Automated HTTP validated public certificates with Amazon CloudFront
Share
Services
AWS Certificate Manager (ACM) announces automated public TLS certificates for [Amazon CloudFront](https://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/using-https.html). CloudFront customers can now simply check a box to receive required public certificates to enable TLS when creating new CloudFront content delivery applications. ACM and CloudFront work together to automatically request, issue and associate the required public certificates with CloudFront. ACM will also automatically renew these certificates as long as the certificate is in use and traffic for the certificate domain is routed to CloudFront. Previously, to set up a similar secure CloudFront distribution, customers had to request a public certificate through ACM, validate the domain, and then associate the issued certificate with the CloudFront distribution. This option remains available to customers.
ACM uses a domain validation method commonly referred to as HTTP, or file-based validation, to both issue and renew these certificates. Domain validation ensures that ACM issues the certificates only to domain users who are authorized to acquire a certificate for the domain. Network and certificate administrators can still use ACM to view and monitor these certificates. While ACM automatically manages the certificate lifecycle, administrators can use ACM’s [Certificate lifecycle CloudWatch events](https://docs.aws.amazon.com/acm/latest/userguide/cloudwatch-events.html) to monitor certificate updates and publish the information to a centralized security information and event management (SIEM) and/or enterprise resource planning (ERP) solution.
To learn more about this feature, please refer to our [documentation](https://docs.aws.amazon.com/acm/latest/userguide/http-validation.html). You can learn more about ACM [here](https://docs.aws.amazon.com/acm/latest/userguide/acm-overview.html) and CloudFront [here](https://docs.aws.amazon.com/AmazonCloudFront/latest/DeveloperGuide/distribution-config-options.html).
What else is happening at Amazon Web Services?
Amazon Connect Contact Lens real-time dashboards are now available in AWS GovCloud (US-West)
May 5th, 2025
Services
Share
Amazon Connect for WhatsApp Business messaging and SMS now available in new AWS Regions
May 5th, 2025
Services
Share
Read update
Services
Share
Read update
Services
Share
Read update
Services
Share