<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Identity Broker certificate monitoring (since R81.20 JHF T 26) in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193564#M32393</link>
    <description>&lt;P&gt;Hi Vince,&lt;BR /&gt;&lt;BR /&gt;The ability to monitor and alert once we approach the expiration date of the Identity Broker certificate has been added to R81.20&amp;nbsp; jumbo take 26, we are working on adding it to R81 and R81.10 jumbos as well.&lt;BR /&gt;This functionality is enabled by default, we have added a new alert logs + warning/error status to the relevant Subscriber object.&lt;BR /&gt;&lt;BR /&gt;The behavior is as follows:&lt;BR /&gt;&lt;BR /&gt;Certificate expiration date &amp;lt; 90 days:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;GW/Cluster changes to warning with an appropriate message (as can be seen in the screenshot below).&lt;/LI&gt;
&lt;LI&gt;Alert log triggered in SmartConsole once a day (as can be seen in the screenshot below)&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Certificate expiration date &amp;lt; 30 days :&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;GW/Cluster status changes to &lt;U&gt;&lt;STRONG&gt;error&lt;/STRONG&gt; &lt;/U&gt;with an appropriate message.&lt;/LI&gt;
&lt;LI&gt;Alert log will be still triggered in SmartConsole once a day&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Netanel_Cohen_0-1695721639358.jpeg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22572i4F892FA7C1FA8808/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Netanel_Cohen_0-1695721639358.jpeg" alt="Netanel_Cohen_0-1695721639358.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 26 Sep 2023 09:56:44 GMT</pubDate>
    <dc:creator>Netanel_Cohen</dc:creator>
    <dc:date>2023-09-26T09:56:44Z</dc:date>
    <item>
      <title>Identity Broker certificate monitoring (since R81.20 JHF T 26)</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193214#M32335</link>
      <description>&lt;P&gt;Hi mates,&lt;BR /&gt;&lt;BR /&gt;release notes of take 26 shows:&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;TABLE width="932px" cellspacing="0"&gt;&lt;TBODY&gt;&lt;TR&gt;&lt;TD width="84.9531px"&gt;&lt;P&gt;PRJ-45912,&lt;BR /&gt;IDA-4843&lt;/P&gt;&lt;/TD&gt;&lt;TD width="133.922px"&gt;&lt;P&gt;Identity Awareness&lt;/P&gt;&lt;/TD&gt;&lt;TD width="712.125px"&gt;&lt;P&gt;&lt;STRONG&gt;UPDATE&lt;/STRONG&gt;: Implemented monitoring functionality and alerts for tracking the expiration date of Identity Broker certificates.&lt;/P&gt;&lt;/TD&gt;&lt;/TR&gt;&lt;/TBODY&gt;&lt;/TABLE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;does anybody know how to use this functionality?&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;Cheers&lt;BR /&gt;Vince&lt;/P&gt;</description>
      <pubDate>Thu, 21 Sep 2023 06:31:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193214#M32335</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2023-09-21T06:31:05Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Broker certificate monitoring (since R81.20 JHF T 26)</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193268#M32340</link>
      <description>&lt;P&gt;I suspect this is part of a larger project to allow for mass renewal of the various platform/VPN certificates, something that we plan to provide in the near future.&lt;BR /&gt;Which means the full functionality may not be exposed just yet.&lt;BR /&gt;Let me see what I can find out.&lt;/P&gt;</description>
      <pubDate>Thu, 21 Sep 2023 16:02:01 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193268#M32340</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2023-09-21T16:02:01Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Broker certificate monitoring (since R81.20 JHF T 26)</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193564#M32393</link>
      <description>&lt;P&gt;Hi Vince,&lt;BR /&gt;&lt;BR /&gt;The ability to monitor and alert once we approach the expiration date of the Identity Broker certificate has been added to R81.20&amp;nbsp; jumbo take 26, we are working on adding it to R81 and R81.10 jumbos as well.&lt;BR /&gt;This functionality is enabled by default, we have added a new alert logs + warning/error status to the relevant Subscriber object.&lt;BR /&gt;&lt;BR /&gt;The behavior is as follows:&lt;BR /&gt;&lt;BR /&gt;Certificate expiration date &amp;lt; 90 days:&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;GW/Cluster changes to warning with an appropriate message (as can be seen in the screenshot below).&lt;/LI&gt;
&lt;LI&gt;Alert log triggered in SmartConsole once a day (as can be seen in the screenshot below)&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;Certificate expiration date &amp;lt; 30 days :&lt;/P&gt;
&lt;UL&gt;
&lt;LI&gt;GW/Cluster status changes to &lt;U&gt;&lt;STRONG&gt;error&lt;/STRONG&gt; &lt;/U&gt;with an appropriate message.&lt;/LI&gt;
&lt;LI&gt;Alert log will be still triggered in SmartConsole once a day&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Netanel_Cohen_0-1695721639358.jpeg" style="width: 400px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/22572i4F892FA7C1FA8808/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Netanel_Cohen_0-1695721639358.jpeg" alt="Netanel_Cohen_0-1695721639358.jpeg" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Sep 2023 09:56:44 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193564#M32393</guid>
      <dc:creator>Netanel_Cohen</dc:creator>
      <dc:date>2023-09-26T09:56:44Z</dc:date>
    </item>
    <item>
      <title>Re: Identity Broker certificate monitoring (since R81.20 JHF T 26)</title>
      <link>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193572#M32395</link>
      <description>&lt;P&gt;Thanks for your explanation. So we'll see the alert messages on SmartLog and in our case via LogExporter in our elastic stack as well.&lt;BR /&gt;An option to monitor this via api, prometheus, snmp is not present or planned?&lt;BR /&gt;thanks&lt;BR /&gt;Vince&lt;/P&gt;</description>
      <pubDate>Tue, 26 Sep 2023 11:19:35 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/Identity-Broker-certificate-monitoring-since-R81-20-JHF-T-26/m-p/193572#M32395</guid>
      <dc:creator>Vincent_Bacher</dc:creator>
      <dc:date>2023-09-26T11:19:35Z</dc:date>
    </item>
  </channel>
</rss>

