MySQL SSL/TLS Add-on for PaaS
The MySQL SSL/TLS add-on enforces encrypted client connections on a MySQL, MariaDB or Percona node or cluster on MassiveGRID PaaS. It generates the certificate authority, server and client certificates, installs them in the certificate folder, configures the server to require TLS and gives you the client files to distribute.
Both buttons open the MassiveGRID PaaS dashboard with MySQL SSL/TLS pre-selected. The trial needs no credit card.
MySQL SSL/TLS Package Facts
| Attribute | Value |
|---|---|
| Package | MySQL-based SSL/TLS Encrypted Connection (MySQL/MariaDB/Percona) |
| Type | Add-on (attaches to an existing environment) |
| Category | Add-ons & Utilities |
| Software vendor / project | Jelastic / Virtuozzo (package) |
| Licence | Open-source add-on |
| Runtime / stack | Add-on for MySQL, MariaDB and Percona standalone nodes and clusters |
| Regions | New York, London, Frankfurt, Singapore |
| Billing | Free add-on; the host environment is billed per use from $2.46/month |
| Free trial | 14 days, no credit card |
| Uptime SLA | 100% |
What is MySQL SSL/TLS?
Database traffic inside a private network is often left unencrypted, but compliance frameworks such as PCI DSS, HIPAA and GDPR-driven policies increasingly require encryption in transit everywhere, and any connection that crosses environments or regions certainly should be encrypted. Configuring TLS on MySQL by hand means generating a CA and certificates, placing them correctly on every node, editing server options and handling client configuration.
The add-on does all of that in one click across every node of the layer, including nodes added later by scaling. It places certificates in /var/lib/jelastic/keys/SSL-TLS, enables the require-secure-transport option, and provides the client certificate and CA so applications can connect with verification. It works with standalone nodes and with every topology from the MySQL/MariaDB/Percona Cluster package.
What MySQL SSL/TLS Changes in Your Environment
Add-ons run against an environment you already have. Nothing is rebuilt, and the change can be removed from the same dashboard.
- Certificate authority and certificates: A CA plus server and client certificates generated for the layer, with sensible validity periods.
- Server configuration: TLS enabled and required on every MySQL-compatible node, with a graceful restart.
- Client bundle: Client certificate, key and CA available for download to configure applications and ProxySQL.
- Scaling support: Nodes added to the layer receive the certificates and settings automatically.
Why Teams Choose MySQL SSL/TLS
Encryption in transit enforced
Unencrypted connections are refused once the add-on is applied.
Whole-cluster coverage
Every node in a replicated topology is configured consistently.
Compliance friendly
Meets PCI DSS, HIPAA and internal policy requirements for encrypted database traffic.
Reversible
Remove the add-on to return to the previous configuration if needed.
How to Add MySQL SSL/TLS on MassiveGRID PaaS
Attaching the add-on takes three steps and a few minutes of waiting. No servers to provision, no configuration files to edit.
Open the installer
Click Install with free trial or Install to my account. The MassiveGRID PaaS dashboard opens with the MySQL SSL/TLS add-on pre-selected, so nothing has to be copied or pasted.
Sign up or sign in
New to the platform? Sign up for the free 14-day trial, which needs no credit card. Existing customers sign in with their usual dashboard credentials.
Pick the target environment
Choose the environment, and where relevant the node layer, that MySQL SSL/TLS should attach to, then confirm. The add-on configures itself on the running nodes without a redeploy.
Who Runs MySQL SSL/TLS on PaaS
Regulated applications
Payment, healthcare and financial systems that must encrypt database connections.
Cross-environment databases
Applications connecting to a database in another environment or region.
Security hardening
Defence in depth for any production database.
Why Run MySQL SSL/TLS on MassiveGRID PaaS
Built for uptime. MySQL SSL/TLS runs on MassiveGRID's high-availability platform, where every environment is covered by a 100% uptime SLA. Nodes live on redundant hosts, storage is replicated, and failed containers are restarted or migrated automatically.
Pay for what you use. Billing is hourly and per cloudlet (128 MiB RAM plus 400 MHz CPU). Vertical auto-scaling adds and removes cloudlets as load changes, so a quiet MySQL SSL/TLS environment costs a few dollars a month and a busy one grows without a migration. Full details are on the PaaS page.
Your choice of jurisdiction. Deploy in New York, London, Frankfurt or Singapore and keep data inside the region your users or regulators require. MassiveGRID is ISO 9001 certified and GDPR compliant, and has run hosting infrastructure since 2003.
No lock-in. The package is a standard Jelastic Packaging Standard (JPS) manifest. You keep root-level access to the containers, can export the manifest, and can move the workload to any other Jelastic-compatible platform or to your own servers at any time.
Related on massivegrid.com: Security Overview · GDPR Compliance.
MySQL SSL/TLS Questions
More from the Marketplace
Packages that are often deployed alongside MySQL SSL/TLS, or that solve the same problem a different way. Browse all 84 packages.
Deploy MySQL SSL/TLS Today
Start the free 14-day trial and have MySQL SSL/TLS running in minutes. No credit card required.