Skip to main content
NetApp Knowledge Base

How to bind a certificate to a specific IP address or HA group VIP in StorageGRID

Views:
10
Visibility:
Public
Votes:
0
Category:
storagegrid
Specialty:
sgrid
Last Updated:

Applies to

  • NetApp StorageGRID
  • StorageGRID firmware 11.9.0

Answer

  • In StorageGRID, certificates cannot be directly bound to an HA (High Availability) group or its VIP (Virtual IP) address. 
  • The HA group serves only as a VIP failover mechanism and does not support certificate association by itself.
  • To provide certificate-based access for a specific IP or VIP, a Load Balancer Endpoint must be created using the HTTPS protocol.
  • The certificate is then configured at the endpoint level, and the endpoint can be associated with the required HA group VIPs.
  • This allows applications to use the endpoint with the required certificate.

Additional Information

NetApp provides no representations or warranties regarding the accuracy or reliability or serviceability of any information or recommendations provided in this publication or with respect to any results that may be obtained by the use of the information or observance of any recommendations provided herein. The information in this document is distributed AS IS and the use of this information or the implementation of any recommendations or techniques herein is a customer's responsibility and depends on the customer's ability to evaluate and integrate them into the customer's operational environment. This document and the information contained herein may be used solely in connection with the NetApp products discussed in this document.