Applies To:
Show VersionsEnterprise Manager
- 3.1.1
Overview: Certificate monitoring
When you use BIG-IP Local Traffic Manager to manage your SSL traffic, you must track both traffic and system certificates for the devices in your network. Traffic certificates are server certificates that a device uses for traffic management tasks. System certificates are the web certificates that allow client systems to log into the BIG-IP Configuration utility.
To assist you in overseeing these certificates, Enterprise Manager provides a summary of vital certificate information for each managed device in your network. The information that displays on the certificate list screen provides a summary of:
- Certificate expiration status
- Certificate and organization name
- Device on which the certificate is configured
When you monitor a device list, you automatically monitor all of the certificates on all of the devices that are members of that device list. By default, certificate monitoring is enabled for all managed devices.
Viewing certificates for a managed device
Certificate expiration status flag definitions
The certificate list screen also displays a status flag for each certificate, to provide a quick visual indicator of the status for your certificates.
Color of status flag | Expiration status | Suggested action |
---|---|---|
Red | This certificate has expired. When client systems require this certificate for authentication, the client receives an expired certificate warning. | You must renew this certificate for proper authentication with clients. |
Yellow | This certificate will expire in 30 days or less. | Although this certificate is valid, you should take action to prevent certificate expiration. |
Green | This certificate is valid and will remain valid for 30 days. | No action is required. |