Support rotating TLS certificates used by the gRPC server

XMLWordPrintableJSON

    • Type: New Feature
    • Resolution: Fixed
    • Priority: Major - P3
    • 7.2.0-rc0
    • Affects Version/s: None
    • Component/s: None
    • None
    • Fully Compatible
    • Service Arch 2023-10-02, Service Arch 2023-10-16, Service Arch 2023-10-30
    • None
    • None
    • None
    • None
    • None
    • None
    • None

      The current gRPC Server implementation only supports reading a certificate at startup and using it for the duration of its lifetime. We should extend this to allow rotating certificates without restarting the server through the rotateCertificates command, similar to what can be done today with asio.

      See the design for details.

      https://www.mongodb.com/docs/manual/reference/command/rotateCertificates/

            Assignee:
            Erin McNulty
            Reporter:
            Patrick Freed
            Votes:
            0 Vote for this issue
            Watchers:
            3 Start watching this issue

              Created:
              Updated:
              Resolved: