CentOS下ElasticSearch启动时SSL证书报错:unable to find valid certification path to requested target

由于SSL证书失效了,需要重新生成证书,按照此文章生成证书和修改配置并重启:https://blog.csdn.net/wangkai_123456/article/details/95938714#Generate_all_required_TLS_certificates_51

启动的时候报错:unable to find valid certification path to requested target

解决办法:把 root-ca.pem 加到 /etc/pki/java/cacerts

keytool -import -alias xhs -keystore /etc/pki/java/cacerts -file /data/elasticsearch/elasticsearch-6.2.2/config/root-ca.pem

密码输入 changeit

可以重启了,不过报了另一个警告:SearchGuardHttpServerTransport speaks http plaintext instead of ssl

解决办法:elasticsearch.yml 中注释 searchguard.ssl.http 相关的配置

猜你喜欢

转载自www.cnblogs.com/ilovejesus/p/12502043.html
今日推荐