Repository navigation
Lcs 1184 auto renewal for ssl certs and enable ssl health check - #321
Merged
mrlockstar merged 2 commits intoOct 6, 2026
Merged
mrlockstar merged 2 commits into
mrlockstar merged 2 commits into
Conversation
mrlockstar
force-pushed
the
LCS-1184-Auto-renewal-for-SSL-certs-and-enable-SSL-health-check
branch
2 times, most recently
from
October 2, 2026 10:16
f9adf4c to
77a552e
Compare
The SSL certificates are semi managed in Front door and you can renew the certificates via the console; however, this does not happen automatically for the apec domain and instead a manual check needs to occur. Please note that this script is triggered off the ADO pipeline and uses the MI that is used to deploy the terraform in Azure.
mrlockstar
force-pushed
the
LCS-1184-Auto-renewal-for-SSL-certs-and-enable-SSL-health-check
branch
from
October 2, 2026 10:18
77a552e to
f184524
Compare
micjustus-nc
reviewed
Oct 2, 2026
micjustus-nc
reviewed
Oct 2, 2026
micjustus-nc
reviewed
Oct 2, 2026
mrlockstar
force-pushed
the
LCS-1184-Auto-renewal-for-SSL-certs-and-enable-SSL-health-check
branch
from
October 6, 2026 14:17
09768ba to
63cf8e8
Compare
mrlockstar
force-pushed
the
LCS-1184-Auto-renewal-for-SSL-certs-and-enable-SSL-health-check
branch
from
October 6, 2026 15:17
63cf8e8 to
feb9740
Compare
|
jamiefalcus
approved these changes
Oct 6, 2026
mrlockstar
deleted the
LCS-1184-Auto-renewal-for-SSL-certs-and-enable-SSL-health-check
branch
October 6, 2026 15:28
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.

Description
This was based on a script from another project; however, it did not work the exact way we wanted it to so it was modified via AI and tested using the lungcs environment.
It was used to renew both the preprod and prod certificate (there was no risk to live service).
https://github.com/DFE-Digital/teacher-services-cloud/blob/main/.github/workflows/afd-domain-renewal.yml
Evidence if it working can be seen here: -
https://dev.azure.com/nhse-dtos/lung-cancer-screening/_build?definitionId=142&_a=summary
preprod
https://dev.azure.com/nhse-dtos/lung-cancer-screening/_build/results?buildId=46397&view=results
prod
https://dev.azure.com/nhse-dtos/lung-cancer-screening/_build/results?buildId=46388&view=results
Context
Type of changes
Checklist
Sensitive Information Declaration
To ensure the utmost confidentiality and protect your and others privacy, we kindly ask you to NOT including PII (Personal Identifiable Information) / PID (Personal Identifiable Data) or any other sensitive data in this PR (Pull Request) and the codebase changes. We will remove any PR that do contain any sensitive information. We really appreciate your cooperation in this matter.