This blog post illustrates ” How to setup SSL enabled replication”
By default, mysql package installation creates SSL file in the data directory at the time of installation. If you would like to use different self-signed certificates then create them as described here.
Add SSL setting to my.cnf on all servers.
ssl=on ssl-ca=/etc/sslcerts/ca.pem ssl-cert=/etc/sslcerts/server-cert.pem ssl-key=/etc/sslcerts/server-key.pem
Restart mysql server and verify the settings.
Example: client connections using SSL
#mysql -urpluser -p -P22403 --host 127.0.0.1 --ssl-cert=/etc/sslcerts/client-cert.pem --ssl-key=/etc/sslcerts/client-key.pem -e '\s' Enter password: -------------- Connection id: 5 Current database: Current user: rpluser@localhost SSL: Cipher in use is DHE-RSA-AES256-SHA Current …[Read more]