Details
-
New Feature
-
Resolution: Fixed
-
Major - P3
-
None
-
None
-
None
-
Fully Compatible
-
Service Arch 2023-10-02, Service Arch 2023-10-16, Service Arch 2023-10-30
Description
The current gRPC Server implementation only supports reading a certificate at startup and using it for the duration of its lifetime. We should extend this to allow rotating certificates without restarting the server through the rotateCertificates command, similar to what can be done today with asio.
See the design for details.
https://www.mongodb.com/docs/manual/reference/command/rotateCertificates/