---
title: "POST /renew-certificate"
method: POST
path: "/renew-certificate"
tags: ["v2"]
---

# POST /renew-certificate

`POST /renew-certificate`

## Request body

- RenewCertificate
  - `cert-issuer-name` string — The name of the PKI certificate issuer
  - `generate-key` boolean — Generate a new key as part of the certificate renewal
  - `item-id` integer — Certificate item id
  - `json` boolean — Set output format to JSON
  - `name` string — Certificate name
  - `token` string — Authentication token (see `/auth` and `/configure`)
  - `uid-token` string — The universal identity token, Required only for universal_identity authentication

## Response `200`

renewCertificateResponse wraps response body.

- RenewCertificateOutput
  - `cert` string
  - `cert_display_id` string
  - `item_id` string
  - `parent_cert` string
  - `private_key` string
  - `reading_token` string

## Other responses

- `default` — errorResponse wraps any error to return it as a JSON object with one "error" field.

---

[API](https://skmtc.net/akeyless/apis/akeyless-api.md) · [All operations](https://skmtc.net/akeyless/apis/akeyless-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/akeyless/akeyless-api/versions/0ceb25634501/schema)
