Thursday, July 2, 2026

OKV platform certificate rotation - pitfall , awareness!!!!

OKV version: 21.9

Setup: Multimaster R/W cluster


Plan:

https://docs.google.com/spreadsheets/d/e/2PACX-1vSaXXTjj9cE1fvYpNmsDNBOkTIw78yTwQ6a9oGkowba0E3sTqiny_KLfrzM-RYMSQ/pubhtml


Screenshots:

https://docs.google.com/document/d/e/2PACX-1vTLvcW6cBytYzxFMeMMHauXYJLJF1z9_jHkq1ocqa9SkJ92GVVRy-J6nFUOHYu4Tg/pub

Issues faced:

Post redo shipping platform certificate were rotated, we had platform instability coming from non sync password file between node 1 and node 2 oracle db.

Fix:

1. Manually sync the password file from node 1 to node 2

2. restart both nodes


Concern: Node , platform certificate rotation operations are online operation. But the redo shipping operation landing us in downtime for endpoint is a concern!!!!!!!!!!!!!!!!!!!!!!!!


Thanks


OKV platform certificate rotation - pitfall , awareness!!!!

OKV version: 21.9 Setup: Multimaster R/W cluster Plan: https://docs.google.com/spreadsheets/d/e/2PACX-1vSaXXTjj9cE1fvYpNmsDNBOkTIw78yTwQ6a9o...