Menu
AWS Certificate Manager
User Guide (Version 1.0)

Check a Certificate's Renewal Status

You can use the AWS Certificate Manager console or the ACM API to check the status of ACM's managed renewal of an Amazon-issued certificate.

To check the status of a certificate renewal (console)

  1. Open the AWS Certificate Manager console at https://console.aws.amazon.com/acm/home.

  2. Expand the certificate whose renewal status you are checking. In the Details section, find the certificate's Renewal Status. For more information about what the status means, see What a Certificate's Renewal Status Means. If you don't see the Renewal Status label, that means ACM hasn't started the managed renewal process for this certificate.

To check the status of a certificate renewal (ACM API)

Use the DescribeCertificate operation in the ACM API. The following example shows how to do this with the AWS Command Line Interface (AWS CLI).

Copy
$ aws acm describe-certificate --certificate-arn arn:aws:acm:us-east-2:111122223333:certificate/97b4deb6-8983-4e39-918e-ef1378924e1e

In the response, note the value in the RenewalStatus field. For more information about what the status means, see What a Certificate's Renewal Status Means. If you don't see the RenewalStatus field, that means ACM hasn't started the managed renewal process for this certificate.

What a Certificate's Renewal Status Means

A certificate renewal has four possible statuses.

Pending automatic renewal

ACM is attempting to automatically validate the domain names in the certificate. You don't need to do anything.

Pending validation

ACM couldn't automatically validate one or more domain names in the certificate. You must take action to validate these domain names, or the certificate won't be renewed. Look for an email from ACM, and then follow the link in that email to validate your domain.

Success

All domain names in the certificate are validated, and ACM renewed the certificate. No further action is required.

Failed

One or more domain names were not validated before the certificate expired, and ACM did not renew the certificate. You can request a new certificate.