Skip to content

Documentation enhancement around encryption and certificates #769

@benedictweis

Description

@benedictweis

Hi there,

I have a few questions regarding encryption and certificate management. I read from the documentation that ClusterLink uses mTLS between gateways for control plane and data plane communication.

  1. Can mTLS encryption be disabled in cases where traffic is already encrypted by the application?

Regarding certificate management, the documentation suggests that for a set of peers (fabric) there exists a single CA certificate.

  1. Can this CA certificate be rotated?
  2. Can peer certificates be rotated?

Thanks in advance.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions