ACM Certificate Request Limit

0

I see on the ACM Quota docs that you can request 5000 certificates as long as you have deleted 2500. a few questions:

  1. Is 5000 a hard cap if your account quota is 2500? As in, once you've requested 5000 does it not matter how many certs you delete, you can't request any more until the limit is refreshed?
  2. Is the limit refreshed every day ?
Guy
preguntada hace 3 meses209 visualizaciones
2 Respuestas
2
Respuesta aceptada

Is 5000 a hard cap if your account quota is 2500?

Correct, if your account quota is 2500, then 5000 is a hard cap. The number of Certificates that you can request in a year is "Twice your account quota" for the "Number of certificates" limit [1]. The default for an account is "2500", which would therefore allow you to request "5000" Certificates in 365 days.

As in, once you've requested 5000 does it not matter how many certs you delete, you can't request any more until the limit is refreshed?

Yes, before you request a new certificate, the system checks the following two limits:

  1. Whether the number of certificates under your account exceeds 2500.
  2. Whether you have requested more than 5000 certificates in the past 365 days.

Is the limit refreshed every day ?

In principle, the ACM team conducts asynchronous statistics. If you have concerns about the limit, it is recommended to directly contact the customer service team to request for a limit increase.

[1] https://docs.aws.amazon.com/acm/latest/userguide/acm-limits.html#general-limits

profile picture
respondido hace 3 meses
profile picture
EXPERTO
revisado hace 3 meses
profile pictureAWS
EXPERTO
kentrad
revisado hace 3 meses
  • Thank you!

0

Hi,

Just wanted to add to above answer if it helps, that if you need your per year (last 365 days) quota to be more than the default 5000, you can request an ACM certificates limit increase as mentioned in ACM Quotas page - https://docs.aws.amazon.com/acm/latest/userguide/acm-limits.html

specifically

If you need more than 2,500 certificates at any given time, you must contact the AWS Support Center

If this quota increase gets approved and granted to say 2600, your per year (last 365 days) quota will also correspondingly increase to 5200 since it is twice your account quota. This will allow you to create more even if your current certificates are less than 2500 ( but in the past 365 days you have created and deleted 5000 already )

Thanks.

profile pictureAWS
EXPERTO
AWS-SUM
respondido hace 3 meses

No has iniciado sesión. Iniciar sesión para publicar una respuesta.

Una buena respuesta responde claramente a la pregunta, proporciona comentarios constructivos y fomenta el crecimiento profesional en la persona que hace la pregunta.

Pautas para responder preguntas