---
title: ACM
---

[Skip to content](#_top)

[API Reference](https://developers.cloudflare.com/api/terraform)

Copy Markdown

Open in **Claude**Open in **ChatGPT**Open in **Cursor**

---

**Copy Markdown****View as Markdown**

# ACM

#### ACMTotal TLS

#### resource cloudflare\_total\_tls

##### required Expand Collapse

zone\_id: String

Identifier.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20zone_id>)

enabled: Bool

If enabled, Total TLS will order a hostname specific TLS certificate for any proxied A, AAAA, or CNAME record in your zone.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20enabled>)

##### optional Expand Collapse

certificate\_authority?: String

The Certificate Authority that Total TLS certificates will be issued through.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20certificate_authority>)

##### computed Expand Collapse

id: String

Identifier.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

validity\_period: Int64

The validity period in days for the certificates ordered via Total TLS.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20validity_period>)

### cloudflare\_total\_tls

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_total_tls" "example_total_tls" {
  zone_id = "023e105f4ecef8ad9ca31a8372d0c353"
  enabled = true
  certificate_authority = "google"
}
```

#### data cloudflare\_total\_tls

##### required Expand Collapse

zone\_id: String

Identifier.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20zone_id>)

##### computed Expand Collapse

id: String

Identifier.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

certificate\_authority: String

The Certificate Authority that Total TLS certificates will be issued through.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20certificate_authority>)

enabled: Bool

If enabled, Total TLS will order a hostname specific TLS certificate for any proxied A, AAAA, or CNAME record in your zone.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20enabled>)

validity\_period: Int64

The validity period in days for the certificates ordered via Total TLS.

[Link to this property](<#(resource)%20acm.total_tls%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20validity_period>)

### cloudflare\_total\_tls

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_total_tls" "example_total_tls" {
  zone_id = "023e105f4ecef8ad9ca31a8372d0c353"
}
```

#### ACMCustom Trust Store

#### resource cloudflare\_custom\_origin\_trust\_store

##### required Expand Collapse

zone\_id: String

Identifier.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20zone_id>)

certificate: String

The root CA certificate in PEM format. Only root CA certificates are accepted; intermediate and leaf certificates are not supported.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20certificate>)

##### computed Expand Collapse

id: String

Certificate identifier tag.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20id>)

expires\_on: Time

When the certificate expires.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20expires_on>)

issuer: String

The certificate authority that issued the certificate.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20issuer>)

signature: String

The type of hash used for the certificate.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20signature>)

status: String

Status of the zone’s custom SSL.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20status>)

updated\_at: Time

When the certificate was last modified.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20updated_at>)

uploaded\_on: Time

When the certificate was uploaded to Cloudflare.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20resource)%20%3E%20(attribute)%20uploaded_on>)

### cloudflare\_custom\_origin\_trust\_store

Terraform

HTTPTypeScriptPythonGoTerraform

```
resource "cloudflare_custom_origin_trust_store" "example_custom_origin_trust_store" {
  zone_id = "023e105f4ecef8ad9ca31a8372d0c353"
  certificate = <<EOT
  -----BEGIN CERTIFICATE-----
  MIIDdjCCAl6gAwIBAgIJAPnMg0Fs+/B0MA0GCSqGSIb3DQEBCwUAMFsx...
  -----END CERTIFICATE-----

  EOT
}
```

#### data cloudflare\_custom\_origin\_trust\_store

##### required Expand Collapse

zone\_id: String

Identifier.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20zone_id>)

##### optional Expand Collapse

custom\_origin\_trust\_store\_id?: String

Certificate identifier tag.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20custom_origin_trust_store_id>)

<details>

<summary>

filter?: Attributes

</summary>

limit?: Int64

Limit to the number of records returned.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter%20%3E%20(attribute)%20limit">Link to this property</a>

offset?: Int64

Offset the results.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter%20%3E%20(attribute)%20offset">Link to this property</a>

</details>

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20filter>)

##### computed Expand Collapse

id: String

Certificate identifier tag.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20id>)

certificate: String

The root CA certificate in PEM format. Only root CA certificates are accepted; intermediate and leaf certificates are not supported.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20certificate>)

expires\_on: Time

When the certificate expires.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20expires_on>)

issuer: String

The certificate authority that issued the certificate.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20issuer>)

signature: String

The type of hash used for the certificate.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20signature>)

status: String

Status of the zone’s custom SSL.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20status>)

updated\_at: Time

When the certificate was last modified.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20updated_at>)

uploaded\_on: Time

When the certificate was uploaded to Cloudflare.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-single)%20%3E%20(attribute)%20uploaded_on>)

### cloudflare\_custom\_origin\_trust\_store

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_custom_origin_trust_store" "example_custom_origin_trust_store" {
  zone_id = "023e105f4ecef8ad9ca31a8372d0c353"
  custom_origin_trust_store_id = "2458ce5a-0c35-4c7f-82c7-8e9487d3ff60"
}
```

#### data cloudflare\_custom\_origin\_trust\_stores

##### required Expand Collapse

zone\_id: String

Identifier.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20zone_id>)

##### optional Expand Collapse

limit?: Int64

Limit to the number of records returned.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20limit>)

offset?: Int64

Offset the results.

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20offset>)

max\_items?: Int64

Max items to fetch, default: 1000

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20max_items>)

##### computed Expand Collapse

<details>

<summary>

result: List\[Attributes]

The items returned by the data source

</summary>

id: String

Certificate identifier tag.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20id">Link to this property</a>

certificate: String

The root CA certificate in PEM format. Only root CA certificates are accepted; intermediate and leaf certificates are not supported.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20certificate">Link to this property</a>

expires\_on: Time

When the certificate expires.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20expires_on">Link to this property</a>

issuer: String

The certificate authority that issued the certificate.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20issuer">Link to this property</a>

signature: String

The type of hash used for the certificate.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20signature">Link to this property</a>

status: String

Status of the zone’s custom SSL.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20status">Link to this property</a>

updated\_at: Time

When the certificate was last modified.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20updated_at">Link to this property</a>

uploaded\_on: Time

When the certificate was uploaded to Cloudflare.

<a href="#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result%20%3E%20(attribute)%20uploaded_on">Link to this property</a>

</details>

[Link to this property](<#(resource)%20acm.custom_trust_store%20%3E%20(terraform%20datasource-plural)%20%3E%20(attribute)%20result>)

### cloudflare\_custom\_origin\_trust\_stores

Terraform

HTTPTypeScriptPythonGoTerraform

```
data "cloudflare_custom_origin_trust_stores" "example_custom_origin_trust_stores" {
  zone_id = "023e105f4ecef8ad9ca31a8372d0c353"
  limit = 10
  offset = 10
}
```