I have a 3 nodes cluster configured and running properly.
I've tried to configure SSL on all nods as this:
wsrep_provider_options="socket.ssl_key=/etc/mysql/certs/server-key.pem;socket.ssl_cert=/etc/mysql/certs/server-cert.pem;socket.ssl_ca=/etc/mysql/certs/ca-cert.pem"
wsrep_sst_method = xtrabackup-v2
[sst]
encrypt = 3
tca = /etc/mysql/certs/ca-cert.pem
tkey = /etc/mysql/certs/server-key.pem
tcert = /etc/mysql/certs/server-cert.pem
Then stop all nodes and start a new cluster with
script
First node bootsrap, but other nodes won't join with:
[Warning] WSREP: last inactive check more than PT1.5S ago (PT3.50334S), skipping check
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] WSREP: failed to open gcomm backend connection: 110: failed to reach primary
galera.cluster mysqld[5925]: at gcomm/src/pc.cpp:connect():158
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] WSREP: gcs/src/gcs_core.cpp:gcs_core_open():208: Failed to open backend connection
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] WSREP: gcs/src/gcs.cpp:gcs_open():1404: Failed to open channel 'galera_cluster'
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] WSREP: gcs connect failed: Connection timed out
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] WSREP: wsrep::connect(gcomm://10.99.0.10) failed: 7
galera.cluster mysqld[5925]: 2017-10-29 13:37:51 140115588344000 [ERROR] Aborting
galera.cluster systemd[1]: mariadb.service: Main process exited, code=exited, status=1/FAILURE
galera.cluster systemd[1]: Failed to start MariaDB database server.
If i disable SSL provider options, everything goes fine.
Any hints?
Thanks.