Reference documentation and code samples for the Certificate Authority v1 API enum SubjectRequestMode.
Describes the way in which a
[Certificate][google.cloud.security.privateca.v1.Certificate]'s
[Subject][google.cloud.security.privateca.v1.Subject] and/or
[SubjectAltNames][google.cloud.security.privateca.v1.SubjectAltNames] will be
resolved.
The default mode used in most cases. Indicates that the certificate's
[Subject][google.cloud.security.privateca.v1.Subject] and/or
[SubjectAltNames][google.cloud.security.privateca.v1.SubjectAltNames] are
specified in the certificate request. This mode requires the caller to have
the privateca.certificates.create permission.
ReflectedSpiffe
A mode reserved for special cases. Indicates that the certificate should
have one SPIFFE
[SubjectAltNames][google.cloud.security.privateca.v1.SubjectAltNames] set
by the service based on the caller's identity. This mode will ignore any
explicitly specified [Subject][google.cloud.security.privateca.v1.Subject]
and/or
[SubjectAltNames][google.cloud.security.privateca.v1.SubjectAltNames] in
the certificate request. This mode requires the caller to have the
privateca.certificates.createForSelf permission.
[[["Easy to understand","easyToUnderstand","thumb-up"],["Solved my problem","solvedMyProblem","thumb-up"],["Other","otherUp","thumb-up"]],[["Missing the information I need","missingTheInformationINeed","thumb-down"],["Too complicated / too many steps","tooComplicatedTooManySteps","thumb-down"],["Out of date","outOfDate","thumb-down"],["Samples / code issue","samplesCodeIssue","thumb-down"],["Other","otherDown","thumb-down"]],["Last updated 2025-08-07 UTC."],[[["\u003cp\u003eThe latest version available for \u003ccode\u003eSubjectRequestMode\u003c/code\u003e in the Google Cloud Security Private CA v1 API is 3.9.0, as indicated by the \u003ccode\u003e(latest)\u003c/code\u003e tag in the provided list.\u003c/p\u003e\n"],["\u003cp\u003e\u003ccode\u003eSubjectRequestMode\u003c/code\u003e is an enum within the Google.Cloud.Security.PrivateCA.V1 namespace, defining how a certificate's Subject and SubjectAltNames are determined.\u003c/p\u003e\n"],["\u003cp\u003eThere are three fields defined for \u003ccode\u003eSubjectRequestMode\u003c/code\u003e: Default, ReflectedSpiffe, and Unspecified, each with distinct implications for how certificate information is handled.\u003c/p\u003e\n"],["\u003cp\u003eThe \u003ccode\u003eDefault\u003c/code\u003e mode requires the caller to possess the \u003ccode\u003eprivateca.certificates.create\u003c/code\u003e permission, whereas the \u003ccode\u003eReflectedSpiffe\u003c/code\u003e mode demands the \u003ccode\u003eprivateca.certificates.createForSelf\u003c/code\u003e permission.\u003c/p\u003e\n"],["\u003cp\u003eThe documentation offers a comprehensive list of versions, starting from 1.0.0 up to the most current release of 3.9.0, allowing users to navigate through them.\u003c/p\u003e\n"]]],[],null,[]]