acm-certificate-expiration-check - AWS Config


Checks if AWS Certificate Manager Certificates in your account are marked for expiration within the specified number of days. Certificates provided by ACM are automatically renewed. ACM does not automatically renew certificates that you import. The rule is NON_COMPLIANT if your certificates are about to expire.


Trigger type: Configuration changes

AWS Region: All supported AWS regions except China (Beijing), Asia Pacific (Hyderabad), Asia Pacific (Osaka), Europe (Milan), Europe (Spain), Europe (Zurich) Region


daysToExpiration (Optional)
Type: int
Default: 14

Specify the number of days before the rule flags the ACM Certificate as noncompliant.

AWS CloudFormation template

To create AWS Config managed rules with AWS CloudFormation templates, see Creating AWS Config Managed Rules With AWS CloudFormation Templates.