Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-37494

RFE: Ability to change TLS/SSL certificate used by MongoDB without server restart

    XMLWordPrintableJSON

Details

    • Improvement
    • Status: Closed
    • Minor - P4
    • Resolution: Duplicate
    • None
    • None
    • Security
    • None

    Description

      The primary use case here is supporting Let's Encrypt (LE) signed certificates with MongoDB. LE is fast becoming the simplest (and cheapest) way to get proper signed certificates. However their short validity (90 days, see https://letsencrypt.org/2015/11/09/why-90-days.html) is serious issue in adopting them for database servers.

      The ability to swap certificates without turning off the MongoDB server completely would be really useful. Wondering what is the MongoDB position/opinion on this.

      Attachments

        Issue Links

          Activity

            People

              nick.brewer Nick Brewer
              vaibhaw Vaibhaw Pandey
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

              Dates

                Created:
                Updated:
                Resolved: