# SSL handshake fails between Kibana/APMServer and Elasticsearch after custom certificate setting on Elasticsearch

**URL:** <https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604>\
**Category:** Elastic Cloud on Kubernetes (ECK)\
**Created:** [November 20, 2019, 3:32am UTC](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604 "2019-11-20T03:32:11Z")\
**Posts on this page:** 3\
**Page:** 2

<div class="post-metadata">

**Author:** ![nikunjbanker](https://avatars.discourse-cdn.com/v4/letter/n/67e7ee/32.png) [@nikunjbanker](https://discuss.elastic.co/u/nikunjbanker)\
**Post date:** [May 18, 2020, 10:27am UTC](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604/21 "2020-05-18T10:27:32Z")

</div>

@lsnyder @Bingu_Shim : It seems, you were able to deploy Elastic and Kibana using ECK and custom certificate. Can one of you please share working yaml and commands:

> - elastic and Kibana yaml
> - create secrete command or yaml file

Need it to deploy it to Azure (AKS).

Thanks in advance.

---

<div class="post-metadata">

**Author:** ![Bingu\_Shim](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/bingu_shim/32/57949_2.png) [@Bingu\_Shim](https://discuss.elastic.co/u/Bingu_Shim)\
**Post date:** [May 21, 2020, 9:48am UTC](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604/22 "2020-05-21T09:48:34Z")

</div>

Hello @nikunjbanker

I did posted sample yaml [HERE](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604/9)

and this is command that I used.

```auto
kubectl create secret generic <my secret> --from-file=ca.crt=<Root CA File>.crt --from-file=tls.crt=<my crt file>.crt --from-file=tls.key=<my key file>.key

```

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 4, 2022, 7:34am UTC](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604/23 "2022-11-04T07:34:04Z")

</div>



[Previous page](https://discuss.elastic.co/t/ssl-handshake-fails-between-kibana-apmserver-and-elasticsearch-after-custom-certificate-setting-on-elasticsearch/208604.md?page=1)
