Uploaded image for project: 'Core Server'
  1. Core Server
  2. SERVER-37494

RFE: Ability to change TLS/SSL certificate used by MongoDB without server restart

    • Type: Icon: Improvement Improvement
    • Resolution: Duplicate
    • Priority: Icon: Minor - P4 Minor - P4
    • None
    • Affects Version/s: None
    • Component/s: Security
    • None

      The primary use case here is supporting Let's Encrypt (LE) signed certificates with MongoDB. LE is fast becoming the simplest (and cheapest) way to get proper signed certificates. However their short validity (90 days, see https://letsencrypt.org/2015/11/09/why-90-days.html) is serious issue in adopting them for database servers.

      The ability to swap certificates without turning off the MongoDB server completely would be really useful. Wondering what is the MongoDB position/opinion on this.

            Assignee:
            nick.brewer Nick Brewer
            Reporter:
            vaibhaw Vaibhaw Pandey
            Votes:
            0 Vote for this issue
            Watchers:
            4 Start watching this issue

              Created:
              Updated:
              Resolved: