Automatic detection of the absence or outdated SSL certificate

dmytro-k 5 Reputation points
2025-02-02T08:28:39.1966667+00:00

Hello,

Would be good to implement following feature for Microsoft Azure private endpoint service and related services behind.

In case if SSL certificate outdated or either not installed, insecure access to the online resource must be blocked.

SSL socket listener(s) could provide secure access to several web resources via communication port(s), but in case if even single resource has not valid certificate, communication must be stopped.

Would call that security quarantaine until remediation actions will be taken.

That will directly isolate unsafe online resource until the resource owner take necessary actions to restore secure communication with SSL certificate.

Warning in the browser that web resource is not safe works not really good, could be ignored.

Example of the communication with insecure web resource:Screenshot_20250201_192340_Edge

Kind regards,

Dmytro K.

Azure Private Link
Azure Private Link
An Azure service that provides private connectivity from a virtual network to Azure platform as a service, customer-owned, or Microsoft partner services.
531 questions
Azure Automation
Azure Automation
An Azure service that is used to automate, configure, and install updates across hybrid environments.
1,301 questions
{count} votes

1 answer

Sort by: Most helpful
  1. dmytro-k 5 Reputation points
    2025-02-04T14:32:18.76+00:00

    Hello,

    Additionally I did provide my idea and feedback via following link:

    https://feedback.azure.com/d365community/idea/9a8b6255-58e1-ef11-b542-000d3a0fe806

    Kind regards,

    Dmytro K.

    1 person found this answer helpful.

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.