AWS Certificate Manager

eventNameDescriptionSampleRule
anyCatch-all entry for AWS Certificate Manager rules that match the service but not a specific eventName.NN
AddTagsToCertificateAdds one or more tags to an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteCertificateDeletes a certificate and its associated private key. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeCertificateReturns detailed metadata about the specified ACM certificate. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ExportCertificateExports a private certificate issued by a private certificate authority (CA) or a public certificate for use anywhere. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAccountConfigurationReturns the account configuration options associated with an Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetCertificateRetrieves a certificate and its certificate chain. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ImportCertificateImports a certificate into Certificate Manager (ACM) to use with services that are integrated with ACM. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListCertificatesRetrieves a list of certificate ARNs and domain names.YN
ListTagsForCertificateLists the tags that have been applied to the ACM certificate. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
PutAccountConfigurationAdds or modifies account-level configurations in ACM. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RemoveTagsFromCertificateRemove one or more tags from an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RenewCertificateRenews an eligible ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RequestCertificateRequests an ACM certificate for use with other Amazon Web Services services. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
ResendValidationEmailResends the email that requests domain ownership validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RevokeCertificateRevokes a public ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
SearchCertificatesRetrieves a list of certificates matching search criteria. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
UpdateCertificateOptionsUpdates a certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAcmeEndpointsListAcmeEndpoints recorded by CloudTrail for AWS Certificate Manager. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.NN
CreateAcmeDomainValidationCreates a domain validation for an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAcmeEndpointCreates an ACME endpoint, which is a managed ACME server with a unique endpoint URL. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
CreateAcmeExternalAccountBindingCreates an external account binding (EAB) for an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAcmeDomainValidationDeletes a domain validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAcmeEndpointDeletes an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DeleteAcmeExternalAccountBindingDeletes an external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeAcmeAccountReturns detailed metadata about the specified ACME account, including its status, public key thumbprint, and associated external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeAcmeDomainValidationReturns detailed metadata about the specified domain validation, including its status, domain scope, and DNS resource records required for validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeAcmeEndpointReturns detailed metadata about the specified ACME endpoint, including its status, URL, authorization behavior, and certificate authority configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
DescribeAcmeExternalAccountBindingReturns detailed metadata about the specified external account binding, including the associated IAM role, expiration time, and usage history. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
GetAcmeExternalAccountBindingCredentialsRetrieves the key ID and MAC key credentials for an external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAcmeAccountsRetrieves a list of ACME accounts registered with the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAcmeDomainValidationsRetrieves a list of domain validations for the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListAcmeExternalAccountBindingsRetrieves a list of external account bindings for the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListCertificateDomainValidationsReturns per-domain validation summaries for an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
ListTagsForResourceLists the tags associated with an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RevokeAcmeAccountRevokes an ACME account, preventing it from requesting or revoking certificates. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
RevokeAcmeExternalAccountBindingRevokes an external account binding, preventing new ACME accounts from being registered using this binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
TagResourceAdds one or more tags to an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UntagResourceRemoves one or more tags from an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAcmeDomainValidationUpdates the prevalidation configuration of an existing domain validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN
UpdateAcmeEndpointUpdates the configuration of an existing ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.NN

any: AWS Certificate Manager (catch-all)

#
Service
acm

Description

Catch-all entry for AWS Certificate Manager rules that match the service but not a specific eventName.

AddTagsToCertificate

#
Service
acm

Description

Adds one or more tags to an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteCertificate

#
Service
acm

Description

Deletes a certificate and its associated private key. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeCertificate

#
Service
acm

Description

Returns detailed metadata about the specified ACM certificate. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "202a16db-63e6-45ad-aeb9-49395e3f1136",
  "eventSource": "acm.amazonaws.com",
  "eventName": "DescribeCertificate",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "b898e5c4-c16a-490f-9f30-6202f2e8558e",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/acm#1.32.1 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "acm.us-east-1.amazonaws.com",
    "keyExchange": "X25519MLKEM768"
  }
}

ExportCertificate

#
Service
acm

Description

Exports a private certificate issued by a private certificate authority (CA) or a public certificate for use anywhere. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAccountConfiguration

#
Service
acm

Description

Returns the account configuration options associated with an Amazon Web Services account. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetCertificate

#
Service
acm

Description

Retrieves a certificate and its certificate chain. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "87858540-e226-4438-a50e-394d72de4c08",
  "eventSource": "acm.amazonaws.com",
  "eventName": "GetCertificate",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "76930657-e623-4792-a0f2-d784f47c2fed",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/acm#1.32.1 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "acm.us-east-1.amazonaws.com",
    "keyExchange": "X25519MLKEM768"
  }
}

ImportCertificate

#
Service
acm

Description

Imports a certificate into Certificate Manager (ACM) to use with services that are integrated with ACM. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListCertificates

#
Service
acm

Description

Retrieves a list of certificate ARNs and domain names.

Example CloudTrail Event #

{
  "awsRegion": "sa-east-1",
  "errorCode": "AccessDenied",
  "errorMessage": "User: arn:aws:iam::731544447609:user/cloudsploit is not authorized to perform: acm:ListCertificates",
  "eventCategory": "Management",
  "eventID": "9d231bb7-c35a-442c-ab8f-b0cdd320947e",
  "eventName": "ListCertificates",
  "eventSource": "acm.amazonaws.com",
  "eventTime": "2021-04-13T11:34:53Z",
  "eventType": "AwsApiCall",
  "eventVersion": "1.08",
  "managementEvent": true,
  "readOnly": true,
  "recipientAccountId": "731544447609",
  "requestID": "bd2a877a-2b2d-4475-ae6a-e047aebd8114",
  "requestParameters": null,
  "responseElements": null,
  "sourceIPAddress": "34.12.134.20",
  "userAgent": "aws-sdk-nodejs/2.885.0 linux/v14.16.1 callback",
  "userIdentity": {
    "accessKeyId": "AKIAYTOGP2RLGBSBSMH2",
    "accountId": "731544447609",
    "arn": "arn:aws:iam::731544447609:user/cloudsploit",
    "principalId": "AIDAYTOGP2RLMDEPWZWMJ",
    "type": "IAMUser",
    "userName": "cloudsploit"
  }
}

References #

ListTagsForCertificate

#
Service
acm

Description

Lists the tags that have been applied to the ACM certificate. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "74e0c64f-b273-4933-959f-f0a928c83743",
  "eventSource": "acm.amazonaws.com",
  "eventName": "ListTagsForCertificate",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "399fd037-9a15-4818-89b6-b8bf30a3ccb8",
  "userAgent": "aws-sdk-go-v2/1.43.0 ua/2.1 os/linux lang/go#1.26.5 md/GOOS#linux md/GOARCH#arm64 api/acm#1.32.1 m/E,i",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "acm.us-east-1.amazonaws.com",
    "keyExchange": "X25519MLKEM768"
  }
}

PutAccountConfiguration

#
Service
acm

Description

Adds or modifies account-level configurations in ACM. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RemoveTagsFromCertificate

#
Service
acm

Description

Remove one or more tags from an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RenewCertificate

#
Service
acm

Description

Renews an eligible ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RequestCertificate

#
Service
acm

Description

Requests an ACM certificate for use with other Amazon Web Services services. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "9404ecbe-2696-4234-80b3-db0958dee56e",
  "eventSource": "acm.amazonaws.com",
  "eventName": "RequestCertificate",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": false,
  "managementEvent": true,
  "requestID": "7684e863-dd19-407e-9ded-08cb7d3f2af0",
  "userAgent": "aws-cli/2.31.7 md/awscrt#0.27.6 ua/2.1 os/linux#5.15.153.1-microsoft-standard-WSL2 md/arch#x86_64 lang/python#3.13.7 md/pyimpl#CPython m/Z,b,s,E,r cfg/retry-mode#standard md/installer#exe md/distrib#ubuntu.24 sid/94e4a38bafbb md/prompt#off md/command#acm.request-certificate",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "acm.us-east-1.amazonaws.com",
    "keyExchange": "x25519"
  }
}

ResendValidationEmail

#
Service
acm

Description

Resends the email that requests domain ownership validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RevokeCertificate

#
Service
acm

Description

Revokes a public ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

SearchCertificates

#
Service
acm

Description

Retrieves a list of certificates matching search criteria. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "331b7d2f-7df0-4a17-b442-1374c5cfc7c5",
  "eventSource": "acm.amazonaws.com",
  "eventName": "SearchCertificates",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "91bd0cda-03d5-4c18-b1af-25e029c26cf2",
  "userAgent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "acm.us-east-1.amazonaws.com",
    "keyExchange": "X25519MLKEM768"
  }
}

UpdateCertificateOptions

#
Service
acm

Description

Updates a certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAcmeEndpoints

#
Service
acm

Description

ListAcmeEndpoints recorded by CloudTrail for AWS Certificate Manager. Observed in real CloudTrail; no AWS SDK operation model documents it, so no description is available from the SDK. Operation catalog is model-derived from the AWS SDK (botocore); this (eventSource, eventName) pair is confirmed by an observed CloudTrail record.

Example CloudTrail Event #

This is a projected export row, not a complete CloudTrail record: it shows only the envelope columns a SIEM export retained. The export never carried userIdentity, requestParameters, responseElements, sourceIPAddress, recipientAccountId, eventCategory, so their absence here says nothing about the real event. Account identifiers, ARNs and endpoint hostnames in eventID, requestID, resources, tlsDetails, userAgent are replaced with the placeholders AWS uses in its own documentation, so those values are structurally real but not the originals. errorMessage is withheld: it is free-form prose that names customer resources, which no substitution rule can find reliably. eventTime is withheld because the export renders it in the exporting system's local timezone rather than the UTC a CloudTrail record carries.

{
  "eventVersion": "1.11",
  "eventID": "b31029ad-760d-4d44-8e98-6787c7364d71",
  "eventSource": "acm.amazonaws.com",
  "eventName": "ListAcmeEndpoints",
  "awsRegion": "us-east-1",
  "eventType": "AwsApiCall",
  "readOnly": true,
  "managementEvent": true,
  "requestID": "cce6d37e-38a3-4090-accb-58f4dc76f474",
  "userAgent": "Mozilla/5.0 (Windows NT 10.0; Win64; x64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/150.0.0.0 Safari/537.36",
  "tlsDetails": {
    "tlsVersion": "TLSv1.3",
    "cipherSuite": "TLS_AES_128_GCM_SHA256",
    "clientProvidedHostHeader": "example.us-east-1.api.aws"
  }
}

CreateAcmeDomainValidation

#
Service
acm

Description

Creates a domain validation for an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAcmeEndpoint

#
Service
acm

Description

Creates an ACME endpoint, which is a managed ACME server with a unique endpoint URL. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

CreateAcmeExternalAccountBinding

#
Service
acm

Description

Creates an external account binding (EAB) for an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAcmeDomainValidation

#
Service
acm

Description

Deletes a domain validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAcmeEndpoint

#
Service
acm

Description

Deletes an ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DeleteAcmeExternalAccountBinding

#
Service
acm

Description

Deletes an external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeAcmeAccount

#
Service
acm

Description

Returns detailed metadata about the specified ACME account, including its status, public key thumbprint, and associated external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeAcmeDomainValidation

#
Service
acm

Description

Returns detailed metadata about the specified domain validation, including its status, domain scope, and DNS resource records required for validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeAcmeEndpoint

#
Service
acm

Description

Returns detailed metadata about the specified ACME endpoint, including its status, URL, authorization behavior, and certificate authority configuration. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

DescribeAcmeExternalAccountBinding

#
Service
acm

Description

Returns detailed metadata about the specified external account binding, including the associated IAM role, expiration time, and usage history. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

GetAcmeExternalAccountBindingCredentials

#
Service
acm

Description

Retrieves the key ID and MAC key credentials for an external account binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAcmeAccounts

#
Service
acm

Description

Retrieves a list of ACME accounts registered with the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAcmeDomainValidations

#
Service
acm

Description

Retrieves a list of domain validations for the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListAcmeExternalAccountBindings

#
Service
acm

Description

Retrieves a list of external account bindings for the specified ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListCertificateDomainValidations

#
Service
acm

Description

Returns per-domain validation summaries for an ACM certificate. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

ListTagsForResource

#
Service
acm

Description

Lists the tags associated with an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RevokeAcmeAccount

#
Service
acm

Description

Revokes an ACME account, preventing it from requesting or revoking certificates. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

RevokeAcmeExternalAccountBinding

#
Service
acm

Description

Revokes an external account binding, preventing new ACME accounts from being registered using this binding. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

TagResource

#
Service
acm

Description

Adds one or more tags to an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UntagResource

#
Service
acm

Description

Removes one or more tags from an ACM resource. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAcmeDomainValidation

#
Service
acm

Description

Updates the prevalidation configuration of an existing domain validation. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.

UpdateAcmeEndpoint

#
Service
acm

Description

Updates the configuration of an existing ACME endpoint. Model-derived from the AWS SDK operation catalog (botocore); the eventSource is inferred from the SDK endpoint prefix and no CloudTrail sample confirms it yet.