Couchbase Server supports the use of X.509 certificates.
A conceptual and architectural overview of Couchbase Server’s support of X.509 certificates is provided in Certificates. The current section provides practical steps for:
Configuring server certificates: These reside on Couchbase Server-nodes, identify the cluster to networked clients, and support encrypted network communications.
Configuring client certificates: These can be used by networked clients to authenticate with Couchbase Server, and to support encrypted network communications.
Additionally, procedures are provided for the rotating of server certificates, to ensure optimal security; the enablement of client-certificate handling on the current cluster; and the handling of errors related to certificate management.