openapi: 3.0.0 info: version: 2015-07-09 x-release: v4 title: 'APIs.io Engineering Platform Amazon API Gateway 2014 11 13 #Action=UploadSigningCertificate API' description: Amazon API Gateway

Amazon API Gateway helps developers deliver robust, secure, and scalable mobile and web application back ends. API Gateway allows developers to securely connect mobile and web applications to APIs that run on AWS Lambda, Amazon EC2, or other publicly addressable web services that are hosted outside of AWS.

x-logo: url: https://api.apis.guru/v2/cache/logo/https_twitter.com_awscloud_profile_image.png backgroundColor: '#FFFFFF' termsOfService: https://aws.amazon.com/service-terms/ contact: name: Mike Ralphson email: mike.ralphson@gmail.com url: https://github.com/mermade/aws2openapi x-twitter: PermittedSoc license: name: Apache 2.0 License url: http://www.apache.org/licenses/ x-providerName: amazonaws.com x-serviceName: apigateway x-origin: - contentType: application/json url: https://raw.githubusercontent.com/aws/aws-sdk-js/master/apis/apigateway-2015-07-09.normal.json converter: url: https://github.com/mermade/aws2openapi version: 1.0.0 x-apisguru-driver: external x-apiClientRegistration: url: https://portal.aws.amazon.com/gp/aws/developer/registration/index.html?nc2=h_ct x-apisguru-categories: - cloud x-preferred: true servers: - url: http://apigateway.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The Amazon API Gateway multi-region endpoint - url: https://apigateway.{region}.amazonaws.com variables: region: description: The AWS region enum: - us-east-1 - us-east-2 - us-west-1 - us-west-2 - us-gov-west-1 - us-gov-east-1 - ca-central-1 - eu-north-1 - eu-west-1 - eu-west-2 - eu-west-3 - eu-central-1 - eu-south-1 - af-south-1 - ap-northeast-1 - ap-northeast-2 - ap-northeast-3 - ap-southeast-1 - ap-southeast-2 - ap-east-1 - ap-south-1 - sa-east-1 - me-south-1 default: us-east-1 description: The Amazon API Gateway multi-region endpoint - url: http://apigateway.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The Amazon API Gateway endpoint for China (Beijing) and China (Ningxia) - url: https://apigateway.{region}.amazonaws.com.cn variables: region: description: The AWS region enum: - cn-north-1 - cn-northwest-1 default: cn-north-1 description: The Amazon API Gateway endpoint for China (Beijing) and China (Ningxia) security: - hmac: [] tags: - name: '#Action=UploadSigningCertificate' paths: /#Action=UploadSigningCertificate: parameters: - $ref: '#/components/parameters/X-Amz-Content-Sha256' - $ref: '#/components/parameters/X-Amz-Date' - $ref: '#/components/parameters/X-Amz-Algorithm' - $ref: '#/components/parameters/X-Amz-Credential' - $ref: '#/components/parameters/X-Amz-Security-Token' - $ref: '#/components/parameters/X-Amz-Signature' - $ref: '#/components/parameters/X-Amz-SignedHeaders' get: x-aws-operation-name: UploadSigningCertificate operationId: GET_UploadSigningCertificate description:

Uploads an X.509 signing certificate and associates it with the specified IAM user. Some Amazon Web Services services require you to use certificates to validate requests that are signed with a corresponding private key. When you upload the certificate, its default status is Active.

For information about when you would use an X.509 signing certificate, see Managing server certificates in IAM in the IAM User Guide.

If the UserName is not specified, the IAM user name is determined implicitly based on the Amazon Web Services access key ID used to sign the request. This operation works for access keys under the Amazon Web Services account. Consequently, you can use this operation to manage Amazon Web Services account root user credentials even if the Amazon Web Services account has no associated users.

Because the body of an X.509 certificate can be large, you should use POST rather than GET when calling UploadSigningCertificate. For information about setting up signatures and authorization through the API, see Signing Amazon Web Services API requests in the Amazon Web Services General Reference. For general information about using the Query API with IAM, see Making query requests in the IAM User Guide.

responses: '200': description: Success content: text/xml: schema: $ref: '#/components/schemas/UploadSigningCertificateResponse' '480': description: LimitExceededException content: text/xml: schema: $ref: '#/components/schemas/LimitExceededException' '481': description: EntityAlreadyExistsException content: text/xml: schema: $ref: '#/components/schemas/EntityAlreadyExistsException' '482': description: MalformedCertificateException content: text/xml: schema: $ref: '#/components/schemas/MalformedCertificateException' '483': description: InvalidCertificateException content: text/xml: schema: $ref: '#/components/schemas/InvalidCertificateException' '484': description: DuplicateCertificateException content: text/xml: schema: $ref: '#/components/schemas/DuplicateCertificateException' '485': description: NoSuchEntityException content: text/xml: schema: $ref: '#/components/schemas/NoSuchEntityException' '486': description: ServiceFailureException content: text/xml: schema: $ref: '#/components/schemas/ServiceFailureException' parameters: - name: UserName in: query required: false description: '

The name of the user the signing certificate is for.

This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-

' schema: type: string pattern: '[\w+=,.@-]+' minLength: 1 maxLength: 128 - name: CertificateBody in: query required: true description:

The contents of the signing certificate.

The regex pattern used to validate this parameter is a string of characters consisting of the following:

schema: type: string pattern: '[\u0009\u000A\u000D\u0020-\u00FF]+' minLength: 1 maxLength: 16384 - name: Action in: query required: true schema: type: string enum: - UploadSigningCertificate - name: Version in: query required: true schema: type: string enum: - 2010-05-08 tags: - '#Action=UploadSigningCertificate' post: x-aws-operation-name: UploadSigningCertificate operationId: POST_UploadSigningCertificate description:

Uploads an X.509 signing certificate and associates it with the specified IAM user. Some Amazon Web Services services require you to use certificates to validate requests that are signed with a corresponding private key. When you upload the certificate, its default status is Active.

For information about when you would use an X.509 signing certificate, see Managing server certificates in IAM in the IAM User Guide.

If the UserName is not specified, the IAM user name is determined implicitly based on the Amazon Web Services access key ID used to sign the request. This operation works for access keys under the Amazon Web Services account. Consequently, you can use this operation to manage Amazon Web Services account root user credentials even if the Amazon Web Services account has no associated users.

Because the body of an X.509 certificate can be large, you should use POST rather than GET when calling UploadSigningCertificate. For information about setting up signatures and authorization through the API, see Signing Amazon Web Services API requests in the Amazon Web Services General Reference. For general information about using the Query API with IAM, see Making query requests in the IAM User Guide.

responses: '200': description: Success content: text/xml: schema: $ref: '#/components/schemas/UploadSigningCertificateResponse' '480': description: LimitExceededException content: text/xml: schema: $ref: '#/components/schemas/LimitExceededException' '481': description: EntityAlreadyExistsException content: text/xml: schema: $ref: '#/components/schemas/EntityAlreadyExistsException' '482': description: MalformedCertificateException content: text/xml: schema: $ref: '#/components/schemas/MalformedCertificateException' '483': description: InvalidCertificateException content: text/xml: schema: $ref: '#/components/schemas/InvalidCertificateException' '484': description: DuplicateCertificateException content: text/xml: schema: $ref: '#/components/schemas/DuplicateCertificateException' '485': description: NoSuchEntityException content: text/xml: schema: $ref: '#/components/schemas/NoSuchEntityException' '486': description: ServiceFailureException content: text/xml: schema: $ref: '#/components/schemas/ServiceFailureException' requestBody: content: text/xml: schema: $ref: '#/components/schemas/UploadSigningCertificateRequest' parameters: - name: Action in: query required: true schema: type: string enum: - UploadSigningCertificate - name: Version in: query required: true schema: type: string enum: - 2010-05-08 tags: - '#Action=UploadSigningCertificate' components: parameters: X-Amz-Signature: name: X-Amz-Signature in: header schema: type: string required: false X-Amz-Content-Sha256: name: X-Amz-Content-Sha256 in: header schema: type: string required: false X-Amz-Algorithm: name: X-Amz-Algorithm in: header schema: type: string required: false X-Amz-Security-Token: name: X-Amz-Security-Token in: header schema: type: string required: false X-Amz-SignedHeaders: name: X-Amz-SignedHeaders in: header schema: type: string required: false X-Amz-Credential: name: X-Amz-Credential in: header schema: type: string required: false X-Amz-Date: name: X-Amz-Date in: header schema: type: string required: false schemas: statusType: type: string enum: - Active - Inactive userNameType: type: string pattern: '[\w+=,.@-]+' minLength: 1 maxLength: 64 certificateIdType: type: string pattern: '[\w]+' minLength: 24 maxLength: 128 InvalidCertificateException: {} UploadSigningCertificateResponse: type: object required: - Certificate example: Certificate: CertificateBody: '-----BEGIN CERTIFICATE----------END CERTIFICATE-----' CertificateId: ID123456789012345EXAMPLE Status: Active UploadDate: 2015-06-06 21:40:08.121000+00:00 UserName: Bob properties: Certificate: allOf: - $ref: '#/components/schemas/SigningCertificate' - description: Information about the certificate. description: 'Contains the response to a successful UploadSigningCertificate request. ' MalformedCertificateException: {} LimitExceededException: {} certificateBodyType: type: string pattern: '[\u0009\u000A\u000D\u0020-\u00FF]+' minLength: 1 maxLength: 16384 NoSuchEntityException: {} dateType: type: string format: date-time ServiceFailureException: {} existingUserNameType: type: string pattern: '[\w+=,.@-]+' minLength: 1 maxLength: 128 EntityAlreadyExistsException: {} UploadSigningCertificateRequest: type: object required: - CertificateBody title: UploadSigningCertificateRequest properties: UserName: allOf: - $ref: '#/components/schemas/existingUserNameType' - description: '

The name of the user the signing certificate is for.

This parameter allows (through its regex pattern) a string of characters consisting of upper and lowercase alphanumeric characters with no spaces. You can also include any of the following characters: _+=,.@-

' CertificateBody: allOf: - $ref: '#/components/schemas/certificateBodyType' - description:

The contents of the signing certificate.

The regex pattern used to validate this parameter is a string of characters consisting of the following:

DuplicateCertificateException: {} SigningCertificate: type: object required: - UserName - CertificateId - CertificateBody - Status properties: UserName: allOf: - $ref: '#/components/schemas/userNameType' - description: The name of the user the signing certificate is associated with. CertificateId: allOf: - $ref: '#/components/schemas/certificateIdType' - description: The ID for the signing certificate. CertificateBody: allOf: - $ref: '#/components/schemas/certificateBodyType' - description: The contents of the signing certificate. Status: allOf: - $ref: '#/components/schemas/statusType' - description: The status of the signing certificate. Active means that the key is valid for API calls, while Inactive means it is not. UploadDate: allOf: - $ref: '#/components/schemas/dateType' - description: The date when the signing certificate was uploaded. description:

Contains information about an X.509 signing certificate.

This data type is used as a response element in the UploadSigningCertificate and ListSigningCertificates operations.

securitySchemes: hmac: type: apiKey name: Authorization in: header description: Amazon Signature authorization v4 x-amazon-apigateway-authtype: awsSigv4 externalDocs: description: Amazon Web Services documentation url: https://docs.aws.amazon.com/apigateway/ x-hasEquivalentPaths: true