Skip to content

Latest commit

 

History

History
1646 lines (1036 loc) · 65.5 KB

pkiSecretBackendCert.csharp.md

File metadata and controls

1646 lines (1036 loc) · 65.5 KB

pkiSecretBackendCert Submodule

Constructs

PkiSecretBackendCert

Represents a {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert vault_pki_secret_backend_cert}.

Initializers

using HashiCorp.Cdktf.Providers.Vault;

new PkiSecretBackendCert(Construct Scope, string Id, PkiSecretBackendCertConfig Config);
Name Type Description
Scope Constructs.Construct The scope in which to define this construct.
Id string The scoped construct ID.
Config PkiSecretBackendCertConfig No description.

ScopeRequired
  • Type: Constructs.Construct

The scope in which to define this construct.


IdRequired
  • Type: string

The scoped construct ID.

Must be unique amongst siblings in the same scope


ConfigRequired

Methods

Name Description
ToString Returns a string representation of this construct.
AddOverride No description.
OverrideLogicalId Overrides the auto-generated logical ID with a specific ID.
ResetOverrideLogicalId Resets a previously passed logical Id to use the auto-generated logical id again.
ToHclTerraform No description.
ToMetadata No description.
ToTerraform Adds this resource to the terraform JSON output.
AddMoveTarget Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move.
GetAnyMapAttribute No description.
GetBooleanAttribute No description.
GetBooleanMapAttribute No description.
GetListAttribute No description.
GetNumberAttribute No description.
GetNumberListAttribute No description.
GetNumberMapAttribute No description.
GetStringAttribute No description.
GetStringMapAttribute No description.
HasResourceMove No description.
ImportFrom No description.
InterpolationForAttribute No description.
MoveFromId Move the resource corresponding to "id" to this resource.
MoveTo Moves this resource to the target resource given by moveTarget.
MoveToId Moves this resource to the resource corresponding to "id".
ResetAltNames No description.
ResetAutoRenew No description.
ResetExcludeCnFromSans No description.
ResetFormat No description.
ResetId No description.
ResetIpSans No description.
ResetIssuerRef No description.
ResetMinSecondsRemaining No description.
ResetNamespace No description.
ResetOtherSans No description.
ResetPrivateKeyFormat No description.
ResetRevoke No description.
ResetTtl No description.
ResetUriSans No description.
ResetUserIds No description.

ToString
private string ToString()

Returns a string representation of this construct.

AddOverride
private void AddOverride(string Path, object Value)
PathRequired
  • Type: string

ValueRequired
  • Type: object

OverrideLogicalId
private void OverrideLogicalId(string NewLogicalId)

Overrides the auto-generated logical ID with a specific ID.

NewLogicalIdRequired
  • Type: string

The new logical ID to use for this stack element.


ResetOverrideLogicalId
private void ResetOverrideLogicalId()

Resets a previously passed logical Id to use the auto-generated logical id again.

ToHclTerraform
private object ToHclTerraform()
ToMetadata
private object ToMetadata()
ToTerraform
private object ToTerraform()

Adds this resource to the terraform JSON output.

AddMoveTarget
private void AddMoveTarget(string MoveTarget)

Adds a user defined moveTarget string to this resource to be later used in .moveTo(moveTarget) to resolve the location of the move.

MoveTargetRequired
  • Type: string

The string move target that will correspond to this resource.


GetAnyMapAttribute
private System.Collections.Generic.IDictionary<string, object> GetAnyMapAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetBooleanAttribute
private IResolvable GetBooleanAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetBooleanMapAttribute
private System.Collections.Generic.IDictionary<string, bool> GetBooleanMapAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetListAttribute
private string[] GetListAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetNumberAttribute
private double GetNumberAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetNumberListAttribute
private double[] GetNumberListAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetNumberMapAttribute
private System.Collections.Generic.IDictionary<string, double> GetNumberMapAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetStringAttribute
private string GetStringAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

GetStringMapAttribute
private System.Collections.Generic.IDictionary<string, string> GetStringMapAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

HasResourceMove
private object HasResourceMove()
ImportFrom
private void ImportFrom(string Id, TerraformProvider Provider = null)
IdRequired
  • Type: string

ProviderOptional
  • Type: HashiCorp.Cdktf.TerraformProvider

InterpolationForAttribute
private IResolvable InterpolationForAttribute(string TerraformAttribute)
TerraformAttributeRequired
  • Type: string

MoveFromId
private void MoveFromId(string Id)

Move the resource corresponding to "id" to this resource.

Note that the resource being moved from must be marked as moved using it's instance function.

IdRequired
  • Type: string

Full id of resource being moved from, e.g. "aws_s3_bucket.example".


MoveTo
private void MoveTo(string MoveTarget, object Index = null)

Moves this resource to the target resource given by moveTarget.

MoveTargetRequired
  • Type: string

The previously set user defined string set by .addMoveTarget() corresponding to the resource to move to.


IndexOptional
  • Type: object

Optional The index corresponding to the key the resource is to appear in the foreach of a resource to move to.


MoveToId
private void MoveToId(string Id)

Moves this resource to the resource corresponding to "id".

IdRequired
  • Type: string

Full id of resource to move to, e.g. "aws_s3_bucket.example".


ResetAltNames
private void ResetAltNames()
ResetAutoRenew
private void ResetAutoRenew()
ResetExcludeCnFromSans
private void ResetExcludeCnFromSans()
ResetFormat
private void ResetFormat()
ResetId
private void ResetId()
ResetIpSans
private void ResetIpSans()
ResetIssuerRef
private void ResetIssuerRef()
ResetMinSecondsRemaining
private void ResetMinSecondsRemaining()
ResetNamespace
private void ResetNamespace()
ResetOtherSans
private void ResetOtherSans()
ResetPrivateKeyFormat
private void ResetPrivateKeyFormat()
ResetRevoke
private void ResetRevoke()
ResetTtl
private void ResetTtl()
ResetUriSans
private void ResetUriSans()
ResetUserIds
private void ResetUserIds()

Static Functions

Name Description
IsConstruct Checks if x is a construct.
IsTerraformElement No description.
IsTerraformResource No description.
GenerateConfigForImport Generates CDKTF code for importing a PkiSecretBackendCert resource upon running "cdktf plan ".

IsConstruct
using HashiCorp.Cdktf.Providers.Vault;

PkiSecretBackendCert.IsConstruct(object X);

Checks if x is a construct.

Use this method instead of instanceof to properly detect Construct instances, even when the construct library is symlinked.

Explanation: in JavaScript, multiple copies of the constructs library on disk are seen as independent, completely different libraries. As a consequence, the class Construct in each copy of the constructs library is seen as a different class, and an instance of one class will not test as instanceof the other class. npm install will not create installations like this, but users may manually symlink construct libraries together or use a monorepo tool: in those cases, multiple copies of the constructs library can be accidentally installed, and instanceof will behave unpredictably. It is safest to avoid using instanceof, and using this type-testing method instead.

XRequired
  • Type: object

Any object.


IsTerraformElement
using HashiCorp.Cdktf.Providers.Vault;

PkiSecretBackendCert.IsTerraformElement(object X);
XRequired
  • Type: object

IsTerraformResource
using HashiCorp.Cdktf.Providers.Vault;

PkiSecretBackendCert.IsTerraformResource(object X);
XRequired
  • Type: object

GenerateConfigForImport
using HashiCorp.Cdktf.Providers.Vault;

PkiSecretBackendCert.GenerateConfigForImport(Construct Scope, string ImportToId, string ImportFromId, TerraformProvider Provider = null);

Generates CDKTF code for importing a PkiSecretBackendCert resource upon running "cdktf plan ".

ScopeRequired
  • Type: Constructs.Construct

The scope in which to define this construct.


ImportToIdRequired
  • Type: string

The construct id used in the generated config for the PkiSecretBackendCert to import.


ImportFromIdRequired
  • Type: string

The id of the existing PkiSecretBackendCert that should be imported.

Refer to the {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#import import section} in the documentation of this resource for the id to use


ProviderOptional
  • Type: HashiCorp.Cdktf.TerraformProvider

? Optional instance of the provider where the PkiSecretBackendCert to import is found.


Properties

Name Type Description
Node Constructs.Node The tree node.
CdktfStack HashiCorp.Cdktf.TerraformStack No description.
Fqn string No description.
FriendlyUniqueId string No description.
TerraformMetaArguments System.Collections.Generic.IDictionary<string, object> No description.
TerraformResourceType string No description.
TerraformGeneratorMetadata HashiCorp.Cdktf.TerraformProviderGeneratorMetadata No description.
Connection object No description.
Count object No description.
DependsOn string[] No description.
ForEach HashiCorp.Cdktf.ITerraformIterator No description.
Lifecycle HashiCorp.Cdktf.TerraformResourceLifecycle No description.
Provider HashiCorp.Cdktf.TerraformProvider No description.
Provisioners object[] No description.
CaChain string No description.
Certificate string No description.
Expiration double No description.
IssuingCa string No description.
PrivateKey string No description.
PrivateKeyType string No description.
RenewPending HashiCorp.Cdktf.IResolvable No description.
SerialNumber string No description.
AltNamesInput string[] No description.
AutoRenewInput object No description.
BackendInput string No description.
CommonNameInput string No description.
ExcludeCnFromSansInput object No description.
FormatInput string No description.
IdInput string No description.
IpSansInput string[] No description.
IssuerRefInput string No description.
MinSecondsRemainingInput double No description.
NameInput string No description.
NamespaceInput string No description.
OtherSansInput string[] No description.
PrivateKeyFormatInput string No description.
RevokeInput object No description.
TtlInput string No description.
UriSansInput string[] No description.
UserIdsInput string[] No description.
AltNames string[] No description.
AutoRenew object No description.
Backend string No description.
CommonName string No description.
ExcludeCnFromSans object No description.
Format string No description.
Id string No description.
IpSans string[] No description.
IssuerRef string No description.
MinSecondsRemaining double No description.
Name string No description.
Namespace string No description.
OtherSans string[] No description.
PrivateKeyFormat string No description.
Revoke object No description.
Ttl string No description.
UriSans string[] No description.
UserIds string[] No description.

NodeRequired
public Node Node { get; }
  • Type: Constructs.Node

The tree node.


CdktfStackRequired
public TerraformStack CdktfStack { get; }
  • Type: HashiCorp.Cdktf.TerraformStack

FqnRequired
public string Fqn { get; }
  • Type: string

FriendlyUniqueIdRequired
public string FriendlyUniqueId { get; }
  • Type: string

TerraformMetaArgumentsRequired
public System.Collections.Generic.IDictionary<string, object> TerraformMetaArguments { get; }
  • Type: System.Collections.Generic.IDictionary<string, object>

TerraformResourceTypeRequired
public string TerraformResourceType { get; }
  • Type: string

TerraformGeneratorMetadataOptional
public TerraformProviderGeneratorMetadata TerraformGeneratorMetadata { get; }
  • Type: HashiCorp.Cdktf.TerraformProviderGeneratorMetadata

ConnectionOptional
public object Connection { get; }
  • Type: object

CountOptional
public object Count { get; }
  • Type: object

DependsOnOptional
public string[] DependsOn { get; }
  • Type: string[]

ForEachOptional
public ITerraformIterator ForEach { get; }
  • Type: HashiCorp.Cdktf.ITerraformIterator

LifecycleOptional
public TerraformResourceLifecycle Lifecycle { get; }
  • Type: HashiCorp.Cdktf.TerraformResourceLifecycle

ProviderOptional
public TerraformProvider Provider { get; }
  • Type: HashiCorp.Cdktf.TerraformProvider

ProvisionersOptional
public object[] Provisioners { get; }
  • Type: object[]

CaChainRequired
public string CaChain { get; }
  • Type: string

CertificateRequired
public string Certificate { get; }
  • Type: string

ExpirationRequired
public double Expiration { get; }
  • Type: double

IssuingCaRequired
public string IssuingCa { get; }
  • Type: string

PrivateKeyRequired
public string PrivateKey { get; }
  • Type: string

PrivateKeyTypeRequired
public string PrivateKeyType { get; }
  • Type: string

RenewPendingRequired
public IResolvable RenewPending { get; }
  • Type: HashiCorp.Cdktf.IResolvable

SerialNumberRequired
public string SerialNumber { get; }
  • Type: string

AltNamesInputOptional
public string[] AltNamesInput { get; }
  • Type: string[]

AutoRenewInputOptional
public object AutoRenewInput { get; }
  • Type: object

BackendInputOptional
public string BackendInput { get; }
  • Type: string

CommonNameInputOptional
public string CommonNameInput { get; }
  • Type: string

ExcludeCnFromSansInputOptional
public object ExcludeCnFromSansInput { get; }
  • Type: object

FormatInputOptional
public string FormatInput { get; }
  • Type: string

IdInputOptional
public string IdInput { get; }
  • Type: string

IpSansInputOptional
public string[] IpSansInput { get; }
  • Type: string[]

IssuerRefInputOptional
public string IssuerRefInput { get; }
  • Type: string

MinSecondsRemainingInputOptional
public double MinSecondsRemainingInput { get; }
  • Type: double

NameInputOptional
public string NameInput { get; }
  • Type: string

NamespaceInputOptional
public string NamespaceInput { get; }
  • Type: string

OtherSansInputOptional
public string[] OtherSansInput { get; }
  • Type: string[]

PrivateKeyFormatInputOptional
public string PrivateKeyFormatInput { get; }
  • Type: string

RevokeInputOptional
public object RevokeInput { get; }
  • Type: object

TtlInputOptional
public string TtlInput { get; }
  • Type: string

UriSansInputOptional
public string[] UriSansInput { get; }
  • Type: string[]

UserIdsInputOptional
public string[] UserIdsInput { get; }
  • Type: string[]

AltNamesRequired
public string[] AltNames { get; }
  • Type: string[]

AutoRenewRequired
public object AutoRenew { get; }
  • Type: object

BackendRequired
public string Backend { get; }
  • Type: string

CommonNameRequired
public string CommonName { get; }
  • Type: string

ExcludeCnFromSansRequired
public object ExcludeCnFromSans { get; }
  • Type: object

FormatRequired
public string Format { get; }
  • Type: string

IdRequired
public string Id { get; }
  • Type: string

IpSansRequired
public string[] IpSans { get; }
  • Type: string[]

IssuerRefRequired
public string IssuerRef { get; }
  • Type: string

MinSecondsRemainingRequired
public double MinSecondsRemaining { get; }
  • Type: double

NameRequired
public string Name { get; }
  • Type: string

NamespaceRequired
public string Namespace { get; }
  • Type: string

OtherSansRequired
public string[] OtherSans { get; }
  • Type: string[]

PrivateKeyFormatRequired
public string PrivateKeyFormat { get; }
  • Type: string

RevokeRequired
public object Revoke { get; }
  • Type: object

TtlRequired
public string Ttl { get; }
  • Type: string

UriSansRequired
public string[] UriSans { get; }
  • Type: string[]

UserIdsRequired
public string[] UserIds { get; }
  • Type: string[]

Constants

Name Type Description
TfResourceType string No description.

TfResourceTypeRequired
public string TfResourceType { get; }
  • Type: string

Structs

PkiSecretBackendCertConfig

Initializer

using HashiCorp.Cdktf.Providers.Vault;

new PkiSecretBackendCertConfig {
    object Connection = null,
    object Count = null,
    ITerraformDependable[] DependsOn = null,
    ITerraformIterator ForEach = null,
    TerraformResourceLifecycle Lifecycle = null,
    TerraformProvider Provider = null,
    object[] Provisioners = null,
    string Backend,
    string CommonName,
    string Name,
    string[] AltNames = null,
    object AutoRenew = null,
    object ExcludeCnFromSans = null,
    string Format = null,
    string Id = null,
    string[] IpSans = null,
    string IssuerRef = null,
    double MinSecondsRemaining = null,
    string Namespace = null,
    string[] OtherSans = null,
    string PrivateKeyFormat = null,
    object Revoke = null,
    string Ttl = null,
    string[] UriSans = null,
    string[] UserIds = null
};

Properties

Name Type Description
Connection object No description.
Count object No description.
DependsOn HashiCorp.Cdktf.ITerraformDependable[] No description.
ForEach HashiCorp.Cdktf.ITerraformIterator No description.
Lifecycle HashiCorp.Cdktf.TerraformResourceLifecycle No description.
Provider HashiCorp.Cdktf.TerraformProvider No description.
Provisioners object[] No description.
Backend string The PKI secret backend the resource belongs to.
CommonName string CN of the certificate to create.
Name string Name of the role to create the certificate against.
AltNames string[] List of alternative names.
AutoRenew object If enabled, a new certificate will be generated if the expiration is within min_seconds_remaining.
ExcludeCnFromSans object Flag to exclude CN from SANs.
Format string The format of data.
Id string Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#id PkiSecretBackendCert#id}.
IpSans string[] List of alternative IPs.
IssuerRef string Specifies the default issuer of this request.
MinSecondsRemaining double Generate a new certificate when the expiration is within this number of seconds.
Namespace string Target namespace. (requires Enterprise).
OtherSans string[] List of other SANs.
PrivateKeyFormat string The private key format.
Revoke object Revoke the certificate upon resource destruction.
Ttl string Time to live.
UriSans string[] List of alternative URIs.
UserIds string[] List of Subject User IDs.

ConnectionOptional
public object Connection { get; set; }
  • Type: object

CountOptional
public object Count { get; set; }
  • Type: object

DependsOnOptional
public ITerraformDependable[] DependsOn { get; set; }
  • Type: HashiCorp.Cdktf.ITerraformDependable[]

ForEachOptional
public ITerraformIterator ForEach { get; set; }
  • Type: HashiCorp.Cdktf.ITerraformIterator

LifecycleOptional
public TerraformResourceLifecycle Lifecycle { get; set; }
  • Type: HashiCorp.Cdktf.TerraformResourceLifecycle

ProviderOptional
public TerraformProvider Provider { get; set; }
  • Type: HashiCorp.Cdktf.TerraformProvider

ProvisionersOptional
public object[] Provisioners { get; set; }
  • Type: object[]

BackendRequired
public string Backend { get; set; }
  • Type: string

The PKI secret backend the resource belongs to.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#backend PkiSecretBackendCert#backend}


CommonNameRequired
public string CommonName { get; set; }
  • Type: string

CN of the certificate to create.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#common_name PkiSecretBackendCert#common_name}


NameRequired
public string Name { get; set; }
  • Type: string

Name of the role to create the certificate against.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#name PkiSecretBackendCert#name}


AltNamesOptional
public string[] AltNames { get; set; }
  • Type: string[]

List of alternative names.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#alt_names PkiSecretBackendCert#alt_names}


AutoRenewOptional
public object AutoRenew { get; set; }
  • Type: object

If enabled, a new certificate will be generated if the expiration is within min_seconds_remaining.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#auto_renew PkiSecretBackendCert#auto_renew}


ExcludeCnFromSansOptional
public object ExcludeCnFromSans { get; set; }
  • Type: object

Flag to exclude CN from SANs.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#exclude_cn_from_sans PkiSecretBackendCert#exclude_cn_from_sans}


FormatOptional
public string Format { get; set; }
  • Type: string

The format of data.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#format PkiSecretBackendCert#format}


IdOptional
public string Id { get; set; }
  • Type: string

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#id PkiSecretBackendCert#id}.

Please be aware that the id field is automatically added to all resources in Terraform providers using a Terraform provider SDK version below 2. If you experience problems setting this value it might not be settable. Please take a look at the provider documentation to ensure it should be settable.


IpSansOptional
public string[] IpSans { get; set; }
  • Type: string[]

List of alternative IPs.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#ip_sans PkiSecretBackendCert#ip_sans}


IssuerRefOptional
public string IssuerRef { get; set; }
  • Type: string

Specifies the default issuer of this request.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#issuer_ref PkiSecretBackendCert#issuer_ref}


MinSecondsRemainingOptional
public double MinSecondsRemaining { get; set; }
  • Type: double

Generate a new certificate when the expiration is within this number of seconds.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#min_seconds_remaining PkiSecretBackendCert#min_seconds_remaining}


NamespaceOptional
public string Namespace { get; set; }
  • Type: string

Target namespace. (requires Enterprise).

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#namespace PkiSecretBackendCert#namespace}


OtherSansOptional
public string[] OtherSans { get; set; }
  • Type: string[]

List of other SANs.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#other_sans PkiSecretBackendCert#other_sans}


PrivateKeyFormatOptional
public string PrivateKeyFormat { get; set; }
  • Type: string

The private key format.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#private_key_format PkiSecretBackendCert#private_key_format}


RevokeOptional
public object Revoke { get; set; }
  • Type: object

Revoke the certificate upon resource destruction.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#revoke PkiSecretBackendCert#revoke}


TtlOptional
public string Ttl { get; set; }
  • Type: string

Time to live.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#ttl PkiSecretBackendCert#ttl}


UriSansOptional
public string[] UriSans { get; set; }
  • Type: string[]

List of alternative URIs.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#uri_sans PkiSecretBackendCert#uri_sans}


UserIdsOptional
public string[] UserIds { get; set; }
  • Type: string[]

List of Subject User IDs.

Docs at Terraform Registry: {@link https://registry.terraform.io/providers/hashicorp/vault/4.2.0/docs/resources/pki_secret_backend_cert#user_ids PkiSecretBackendCert#user_ids}