Cloud DR - RDS 데이터베이스 인스턴스에 대한 AWS 알림 인증서 갱신
Summary: 인증서가 갱신될 경우 서비스에 영향을 미칠 수 있도록 AWS 클라우드에서 실행되는 클라우드 DR(Disaster Recovery)의 일부인 RDS(Relational Database Services) 가상 머신에 대한 AWS(Amazon Web Services) 알림입니다.
This article applies to
This article does not apply to
This article is not tied to any specific product.
Not all product versions are identified in this article.
Symptoms
Cloud DR 환경의 일부인 AWS 클라우드에서 실행되는 RDS 가상 머신에 대한 AWS 이메일 알림 업데이트.
Cause
AWS 알림 이메일의 예:
You are receiving this message because your AWS Account has one or more Amazon RDS, or Amazon Aurora database instances in the xxx Region using an SSL/TLS Certificate that is expiring on August 22, 2024. If your applications connect to these instances using the Secure Sockets Layer (SSL) or Transport Layer Security (TLS) protocol, you will need to take action before August 22, 2024 to prevent connectivity failures to your existing database instances. To protect your communications with your database instances, a Certificate Authority (CA) generates time-bound certificates that are checked by your database client software to authenticate any database instance before exchanging information. Following industry best practices, AWS renews the CA and creates new certificates on a routine basis to ensure customer connections are properly protected for years to come. The current CA in CA-CENTRAL-1 will expire on August 22, 2024. Before this date you will need to first add new CA certificates to the trust stores in your client applications and then update the certificates on your database instances to the latest issued version. For detailed instructions on how to perform these updates please see the Amazon RDS instances [1] and Amazon Aurora instances [2] documentation. The ca-certificate-identifier option on the create-db-instance API is available for you to create a DB instance with a specific CA. For more information, see the create-db-instance API documentation [3]. A modify-certificates API is also available that will allow you to temporarily override the default CA on newly created database instances to either the old or new CA. This override will only apply while the CA you are overriding to is valid. To use this API you will need to be running the AWS CLI version 1.17 or later. For more information see the modify-certificates API documentation [4]. If you have questions or concerns, please contact AWS Support [5]. [1] https://urldefense.com/v3/__https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/UsingWithRDS.SSL-certificate-rotation.html__;!!LpKI!hnjics5pQu8w-FsnZiBC-09YaOY7iNreldAUo72R2BImcXEGq11Mll3Ss1tYIbhWjSt3Xzz19VrkrvmjHy4HgA$ [docs[.]aws[.]amazon[.]com] [2] https://urldefense.com/v3/__https://docs.aws.amazon.com/AmazonRDS/latest/AuroraUserGuide/UsingWithRDS.SSL-certificate-rotation.html__;!!LpKI!hnjics5pQu8w-FsnZiBC-09YaOY7iNreldAUo72R2BImcXEGq11Mll3Ss1tYIbhWjSt3Xzz19VrkrvnKWKp0YQ$ [docs[.]aws[.]amazon[.]com] [3] https://urldefense.com/v3/__https://docs.aws.amazon.com/cli/latest/reference/rds/create-db-instance.html__;!!LpKI!hnjics5pQu8w-FsnZiBC-09YaOY7iNreldAUo72R2BImcXEGq11Mll3Ss1tYIbhWjSt3Xzz19VrkrvmcmURvXQ$ [docs[.]aws[.]amazon[.]com] [4] https://urldefense.com/v3/__https://docs.aws.amazon.com/cli/latest/reference/rds/modify-certificates.html__;!!LpKI!hnjics5pQu8w-FsnZiBC-09YaOY7iNreldAUo72R2BImcXEGq11Mll3Ss1tYIbhWjSt3Xzz19VrkrvkynZBscg$ [docs[.]aws[.]amazon[.]com] [5] https://urldefense.com/v3/__https://console.aws.amazon.com/support/home__;!!LpKI!hnjics5pQu8w-FsnZiBC-09YaOY7iNreldAUo72R2BImcXEGq11Mll3Ss1tYIbhWjSt3Xzz19VrkrvkMkj534g$ [console[.]aws[.]amazon[.]com]
Resolution
클라우드의 RDS 가상 머신에 대한 AWS Support의 정보:
- 기본적으로 RDS는 SSL(Secure Sockets Layer) 연결을 강제 적용하도록 구성되어 있지 않은 것으로 확인되었습니다.
- AWS Support는 애플리케이션이 SSL 연결을 사용하도록 명시적으로 구성되지 않은 경우 업데이트가 사용자에게 영향을 미치지 않으므로 이 경고를 무시할 수 있다고 제안합니다.
- SSL을 사용하기 위한 RDS로의 CDRS 연결이 명시적으로 구성되지 않았습니다.
AWS의 이 업데이트는 CDR - RDS에 영향을 주지 않으므로 조치를 취할 필요가 없습니다.
Affected Products
Cloud Disaster RecoveryProducts
Cloud Disaster RecoveryArticle Properties
Article Number: 000053270
Article Type: Solution
Last Modified: 19 Sept 2025
Version: 4
Find answers to your questions from other Dell users
Support Services
Check if your device is covered by Support Services.