315ba7d6ad
Currently when using the built-in CA provider for Connect, root certificates are valid for 10 years, however secondary DCs get intermediates that are valid for only 1 year. There is no mechanism currently short of rotating the root in the primary that will cause the secondary DCs to renew their intermediates. This PR adds a check that renews the cert if it is half way through its validity period. In order to be able to test these changes, a new configuration option was added: IntermediateCertTTL which is set extremely low in the tests. |
||
---|---|---|
.. | ||
acl | ||
agent | ||
connect | ||
features | ||
operator | ||
acl-legacy.html.md | ||
agent.html.md | ||
catalog.html.md | ||
config.html.md | ||
connect.html.md | ||
coordinate.html.md | ||
discovery-chain.html.md | ||
event.html.md | ||
health.html.md | ||
index.html.md | ||
kv.html.md | ||
libraries-and-sdks.html.md | ||
namespaces.html.md | ||
operator.html.md | ||
query.html.md | ||
session.html.md | ||
snapshot.html.md | ||
status.html.md | ||
txn.html.md |