AWS Private Certificate Authority (AWS Private CA) now enables you to issue up to 100 million certificates per certificate authority (CA), an increase from the previous default limit of 1 million certificates. This limit increase allows you to optimize your CA operations by managing fewer CAs while maintaining the security and flexibility of your public key infrastructure (PKI).
The new 100 million certificates per CA limit is available by default for CAs configured without revocation or with revocation configuration set to partitioned Certificate Revocation List (CRL) and/or Online Certificate Status Protocol (OCSP). CAs configured with complete CRL will continue to have a maximum limit of 1 million certificates per CA. If you are currently using complete CRL and need to issue more certificates, you can switch to partitioned CRL to automatically increase the certificates per CA limit to 100 million certificates. AWS Private CA is a managed service that lets you create private certificate authorities (CAs) to issue digital certificates for authenticating internal users, servers, applications, and devices within your organization, while securing the CA’s private keys using Federal Information Processing Standard (FIPS) 140-3 Level 3 hardware security modules (HSMs). AWS Private CA offers connectors so you can use AWS Private CA with Kubernetes, Active Directory, and mobile device management (MDM) software.
AWS Private CA is available in all commercial AWS Regions, the AWS GovCloud (US) Regions, and the China Regions.
To learn more about AWS Private CA certificate limits, see AWS Private CA Service Quotas.
Categories:
Source: Amazon Web Services
Latest Posts
- Amazon GameLift Servers expands instance support with next-generation EC2 instance families

- (Updated) Microsoft 365 Copilot: Customize how managers are identified in Workforce Insights agent and Copilot responses [MC1260710]
![(Updated) Microsoft 365 Copilot: Customize how managers are identified in Workforce Insights agent and Copilot responses [MC1260710] 3 pexels kuan yu huang 252427105 32459953](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Microsoft 365 Copilot: Create and view Outlook rules [MC1223821]
![(Updated) Microsoft 365 Copilot: Create and view Outlook rules [MC1223821] 4 pexels rostislav 5011647](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)
- (Updated) Microsoft 365 Copilot: Email triage with pin, flag, archive, and mark read [MC1193695]
![(Updated) Microsoft 365 Copilot: Email triage with pin, flag, archive, and mark read [MC1193695] 5 pexels kinkate 368260](data:image/svg+xml;base64,PHN2ZyB3aWR0aD0iMSIgaGVpZ2h0PSIxIiB4bWxucz0iaHR0cDovL3d3dy53My5vcmcvMjAwMC9zdmciPjwvc3ZnPg==)


![(Updated) Microsoft 365 Copilot: Customize how managers are identified in Workforce Insights agent and Copilot responses [MC1260710] 3 pexels kuan yu huang 252427105 32459953](https://mwpro.co.uk/wp-content/uploads/2025/06/pexels-kuan-yu-huang-252427105-32459953-150x150.webp)
![(Updated) Microsoft 365 Copilot: Create and view Outlook rules [MC1223821] 4 pexels rostislav 5011647](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-rostislav-5011647-150x150.webp)
![(Updated) Microsoft 365 Copilot: Email triage with pin, flag, archive, and mark read [MC1193695] 5 pexels kinkate 368260](https://mwpro.co.uk/wp-content/uploads/2024/08/pexels-kinkate-368260-150x150.webp)
