Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-37494

RFE: Ability to change TLS/SSL certificate used by MongoDB without server restart

    XMLWordPrintableJSON

Details

    • Icon: Improvement Improvement
    • Resolution: Duplicate
    • Icon: Minor - P4 Minor - P4
    • None
    • None
    • Security
    • None

    Description

      The primary use case here is supporting Let's Encrypt (LE) signed certificates with MongoDB. LE is fast becoming the simplest (and cheapest) way to get proper signed certificates. However their short validity (90 days, see https://letsencrypt.org/2015/11/09/why-90-days.html) is serious issue in adopting them for database servers.

      The ability to swap certificates without turning off the MongoDB server completely would be really useful. Wondering what is the MongoDB position/opinion on this.

      Attachments

        Activity

          People

            nick.brewer Nick Brewer
            vaibhaw Vaibhaw Pandey
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: