Replacing Search Anywhere Framework Component Certificates
General Description
The process of smoothly replacing certificates in Search Anywhere Framework includes backup, generation of new certificates, their installation and configuration, as well as verifying system functionality after the update.
It consists of the following stages:
- Creating Backups
- Generating Certificates for Search Anywhere Framework Components
- Verifying SA Engine RE and Inventory Certificates
- Generating Certificates for the OpenSearch Main Administrator
- Adding the CA Certificate Chain of the Infrastructure to the Search Anywhere Framework Component CA Certificate
- Verifying Logstash Input and Output Plugins
- Adding the CA Certificate Chain of the Infrastructure to the Truststore (JKS)
- Verifying SAF Beat Manager
- Adding Subject Entries to OpenSearch
- Restarting OpenSearch Nodes
- Restarting Other Search Anywhere Framework Components
- Replacing Old Certificates
- Removing Old Entries