Alarm Customization
Alarm Customization allows you to customize certificate alarms based on much more detailed criteria. With this feature, you can create special alarm rules for certificates with specific characteristics and send different alarm notifications to different teams.
You can access alarm customization configurations from the Alarm Configuration tab on the Discovery β Expiry List & Alarm page.
What is Alarm Customization?β
Alarm Customization allows you to create much more granular and specific alarm rules beyond standard alarm configuration. This enables you to:
- Scope-based alarms: Separate alarms for servers or certificates
- Type-based alarms: Separate rules for server or CA certificates
- Network Type filtering: Only certificates from external, local, or specific network types
- Certificate Owner filtering: Special alarms for certificates owned by specific owners
- Key Size warnings: Automatic notifications for insecure key sizes
- Expired certificates: Separate notifications for expired certificates
- Self-signed checking: Special rules for self-signed certificates
Alarm Customization Listβ

Alarm Customization - Existing Rules
List Informationβ
On the list page, you can see all defined custom alarm rules:
- Type - Alarm type (Subject, Issuer)
- Scope - Scope (Server, Certificate)
- Discover Type - Discovery type (Network, TLS, etc.)
- Network Type - Network type filter (All, External, Internal)
- Threshold Day - How many days in advance to send alarm
- Certificate Owner - Certificate owner filter (Yes/No)
- To Mails - Email addresses to receive notifications
List Operationsβ
You can perform the following operations for each row:
- Edit - βοΈ Edit existing rule
- Delete - ποΈ Delete rule
Click the Create button to create a new custom alarm rule.
Creating New Alarm Customization Ruleβ

Add New Alarm Customization Rule Form
Configuration Parametersβ
Basic Filtersβ
| Parameter | Description | Options |
|---|---|---|
| Scope | Determines the scope in which the alarm will operate | β’ Server: Separate notification for each server β’ Certificate: Notification for unique certificates |
| Type | Select the type of certificates for which alarms will be created | β’ Subject: Server certificates β’ Issuer: CA certificates |
| Discover Type | Filter by how certificates were discovered | β’ Network: Network scanning β’ TLS: TLS connection β’ File: File system |
| Network Type | Select the network type for which alarms will be created | β’ All: All network types β’ External: External certificates only β’ Internal: Internal certificates only β’ Custom types defined in Network Configuration |
Alarm Rulesβ
| Parameter | Description | Options |
|---|---|---|
| Send Alarm If Certificate Expires in | Determines how many days before certificate expiration to send alarm | Enter number of days (e.g., 30, 15, 7) |
| Send Expired Certificates | Should notifications be sent for expired certificates? | β’ Yes: Notify for expired certificates as well β’ No: Only non-expired certificates |
| Key Size Alert | Warning for insecure key sizes | β’ Yes: Warning for small key sizes (e.g., 1024-bit RSA) β’ No: Don't check key size |
| Send Self-Signed Certificate | Should self-signed certificates be included? | β’ Yes: Notify for self-signed as well β’ No: Exclude self-signed |
| Certificate Owner | Filter for certificates owned by specific owners | β’ Yes: Only certificates with specific owners β’ No: All certificates |
Notification Settingsβ
| Parameter | Description | Options |
|---|---|---|
| Alarm Period | How frequently notifications will be sent | β’ Daily: Every day β’ Weekly: Weekly |
| Hour | What time notifications will be sent | 24-hour format (e.g., 10:00) |
| To Mail | Email addresses to receive notifications | Multiple email addresses can be added (with Add More) |
| Cc | Copy recipients (optional) | Multiple email addresses can be added |
| Mail Subject | Email subject line | Enter email subject |
| Mail Text | Email content | Enter email content |
Saving Configurationβ
After filling in all fields, click the Submit button to save the rule.
After the rule is saved, automatic notifications will start being sent for certificates matching the specified criteria.