gcloud privateca subordinates activate

NAME
gcloud privateca subordinates activate - activate a subordinate certificate authority awaiting user activation
SYNOPSIS
gcloud privateca subordinates activate(CERTIFICATE_AUTHORITY :--location=LOCATION--pool=POOL)--pem-chain=PEM_CHAIN[--auto-enable][GCLOUD_WIDE_FLAG]
EXAMPLES
To activate a subordinate CA named 'server-tls-1' in the location 'us-west1'

and CA Pool 'server-tls-pool' using a PEM certificate chain in 'chain.crt':

gcloudprivatecasubordinatesactivateserver-tls-1--location=us-west1--pool=server-tls-pool--pem-chain=./chain.crt
POSITIONAL ARGUMENTS
CERTIFICATE AUTHORITY resource - The certificate authority to activate. Thearguments in this group can be used to specify the attributes of this resource.(NOTE) Some attributes are not given arguments in this group but can be set inother ways.

To set theproject attribute:

  • provide the argumentCERTIFICATE_AUTHORITY on the command line witha fully specified name;
  • provide the argument--project on the command line;
  • set the propertycore/project.

This must be specified.

CERTIFICATE_AUTHORITY
ID of the CERTIFICATE_AUTHORITY or fully qualified identifier for theCERTIFICATE_AUTHORITY.

To set thecertificate_authority attribute:

  • provide the argumentCERTIFICATE_AUTHORITY on the command line.

This positional argument must be specified if any of the other arguments in thisgroup are specified.

--location=LOCATION
The location of the CERTIFICATE_AUTHORITY.

To set thelocation attribute:

  • provide the argumentCERTIFICATE_AUTHORITY on the command line witha fully specified name;
  • provide the argument--location on the command line;
  • set the propertyprivateca/location.
--pool=POOL
The parent CA Pool of the CERTIFICATE_AUTHORITY.

To set thepool attribute:

  • provide the argumentCERTIFICATE_AUTHORITY on the command line witha fully specified name;
  • provide the argument--pool on the command line.
REQUIRED FLAGS
--pem-chain=PEM_CHAIN
A file containing a list of PEM-encoded certificates, starting with the currentCA certificate and ending with the root CA certificate.
OPTIONAL FLAGS
--auto-enable
If this flag is set, the Certificate Authority will be automatically enabledupon creation.
GCLOUD WIDE FLAGS
These flags are available to all commands:--access-token-file,--account,--billing-project,--configuration,--flags-file,--flatten,--format,--help,--impersonate-service-account,--log-http,--project,--quiet,--trace-token,--user-output-enabled,--verbosity.

Run$gcloud help for details.

Except as otherwise noted, the content of this page is licensed under theCreative Commons Attribution 4.0 License, and code samples are licensed under theApache 2.0 License. For details, see theGoogle Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.

Last updated 2025-05-07 UTC.