Skip to content

Commit 4b99b89

Browse files
dveedenti-chi-bot
authored andcommitted
This is an automated cherry-pick of pingcap#22138
Signed-off-by: ti-chi-bot <ti-community-prow-bot@tidb.io>
1 parent 9b97834 commit 4b99b89

File tree

2 files changed

+9
-0
lines changed

2 files changed

+9
-0
lines changed

enable-tls-between-components.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -242,6 +242,11 @@ After configuring TLS for communication between TiDB components, you can use the
242242
## Reload certificates
243243

244244
- If your TiDB cluster is deployed in a local data center, to reload the certificates and keys, TiDB, PD, TiKV, TiFlash, TiCDC, and all kinds of clients reread the current certificates and key files each time a new connection is created, without restarting the TiDB cluster.
245+
<<<<<<< HEAD
246+
=======
247+
248+
- TiProxy reloads certificates from disk once an hour.
249+
>>>>>>> 9cff933fa3 (tiproxy: add note about reloading certificates once an hour (#22138))
245250

246251
- If your TiDB cluster is deployed on your own managed cloud, make sure that the issuance of TLS certificates is integrated with the certificate management service of the cloud provider. The TLS certificates of the TiDB, PD, TiKV, TiFlash, and TiCDC components can be automatically rotated without restarting the TiDB cluster.
247252

tiproxy/tiproxy-configuration.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -214,6 +214,10 @@ Starting from v1.3.1, TiProxy supports configuring multiple virtual IP addresses
214214

215215
### security
216216

217+
> **Note:**
218+
>
219+
> TiProxy reloads certificates from disk once an hour. Therefore, any changes that you make to certificate files on disk can take up to one hour to take effect.
220+
217221
There are four TLS objects in the `[security]` section with different names. They share the same configuration format and fields, but they are interpreted differently depending on their names.
218222

219223
```toml

0 commit comments

Comments
 (0)