You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
⚠️ Please verify that this feature request has NOT been suggested before.
I checked and didn't find similar feature request
🏷️ Feature Request Type
Other
🔖 Feature description
Currently only the first certificate within the certificate chain is checked and alerted for expiry but not the other (signing) certificates within the chain.
When monitoring the certificate expiry days, not only the first (server) certificate should be evaluated but also all certificates within the certificate chain (each issuer certificate) and then alerted separately.
This raises the awareness for sys admins for required ca-chain modifications/replacements.
✔️ Solution
See provided pull request.
❓ Alternatives
No response
📝 Additional Context
Last november we had a situation where an intermediate CA certificate expired (QuoVadis Global SSL ICA G3) despite the fact that the signed server certificate still was valid for 10 more month. This is a rather unusual situation and even more complicated to analyze and understand.
The text was updated successfully, but these errors were encountered:
…epresent what id does. Evaluate certificate expiry from all certs in chain. Send a separate notification for every cert in chain, including cert type and CN.
🏷️ Feature Request Type
Other
🔖 Feature description
Currently only the first certificate within the certificate chain is checked and alerted for expiry but not the other (signing) certificates within the chain.
When monitoring the certificate expiry days, not only the first (server) certificate should be evaluated but also all certificates within the certificate chain (each issuer certificate) and then alerted separately.
This raises the awareness for sys admins for required ca-chain modifications/replacements.
✔️ Solution
See provided pull request.
❓ Alternatives
No response
📝 Additional Context
Last november we had a situation where an intermediate CA certificate expired (QuoVadis Global SSL ICA G3) despite the fact that the signed server certificate still was valid for 10 more month. This is a rather unusual situation and even more complicated to analyze and understand.
The text was updated successfully, but these errors were encountered: