This blog post illustrates ” How to setup SSL enabled
replication”
By default, mysql package installation creates SSL file in the
data directory at the time of installation. If you would like to
use different self-signed certificates then create them as
described here.
Add SSL setting to my.cnf on all servers.
ssl=on
ssl-ca=/etc/sslcerts/ca.pem
ssl-cert=/etc/sslcerts/server-cert.pem
ssl-key=/etc/sslcerts/server-key.pem
Restart mysql server and verify the settings.
Example: client connections using SSL
#mysql -urpluser -p -P22403 --host 127.0.0.1 --ssl-cert=/etc/sslcerts/client-cert.pem --ssl-key=/etc/sslcerts/client-key.pem -e '\s'
Enter password:
--------------
Connection id: 5
Current database:
Current user: rpluser@localhost
SSL: Cipher in use is DHE-RSA-AES256-SHA
Current …
[Read more]