Skip to content
SHC Docs

shc ca show

show a tenant CA’s persisted metadata (provenance, signer, key refs)

Show the persisted metadata for a tenant CA: provenance, the ca-signer connection (if any), the intermediate’s expiry, and the vault key REFS. Never prints key material — the refs are vault names, not bytes.

shc ca show [flags]
-h, --help help for show
-t, --tenant string tenant (defaults to the active tenant)
--config stringArray extra YAML config file to layer on top of auto-discovered config; repeatable, later files win
-d, --debug enable debug mode (default: $SHC_DEBUG)
-e, --environment string environment name (default: $SHC_ENVIRONMENT)
--exclude string comma-separated dotted paths to drop
--fields string comma-separated columns/keys to show (and their order)
--filter string comma-separated dotted paths to keep (drops everything else)
-o, --output string output format: tty|text|json|yaml (default: $SHC_OUTPUT)
-s, --stack string stack name (default: $SHC_STACK)
-v, --verbose verbose output (default: $SHC_VERBOSE)
  • shc ca - manage per-tenant certificate authorities