In this post we will see how to really generate the certificate and how to use them.

First step is, we have to generate the certificate that is a type X509 for each kafka broker

If you haven’t installed the Kafka server still its ok because we can generate the certificates in any location like you local or in your Kafka installation directory.

Let me create the certificate

Generate the key and certificate for each machine in the cluster by using below command
keytool -keystore server.keystore.jks -alias localhost -validity {validity} -genkey
Eg: keytool -keystore server.keystore.jks -alias localhost -validity 365 -genkey
Note: Remember the Key store password and Key password which is used in next steps

