[Action Recommended] Azure Managed TLS certificate has invalid DNS records.

Ankush Gurjar 170 Reputation points
2023-12-20T06:21:55.21+00:00

I got the mail from Microsoft-

What is the meaning that we have AFD Managed certificate, is any impact?

[Action Recommended] Azure Managed TLS certificate has invalid DNS records.

You are receiving this notice as a customer who has an Azure Managed TLS certificate in the Azure Front Door service with invalid DNS records.

Microsoft sent you a notice on 01 December 2023 informing you that Azure Managed certificates stored in Azure Front Door (AFD) would be automatically rotated. For details on why Microsoft is rotating these certificates, refer to the previous notice with tracking ID YLBG-DTZ.

The Azure Front Door service was unable to automatically rotate one or more of your certificates due to invalid DNS records. Customers are recommended to take action to update their certificates.

Recommended Actions

Confirm that the correct DNS CNAME is pointing to your Azure Front Door custom domain or that the required DNS TXT record exists.

Follow the guidance in the link for detailed instructions on how to do this: Domains in Azure Front Door | Microsoft Learn

Additional Support 

If you have any questions or concerns, please open a support case through the Azure Portal at aka.ms/azsupt and reference tracking ID YLBG-DTZ in your case

Azure Front Door
Azure Front Door
An Azure service that provides a cloud content delivery network with threat protection.
858 questions
{count} votes

1 answer

Sort by: Most helpful
  1. KapilAnanth-MSFT 49,616 Reputation points Microsoft Employee Moderator
    2023-12-27T03:39:10.08+00:00

    Hi @Ankush Ambadas Gurjar , Arturo Sanchez

    I got a confirmation from our Product Team that users can ignore this alert as long as the certificates are valid (not yet expired).

    To check this,

    • Navigate to the Front Door
    • Click on "Domain" from the left side
    • Please check the columns "Validation state" , "Certificate state" and "DNS State" to make sure the certificate is valid.

    Kindly let us know if this helps or you need further assistance on this issue.

    Thanks,

    Kapil


    Please don’t forget to close the thread by clicking "Accept the answer" wherever the information provided helps you, as this can be beneficial to other community members.

    1 person found this answer helpful.
    0 comments No comments

Your answer

Answers can be marked as Accepted Answers by the question author, which helps users to know the answer solved the author's problem.