x509: certificate has expired or is not yet valid

Description

Alert is active when there are,

  • Missing required certificates in the server
  • Expired Certificates, that needs to be renewed

Alert Details

Alert ID: 7a833045-bbe2-4913-8ae5-47ce45048492

Tags:

  • Type:Infrastructure
  • Group:Server Health
  • PageType:Dashboard
  • PageID: e6fe25a9-6f23-41e1-b7f4-5815ced0056b
  • CreatedBy:Relativity
  • ResolutionURL: /environment-watch/alerts/00024-x509-certificate-has-expired-or-is-not-yet-valid-alert-resolution-sop

Metric/Log/Trace Details

Metric Name: relsvr.x509_certificate

Metric Attributes:

Attribute Name Description Value
labels.issued_by Issued by Relativity - Intermediate
labels.issued_to Issued to Relativity Secret Store
labels.relsvr_host_installed_products Products installed Invariant Queue Manager,Invariant Worker,Agent,Secret Store,Service Bus,Service Host,SQL Primary,Web
labels.relsvr_server_type Servers to be verified Agent, Invariant Queue Manager, Invariant Worker, SQL Primary, Secret Store, Service Bus, Service Host, Web
labels.state State of metrics installed_not_expired, installed_expired, not_installed
labels.store_location Store locataion LocalMachine
labels.subject_name CN=Relativity Secret Store
service.language.name Language dotnet
service.name Service Name relsvr_infrawatch_agent
service.version Version V1

Rule details

Alert Condition Description:
Alert triggers when there are,

  • Missing required certificates in the server
  • Expired Certificates, that needs to be renewed, for the last 30 minutes
Name Value Description
Rule Type Elastic Query
Data View - metrics-* for Meters
Filter Query relsvr.x509_certificate : * and (labels.state :"not_installed" or labels.state :"installed_expired") Certifcates must be expired or not installed
Group Count Above 0 docuemnts
Threshold Above 0 docuemnts
Time Window Last 30 min data to be considered
Frequency 15 mins

Requires User Intervention

  • Yes: alert immediately
    • Min time before the alert is active : 30 minutes

Kibana Dashbaord

Host Heartbeat alert should not be in active state.