This message was deleted.
# general
s
This message was deleted.
y
what do you mean “encryption of message”? end2end encryption? or tls encryption? for public signed cert, you can turn off trustcertfile path. what deployment tool are you using? apache helmchart?
a
tls encryption so message in route is encrypted preventing man-in-middle-attack. I am using helm chart for deployment, more specifically datastax in this scenario. https://github.com/datastax/pulsar-helm-chart
y
you may need to play a bit of j2 template to disable ca crt mountpoint in the helmchart. but you are right, let’s encrypt root ca is public and you don’t need to inject ca.crt anywhere.
a
Thank you so much for the guidance. Is there a similar tool to use for clusterIssuer that will generate ca.crt for ease of use in this scenario?