Skip to content

Handling Cluster CA (default strimzi) and ClientCA (Our own CA) certificates renewals #6031

Discussion options

You must be logged in to vote

When renewing Strimzi' own CAs, the pods are rolled automatically and you do not need to worry about anything. For custom CAs, there are currently some bugs - @tombentley and @ppatierno were looking into it. But right now, you might need to roll the pods manually.

Documents does suggest this -> 'Client applications must reload the cluster and clients CA certificates that were renewed by the
Cluster Operator.'

This is about your clients consuming and producing Kafka messages. How exactly to do it and what is the best way depends really on the applications and cannot be easily answered in general. It depends where they run, how they are configured etc. But in general, yes, you might need …

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@seemasanjaisinghani
Comment options

Answer selected by seemasanjaisinghani
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants