Игорь, делаю как тут описано:
/usr/share/elasticsearch/bin/elasticsearch-certutil cert --ca /etc/elasticsearch/certs/ca/ca.crt --dns "ws-search-elk4a.blabla.ru"
но у меня опять же просит пароль:
Enter password for CA (/etc/elasticsearch/certs/ca/ca.crt) :
Серты я генерил без пароля. Мне нужно добавить ноду в уже имеющийся кластер, со старым CA
вот похожая проблема на форуме, без ответа:
Hi.
I have a cluster under development for testing, and now I have implemented SSL, TLS and HTTPS following this link: "https://www.elastic.co/es/blog/configuring-ssl-tls-and-https-to -secure-elasticsearch-kibana-beats-and-logstash ". Everything works correctly, but when you want to add a new node, it doesn't work. I understand that for the new node I must create other file.crt and file.key using the same ca.crt that was generated at startup. To do this I use the following command ./bin/elasti…