# cert

The cldkctl registry cert command downloads the SSL/TLS certificate used by the container registry. This certificate is required to securely connect to the registry from external clients.

## Usage

```
cldkctl registry cert [flags]
```

## Steps

Follow the steps below to run and view the result of this command:

1. Ensure you have an existing registry.
2. Use the `--registry` global flag to specify which registry certificate you want to download.
3. Use the `-o` flag to define the output path and filename for the certificate.
4. Run the following command in your terminal:

```
./cldkctl --registry <registry_name> registry cert -o <output_path>/<filename>.crt
```

5. Replace `<registry_name>` with the name of your registry, and \<output\_path> with the folder where you want to save the file

<figure><img src="https://2882153758-files.gitbook.io/~/files/v0/b/gitbook-x-prod.appspot.com/o/spaces%2Fi9YWb69HFXLHYlXffReU%2Fuploads%2F6nPIGM9Dx1VWEe2rsf7l%2Funknown.png?alt=media&#x26;token=e62409f9-04d1-44a9-8a3b-fab6054c513d" alt=""><figcaption></figcaption></figure>

## Flags

{% hint style="info" %}
This command supports [global flags](https://docs.cloudeka.ai/cloudeka-api-list/global-flags). Refer to the Global Flags section for details.
{% endhint %}

| Flag                | Description                         |
| ------------------- | ----------------------------------- |
| -h, --help          | Help for the registry cert command. |
| -o, --output string | Path to save the certificate file.  |

## <br>
