Amazon Private Certificate Authority in Amazon Web Services China
Amazon Private Certificate Authority enables creation of private certificate authority (CA) hierarchies, including root and subordinate CAs, without the investment and maintenance costs of operating an on-premises CA.
Region availability
Amazon Private Certificate Authority is available in the following regions in China:
-
China (Beijing) Region
-
China (Ningxia) Region
How Amazon Private Certificate Authority differs
The following differences apply to Amazon Private Certificate Authority:
-
When calling CreateCertificateAuthority you can only specify CCPC_LEVEL_1_OR_HIGHER for KeyStorageSecurityStandard.
-
CertificateAuthorityConfiguration contains special values only for use in China (Beijing) Region and China (Ningxia) Region:
-
SM2forKeyAlgorithm. -
SM3WITHSM2forSigningAlgorithm.
-
-
Amazon Private Certificate Authority Connector for Active Directory and Connector for SCEP are not available.