aethercert
Documentation

Add Google Trust Services

Create a Google Trust Services EAB key pair in the Google Cloud Console and connect it to aethercert as a publicly trusted ACME certificate authority.

Google Trust Services issues publicly trusted certificates over ACME, but will not let a client register without an external account binding - a key pair generated in your own Google Cloud project. This guide creates that pair and connects it.

It supports wildcards and up to 100 subject alternative names per certificate.

1. Create an EAB key pair in Google Cloud

Copy the **Key ID** and the **Base64 MAC key**. The MAC key is shown once.

2. Connect it in aethercert

While you are still verifying the setup, use the *Staging/Test* preset instead so
you are not spending production issuance attempts on it.

3. Use it

Select this authority when creating a certificate under Build > Certificate Job.

For wildcard certificates, the domain needs a DNS provider connected - wildcard issuance requires DNS-01, and that is true of every public authority, not just this one.

On this page