Deleting a Let's Encrypt certificate
To delete a Let's Encrypt certificate:
- In the management console
, select the folder the certificate was added to. - Go to Certificate Manager.
- In the row with the certificate, click
and select Delete. - In the window that opens, click Delete.
If you do not have the Yandex Cloud CLI yet, install and initialize it.
The folder used by default is the one specified when creating the CLI profile. To change the default folder, use the yc config set folder-id <folder_ID> command. You can also set a different folder for any specific command using the --folder-name or --folder-id options.
-
View the command description:
yc certificate-manager certificates delete --help -
View the list of certificates:
yc certificate-manager certificate listResult:
+----------------------+----------------------+-------------+-----------+---------+------------+ | ID | NAME | DOMAINS | NOT AFTER | TYPE | STATUS | +----------------------+----------------------+-------------+-----------+---------+------------+ | fpq6gvvm6piu******** | myupdatedmanagedcert | example.com | | MANAGED | VALIDATING | +----------------------+----------------------+-------------+-----------+---------+------------+ -
Run this command:
yc certificate-manager certificates delete \ --id fpq6gvvm6piu********Where
--idis the certificate ID.Result:
id: fpq6gvvm6piu******** folder_id: b1g7gvsi89m3******** created_at: "2020-09-15T08:49:11.533Z" ... - example.com status: VALIDATING updated_at: "2020-09-15T09:10:06.981Z"
With Terraform
Terraform is distributed under the Business Source License
For more information about the provider resources, see the relevant documentation on the Terraform
If you do not have Terraform yet, install it and configure the Yandex Cloud provider.
-
Open the Terraform configuration file and delete the fragment with the certificate description:
Sample certificate description
... resource "yandex_cm_certificate" "le-certificate" { name = "managed-certificate-for-dns" description = "this is a certificate for tls" domains = ["my-domain.ru"] managed { challenge_type = "DNS_CNAME" } } ... -
Apply the changes:
-
In the terminal, navigate to the configuration file directory.
-
Make sure the configuration is correct using this command:
terraform validateIf the configuration is valid, you will get this message:
Success! The configuration is valid. -
Run this command:
terraform planYou will see a list of resources and their properties. No changes will be made at this step. Terraform will show any errors in the configuration.
-
Apply the configuration changes:
terraform apply -
Type
yesand press Enter to confirm the changes.
-
You can check the certificate deletion using the management console
yc certificate-manager certificate list
To delete a certificate, use the delete REST API method for the Certificate resource or the CertificateService/Delete gRPC API call.