- Home
- IAM
- Certificate Lifecycle Management
- Certificate Expiry Monitor
Certificate Expiry Monitor
A Docker-based utility that monitors TLS certificate expiration dates and exposes the data as Prometheus metrics with support for Kubernetes ingress discovery and configurable domain filtering.

Certificate Expiry Monitor
A Docker-based utility that monitors TLS certificate expiration dates and exposes the data as Prometheus metrics with support for Kubernetes ingress discovery and configurable domain filtering.

Founder & Fractional CISO
Not sure if Certificate Expiry Monitor is right for your team?
Book a 60-minute strategy call with Nikoloz. You will get a clear roadmap to evaluate products and make a decision.
→Align tool selection with your actual business goals
→Right-sized for your stage (not enterprise bloat)
→Not 47 options, exactly 3 that fit your needs
→Stop researching, start deciding
→Questions that reveal if the tool actually works
→Most companies never ask these
→The costs vendors hide in contracts
→How to uncover real Total Cost of Ownerhship before signing
Certificate Expiry Monitor Description
Certificate Expiry Monitor is a utility that monitors TLS certificate expiration dates and exposes this information as Prometheus metrics. The tool can be deployed as a Docker container and provides configurable monitoring of certificate expiry times across multiple domains. The monitor supports various deployment scenarios including Kubernetes environments where it can automatically discover domains from ingresses across specified namespaces. It offers flexible configuration options for polling frequency, domain inclusion/exclusion patterns using regex support, and connection security settings. Key features include: - Automatic domain discovery from Kubernetes ingresses - Configurable polling intervals for certificate checks - Domain filtering with regex pattern support for exclusions - Prometheus metrics export for integration with monitoring systems - Docker containerization for easy deployment - Support for both secure and insecure TLS connections - Host IP connection mode for pod-based deployments The tool accepts comma-separated domain lists for manual configuration and can exclude specific domains or domain patterns from monitoring. It integrates with existing Prometheus-based monitoring infrastructure to provide visibility into certificate expiration status across an organization's TLS-enabled services.
Certificate Expiry Monitor FAQ
Common questions about Certificate Expiry Monitor including features, pricing, alternatives, and user reviews.
Certificate Expiry Monitor is A Docker-based utility that monitors TLS certificate expiration dates and exposes the data as Prometheus metrics with support for Kubernetes ingress discovery and configurable domain filtering.. It is a IAM solution designed to help security teams with Kubernetes, TLS, Monitoring.
FEATURED
Cybercrime intelligence tools for searching compromised credentials from infostealers
Password manager with end-to-end encryption and identity protection features
Fractional CISO services for B2B companies to build security programs
Stay Updated with Mandos Brief
Get the latest cybersecurity updates in your inbox
TRENDING CATEGORIES
POPULAR
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
Real-time OSINT monitoring for leaked credentials, data, and infrastructure