Adding SSL Support
This commit is contained in:
parent
4daa6d2d0b
commit
828a542896
10 changed files with 162 additions and 6 deletions
|
@ -37,7 +37,11 @@ wsrep_on=1
|
|||
wsrep_provider=/usr/lib64/galera/libgalera_smm.so
|
||||
|
||||
# Provider specific configuration options
|
||||
{% if mariadb_cluster_ssl == true %}
|
||||
wsrep_provider_options="socket.ssl_key=/etc/ssl/galera/server.key;socket.ssl_cert=/etc/ssl/galera/server.pem;socket.ssl_ca=/etc/ssl/galera/ca-certificate.pem"
|
||||
{% else %}
|
||||
#wsrep_provider_options=
|
||||
{% endif %}
|
||||
|
||||
# Logical cluster name. Should be the same for all nodes.
|
||||
wsrep_cluster_name="{{ mariadb_cluster_wsrep_cluster_name }}"
|
||||
|
|
12
roles/mariadb_cluster/templates/ssl.cnf.j2
Normal file
12
roles/mariadb_cluster/templates/ssl.cnf.j2
Normal file
|
@ -0,0 +1,12 @@
|
|||
# MySQL Server
|
||||
[mysqld]
|
||||
ssl-ca = /etc/ssl/galera/ca-certificate.pem
|
||||
ssl-key = /etc/ssl/galera/server.key
|
||||
ssl-cert = /etc/ssl/galera/server.pem
|
||||
require_secure_transport = 1
|
||||
|
||||
# MySQL Client Configuration
|
||||
[mysql]
|
||||
ssl-ca = /etc/ssl/galera/ca-certificate.pem
|
||||
ssl-key = /etc/ssl/galera/server.key
|
||||
ssl-cert = /etc/ssl/galera/server.pem
|
Loading…
Add table
Add a link
Reference in a new issue