Is it possible to query freeradius' certificate expiration remotely?

John Horne john.horne at plymouth.ac.uk
Tue May 2 10:58:41 UTC 2023


On Mon, 2023-05-01 at 17:04 -0700, Matt H wrote:
> Is it possible to query freeradius' certificate expiration date remotely
> for the cert in /etc/raddb/certs?
>
> I'm trying to set up an alert so there's notification when the cert is <60
> days from requiring renewal.
>
You could install the 'x509watch' package (assuming Linux/UNIX server), and
configure it to look at the '/etc/raddb/certs' files and set the number of days
before warning you. The package defaults to 30 days before warning. It has a
simple config file at '/etc/sysconfig/x509watch'.


John.

--
John Horne | Senior Operations Analyst | Technology and Information Services
University of Plymouth | Drake Circus | Plymouth | Devon | PL4 8AA | UK
________________________________
[https://www.plymouth.ac.uk/images/email_footer.gif]<http://www.plymouth.ac.uk/worldclass>

This email and any files with it are confidential and intended solely for the use of the recipient to whom it is addressed. If you are not the intended recipient then copying, distribution or other use of the information contained is strictly prohibited and you should not rely on it. If you have received this email in error please let the sender know immediately and delete it from your system(s). Internet emails are not necessarily secure. While we take every care, University of Plymouth accepts no responsibility for viruses and it is your responsibility to scan emails and their attachments. University of Plymouth does not accept responsibility for any changes made after it was sent. Nothing in this email or its attachments constitutes an order for goods or services unless accompanied by an official order form.


More information about the Freeradius-Users mailing list