<a id="configuration-cluster-certificates"></a>

# Cluster Certificates

Use **Configuration > Cluster Certificates** to manage certificates for the
cluster.

You can enable automatic certificate renewal or upload a custom certificate
and private key.

## Cluster certificate auto renewal

Use this option to enable automatic renewal of the cluster certificate.

To configure auto renewal:

1. Go to **Configuration > Cluster Certificates**.
2. From the top toolbar, select **Auto Renewal**.

   The **Cluster Certificate Auto Renewal** dialog opens.
3. In the **Cluster Certificate Auto Renewal** dialog:
   1. To enable automatic renewal, mark the **Enabled** checkbox.
   2. To confirm automatic renewal, select **Ok**.

## Creating a custom cluster certificate

Use this option to upload a custom certificate.

To create or replace a cluster certificate:

1. Go to **Configuration > Cluster Certificates**.
2. From the top toolbar, select **+ Create**.

   The **Create Cluster Certificate** dialog opens.
3. In the **Create Cluster Certificate** dialog:
   1. In **Certificate**, upload the certificate file.

      Drag and drop the file, or select **Browse** to open a file browser
      window.
   2. In **Private Key**, upload the private key file.

      Drag and drop the file, or select **Browse** to open a file browser
      window.
   3. Optional: Enter the **Private Key Passphrase** if the private key
      is encrypted.
   4. To confirm applying the certificate, select **Ok**.
