{% extends "base.html" %} {% block content %} ← Back to dashboard
This server's certificate authority and public trust artifacts.
Revoked {{ authority['revoked_at'] }}: {{ authority['revocation_reason']|replace('_', ' ') }}
This CA is archived. Its certificates, revocation data and audit history are retained. Manage or initialize the current CA.
{% endif %} {% if block_reason %}{{ block_reason }}
{% endif %}This local CA's private key is not available for download.
| Subject | {{ authority['common_name'] }} |
|---|---|
| Serial | {{ authority['serial_number'] }} |
| Parent | {{ 'Self-signed root' if authority['role'] == 'root' else 'External parent (public chain only)' }} |
| Valid from | {{ authority['not_before'] }} |
| Valid to | {{ authority['not_after'] }} |
| Downloads | {% if authority['state'] == 'active' %} certificate full chain revocation list (CRL) {% else %}CSR{% endif %} |
Disabling this local CA stops its issuance. Request revocation on its parent server and distribute the updated CRL. This cannot be undone.
After revocation, you can initialize a new CA on this server. This CA and its history remain archived.
{% if authority['role'] != 'root' %}The external parent must revoke this CA certificate; disabling this server cannot update a remote CRL.
{% else %}This root must also be removed from relying-party trust stores. Disabling it here cannot revoke external trust.
{% endif %}No subordinate CAs yet.
{% endif %}No certificates issued from this authority yet.
{% endif %}