step ca policy provisioner remove
Name
step ca policy provisioner remove -- remove certificate issuance policy
Usage
step ca policy provisioner remove
[--provisioner=<name>] [--eab-key-id=<eab-ey-id>] [--eab-key-reference=<eab-key-reference>]
[--admin-cert=<file>] [--admin-key=<file>] [--admin-subject=<subject>]
[--admin-provisioner=<name>] [--admin-password-file=<file>]
[--ca-url=<uri>] [--root=<file>] [--context=<name>]
Description
step ca policy provisioner remove removes a certificate issuance policy.
Options
--provisioner=name, --issuer=name
The provisioner name to use.
--eab-key-id=value
An ACME EAB Key ID.
--eab-key-reference=value
An ACME EAB Key Reference.
--admin-cert=chain
Admin certificate (chain) in PEM format to store in the 'x5c' header of a JWT.
--admin-key=file
Private key file, used to sign a JWT, corresponding to the admin certificate that will
be stored in the 'x5c' header.
--admin-subject=subject, --admin-name=subject
The admin subject to use for generating admin credentials.
--admin-provisioner=name, --admin-issuer=name
The provisioner name to use for generating admin credentials.
--admin-password-file=file, --password-file=file
The path to the file containing the password to decrypt the one-time token
generating key.
--ca-url=URI
URI of the targeted Step Certificate Authority.
--root=file
The path to the PEM file used as the root certificate authority.
--context=name
The context name to apply for the given command.
Examples
Remove the authority certificate issuance policy
$ step ca policy authority remove
Remove a provisioner certificate issuance policy
$ step ca policy provisioner remove --provisioner my_provisioner
Remove an ACME EAB certificate issuance policy by reference
$ step ca policy acme remove --provisioner my_acme_provisioner --eab-key-reference my_reference
Remove an ACME EAB certificate issuance policy by EAB Key ID
$ step ca policy acme remove --provisioner my_acme_provisioner --eab-key-id "lUOTGwvFQADjk8nxsVufbhyTOwrFmvO2"