Linux TLS/SSL certificate expiration
Check for expiring TLS certificates on Linux hosts by advancing the system clock forward one day, one week, and one month. Detect certificates that will expire before they cause outages.
Time Travel
Linux
Windows
5 minutes
How this Scenario works
This Scenario advances the system clock on your Linux hosts forward by one day, one week, and one month. This triggers certificate validation logic and reveals any TLS/SSL certificates that will expire within those time windows—without waiting for them to actually expire.
Why run this Scenario?
- Proactively identify expiring certificates on Linux infrastructure before they cause production outages.
- Test certificate rotation automation on Linux systems, including Certbot and ACME integrations.
- Verify that monitoring detects upcoming certificate expirations on your Linux hosts.
- Validate that NTP synchronization recovers correctly after the time shift on Linux.
What to expect when you run it
If a TLS certificate expires without renewal, the service on the Linux host fails gracefully and alerts trigger immediately.
More Scenarios to try
Avoid downtime. Use Gremlin to turn failure into resilience.
Gremlin empowers you to proactively root out failure before it causes downtime. See how you can harness chaos to build resilient systems by requesting a demo of Gremlin.
