---
title: Charmhub | Deploy LXD using Charmhub - The Open Operator Collection
description: Deploy the latest version of LXD on any cloud.
url: https://charmhub.io/lxd/actions
---

# LXD

[The LXD Charm](https://charmhub.io/publisher/charm-lxd "View all packages from The LXD Charm")

* [The LXD Charm](https://charmhub.io/publisher/charm-lxd "View all packages from The LXD Charm")

Platform:

24.04

22.04

20.04

stable 859

```
juju deploy lxd
```

[Learn to deploy on juju >](https://juju.is/docs/juju/manage-applications)

* [add-trusted-client](https://charmhub.io/lxd/actions#add-trusted-client)
* [debug](https://charmhub.io/lxd/actions#debug)
* [get-client-token](https://charmhub.io/lxd/actions#get-client-token)
* [remove-trusted-client](https://charmhub.io/lxd/actions#remove-trusted-client)
* [show-pending-config](https://charmhub.io/lxd/actions#show-pending-config)

[Learn about actions >](https://juju.is/docs/juju/action)

* add-trusted-client

  The client certificate to add to the trusted list

  Params

  + cert
    string

    The raw X.509 PEM client certificate (required if cert-url isn't set).
    -----BEGIN CERTIFICATE-----
    <Client cert in PEM format to add to trust>
    -----END CERTIFICATE-----
    Pass the file with the certificate above as:
    $ juju run --wait=2m lxd/leader add-trusted-client cert="$(cat client.crt)"
  + cert-url
    string

    The HTTP/HTTPS URL to fetch the client certificate from (required if cert isn’t set)
  + name
    string

    The user-specified identifier (optional)
  + projects
    string

    A comma separated list of projects to restrict the client certificate to (optional)
* debug

  Collect useful information for bug reports (calls lxd.buginfo)
* get-client-token

  Return a client certificate add token to use by the client as `lxc remote add <remote-name> <token>`

  Params

  + name
    string

    The user-specified identifier
  + projects
    string

    A comma separated list of projects to restrict the client certificate to (optional)
* remove-trusted-client

  The client certificate fingerprint (SHA256) to remove from the trusted list

  Params

  + fingerprint
    string

    The fingerprint of the X.509 PEM client certificate. This will automatically ignore
    `openssl`'s unneeded prefix (`sha256 Fingerprint=`) and extract the fingerprint.
    $ juju run --wait=2m lxd/leader remove-trusted-client fingerprint="$(openssl x509 -noout -fingerprint -sha256 -in client.crt)"
* show-pending-config

  Show the currently pending configuration changes (queued for after the reboot)
