Like the API to reload client certificates ( /_opendistro/_security/api/ssl/http/reloadcerts ), is there any API to reload CAs also, if not please provide the steps/procedure to reload CAs in opensearh server.
Thanks in advance
Like the API to reload client certificates ( /_opendistro/_security/api/ssl/http/reloadcerts ), is there any API to reload CAs also, if not please provide the steps/procedure to reload CAs in opensearh server.
Thanks in advance
We are still waiting for the resolution. Can anyone provide us a solution please?
Thanks/M
@AshokPonna As far as I know there is no such API. You’ll need to restart the node to replace RootCA certificate. Also this may require a full shutdown of the cluster as the running nodes won’t be aware of a new rootCA in the restarted nodes.