<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: SolidFire SSL expiring in SolidFire and HCI</title>
    <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147447#M44</link>
    <description>&lt;P&gt;HI JMPALUCH13 ,&lt;/P&gt;
&lt;P&gt;perhaps this document will help you: &lt;A href="https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049" target="_blank"&gt;https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049&lt;/A&gt; see page &lt;STRONG&gt;22&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;You can change the default SSL certificate and private key of the storage node in the cluster using the&lt;BR /&gt;Element OS API.&lt;BR /&gt;When an Element OS cluster is created, the cluster creates a unique self-signed Secure Sockets Layer&lt;BR /&gt;(SSL) certificate and private key that is used for all HTTPS communication via the Element OS web&lt;BR /&gt;UI, per-node UI, or APIs. Element OS supports self-signed certificates as well as certificates that are&lt;BR /&gt;issued and verified by a trusted Certificate Authority (CA).&lt;BR /&gt;You can use the following API methods to get more information about the default SSL certificate and&lt;BR /&gt;make changes. For details about each method, see the NetApp SolidFire Element OS API Reference&lt;BR /&gt;Guide.&lt;BR /&gt;GetSSLCertificate&lt;BR /&gt;You can use this method to retrieve information about the currently installed SSL&lt;BR /&gt;certificate including all certificate details.&lt;BR /&gt;SetSSLCertificate&lt;BR /&gt;You can use this method to set the cluster and per-node SSL certificates to the certificate&lt;BR /&gt;and private key you supply. The system validates the certificate and private key to prevent&lt;BR /&gt;an invalid certificate from being applied.&lt;BR /&gt;RemoveSSLCertificate&lt;BR /&gt;This method removes the currently installed SSL certificate and private key. The cluster&lt;BR /&gt;then generates a new self-signed certificate and private key.&lt;BR /&gt;Note: The cluster SSL certificate is automatically applied to all new nodes added to the cluster.&lt;BR /&gt;Any node removed from the cluster reverts to a self-signed certificate and all user-defined&lt;BR /&gt;certificate and key information is removed from the node.&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Tue, 26 Mar 2019 21:01:06 GMT</pubDate>
    <dc:creator>AndreUnterberg</dc:creator>
    <dc:date>2019-03-26T21:01:06Z</dc:date>
    <item>
      <title>SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147439#M42</link>
      <description>&lt;P&gt;I'm getting a message that my SSL certificate will be expiring in 29 days on the cluster. How do I reset the SSL? It is just using the self-signed one?&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 16:52:56 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147439#M42</guid>
      <dc:creator>JMPALUCH13</dc:creator>
      <dc:date>2019-03-26T16:52:56Z</dc:date>
    </item>
    <item>
      <title>Re: SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147446#M43</link>
      <description>&lt;P&gt;HI, perhaps this document will help you. Page 22.&lt;BR /&gt;&lt;BR /&gt;&lt;A href="https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049" target="_blank" rel="noopener"&gt;https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;You can change the default SSL certificate and private key of the storage node in the cluster using the Element OS API. When an Element OS cluster is created, the cluster creates a unique self-signed Secure Sockets Layer (SSL) certificate and private key that is used for all HTTPS communication via the Element OS web UI, per-node UI, or APIs. Element OS supports self-signed certificates as well as certificates that are issued and verified by a trusted Certificate Authority (CA).&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You can use the following API methods to get more information about the default SSL certificate and make changes. For details about each method, see the NetApp SolidFire Element OS API Reference Guide. &lt;BR /&gt;&lt;BR /&gt;GetSSLCertificate You can use this method to retrieve information about the currently installed SSL certificate including all certificate details. &lt;BR /&gt;&lt;BR /&gt;SetSSLCertificate You can use this method to set the cluster and per-node SSL certificates to the certificate and private key you supply. The system validates the certificate and private key to prevent an invalid certificate from being applied. &lt;BR /&gt;&lt;BR /&gt;RemoveSSLCertificate This method removes the currently installed SSL certificate and private key. The cluster then generates a new self-signed certificate and private key. &lt;BR /&gt;&lt;BR /&gt;Note: The cluster SSL certificate is automatically applied to all new nodes added to the cluster. Any node removed from the cluster reverts to a self-signed certificate and all user-defined certificate and key information is removed from the node. Kind regards Andre&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 20:55:39 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147446#M43</guid>
      <dc:creator>AndreUnterberg</dc:creator>
      <dc:date>2019-03-26T20:55:39Z</dc:date>
    </item>
    <item>
      <title>Re: SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147447#M44</link>
      <description>&lt;P&gt;HI JMPALUCH13 ,&lt;/P&gt;
&lt;P&gt;perhaps this document will help you: &lt;A href="https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049" target="_blank"&gt;https://library.netapp.com/ecm/ecm_get_file/ECMLP2844049&lt;/A&gt; see page &lt;STRONG&gt;22&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;You can change the default SSL certificate and private key of the storage node in the cluster using the&lt;BR /&gt;Element OS API.&lt;BR /&gt;When an Element OS cluster is created, the cluster creates a unique self-signed Secure Sockets Layer&lt;BR /&gt;(SSL) certificate and private key that is used for all HTTPS communication via the Element OS web&lt;BR /&gt;UI, per-node UI, or APIs. Element OS supports self-signed certificates as well as certificates that are&lt;BR /&gt;issued and verified by a trusted Certificate Authority (CA).&lt;BR /&gt;You can use the following API methods to get more information about the default SSL certificate and&lt;BR /&gt;make changes. For details about each method, see the NetApp SolidFire Element OS API Reference&lt;BR /&gt;Guide.&lt;BR /&gt;GetSSLCertificate&lt;BR /&gt;You can use this method to retrieve information about the currently installed SSL&lt;BR /&gt;certificate including all certificate details.&lt;BR /&gt;SetSSLCertificate&lt;BR /&gt;You can use this method to set the cluster and per-node SSL certificates to the certificate&lt;BR /&gt;and private key you supply. The system validates the certificate and private key to prevent&lt;BR /&gt;an invalid certificate from being applied.&lt;BR /&gt;RemoveSSLCertificate&lt;BR /&gt;This method removes the currently installed SSL certificate and private key. The cluster&lt;BR /&gt;then generates a new self-signed certificate and private key.&lt;BR /&gt;Note: The cluster SSL certificate is automatically applied to all new nodes added to the cluster.&lt;BR /&gt;Any node removed from the cluster reverts to a self-signed certificate and all user-defined&lt;BR /&gt;certificate and key information is removed from the node.&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 26 Mar 2019 21:01:06 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147447#M44</guid>
      <dc:creator>AndreUnterberg</dc:creator>
      <dc:date>2019-03-26T21:01:06Z</dc:date>
    </item>
    <item>
      <title>Re: SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147605#M45</link>
      <description>&lt;P&gt;By default it's self-signed (by NetApp), but you can replace it with your own (e.g. a wildcard cert for the cluster) which can be either self-signed or (better) backed by a CA as per the document linked in the other reply.&lt;/P&gt;</description>
      <pubDate>Mon, 01 Apr 2019 16:24:02 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/147605#M45</guid>
      <dc:creator>elementx</dc:creator>
      <dc:date>2019-04-01T16:24:02Z</dc:date>
    </item>
    <item>
      <title>Re: SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/157309#M46</link>
      <description>&lt;P&gt;What are the steps to replacing the default SSL certificate with one your own which is backed by a CA?&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jun 2020 00:09:46 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/157309#M46</guid>
      <dc:creator>Daredia</dc:creator>
      <dc:date>2020-06-26T00:09:46Z</dc:date>
    </item>
    <item>
      <title>Re: SolidFire SSL expiring</title>
      <link>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/157310#M47</link>
      <description>&lt;P&gt;It's answered above by AndreSchmitz - a "Set" API method for SSL Certificates is mentioned and it says that it works for both self-signed and CA signed certificates.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;SolidFire / Element Software doesn't validate certificates.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 26 Jun 2020 00:19:22 GMT</pubDate>
      <guid>https://community.netapp.com/t5/SolidFire-and-HCI/SolidFire-SSL-expiring/m-p/157310#M47</guid>
      <dc:creator>elementx</dc:creator>
      <dc:date>2020-06-26T00:19:22Z</dc:date>
    </item>
  </channel>
</rss>

