---
title: "Request best SSL certificate"
method: GET
path: "/SSL/fetch_best_for_domain"
tags: ["SSL", "cPanel Account SSL Management"]
---

# Request best SSL certificate

`GET /SSL/fetch_best_for_domain`

This function retrieves the best-available certificate for the domain. The function also
retrieves the certificate's associated private key and CA bundle, if available.

**Important:**

When you disable the [Calendars and Contacts, Receive Mail, Web Disk, Webmail, and Web Server roles](https://go.cpanel.net/serverroles), the system **disables** this function.

## Query parameters

- `domain` string, domain, required

## Response `200`

HTTP Request was successful.

- object
  - `apiversion` integer — The version of the API.
  - `func` string — The name of the method called.
  - `module` string — The name of the module called.
  - `result` object
    - `data` object
      - `cab` string, pem-certificate — The CA bundle's contents (if applicable).
      - `crt` string, pem-certificate — The certificate's contents.
      - `crt_origin` string, username — The username that generated the certificate.
      - `domain` string, domain — The domain that generated the private key.
      - `ip` string, ipv4 — The IP address.
      - `key` string, pem-private-key — The private key.
      - `key_origin` string, username — The username that generated the private key.
      - `searched_users` string[] — The cPanel accounts that the system searched for domain information.
      - `status` 0 | 1 — Whether the certificate is active. * `1` - Active. * `0` - Inactive.
      - `statusmsg` string — The certificate's status.
      - `user` string, username — The username that stores the private key.
    - `errors` string[], nullable — List of errors if the API failed.
    - `messages` string[], nullable — List of messages generated by the API.
    - `metadata` object
    - `status` 0 | 1 — * `1` - Success. * `0` - Failed. Check the `errors` field for more details.
    - `warnings` string[], nullable — List of warnings generated by the API. Warnings describe non-critical failures or other problematic conditions noted while running a API.

---

[API](https://skmtc.net/cpanel/apis/cpanel-uapi.md) · [All operations](https://skmtc.net/cpanel/apis/cpanel-uapi/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/cpanel/cpanel-uapi/revisions/632e2f8e6d04/schema)
