Browse Help Center guides
Monitor guides
TLS certificate monitoring
Monitor HTTPS certificate validity and expiry, understand fixed cadence, and interpret source-limited results.
When to use TLS#
Use TLS monitoring for an HTTPS hostname whose certificate validity and expiry are operationally important. It complements Uptime; it does not replace normal website availability checks.
Create the monitor#
- Open Monitors and click New Monitor.
- Select TLS.
- Enter a friendly label.
- Enter an HTTPS URL, normally the public homepage or intended hostname.
- Create the monitor.
TLS uses a fixed 12-hour cadence. It is not a one-minute web probe.
Expected result#
A healthy result confirms that usable certificate evidence was obtained and shows expiry context. Warning/Expiring indicates attention is needed before expiry. Unknown or source-limited means Watchfox could not establish a definitive state from the available source and should be investigated rather than treated as a confirmed outage.
Common mistakes#
- Entering an HTTP-only URL instead of the intended HTTPS hostname.
- Assuming TLS Up proves the application itself is available.
- Treating a fixed lower cadence as a scheduler failure.
- Ignoring hostname differences such as
wwwversus the apex domain. - Interpreting Unknown as certificate expiry without checking the evidence.