Documentation #47637
closed
mgr/cephadm: document how to configure custom TLS certificate for Grafana
Added by Patrick Seidensal over 3 years ago.
Updated over 2 years ago.
Category:
cephadm/monitoring
Description
The documentation is missing the description of the configuration options necessary to set a custom TLS certificate for Grafana.
- Assignee deleted (
Patrick Seidensal)
This is how I did it
Since cephadm shell ceph config-key set mgr/cephadm/grafana_crt -i <cert-file>
can't read files from the host, I needed to run cephadm shell
, then it will then than have access to /var/lib/ceph/<fsid>/home/ in /root in cephadm shell.
cp <cert-file> <key-file> /var/lib/ceph/*/home/
cephadm shell
ceph config-key set mgr/cephadm/grafana_crt -i /root/<cert-file>
ceph config-key set mgr/cephadm/grafana_key -i /root/<key-file>
ceph orch daemon reconfig $(ceph orch ps | grep grafana | cut -f1 -d" ")
exit
I did not find a way to reference the grafana daemon directly hence the grep and cut command.
Reconfigure can be done easier with
ceph orch reconfig grafana
- Status changed from New to Resolved
- Related to Bug #56508: haproxy check fails for ceph-grafana service added
Also available in: Atom
PDF