000025941 - How to automatically notify users their certificates are about to expire

Document created by RSA Customer Support Employee on Jun 16, 2016Last modified by RSA Customer Support Employee on Apr 21, 2017
Version 3Show Document
  • View in full screen mode

Article Content

Article Number000025941
Applies ToKeon Certificate Authority 6.5.1
IssueHow to automatically notify users their certificates are about to expire
Certificates about to expire
Advanced notification of certificate expiry

Warn users of impending certificate expiration
Email warning notification, time to renew certificates
ResolutionNotifying End Users of Certificate Renewal

Administrators and Vettors can configure Keon CA to send email notices to certificate holders prior to their certificates' expiry dates using the cert-expiry-notify.xuda template. This template allows you to select a CA and enter a certificate expiry date range. Users with certificates both expiring within this range, having email addresses information in certificate, and issued by the selected CA's Jurisdictions will receive a renewal notice.

To send certificate renewal notification, follow these steps:

1. Connect directly to the notification template using the following URL:


2. Select the CA for which you want to send notification

3. Select the date range for expiring certificates

Certificate holders with certificates issued by the selected CA and expiring within the specified date range are sent expiry notices. The list of certificates to which notices have been sent is displayed on the Web page.

NOTE: Requesting Certificate Renewal - in Jurisdictions where certificate renewal is configured, end users can connect to the Keon CA Enrollment Server prior to (or after) their certificate's expiry date, and can submit a certificate renewal request to the Jurisdiction that issued their certificate.
NotesSee the solution titled "How to Notify End-Users Prior to Certificate Expiry" for additional information
Legacy Article IDa21108