kafka-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Rohan Rasane <rohan.ras...@gmail.com>
Subject Re: How to provide certificate chain/intermediate CA to kafka broker
Date Fri, 09 Nov 2018 17:57:21 GMT
Hi Fang,
You will need to create a CSR using the Private Key, then get that CSR
signed by your Certs team which should be able to add the root and
intermediate certs in the signed certs. Then you will have to add them to
your stores on the host.

Let me know if you have any specific questions.

-Rohan

On Fri, Nov 9, 2018 at 6:18 AM Fang Xing <fang.xing@gmail.com> wrote:

> Hello,
>
> I'm looking for some instructions about setting SSL in Kafka with
> certificate chains. There is instruction about settings for broker
> certificate issued by a self-signed root CA, however I didn't find
> information related to certificate chain.
>
> If the chain is like this: root ca -> intermediate ca -> kafka broker
> certificate/key, how to setup the keystore and truststore to include
> intermediate ca's certificate? Should it be put into keystore or truststore
> in what format?
>
> Thanks! Fang
>

Mime
  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message