<?xml version="1.0" encoding="UTF-8" ?>
<?xml-stylesheet type="text/xsl" href="https://devzone.nordicsemi.com/cfs-file/__key/system/syndication/rss.xsl" media="screen"?><rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:slash="http://purl.org/rss/1.0/modules/slash/" xmlns:wfw="http://wellformedweb.org/CommentAPI/" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Is it possible to read TLS certificate expiry date within application</title><link>https://devzone.nordicsemi.com/f/nordic-q-a/92911/is-it-possible-to-read-tls-certificate-expiry-date-within-application</link><description>Hello, 
 Just want to check that is there any mechanism available to check or monitor the expiry date of TLS certificate used in the project? Is there any API available so that application can keep watch on it ? 
 Thank you! 
 Regards, 
 Chetan</description><dc:language>en-US</dc:language><generator>Telligent Community 13</generator><lastBuildDate>Sat, 12 Nov 2022 00:14:18 GMT</lastBuildDate><atom:link rel="self" type="application/rss+xml" href="https://devzone.nordicsemi.com/f/nordic-q-a/92911/is-it-possible-to-read-tls-certificate-expiry-date-within-application" /><item><title>RE: Is it possible to read TLS certificate expiry date within application</title><link>https://devzone.nordicsemi.com/thread/395408?ContentTypeID=1</link><pubDate>Sat, 12 Nov 2022 00:14:18 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:f17b6f0e-f845-4785-9a13-791dba908eb7</guid><dc:creator>kkksss</dc:creator><description>&lt;p&gt;Hi,&lt;/p&gt;
&lt;p&gt;Trying to verify by reading back the certificates and comparing with a CRC.&lt;/p&gt;
&lt;p&gt;I&amp;#39;m able to read the CA_CHAIN,&amp;nbsp;but cannot read the Public_Cert and the Private_Cert.&lt;/p&gt;
&lt;p&gt;Is that for obvious security reasons that you wouldn&amp;#39;t be able to read those certs?&lt;/p&gt;
&lt;p&gt;In that case is there a way for getting a length or a checksum of those fields?&lt;/p&gt;
&lt;p&gt;I have used the modem_key_mgmt_cmp and that works for all the above three certificates.&lt;/p&gt;
&lt;p&gt;That is probably sufficient to confirm that the fields have been written successfully.&lt;/p&gt;
&lt;p&gt;Thank you&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is it possible to read TLS certificate expiry date within application</title><link>https://devzone.nordicsemi.com/thread/390990?ContentTypeID=1</link><pubDate>Mon, 17 Oct 2022 12:19:23 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:0ccdae76-4c56-4a13-a09f-df2f863b029e</guid><dc:creator>Chetan Kale</dc:creator><description>&lt;p&gt;Hi,&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Thank you for the clarification.&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Regards,&lt;/p&gt;
&lt;p&gt;Chetan&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item><item><title>RE: Is it possible to read TLS certificate expiry date within application</title><link>https://devzone.nordicsemi.com/thread/390938?ContentTypeID=1</link><pubDate>Mon, 17 Oct 2022 09:38:00 GMT</pubDate><guid isPermaLink="false">137ad170-7792-4731-bb38-c0d22fbe4515:9ad67135-4541-418d-b833-11c36789c0ea</guid><dc:creator>H&amp;#229;kon Alseth</dc:creator><description>&lt;p&gt;Hi,&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Unfortunately, there&amp;#39;s no API or way to read out the expiration of a certificate.&lt;/p&gt;
&lt;p&gt;You must manually keep track of which certificates that you provide to the nRF and when they expire.&lt;/p&gt;
&lt;p&gt;&amp;nbsp;&lt;/p&gt;
&lt;p&gt;Kind regards,&lt;/p&gt;
&lt;p&gt;Håkon&lt;/p&gt;&lt;div style="clear:both;"&gt;&lt;/div&gt;</description></item></channel></rss>