TLS to ClickHouse, and why a self-signed node fails
An https URL sets TLS and moves the default port, but only the platform trust store applies, so a custom CA has nowhere to go on this transport.
6 posts
HTTP interface with system.* introspection, EXPLAIN pipelines and query-log monitoring. Where it stops: No foreign keys exist, so ER diagrams show structure without discovered relations.
An https URL sets TLS and moves the default port, but only the platform trust store applies, so a custom CA has nowhere to go on this transport.
A bare update statement answers not implemented on this engine, so no editable cell is offered, and the documented route reports zero rows changed.
An empty edge list here is the engine answer, not an unfinished read: no engine, no table setting and no DDL declares a foreign key anywhere.
Every ClickHouse monitoring panel is a read of a catalog the server already maintains, with two boundaries: a setting that empties one panel, and a counter nobody publishes.
Port 8123 is the whole transport, the native port is never used, and a permission denial arrives as a 500, so failures are read by exception code.
The estimated plan is the only plan there is, because this engine never executes the statement to produce one, so nothing in the view was measured.
We use cookies to analyse site traffic and improve your experience. See our Privacy Policy for details.