InfraNestInfraNest

SSL certificates

Where certificates come from

InfraNest finds your certificates in several ways and combines them all into one deduplicated inventory. Each certificate is labelled with where it was found.

Certificates that appear in your inventory can come from InfraNest itself, from providers you connect, or from your own manual additions. This article explains where each one comes from and how to add more.

Overview

  • InfraNest automatically finds certificates through several sources and combines them into a single, deduplicated list under Certificates.
  • Each certificate keeps a record of where it was found, shown as things like found by {source}, Discovered by scan, Imported by agent, or Added manually.
  • You never have to worry about duplicates — matching certificates found by different sources are merged into one entry automatically.

Automatic sources

InfraNest picks up certificates for you in a few ways, without any extra work:

  1. SSL monitors — every time an SSL/TLS uptime monitor under Monitors runs a check, the certificate it sees is added to your inventory.
  2. Connected providers — when you connect AWS (ACM), Cloudflare, Hetzner, IONOS, TransIP, Namecheap or SSL.com under Integrations and turn on the Certificates feature, their certificates sync into your inventory in the background.
  3. Public log (crt.sh) — InfraNest checks public Certificate Transparency logs daily for any certificate recently issued for your domains, even ones you didn't add yourself. This helps you catch Unexpected issuance you weren't aware of.

Import from a provider

  1. Go to Integrations and connect the provider you want, following its Connect guide.
  2. Turn on the Certificates feature for that connection.
  3. Certificates from that provider import automatically and refresh on a regular schedule.
  4. To pull the latest certificates right away instead of waiting for the schedule, use Sync now on the connection.

Add certificates yourself

If a certificate isn't picked up automatically, you can add it directly:

  1. Go to Certificates and select Add certificate.
  2. Choose Scan an endpoint to have InfraNest fetch the certificate from a live server, or paste the certificate manually.
  3. Select Add to save it to your inventory.

NoteYou can also bulk-import certificates using an agent, which is useful for sending many certificates at once from internal servers. These appear in your inventory labelled Imported by agent.

Tips

TipIf a certificate looks out of date after connecting a provider, try Sync now on that connection instead of waiting for the next scheduled refresh.

Related articles

Start in seconds

Bring your whole infrastructure into one modern dashboard.

Free plan · No credit card required · Set up in minutes