201
- 400
- 401
- 403
- 429
- 500
- 502
- 504
A certificate object
Response Headers
x-fapi-interaction-id
string
- application/jwk+json
- Schema
- Example (from schema)
Schema
Possible values: non-empty
and <= 40 characters
, Value must match regular expression ^[^<>]*$
Unique ID associated with the organisation
Possible values: <= 40 characters
, Value must match regular expression ^[^<>]*$
Possible values: <= 40 characters
Possible values: <= 40 characters
Possible values: <= 30 characters
Possible values: <= 30 characters
Possible values: <= 30 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Possible values: <= 255 characters
Used to display location of the signed certificate in PEM format
Possible values: <= 255 characters
Used to display path to JWKS containing this certificate
Possible values: <= 255 characters
Used to display path to Org JWKS containing org certificates
{
"OrganisationId": "string",
"SoftwareStatementIds": [
"string"
],
"ClientName": "string",
"Status": "string",
"ValidFromDateTime": "string",
"RevokedDateTime": "string",
"ExpiryDateTime": "string",
"e": "string",
"keyType": "string",
"kid": "string",
"kty": "string",
"n": "string",
"use": "string",
"x5c": [
"string"
],
"x5t": "string",
"x5thashS256": "string",
"x5u": "string",
"SignedCertPath": "string",
"JwkPath": "string",
"OrgJwkPath": "string"
}
Bad Request
Response Headers
x-fapi-interaction-id
string
- application/json
- Schema
- Example (from schema)
Schema
Validation Error messages
{
"errors": [
"string"
]
}
Unauthorized
Response Headers
x-fapi-interaction-id
string
Forbidden
Response Headers
x-fapi-interaction-id
string
Too many requests, maximum capacity reached. Requests are now throttled.
Response Headers
x-fapi-interaction-id
string
Internal Server Error
Response Headers
x-fapi-interaction-id
string
Bad Gateway
Response Headers
x-fapi-interaction-id
string
Upstream timeout, insufficient capacity to serve request. More capacity being brought online. Please try again.
Response Headers
x-fapi-interaction-id
string