---
title: pingcli pingfederate key-pairs ssl-client
description: PingFederate SSL Client Key Pairs
component: pingcli
version: 1.4
page_id: pingcli:command_reference:pingcli_pingfederate_key-pairs_ssl-client
canonical_url: https://developer.pingidentity.com/pingcli/1.4/command_reference/pingcli_pingfederate_key-pairs_ssl-client.html
llms_txt: https://developer.pingidentity.com/pingcli/llms.txt
docs_for_agents: https://developer.pingidentity.com/build-with-ai/docs-for-agents.md
revdate: July 29, 2026
section_ids:
  synopsis: Synopsis
  options-inherited-from-parent-commands: Options inherited from parent commands
  more-information: More information
  subcommands: Subcommands
---

# pingcli pingfederate key-pairs ssl-client

PingFederate SSL Client Key Pairs

## Synopsis

PingFederate SSL Client Key Pairs

```
pingcli pingfederate key-pairs ssl-client [flags]
```

## Options inherited from parent commands

```
  -C, --config string           The relative or full path to a custom Ping CLI configuration file. (default $HOME/.pingcli/config.yaml)
  -D, --detailed-exitcode       Enable detailed exit code output. (default false) 0 - pingcli command succeeded with no errors or warnings. 1 - pingcli command failed with errors. 2 - pingcli command succeeded with warnings.
  -O, --output-format string    Specify the console output format. (default text) Options are: json, ndjson, ndjson-typed, ndjson-wrapped, text.
  -P, --profile string          The name of a configuration profile to use.
      --debug                   Enable debug output for error messages, including stack traces and transaction IDs. (default false)
      --log-file string         Write logs to a file at the given path. File logging is disabled when not set.
      --log-file-level string   Set the file log level. Options are: DEBUG, INFO, WARN, ERROR. (default DEBUG)
      --log-level string        Set the console log level. Options are: DEBUG, INFO, WARN, ERROR. (default WARN)
      --no-color                Disable text output in color. (default false)
      --query string            JMESPath expression to filter JSON output. Requires -O json, ndjson, ndjson-typed, or ndjson-wrapped. Example: --query 'data[?enabled].name'
```

## More information

* [pingcli pingfederate key-pairs](pingcli_pingfederate_key-pairs.html) - Manage PingFederate Key Pairs resources

## Subcommands

* [pingcli pingfederate key-pairs ssl-client create](pingcli_pingfederate_key-pairs_ssl-client_create.html) - Generate a new SSL client key pair

* [pingcli pingfederate key-pairs ssl-client delete](pingcli_pingfederate_key-pairs_ssl-client_delete.html) - Delete an SSL client key pair

* [pingcli pingfederate key-pairs ssl-client export-certificate](pingcli_pingfederate_key-pairs_ssl-client_export-certificate.html) - Export an SSL client key pair certificate file

* [pingcli pingfederate key-pairs ssl-client export-pem](pingcli_pingfederate_key-pairs_ssl-client_export-pem.html) - Export an SSL client key pair PEM file

* [pingcli pingfederate key-pairs ssl-client export-pkcs12](pingcli_pingfederate_key-pairs_ssl-client_export-pkcs12.html) - Export an SSL client key pair PKCS12 file

* [pingcli pingfederate key-pairs ssl-client generate-csr](pingcli_pingfederate_key-pairs_ssl-client_generate-csr.html) - Generate a CSR for an SSL client key pair

* [pingcli pingfederate key-pairs ssl-client get](pingcli_pingfederate_key-pairs_ssl-client_get.html) - Read a specific SSL client key pair

* [pingcli pingfederate key-pairs ssl-client import](pingcli_pingfederate_key-pairs_ssl-client_import.html) - Import an SSL client key pair

* [pingcli pingfederate key-pairs ssl-client import-csr-response](pingcli_pingfederate_key-pairs_ssl-client_import-csr-response.html) - Import an SSL client key pair CSR response

* [pingcli pingfederate key-pairs ssl-client link](pingcli_pingfederate_key-pairs_ssl-client_link.html) - Link an SSL client key pair private key and certificate (HSM only)

* [pingcli pingfederate key-pairs ssl-client list](pingcli_pingfederate_key-pairs_ssl-client_list.html) - List all SSL client key pairs

* [pingcli pingfederate key-pairs ssl-client template](pingcli_pingfederate_key-pairs_ssl-client_template.html) - Generate an SSL client key pair JSON template
