Finding assets using filters on the Certificate Inventory list

You can use filters to quickly find items in Venafi Platform inventories. Items that can be filtered include certificates, SSH keys, devices, identities, credentials, or Server Agents.

From any inventory list you can apply one or more filters to narrow the results. For example, use filters when you want to find a specific item, or find a group of items that meet a more specific set of criteria.

On the Certificate Inventory, you must click the Apply Filters button at the top of the filter sidebar to see changes applied. This helps you by allowing you to specify multiple filter criteria before applying the filter and running the filter query, saving you time when working with certificates.

Filter Panel Groups and Filter Types

The filter panel contains the following filter groups:

  • Quick Filters. These are built-in filters provided by the system that help you identify common issues with your keys and certificates.
  • Common Filters. These are filter fields that you will commonly use to find a specific item.
  • Certificate Properties. This is a detailed list of all certificate properties, allowing you to filter on any property on the certificate. You can learn more about certificate properties in About certificate object settings.
  • Validation. This is a list of validation properties, allowing you to filter the certificates based on their validation results.
  • Discovery. This is a list of filters that allow you to find certificates based on discovery information.

EXAMPLE   Show all certificates with a specific signature algorithm.

Suppose you need to filter the Inventory > Certificates list in TLS Protect to show only user certificates with a signature algorithm of sha256RSA. Click Certificate Properties and then select sha256RSA from the Signature Algorithm drop-down list, then click Apply Filters.

EXAMPLE  Show which agents have not checked in for awhile.

Suppose you need to know which Server Agents have not checked in to Trust Protection Platform for the past 30 days. In TLS Protect, click Clients > Registered Clients on the menu bar to open the Registered Clients list view. All registered clients (which you must have permissions to view) appear in the list according to the default search criteria. To find the items that meet your unique criteria, apply the Not Seen In filter by setting it to 30 days. The list would then instantly update to display only those registered clients that have not checked in within the past 30 days.

Related Topics Link IconRelated Topics