# This is an automatically generated code sample.
# To make this code sample work in your Oracle Cloud tenancy,
# please replace the values for any parameters whose current values do not fit
# your use case (such as resource IDs, strings containing ‘EXAMPLE’ or ‘unique_id’, and
# boolean, number, and enum parameters with values not fitting your use case).

require 'oci'
require 'date'

# Create a default config using DEFAULT profile in default location
# Refer to https://docs.cloud.oracle.com/en-us/iaas/Content/API/Concepts/sdkconfig.htm#SDK_and_CLI_Configuration_File for more info
config = OCI::ConfigFileLoader.load_config

# Initialize service client with default config file
certificates_management_client =
  OCI::CertificatesManagement::CertificatesManagementClient.new(config: config)

# Send the request to service, some parameters are not required, see API doc for more info
create_certificate_authority_response =
  certificates_management_client.create_certificate_authority(
    OCI::CertificatesManagement::Models::CreateCertificateAuthorityDetails.new(
      name: 'EXAMPLE-name-Value',
      compartment_id: 'ocid1.test.oc1..<unique_ID>EXAMPLE-compartmentId-Value',
      certificate_authority_config:
        OCI::CertificatesManagement::Models::CreateSubordinateCaIssuedByInternalCaConfigDetails
          .new(
          config_type: 'SUBORDINATE_CA_ISSUED_BY_INTERNAL_CA',
          issuer_certificate_authority_id:
            'ocid1.test.oc1..<unique_ID>EXAMPLE-issuerCertificateAuthorityId-Value',
          subject:
            OCI::CertificatesManagement::Models::CertificateSubject.new(
              common_name: 'EXAMPLE-commonName-Value',
              country: 'EXAMPLE-country-Value',
              domain_component: 'EXAMPLE-domainComponent-Value',
              distinguished_name_qualifier:
                'EXAMPLE-distinguishedNameQualifier-Value',
              generation_qualifier: 'EXAMPLE-generationQualifier-Value',
              given_name: 'EXAMPLE-givenName-Value',
              initials: 'EXAMPLE-initials-Value',
              locality_name: 'EXAMPLE-localityName-Value',
              organization: 'EXAMPLE-organization-Value',
              organizational_unit: 'EXAMPLE-organizationalUnit-Value',
              pseudonym: 'EXAMPLE-pseudonym-Value',
              serial_number: 'EXAMPLE-serialNumber-Value',
              state_or_province_name: 'EXAMPLE-stateOrProvinceName-Value',
              street: 'EXAMPLE-street-Value',
              surname: 'EXAMPLE-surname-Value',
              title: 'EXAMPLE-title-Value',
              user_id: 'ocid1.test.oc1..<unique_ID>EXAMPLE-userId-Value'
            ),
          version_name: 'EXAMPLE-versionName-Value',
          validity:
            OCI::CertificatesManagement::Models::Validity.new(
              time_of_validity_not_after:
                DateTime.parse('2004-06-17T05:02:24.934Z'),
              time_of_validity_not_before:
                DateTime.parse('2023-01-14T02:20:35.425Z')
            ),
          signing_algorithm: 'SHA384_WITH_RSA'
        ),
      kms_key_id: 'ocid1.test.oc1..<unique_ID>EXAMPLE-kmsKeyId-Value',
      description: 'EXAMPLE-description-Value',
      certificate_authority_rules: [
        OCI::CertificatesManagement::Models::CertificateAuthorityIssuanceExpiryRule
          .new(
          rule_type: 'CERTIFICATE_AUTHORITY_ISSUANCE_EXPIRY_RULE',
          leaf_certificate_max_validity_duration:
            'EXAMPLE-leafCertificateMaxValidityDuration-Value',
          certificate_authority_max_validity_duration:
            'EXAMPLE-certificateAuthorityMaxValidityDuration-Value'
        )
      ],
      certificate_revocation_list_details:
        OCI::CertificatesManagement::Models::CertificateRevocationListDetails
          .new(
          object_storage_config:
            OCI::CertificatesManagement::Models::ObjectStorageBucketConfigDetails
              .new(
              object_storage_bucket_name:
                'EXAMPLE-objectStorageBucketName-Value',
              object_storage_object_name_format:
                'EXAMPLE-objectStorageObjectNameFormat-Value',
              object_storage_namespace: 'EXAMPLE-objectStorageNamespace-Value'
            ),
          custom_formatted_urls: %w[EXAMPLE--Value]
        ),
      freeform_tags: {
        'EXAMPLE_KEY_y06ZH' => 'EXAMPLE_VALUE_WVc6tXxyDiGsQ6uDXJSp'
      },
      defined_tags: {
        'EXAMPLE_KEY_dacUV' => { 'EXAMPLE_KEY_hqZr9' => 'EXAMPLE--Value' }
      }
    )
  )

# Get the data from response
puts "#{create_certificate_authority_response.data}"