Ticketing System Integration for SSL Certificates9 minutes to read
PAM360 integrates with enterprise ticketing systems to automatically create service requests for vulnerable or expiring SSL certificates. The integration ensures that periodic tickets are created in the ticketing system to alert the technicians and take timely action to reduce the security threats posed by expiring or vulnerable SSL certificates. The frequency of service request creation for expiring and vulnerable tickets will be governed by the notification policies set for the same by the user.
1. How does the Ticketing System Integration for SSL Certificates Work?PAM360 allows you to set up periodic notifications, in the form of emails or syslog messages, to check for expiring or vulnerable SSL certificates in the repository. To enable the ticketing system for SSL certificates, enter the server URL of the machine where the ticketing system is running in PAM360 and ensure that the ticketing system host is accessible by the PAM360 server. PrerequisiteTickets are created in the ticketing environment based on the notification policy set for SSL certificates that are expiring and/or deemed as vulnerable in PAM360. Click here to learn more about how to set up notifications for the same. 1.1 SSL ExpiryThe SSL expiry ticket is created as part of the default expiry notifications sent by PAM360, as well as the scheduled SSL expiry reports. The notifications are triggered whenever a scheduled expiry report or default expiry notification task is run in PAM360.
1.2 SSL VulnerabilityThe SSL vulnerability ticket is created as part of the default schedule for vulnerability scan done by PAM360, as well as manual scans. A ticket will be created for each vulnerability, detected during the vulnerability scan.
Note: The vulnerability tickets will only contain details of weak ciphers found during the scan i.e., the ticket will not list the health of other ciphers available in that particular server if they are not found to be vulnerable. 2. Steps to Integrate Ticketing Systems with PAM360Listed below are the ticketing systems currently supported by PAM360:
2.1 ServiceDesk Plus
2.1.1 Format for SSL Expiry tickets in ServiceDesk PlusSubject: SSL Certificate <common name> expiry Description: The SSL Certificate <common name> expiring soon, please take care 2.1.2 Format for SSL Vulnerability tickets in ServiceDesk PlusSubject: Vulnerabilities for <domain name> Description: <Domain Name> (this could be the SAN) If any vulnerabilities such as OCSP, CRL, HeartBleed, or Poodle are found, then the corresponding Signature Algorithm and expiry date information will also be added here. Scan Time:Scanned by: PAM360 running at https://<PAM server-url>:<port> 2.2 ServiceNow
2.2.1 Format for SSL Vulnerability tickets in ServiceNowShort Description: SSL Certificate <common name> expiry Additional Comments: The SSL Certificate <common name> expiring soon, please take care 2.2.2 Format for SSL Vulnerability tickets in ServiceNowShort Description: Vulnerabilities for <domain name> Additional Comments: <Domain Name>(this could be the SAN) If any vulnerabilities such as OCSP, CRL, HeartBleed, or Poodle are found, then the corresponding Signature Algorithm and expiry date information will also be added here. Scan Time:Scanned by: PAM360 running at https://<PAM server-url>:<port> | |