# How to manage Security Certificates on native cloud environment?

**URL:** <https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411>\
**Category:** Elasticsearch\
**Tags:** elastic-stack-security\
**Created:** [August 18, 2020, 11:48am UTC](https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411 "2020-08-18T11:48:57Z")\
**Posts on this page:** 4\
**Page:** 1

<div class="post-metadata">

**Author:** ![Wasantha\_Herath](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/wasantha_herath/32/74084_2.png) [@Wasantha\_Herath](https://discuss.elastic.co/u/Wasantha_Herath)\
**Post date:** [August 18, 2020, 11:48am UTC](https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411/1 "2020-08-18T11:48:57Z")

</div>

Does native elastic cloud - [https://www.elastic.co/cloud/](https://www.elastic.co/cloud/) provides facilities to manage certificates files manually as it does on Elastic Cloud Enterprise ?

I have launched an elastic cloud using this [https://www.elastic.co/cloud/](https://www.elastic.co/cloud/) and now it needs to be TLS enabled. But the CLOUD UI does not have any facility to "Upload new certificate"

Reference - [https://www.elastic.co/guide/en/cloud-enterprise/1.0/ece-manage-certificates.html](https://www.elastic.co/guide/en/cloud-enterprise/1.0/ece-manage-certificates.html)

Thanks

---

<div class="post-metadata">

**Author:** ![Christian\_Dahlqvist](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christian_dahlqvist/32/4617_2.png) [@Christian\_Dahlqvist](https://discuss.elastic.co/u/Christian_Dahlqvist)\
**Post date:** [August 18, 2020, 12:19pm UTC](https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411/2 "2020-08-18T12:19:36Z")

</div>

Given that Elastic Cloud is a managed service all clusters are using TLS by default. As far as I know you can not manage certificates yourself.

---

<div class="post-metadata">

**Author:** ![Wasantha\_Herath](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/wasantha_herath/32/74084_2.png) [@Wasantha\_Herath](https://discuss.elastic.co/u/Wasantha_Herath)\
**Post date:** [August 18, 2020, 3:21pm UTC](https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411/3 "2020-08-18T15:21:21Z")

</div>

> [@Wasantha\_Herath](#):
>
> Given that Elastic Cloud is a managed service all clusters are using TLS by default. As far as I know you can not manage certificates yourself.

Thanks for the reply.  
Lets say we are going to deploy Logstash instance on separate server. That connection between ES and Logstash should be TLS encrypted. For that we need to have certificate from ES cloud. Am i correct ?

As per the documentation ([Configuring Security in Logstash | Logstash Reference [7.8] | Elastic](https://www.elastic.co/guide/en/logstash/7.8/ls-security.html#ls-http-ssl)) it requires a Certificate Authority’s certificate pem file. Any idea how could i get that file ?

Thanks

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [September 15, 2020, 3:21pm UTC](https://discuss.elastic.co/t/how-to-manage-security-certificates-on-native-cloud-environment/245411/4 "2020-09-15T15:21:23Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
