ciscoPkiCertExpiryAlert

CISCO-PKI-MIB · .1.3.6.1.4.1.9.9.854.1.2

Object

notification
Certificate Expiry alert consists of following
a)   Certificate Serial number
b)   Certificate Issuer-name
c)   Trustpoint name
d)   Type of certificate (i.e. CA/ID/SUBCA/RA)
e)   Certificate remaining lifetime in seconds.
f)   Certificate subject-name
          
When a certificate is reaching its expiry on the router, a trap
will be sent to SNMP server at regular intervals starting from
60days to till 1week. From 1week onwards daily one trap will be
sent with
following information
          
a)   Certificate Serial number
b)   Certificate Issuer-name
c)   Trustpoint name
d)   Type of certificate (i.e. CA/ID)
e)   Certificate remaining lifetime.
          
Alert will not be sent if trustpoint is configured with
auto-enroll and corresponding shadow certificate/rollover
certificate is present provided, shadow/rollover certificates
start time is same/behind certificate end time.
          
If shadow/rollover certificate start time is ahead of
certificate end time, alerts will be continued to send because
shadow certificate wont be valid from certificates expiry
time.
          
Expiry alerts will not be sent for trustpool certificates.

Context

MIB
CISCO-PKI-MIB
OID
.1.3.6.1.4.1.9.9.854.1.2
Type
notification
Status
current
Parent
ciscoPkiMIBNotifs
Siblings
1

Syntax

No syntax metadata recorded.

Values & Constraints

No enumerated values or constraints recorded.

Related Objects

Sibling Objects
Notification Objects