---
title: "POST /validate-certificate-challenge"
method: POST
path: "/validate-certificate-challenge"
tags: ["v2"]
---

# POST /validate-certificate-challenge

`POST /validate-certificate-challenge`

## Request body

- ValidateCertificateChallenge — ValidateCertificateChallenge validates HTTP-01 challenge and finalizes certificate issuance (Phase 2)
  - `Result` ValidateCertificateChallengeOutput — ValidateCertificateChallengeOutput defines output for HTTP-01 challenge validation
    - `cert` string
    - `cert_display_id` string
    - `cert_item_id` integer
    - `status` string
  - `cert-display-id` string — Certificate display ID from Phase 1
  - `json` boolean — Set output format to JSON
  - `name` string — Certificate name (alternative to cert-display-id)
  - `timeout` integer — Validation timeout in seconds
  - `token` string — Authentication token (see `/auth` and `/configure`)
  - `uid-token` string — The universal identity token, Required only for universal_identity authentication

## Response `200`

validateCertificateChallengeResponse wraps response body.

- ValidateCertificateChallengeOutput — ValidateCertificateChallengeOutput defines output for HTTP-01 challenge validation
  - `cert` string
  - `cert_display_id` string
  - `cert_item_id` integer
  - `status` string

## Other responses

- `default` — errorResponse wraps any error to return it as a JSON object with one "error" field.

---

[API](https://skmtc.net/akeyless/apis/akeyless-api.md) · [All operations](https://skmtc.net/akeyless/apis/akeyless-api/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/akeyless/akeyless-api/versions/0ceb25634501/schema)
