Skip to content

← All integrations

Linux · Application and database

Replaces PostgreSQL TLS files with postgres as owner and reloads.

The service agent on the server fetches the task from the appliance over outbound HTTPS on port 443 and installs the certificate locally on the server. The appliance never connects to the server.

What happens

  1. The service agent on the server fetches the task from the appliance over outbound HTTPS, port 443.
  2. The TLS files named in postgresql.conf are written with postgres as owner.
  3. PostgreSQL is reloaded. If it fails: Rollback puts the previous files back and reloads.
  4. Verification: the package validates the certificate and key in the configured files.

Technical details

Connection
The package runs through the service agent on the server. The agent connects over outbound HTTPS to the appliance, port 443 by default. You open no port into the server.
Service ports
5432
You need
The service agent installed on the server.
Actions
Discovery, Installation, Verification, Rollback
Packages
postgresql-ssh

Get started