Configuring TLS Security for Cloudera Manager Enterprise Edition

  Important: If you want to add new hosts after performing the following procedures to enable TLS, you must disable TLS and then configure TLS for each new host. For more information, see Adding a Host to the Cluster.
  Important: Cloudera strongly recommends that you set up a fully-functional CDH cluster and Cloudera Manager before you begin configuring it to use TLS.

Transport Layer Security (TLS) provides encryption and authentication in the communications between the Cloudera Manager Server and Agents. Encryption prevents snooping of communications, and authentication helps prevent malicious Servers or Agents from causing problems in your cluster.

Cloudera Manager supports three levels of TLS security: