Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

renew the controller's leaf certs at interval #1994

Open
qrkourier opened this issue Apr 29, 2024 · 0 comments
Open

renew the controller's leaf certs at interval #1994

qrkourier opened this issue Apr 29, 2024 · 0 comments

Comments

@qrkourier
Copy link
Member

qrkourier commented Apr 29, 2024

Presently, the deployments for Linux and Docker renew the controller's leaf certs at startup by default. Clint suggests in this comment that they should also or instead renew the leaf certs at some interval.

If they did renew at an interval, it would be better than requiring a restart of the controller, especially if only one controller existed.

The best way to address this is by discussing how the controller should manage its certificates. That would be better than requiring every deployment to wrap and manage leaf cert renewal.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant