etcd-io / etcd-io/website

Missing page that explain how to migrate an existing cluster to use TLS for peer and/or client communications

Open
#604 0 comments 0 reactions 0 assignees View on GitHub
Dominant language
HTML
Stars
194
Forks
354
Avg merge
9d 12h
Merged PRs (30d)
3

Description

There are intructions on how bootstrap a new cluster with TLS capabilities, but none that explains how an existing running cluster could be hardened to use TLS security for peers, clients or both.
Simply providing the TLS files (cert, private key and CA cert) and changing the urls from http to https doesn't work: the result will be a lot of `tls: first record does not look like a TLS handshake` errors.

Contributor guide

No contributing guide indexed for this repository

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.