Class GenerateClientCertificateRequest (0.4.1)

GenerateClientCertificateRequest(
    mapping=None, *, ignore_unknown_fields=False, **kwargs
)

Message for requests to generate a client certificate signed by the Cluster CA.

Attributes

Name Description
parent str
Required. The name of the parent resource. The required format is: - projects/{project}/locations/{location}/clusters/{cluster}
request_id str
Optional. An optional request ID to identify requests. Specify a unique request ID so that if you must retry your request, the server ignores the request if it has already been completed. The server guarantees that for at least 60 minutes since the first request. For example, consider a situation where you make an initial request and the request times out. If you make the request again with the same request ID, the server can check if the original operation with the same request ID was received, and if so, ignores the second request. This prevents clients from accidentally creating duplicate commitments. The request ID must be a valid UUID with the exception that zero UUID is not supported (00000000-0000-0000-0000-000000000000).
pem_csr str
Optional. A pem-encoded X.509 certificate signing request (CSR). It is recommended to use public_key instead.
cert_duration google.protobuf.duration_pb2.Duration
Optional. An optional hint to the endpoint to generate the client certificate with the requested duration. The duration can be from 1 hour to 24 hours. The endpoint may or may not honor the hint. If the hint is left unspecified or is not honored, then the endpoint will pick an appropriate default duration.
public_key str
Optional. The public key from the client.
use_metadata_exchange bool
Optional. An optional hint to the endpoint to generate a client ceritificate that can be used by AlloyDB connectors to exchange additional metadata with the server after TLS handshake.