AWS SDK Version 3 for .NET
API Reference

AWS services or capabilities described in AWS Documentation may vary by region/location. Click Getting Started with Amazon AWS to see specific differences applicable to the China (Beijing) Region.

Imports your signed private CA certificate into ACM PCA. Before you can call this operation, you must create the private certificate authority by calling the CreateCertificateAuthority operation. You must then generate a certificate signing request (CSR) by calling the GetCertificateAuthorityCsr operation. Take the CSR to your on-premises CA and use the root certificate or a subordinate certificate to sign it. Create a certificate chain and copy the signed certificate and the certificate chain to your working directory.

Your certificate chain must not include the private CA certificate that you are importing.

Your on-premises CA certificate must be the last certificate in your chain. The subordinate certificate, if any, that your root CA signed must be next to last. The subordinate certificate signed by the preceding subordinate CA must come next, and so on until your chain is built.

The chain must be PEM-encoded.


For .NET Core and PCL this operation is only available in asynchronous form. Please refer to ImportCertificateAuthorityCertificateAsync.

Namespace: Amazon.ACMPCA
Assembly: AWSSDK.ACMPCA.dll
Version: 3.x.y.z


public virtual ImportCertificateAuthorityCertificateResponse ImportCertificateAuthorityCertificate(
         ImportCertificateAuthorityCertificateRequest request
Type: Amazon.ACMPCA.Model.ImportCertificateAuthorityCertificateRequest

Container for the necessary parameters to execute the ImportCertificateAuthorityCertificate service method.

Return Value
The response from the ImportCertificateAuthorityCertificate service method, as returned by ACMPCA.


CertificateMismatchException The certificate authority certificate you are importing does not comply with conditions specified in the certificate that signed it.
ConcurrentModificationException A previous update to your private CA is still ongoing.
InvalidArnException The requested Amazon Resource Name (ARN) does not refer to an existing resource.
InvalidStateException The private CA is in a state during which a report cannot be generated.
MalformedCertificateException One or more fields in the certificate are invalid.
RequestFailedException The request has failed for an unspecified reason.
RequestInProgressException Your request is already in progress.
ResourceNotFoundException A resource such as a private CA, S3 bucket, certificate, or audit report cannot be found.

Version Information

.NET Framework:
Supported in: 4.5, 4.0, 3.5

Portable Class Library:
Supported in: Windows Store Apps
Supported in: Windows Phone 8.1
Supported in: Xamarin Android
Supported in: Xamarin iOS (Unified)
Supported in: Xamarin.Forms

See Also