# Elasticsearch cluster certs configuration

**URL:** <https://discuss.elastic.co/t/elasticsearch-cluster-certs-configuration/341320>\
**Category:** Elasticsearch\
**Tags:** docker\
**Created:** [August 22, 2023, 5:18am UTC](https://discuss.elastic.co/t/elasticsearch-cluster-certs-configuration/341320 "2023-08-22T05:18:10Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![ANUBHAV\_GUPTA](https://avatars.discourse-cdn.com/v4/letter/a/7ea924/32.png) [@ANUBHAV\_GUPTA](https://discuss.elastic.co/u/ANUBHAV_GUPTA)\
**Post date:** [August 22, 2023, 5:18am UTC](https://discuss.elastic.co/t/elasticsearch-cluster-certs-configuration/341320/1 "2023-08-22T05:18:10Z")

</div>

Hey there,  
I am trying to run ES cluster of let's say 3 nodes.  
I am using volume mount in docker to mount my self signed certificates.  
And here is the command I am using:-

> sudo docker run -it --privileged -p 9200:9200 -p 9300:9300 -e discovery.type=multi-node -e "cluster.name=my-elasticsearch-cluster" -e node.name="node-1" -e discovery.seed\_hosts=["10.0.0.211","10.0.0.228","192.168.0.136"] -e network.host="0.0.0.0" -e node.roles="master" -e cluster.initial\_master\_nodes=["node-1","node-2","node-3"] -e network.publish\_host="10.0.0.228" -e ELASTIC\_PASSWORD=elastic -e xpack.ml.enabled=false -e ES\_JAVA\_OPTS="-Xms1g -Xmx1g" -v /home/anubhav/certs:/usr/share/elasticsearch/config/certificates -e xpack.security.transport.ssl.key=/usr/share/elasticsearch/config/certificates/key.pem -e xpack.security.transport.ssl.certificate=/usr/share/elasticsearch/config/certificates/cert.pem -e xpack.security.transport.ssl.enabled=true -e xpack.security.transport.ssl.verification\_mode=certificate -e xpack.security.transport.ssl.certificate\_authorities=/usr/share/elasticsearch/config/certificates/cacert.pem -e xpack.security.http.ssl.enabled=true -e xpack.http.ssl.verification\_mode=certificate -e xpack.security.http.ssl.certificate\_authorities=/usr/share/elasticsearch/config/certificates/cacert.pem -e xpack.security.http.ssl.key=/usr/share/elasticsearch/config/certificates/key.pem -e xpack.security.http.ssl.certificate=/usr/share/elasticsearch/config/certificates/cert.pem -e xpack.security.http.ssl.client\_authentication=none elasticsearch:8.7.0

I would like to know, what certs info do I need to pass in order to get the all nodes join the above master node?  
Will I have to provide the same cert path in other node as well or only pointing to the IP would work or How is it?

Thanks in advance!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 19, 2023, 5:18am UTC](https://discuss.elastic.co/t/elasticsearch-cluster-certs-configuration/341320/2 "2023-09-19T05:18:15Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
