Details
-
Task
-
Status: Closed (View Workflow)
-
Major
-
Resolution: Fixed
Description
Background
When we need to update server SSL certs for renewal, we have to restart the mariadb server. This can be problematic for production servers where we do not frequently restart the service. This is particularly acute when using short-lived certs such as those provided by LetsEncrypt.
Cert Renewals will be less disruptive it is is possible to issue a command to mariadb server to make the server reload the server certificate and/or CRL, as needed.
A similar case is open for MySQL (refer: https://bugs.mysql.com/bug.php?id=75404), but does not appear to have gained traction.
Acceptance Criteria
- Ability added to flush server SSL certificates, without requiring a server restart.
- Ability added to flush server CRL, without requiring server restart.
Raised this as a task, as I can't raise it as a feature request...
Thanks.
Attachments
Issue Links
- relates to
-
MDEV-19168 mysqladmin implement --flush-ssl
-
- Closed
-
-
MDEV-19341 Make reloadable TLS system variables dynamic
-
- Closed
-
-
MXS-3128 Cannot refresh SSL Certificates without a restart
-
- Closed
-
-
MXS-3197 Ability to refresh SSL certificates without MaxScale restart
-
- Closed
-
-
CONJ-670 MariaDB java connector ability to Refresh SSL certificate
-
- Closed
-
Activity
Field | Original Value | New Value |
---|---|---|
Fix Version/s | 10.4 [ 22408 ] |
Priority | Minor [ 4 ] | Major [ 3 ] |
Link | This issue is part of PT-73 [ PT-73 ] |
Link | This issue is part of PT-73 [ PT-73 ] |
Epic Link | PT-73 [ 68549 ] |
Rank | Ranked higher |
Assignee | Vladislav Vaintroub [ wlad ] |
Status | Open [ 1 ] | In Progress [ 3 ] |
Assignee | Vladislav Vaintroub [ wlad ] | Sergei Golubchik [ serg ] |
Status | In Progress [ 3 ] | In Review [ 10002 ] |
Assignee | Sergei Golubchik [ serg ] | Vladislav Vaintroub [ wlad ] |
Status | In Review [ 10002 ] | Stalled [ 10000 ] |
issue.field.resolutiondate | 2018-12-12 21:59:29.0 | 2018-12-12 21:59:29.06 |
Fix Version/s | 10.4.1 [ 23228 ] | |
Fix Version/s | 10.4 [ 22408 ] | |
Resolution | Fixed [ 1 ] | |
Status | Stalled [ 10000 ] | Closed [ 6 ] |
Link |
This issue relates to |
Link |
This issue relates to |
Workflow | MariaDB v3 [ 87413 ] | MariaDB v4 [ 133552 ] |
Link | This issue relates to MENT-1709 [ MENT-1709 ] |