Certificate Validity Sensor
Overview
Subscription
This sensor is only available with Pro and Entreprise subscriptions
The Certificate Validity Sensor in Onagre allows users to monitor the expiration status of SSL/TLS certificates associated with a domain. This sensor ensures that certificates remain valid and helps prevent service disruptions due to expired certificates.
Configuration Options
When setting up a Certificate Validity Sensor, the following parameters can be configured:
- Domain Name: The fully qualified domain name (FQDN) whose SSL/TLS certificate should be monitored.
- Alert Threshold (Days Before Expiration): Defines how many days before expiration an alert should be triggered (e.g., 30 days, 15 days, 7 days).
- Check Interval: Defines how often the certificate validity should be checked (e.g., every day, every week).
Response Validation
The Certificate Validity Sensor validates certificates based on:
- Expiration Date: Ensures the certificate remains valid and has not expired.
- Days Until Expiration: Triggers an alert if the remaining validity period falls below the configured threshold.
Alerts and Notifications
If the certificate is nearing expiration or has expired, the sensor can trigger alerts via:
- Slack, Microsoft Teams, Discord, Google Chat, Webhooks, Pushover
- Email Notifications
- Onagre’s Dashboard for Incident Tracking
Use Cases
- Preventing unexpected SSL/TLS certificate expiration.
- Ensuring that websites and services remain accessible and secure.
- Monitoring certificates for compliance and security best practices.
Deployment
The Certificate Validity Sensor can be used for public-facing domains and internal services. For internal certificates, Onagre’s private agent can be deployed to check certificates within a secure network.
Summary
The Certificate Validity Sensor is an essential tool for ensuring SSL/TLS certificates remain valid, preventing security warnings and service outages due to expired certificates. By providing proactive alerts, it helps teams maintain secure and uninterrupted operations.