Certificate expiration notifications

Account administrators receive a ​Control Center​ notification when an active, deployed (production or staging) CA set version has certificates approaching expiration. The initial notification is sent 120 days prior to the certificate's expiration date, then it's sent incrementally based on the number of days until it expires. For example, 90, 60, 30, 15, 10, 5, 1, and the day of expiration.

The notification includes; the number of certificates due to expire, the number of days left before they expire, the CA set they belong to, and the account, as shown in this example:

Certificates that expire in 15 days or less are critical. For these certificates, the account administrators also receive an email notification, as shown in this example:


Action needed

To avoid disruption of your service, use these steps to either update or remove the certificate in the CA set version before the certificate expires.

  1. Log into ​Akamai Control Center​.
  2. Select > CDN > mTLS Edge Truststore.
  3. Select the CA set with the certificates due to expire.
    A warning appears, indicating when the CA set is selected, as shown in this example:

  4. Clone the CA set version
  5. Create a new version and add certificates or remove the certificate from the cloned CA set version.
  6. Activate the CA set version on the network.