Is there a way to manage/notify for expiring private keys on CA API Gateway. I found a sample policy for trusted certs but nothing for private keys management.

Question asked by avmishr on Dec 20, 2016
Latest reply on Dec 21, 2016 by Stephen_Hughes

Hi all,


I am trying to find a mechanism/assertion/custom policy which can help me track the private keys tied up to different ports on CA api gateway product.

Like trusted root certificates, I want to track the expiry date for them and if possible generate email alert.

There is one article which shows sample policy to generate alert for expired Trusted Root Certificates, but I found nothing for private keys i.e. client certificates.

Please assist. Thanks !