Skip to content

Latest commit

 

History

History
51 lines (39 loc) · 8.92 KB

ssl-certificate-asset-filters.md

File metadata and controls

51 lines (39 loc) · 8.92 KB
titletitleSuffixdescriptionauthorms.authorms.servicems.datems.topic
SSL certificate asset filters
Defender EASM SSL certificate asset filters
This article outlines the filter functionality available in Microsoft Defender External Attack Surface Management for SSL certificate assets specifically, including operators and applicable field values.
danielledennis
dandennis
defender-easm
12/14/2022
how-to

SSL certificate asset filters

These filters specifically apply to SSL certificate assets. Use these filters when searching for a specific cert, or select group of certs.

Defined value filters

The following filters provide a drop-down list of options to select. The available values are pre-defined.

Filter nameDescriptionValue formatApplicable operators
Self SignedIndicates whether the SSL certificate was self-signed.True / FalseEqualsNot Equals
Cert ExpirationThe date when a certificate will expire.Expired, Expires in 30 days, Expires in 60 days, Expires in 90 days, Expires in > 90 daysEqualsNot EqualsInNot In
Cert ValidationIndicates the method used to validate the cert, which is indicative of itss trustworthiness.Domain, Organization, ExtendedEqualsNot EqualsInNot InEmptyNot Empty

Free form filters

The following filters require that the user manually enters the value with which they want to search. This list is organized by the number of applicable operators for each filter, then alphabetically.

Filter nameDescriptionValue formatApplicable operators
Cert Key SizeThe number of bits within a SSL certificate key.2048EqualsNot EqualsInNot InGreater Than or Equal ToLess Than or Equal ToBetweenEmptyNot Empty
Cert Key AlgorithmThe key algorithm used to encrypt the certificate.RSAEqualsNot EqualsStarts withDoes not start withInNot inStarts with inDoes not start with inContainsDoes Not ContainContains InDoes Not Contain InEmptyNot Empty
Cert Serial NumberThe serial number associated with a certificate.426f9c536bf46487c641d1fc20529b39bb3
Cert Signature AlgorithmThe hash algorithm used to sign the certificate.SHA256withRSA
Cert Signature Algorithm OidThe OID identifying the hash algorithm used to sign the certificate request.1.2.840.113549.1.1.5
Cert Issuer Alternative NameAny alternative name(s) of the issuer of the certificate.ZeroSSL ECC Domain Secure Site CAEqualsNot EqualsStarts withDoes not start withMatchesDoes Not MatchInNot inStarts with inDoes not start with inMatches inDoes not match inContainsDoes Not ContainContains InDoes Not Contain InEmptyNot Empty
Cert Issuer Common NameThe common name of the issuer.ZeroSSL ECC
Cert Issuer OrganizationThe organization linked to the issuer.GoDaddy.com, Inc.
Cert Issuer Organizational UnitIndicates the department within an organization that is responsible for the issuing of the certificate.http://certs.godaddy.com/repository/
Cert Subject Alternative NameAny alternative names for the subject (e.g. protected entity) of the SSL certificate.www.host.contoso.com
Cert Subject Common NameThe Issuer Common Name of the subject of the SSL certificate.host.contoso.com
Cert Subject OrganizationThe organization linked to the subject of the SSL certificate.Contoso Ltd.
Cert Subject Organizational UnitIndicates the department within a subject organization that is responsible for the certificate.Compliance

Next steps

Understanding asset details

Inventory filters

close