Azure Key Vault Secrets Expiration Detection Service

Goal

Azure Key Vault Secrets Expiration Detection Service scans cloud secrets, checks their expiration, and sends out notifications to responsible engineering teams. This helps to predict incidents in case if secret/certificate/key expired. 

Key Scenarios

1. Azure Key Vault Secrets Expiration Detection Service

Azure Key Vault Secrets Expiration Detection Service scans cloud secrets, checks their expiration, and sends out notifications to responsible engineering teams. 

2. Azure Key Vault Secrets Expiration Detection Service impact to Customers

Azure Key Vault Secrets Expiration Detection Service checks expiration of secrets, key, certificates and sends out notifications to responsible engineering teams about expiration of certificates, key, and secrets. Responsible engineering team gets information to update expiration date of certificate, key and secrets before or on time. All dependent services/applications on certificate, key & secret run without any issues. It will be prevented to impact business as well as revenue.

Requirements

First Business Case

The first business case is when Azure Key Vault Secrets Expiration Detection Service detected that secret near to expire between 10 to 30 days. In this case, Azure Key Vault Secrets Expiration Detection Service will send out an email notification to the responsible team with information that a secret/certificate are going to be expired. 

Second Business Case

The second business case is when Azure Key Vault Secrets Expiration Detection Service detected that secret near to expire in less than 10 days. In this case, Azure Key Vault Secrets Expiration Detection Service will send out a second email reminder.

Third Business Case

The third business case is when Azure Key Vault Secrets Expiration Detection Service detected that secret is expired. In this case, Azure Key Vault Secrets Expiration Detection Service will create an incident in an Alert Management System.