If this is possible, I'd like to know how. This is the setup.
Cluster A: SSL
- JKS keystore+truststore defined in VKCONFIG_JVM_OPTS env
Cluster B: SASL_SSL/PLAIN
- librdkafka configuration in VERTICA_RDKAFKA_CONF_<cluster_name> env
- security.protocol=SASL_SSL
- sasl.mechanism=PLAIN
- sasl.username=***
- sasl.password=***
- ssl.ca.location=/***/***.pem
Outcome
Option 1: When launching with configuration: enable-ssl=true
- Cluster A works, but Connections to B with SASL fail on "Local: SSL error". (issuing the same copy manually works just fine)
Option 2: When launching whithout configuration: enable-ssl=true
- Cluster B with SASL works, but connections to A using SSL fail on "Local: Broker transport failure"
Tried also importing CA:s from both clusters into same JKS truststore referred from VKCONFIG_JVM_OPTS, but outcome was the same as with Option 1.
Vertica Analytic Database v11.1.1-11
Enterprise Mode