// This is an automatically generated code sample.
// To make this code sample work in your Oracle Cloud tenancy,
// please replace the values for any parameters whose current values do not fit
// your use case (such as resource IDs, strings containing ‘EXAMPLE’ or ‘unique_id’, and
// boolean, number, and enum parameters with values not fitting your use case).

package main

import (
	"context"
	"fmt"
	"time"

	"github.com/oracle/oci-go-sdk/v65/certificatesmanagement"
	"github.com/oracle/oci-go-sdk/v65/common"
	"github.com/oracle/oci-go-sdk/v65/example/helpers"
)

func ExampleCreateCertificateAuthority() {
	// Create a default authentication provider that uses the DEFAULT
	// profile in the configuration file.
	// Refer to <see href="https://docs.cloud.oracle.com/en-us/iaas/Content/API/Concepts/sdkconfig.htm#SDK_and_CLI_Configuration_File>the public documentation</see> on how to prepare a configuration file.
	client, err := certificatesmanagement.NewCertificatesManagementClientWithConfigurationProvider(common.DefaultConfigProvider())
	helpers.FatalIfError(err)

	// Create a request and dependent object(s).

	req := certificatesmanagement.CreateCertificateAuthorityRequest{CreateCertificateAuthorityDetails: certificatesmanagement.CreateCertificateAuthorityDetails{FreeformTags: map[string]string{"EXAMPLE_KEY_TzBQR": "EXAMPLE_VALUE_IIYaBDJASJ9kkHZaJGCf"},
		KmsKeyId: common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-kmsKeyId-Value"),
		Name:     common.String("EXAMPLE-name-Value"),
		CertificateRevocationListDetails: &certificatesmanagement.CertificateRevocationListDetails{CustomFormattedUrls: []string{"EXAMPLE--Value"},
			ObjectStorageConfig: &certificatesmanagement.ObjectStorageBucketConfigDetails{ObjectStorageObjectNameFormat: common.String("EXAMPLE-objectStorageObjectNameFormat-Value"),
				ObjectStorageBucketName: common.String("EXAMPLE-objectStorageBucketName-Value"),
				ObjectStorageNamespace:  common.String("EXAMPLE-objectStorageNamespace-Value")}},
		CompartmentId: common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-compartmentId-Value"),
		Description:   common.String("EXAMPLE-description-Value"),
		CertificateAuthorityConfig: certificatesmanagement.CreateSubordinateCaIssuedByInternalCaConfigDetails{SigningAlgorithm: certificatesmanagement.SignatureAlgorithmSha256WithEcdsa,
			Subject: &certificatesmanagement.CertificateSubject{DistinguishedNameQualifier: common.String("EXAMPLE-distinguishedNameQualifier-Value"),
				Organization:        common.String("EXAMPLE-organization-Value"),
				SerialNumber:        common.String("EXAMPLE-serialNumber-Value"),
				UserId:              common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-userId-Value"),
				OrganizationalUnit:  common.String("EXAMPLE-organizationalUnit-Value"),
				Pseudonym:           common.String("EXAMPLE-pseudonym-Value"),
				CommonName:          common.String("EXAMPLE-commonName-Value"),
				Country:             common.String("EXAMPLE-country-Value"),
				GenerationQualifier: common.String("EXAMPLE-generationQualifier-Value"),
				Initials:            common.String("EXAMPLE-initials-Value"),
				DomainComponent:     common.String("EXAMPLE-domainComponent-Value"),
				GivenName:           common.String("EXAMPLE-givenName-Value"),
				LocalityName:        common.String("EXAMPLE-localityName-Value"),
				StateOrProvinceName: common.String("EXAMPLE-stateOrProvinceName-Value"),
				Street:              common.String("EXAMPLE-street-Value"),
				Surname:             common.String("EXAMPLE-surname-Value"),
				Title:               common.String("EXAMPLE-title-Value")},
			Validity: &certificatesmanagement.Validity{TimeOfValidityNotAfter: &common.SDKTime{Time: time.Now()},
				TimeOfValidityNotBefore: &common.SDKTime{Time: time.Now()}},
			VersionName:                  common.String("EXAMPLE-versionName-Value"),
			IssuerCertificateAuthorityId: common.String("ocid1.test.oc1..<unique_ID>EXAMPLE-issuerCertificateAuthorityId-Value")},
		CertificateAuthorityRules: []certificatesmanagement.CertificateAuthorityRule{certificatesmanagement.CertificateAuthorityIssuanceExpiryRule{LeafCertificateMaxValidityDuration: common.String("EXAMPLE-leafCertificateMaxValidityDuration-Value"),
			CertificateAuthorityMaxValidityDuration: common.String("EXAMPLE-certificateAuthorityMaxValidityDuration-Value")}},
		DefinedTags:            map[string]map[string]interface{}{"EXAMPLE_KEY_Ub2cR": map[string]interface{}{"EXAMPLE_KEY_ooCMg": "EXAMPLE--Value"}},
		ExternalKeyDescription: common.String("EXAMPLE-externalKeyDescription-Value")},
		OpcRequestId:  common.String("SVRNIF8JZXUU2BIVMEMX<unique_ID>"),
		OpcRetryToken: common.String("EXAMPLE-opcRetryToken-Value")}

	// Send the request using the service client
	resp, err := client.CreateCertificateAuthority(context.Background(), req)
	helpers.FatalIfError(err)

	// Retrieve value from the response.
	fmt.Println(resp)
}