Adding SSL Support

This commit is contained in:
Tyler Hale 2024-08-01 14:43:13 -06:00
parent 4daa6d2d0b
commit 828a542896
Signed by: Tyler
GPG key ID: C7CC4B910D88EF96
10 changed files with 162 additions and 6 deletions

View file

@ -37,7 +37,11 @@ wsrep_on=1
wsrep_provider=/usr/lib64/galera/libgalera_smm.so
# Provider specific configuration options
{% if mariadb_cluster_ssl == true %}
wsrep_provider_options="socket.ssl_key=/etc/ssl/galera/server.key;socket.ssl_cert=/etc/ssl/galera/server.pem;socket.ssl_ca=/etc/ssl/galera/ca-certificate.pem"
{% else %}
#wsrep_provider_options=
{% endif %}
# Logical cluster name. Should be the same for all nodes.
wsrep_cluster_name="{{ mariadb_cluster_wsrep_cluster_name }}"

View file

@ -0,0 +1,12 @@
# MySQL Server
[mysqld]
ssl-ca = /etc/ssl/galera/ca-certificate.pem
ssl-key = /etc/ssl/galera/server.key
ssl-cert = /etc/ssl/galera/server.pem
require_secure_transport = 1
# MySQL Client Configuration
[mysql]
ssl-ca = /etc/ssl/galera/ca-certificate.pem
ssl-key = /etc/ssl/galera/server.key
ssl-cert = /etc/ssl/galera/server.pem