Skip to content
This repository has been archived by the owner on Nov 24, 2023. It is now read-only.

Support TLS and online reload with new certs #467

Closed
DanielZhangQD opened this issue Feb 5, 2020 · 4 comments
Closed

Support TLS and online reload with new certs #467

DanielZhangQD opened this issue Feb 5, 2020 · 4 comments
Labels
type/feature-request This issue is a feature request

Comments

@DanielZhangQD
Copy link

Feature Request

Is your feature request related to a problem? Please describe:

When TiDB cluster enables TLS connection, DM won't work.
Describe the feature you'd like:

DM needs to support TLS connection for security.
Describe alternatives you've considered:

Teachability, Documentation, Adoption, Migration Strategy:

@DanielZhangQD
Copy link
Author

Usually, there will be an expiration of the TLS certificates, we also have to support online reload with new certificates instead of just restart the process.
Suggest all the PingCAP components and tools to implement the cert reload feature in the same way.

@DanielZhangQD DanielZhangQD changed the title Support TLS for security Support TLS and online reload with new certs Feb 7, 2020
@kennytm
Copy link
Contributor

kennytm commented Feb 7, 2020

@DanielZhangQD that sounds complex enough not to implement it individually in each tool, but to create a common package. Does that already exist?

@DanielZhangQD
Copy link
Author

I am afraid no.

@WangXiangUSTC
Copy link
Contributor

finish in #569

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
type/feature-request This issue is a feature request
Projects
None yet
Development

No branches or pull requests

3 participants