Skip to content

aws.iot.describe_ca_certificate

Example SQL Queries

SELECT * FROM
aws.iot.describe_ca_certificate
WHERE
"certificate_id" = 'VALUE';

Description

Describes a registered CA certificate.

Requires permission to access the DescribeCACertificate action.

Table Definition

Column NameColumn Data Type
certificate_id Required Input Column

The CA certificate identifier.

VARCHAR
_aws_profile Input Column

The AWS profile defines the AWS identity used. It can be defined via credentials or by assuming a IAM role.

STRUCT(
"type" VARCHAR,
"name" VARCHAR,
"account_id" VARCHAR,
"via_profile_name" VARCHAR,
"assumed_role_arn" VARCHAR,
"organization" STRUCT(
"account_name" VARCHAR,
"id" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[],
"master_account" STRUCT(
"id" VARCHAR,
"email" VARCHAR
),
"parents" STRUCT(
"type" VARCHAR,
"id" VARCHAR,
"name" VARCHAR,
"tags" STRUCT(
"key" VARCHAR,
"value" VARCHAR
)[]
)[]
)
)
Show child fields
_aws_profile.account_id

The AWS account id

_aws_profile.assumed_role_arn

The ARN of the assumed role

_aws_profile.name

The unique name of the profile.

_aws_profile.organization

Information about this profile's membership in the AWS organization.

Show child fields
_aws_profile.organization.account_name

The name of account speciifed by the organization

_aws_profile.organization.id

The organization id

_aws_profile.organization.master_account
Show child fields
_aws_profile.organization.master_account.email

The organization master account email address

_aws_profile.organization.master_account.id

The organization master account id

_aws_profile.organization.parents[]
Show child fields
_aws_profile.organization.parents[].id

The id of the parent

_aws_profile.organization.parents[].name

The name of the parent

_aws_profile.organization.parents[].tags[]
Show child fields
_aws_profile.organization.parents[].tags[].key
_aws_profile.organization.parents[].tags[].value
_aws_profile.organization.parents[].type

The type of parent can be an organization unit or a root

_aws_profile.organization.tags[]
Show child fields
_aws_profile.organization.tags[].key
_aws_profile.organization.tags[].value
_aws_profile.type

The type of profile, either 'credentials' or 'assumed_role'

_aws_profile.via_profile_name

This IAM role for this profile is assumed by first utilizing another profile with this name to obtain credentials.

_aws_region Input Column

The AWS region to use.

VARCHAR
certificate_description

The CA certificate description.

STRUCT(
"certificate_arn" VARCHAR,
"certificate_id" VARCHAR,
"status" VARCHAR,
"certificate_pem" VARCHAR,
"owned_by" VARCHAR,
"creation_date" TIMESTAMP_S,
"auto_registration_status" VARCHAR,
"last_modified_date" TIMESTAMP_S,
"customer_version" BIGINT,
"generation_id" VARCHAR,
"validity" STRUCT(
"not_before" TIMESTAMP_S,
"not_after" TIMESTAMP_S
),
"certificate_mode" VARCHAR
)
Show child fields
certificate_description.auto_registration_status

Whether the CA certificate configured for auto registration of device certificates. Valid values are "ENABLE" and "DISABLE"

certificate_description.certificate_arn

The CA certificate ARN.

certificate_description.certificate_id

The CA certificate ID.

certificate_description.certificate_mode

The mode of the CA.

All the device certificates that are registered using this CA will be registered in the same mode as the CA. For more information about certificate mode for device certificates, see certificate mode.

certificate_description.certificate_pem

The CA certificate data, in PEM format.

certificate_description.creation_date

The date the CA certificate was created.

certificate_description.customer_version

The customer version of the CA certificate.

certificate_description.generation_id

The generation ID of the CA certificate.

certificate_description.last_modified_date

The date the CA certificate was last modified.

certificate_description.owned_by

The owner of the CA certificate.

certificate_description.status

The status of a CA certificate.

certificate_description.validity

When the CA certificate is valid.

Show child fields
certificate_description.validity.not_after

The certificate is not valid after this date.

certificate_description.validity.not_before

The certificate is not valid before this date.

registration_config

Information about the registration configuration.

STRUCT(
"template_body" VARCHAR,
"role_arn" VARCHAR,
"template_name" VARCHAR
)
Show child fields
registration_config.role_arn

The ARN of the role.

registration_config.template_body

The template body.

registration_config.template_name

The name of the provisioning template.