Certificate Scan Inventory

Prerequisite: Verify that your user role has the required ACF permission to view code scan inventory. To enable ACF permission, click here.

Viewing the Certificate Scan Inventory

To view the certificate scan inventory:
To view the certificate scan inventory, go to Menu > Quantum Trust Hub > Inventory > Certificate.
You will be redirected to the Certificate Scan Inventory in the Quantum Trust Hub.

This certificate inventory provides a category-wise comprehensive view of all certificates within your organization’s cryptographic infrastructure. For a PQC-focused analysis, you can customize the inventory view to display only the columns that are relevant to your requirement.

AppViewX has introduced the following new columns to indicate the PQC readiness of your certificates and to enable prompt remediation, as required:
Table 1. Column descriptions for the certificate scan inventory
Column Description
PQC Risk Severity PQC Risk Severity indicates how severely a certificate could be impacted by a potential quantum attack. Based on the certificate PQC score calculated for a certificate, this column displays one of the following values:
  • Critical
  • High
  • Medium
  • Low (Quantum Safe)
Quantum Readiness Quantum readiness is a measure of an organization’s preparedness to address the impact of quantum computing over cryptography. Your certificate infrastructure will be considered quantum ready when it is deemed capable of protecting your data, systems, and communication against the threats posed by quantum computers to today’s encryption methods.
This column in the inventory indicates the quantum readiness of individual certificates using the following values:
  • Quantum Resistant (certificate uses PQC algorithms for encryption that can withstand attacks from classical as well as quantum computers)
  • Quantum Vulnerable (certificate uses classical encryption algorithms that can be broken by quantum computers)
  • Hybrid (certificate uses a cryptographic approach that combines the current classical algorithms with PQC algorithms)
For instructions on customizing the certificate inventory view, click here.

Customizing Columns in the Server Certificate Inventory

This topic will be listed here (please scroll to the end of this page) for the server certificate inventory. Similarly, this same topic will be added for the client, code signing, root, intermediate, and device certificate inventory documentation.

For the certificate inventory, AppViewX lets you show/hide columns in the certificate inventory based on the data you want to display. Selecting which columns to display lets users focus on relevant data, improves readability, and speeds up analysis and reporting.

To customize the columns in the server certificate inventory:

  1. Go to Menu > CERT+ > Certificate Inventory > Server.
    The Server Certificate inventory is displayed.
  2. From the toolbar, click Columns.
    The Columns dialog box is displayed.
  3. Select/Clear the checkboxes corresponding to the columns you want to show/hide in the inventory.
    Tip:
    • You can also use the Search field to search for the required columns.
    • To select all columns, select the Select all checkbox from the dialog box.
    • To reset your changes, click Reset to previous column selection.
    Note: Columns marked with an * are mandatory for displaying in the inventory and hence cannot be hidden.
  4. Click Save.
    The inventory is updated according to your selection.

Customizing Columns to View PQC Readiness

Starting v2025.0.0.0, AppViewX introduces PQC capabilities for CERT+ that will review and provide a holistic view of the PQC readiness of your certificate inventory.

PQC Readiness is a measure of your organization's preparedness for transitioning to PQC algorithms to resist probable attacks from quantum computers.

To be able to view the PQC readiness of your certificates, you will be required to enable the following columns for display in the certificate inventory:
Column Description
PQC Risk Severity PQC Risk Severity indicates how severely a certificate could be impacted by a potential quantum attack. Based on the certificate PQC score calculated for a certificate, this column displays one of the following values:
  • Critical
  • High
  • Medium
  • Low (Quantum Safe)
Quantum Readiness Quantum readiness is a measure of an organization’s preparedness to address the impact of quantum computing over cryptography. Your certificate infrastructure will be considered quantum ready when it is deemed capable of protecting your data, systems, and communication against the threats posed by quantum computers to today’s encryption methods.
This column in the inventory indicates the quantum readiness of individual certificates using the following values:
  • Quantum Resistant (certificate uses PQC algorithms for encryption that can withstand attacks from classical as well as quantum computers)
  • Quantum Vulnerable (certificate uses classical encryption algorithms that can be broken by quantum computers)
  • Hybrid (certificate uses a cryptographic approach that combines the current classical algorithms with PQC algorithms)