Discover and Push AWS S3 Client Certificates

Use this procedure to verify S3-discovered client certificates in KUBE inventory and push a selected certificate to a target device.

  • Client certificate discovery through the S3-integrated CLOUDKUBE flow is configured.
  • The target connector and push approval workflow are available for the selected certificate.
  1. Go to Menu > KUBE > VISIBILITY > Client > All.
    The Client Certificate inventory page is displayed.
  2. Use search or filters to locate the required S3-discovered client certificate.
    The matching certificate entry is displayed in the inventory list.
  3. Select the certificate and open its detailed or topology view.
    Certificate details are displayed with available actions.
  4. Click Push to Device.
    The push confirmation dialog box is displayed.
  5. Enter comments if required, then submit the push request.
    A push request is created and workflow status tracking starts.
  6. Complete approval and implementation actions based on your configured policy workflow.
    The push request progresses through approval and implementation states.
  7. Monitor the request or workflow status until it is marked Completed.
    The client certificate push operation is completed for the selected certificate.

The S3-discovered client certificate is verified in KUBE visibility and pushed to the target device through the standard workflow.

Note: If Push to Device is not available, verify connector association and policy permissions for the selected certificate.