---
title: "Update an AI Gateway CA Certificate"
method: PUT
path: "/v1/ai-gateways/{gatewayId}/ca-certificates/{caCertificateIdOrName}"
tags: ["AI Gateway CA Certificates"]
---

# Update an AI Gateway CA Certificate

`PUT /v1/ai-gateways/{gatewayId}/ca-certificates/{caCertificateIdOrName}`

**Pre-release Endpoint**
This endpoint is currently in beta and is subject to change.

Updates an existing AI Gateway CA certificate.

## Request body

- UpdateAIGatewayCACertificateRequest — **Pre-release Feature** This feature is currently in beta and is subject to change. A CA certificate represents a trusted CA. These objects are used to verify the validity of a client or server certificate.
  - `name` string, required — Identifier for an AI Gateway entity. In some cases, this may be the entity name or ID.
  - `cert` string, required — PEM-encoded public certificate of the CA.
  - `cert_digest` string, nullable — SHA256 hex digest of the public certificate. This field is read-only and is automatically computed; it cannot be set by the caller.
  - `labels` PublicLabels — Public labels store information about an entity that can be used for filtering a list of objects. Public labels are intended to store **PUBLIC** metadata. Keys must be of length 1-63 characters, and cannot start with "kong", "konnect", "mesh", "kic", or "_".
  - `managed_by` ManagedBy — Stores information about what manages this entity, such as the tool or system responsible for its lifecycle (for example, `terraform`). Keys must be 1–63 characters long and start with an alphanumeric character.

## Response `200`

CA Certificate updated successfully.

- AIGatewayCACertificate — **Pre-release Feature** This feature is currently in beta and is subject to change. A CA certificate represents a trusted CA. These objects are used to verify the validity of a client or server certificate.
  - `name` string, required — Identifier for an AI Gateway entity. In some cases, this may be the entity name or ID.
  - `cert` string, required — PEM-encoded public certificate of the CA.
  - `cert_digest` string, nullable — SHA256 hex digest of the public certificate. This field is read-only and is automatically computed; it cannot be set by the caller.
  - `labels` PublicLabels — Public labels store information about an entity that can be used for filtering a list of objects. Public labels are intended to store **PUBLIC** metadata. Keys must be of length 1-63 characters, and cannot start with "kong", "konnect", "mesh", "kic", or "_".
  - `managed_by` ManagedBy — Stores information about what manages this entity, such as the tool or system responsible for its lifecycle (for example, `terraform`). Keys must be 1–63 characters long and start with an alphanumeric character.
  - `id` string, uuid, required — Contains a unique identifier used for this resource.
  - `created_at` string, date-time, required — An ISO-8601 timestamp representation of entity creation date.
  - `updated_at` string, date-time, required — An ISO-8601 timestamp representation of entity update date.

## Other responses

- `400` — Bad Request
- `401` — Unauthorized
- `403` — Forbidden
- `404` — Not Found
- `429` — Too Many Requests

---

[API](https://skmtc.net/kong/apis/konnect-api-go-sdk.md) · [All operations](https://skmtc.net/kong/apis/konnect-api-go-sdk/llms.txt) · [OpenAPI document](https://skmtc-service-staging.skmtc.workers.dev/v1/apis/kong/konnect-api-go-sdk/revisions/b31b9b097e6d/schema)
