- 3 minutes to read

Manage Monitoring of Key Vault in Azure

Don't let your business down! Get alerts for ageing Keys and Secrets and gain access to details without the Azure portal.

In Azure, Certificates deploys to different types of services. There are two types of collections you need to deal with:

  1. Azure Key Vault in general - This guide
  2. Certificates deployed to Azure API Management Service Certificates user guide.

In addition, Nodinite also has monitoring of other Certificates in other use cases and environments:

For your business and other end-users; Delegate the power to manage, and gain insights to selected Key Vault in Azure. Nodinite Monitoring aids the support and maintenance team's people to have additional data for root cause analysis without having individual direct access to the Microsoft Azure Portal. Reducing access limits the number of attack vectors and having fewer people with fewer access rights minimizes the risk for disruption of mission-critical services.

graph LR subgraph "Nodinite Azure Key Vault and Certificate Monitoring" roA[fal:fa-monitor-heart-rate Azure Agent] ---- roM(fal:fa-display Monitoring) end subgraph "Azure" roSub[fal:fa-credit-card Subscription] roKV[fal:fa-unlock-alt Key Vault] roKVKeys(fal:fa-key Keys) roKVSecrets(fal:fa-user-secret Secrets) roFx[fal:fa-bolt Functions] roFxs(fal:fa-file-certificate Certificates) roWS1(fal:fa-globe Web Sites) roWS1s(fal:fa-file-certificate Certificates) roOther(fal:fa-gear ...) roOthers(fal:fa-file-certificate Certificates) roAPI[/API Management Services/] end roM --- roSub roSub --- roFx roFx -.- roFxs roSub --- roKV roKV -.- roKVKeys roKV -.- roKVSecrets roSub --- roWS1 roWS1 -.- roWS1s roSub -.- roOther roOther -.- roOthers roSub -.- |Separate Monitoring| roAPI
Application Management Team IT Operations Business
Let your AM team have the power to be pro-active without disturbing the IT operations team Stay in complete control with access to everything Give your business information and self-service for solutions built using Key Vault in Azure

Management Features

For Resources in the Role-based Monitor Views with the Remote Actions privilege grant; The following Remote Actions grouped by Category are available:

Category Monitoring Actions Metrics/Statistics
Key Vault - Details
Edit
-

As an Administrator with access to the Configuration for Monitoring Agents, the additional Monitoring options are available:

Monitoring Remote Configuration
Monitoring Key Vault
  • Add and Remove Subscriptions
  • Enable and Disable the monitoring as specified
  • Manage thresholds

    Certificate

    The 'Certificate' Category provides one Resource for each Certificate found using the configuration with the specified display name as the Resource name.

    Key Vaults
    Example from a Monitor View with a list of 'Key Vaults'.

    See Monitoring Key Vault for additional details about Key Vault Monitoring.

    The Key Vault category provides Resources that displays the evaluated monitored state according to built-in rules.

    The following Remote Actions are available for the Certificate Category:

    Remote Actions

    Details

    To view the selected Key Vault Resource; Click the Action button and then click on the Details menu item within the 'Control Center' section.

    Details Menu Action
    Use the 'Details' action menu item to open the details modal for the selected Key Vault.

    Next, click the option to present the modal.
    Key Vault Details

    Edit thresholds

    You can Edit the monitoring thresholds, click on the Action button and then click on the Edit menu item within the 'Control Center' section.

    Action to Edit thresholds
    Example: Edit thresholds Action button menu item.

    Next, click the option to present the modal.
    Edit thresholds modal
    Example of editing monitoring thresholds for selected 'Key Vault' store.

    You can manage the following monitoring properties:

    • Warning - Number of days before Certificate expires to trigger the Warning alert
    • Error- Number of days before Certificate expires to trigger the Error alert
    • Description - The user-friendly description of this specific Certificate monitoring configuration

    Click the Save button to persist changes.
    Save
    Save button.


    Next Step

    Monitoring Key Vault
    Configuring the Nodinite Azure Monitoring agent

    Azure Monitoring Overview
    Prerequisites for Azure Agent