Campus Certificate Issuer Status

Tool Search: Campus Certificate Issuer Status

The Campus Certificate Issuer Status tool is a read-only dashboard that provides a quick health check of your district's CCI (Campus Certificate Issuer) certificate and its associated AWS connectivity. Campus app servers connect to Amazon Web Services (AWS) to utilize certain cloud features, such as document storage and voice/text message dispatching. 

screenshot of the Campus Certificate Issuer Status tool

Understand the Dashboard

The table below explains each field on the dashboard:

FieldDescription
CCI Cert StatusIndicates the status of the CCI certificate
  • Valid - Certificate exists, and its expiration date is in the future
  • Invalid - Certificate exists but is expired
  • No - No CCI certificate was found
CCI Cert NameThe name on the certificate (identifies which server/app it belongs to). 
CCI Cert Expiration DateIndicates when the certificate expires. 
NOTE: This is managed by Infinite Campus. If the date is approaching, you do not need to notify Campus; processes are in place to ensure new certificates are issued on time. 
AWS Credential Indicates if the app server can successfully authenticate with AWS cloud services.
AWS Credential Expiration TimeIndicates when the current AWS session credential expires.
Note: AWS issues temporary, rotating credentials, so the expiration date may be in the near future. You do not need to notify Campus; processes are in place to ensure this certificate is managed and rotated appropriately. 
AWS RolesAnywhere Server StatusIndicates if the server can reach the service that issues temporary credentials.
  • Active = Yes
  • Inactive = No 
CCI Server StatusIndicates if the server can reach the CCI service. 
  • Active = Yes
  • Inactive = No

Troubleshooting

  • "No" cert status: The CCI certificate file may be missing from the app server's WEB-INF/cci/ directory, or the CCIProvider never initialized for that app.
  • "Invalid" cert status: The certificate has expired and needs renewal.
  • "Invalid" AWS credential: The Roles Anywhere session couldn't be established. Could be a certificate issue, a network issue, or an AWS-side configuration problem.
  • "Inactive" server statuses: Network connectivity problem between the app server and the CCI/RolesAnywhere endpoints, or those services are down.