Back to feed
Dev.to
Dev.to
7/17/2026
The original title is "How to Rotate Certificates and Keys in Apigee X Without Downtime"

The original title is "How to Rotate Certificates and Keys in Apigee X Without Downtime"

Original: Apigee Interview Question : How to Rotate Certificates or Keys in Production Without Downtime in Apigee X

Short summary

A practical guide to rotating certificates and keys in Apigee X without causing production downtime. The core principle is overlap: upload the new certificate alongside the old one, gradually shift traffic, monitor for SSL handshake success, and only remove the old certificate after confirming all traffic uses the new one. The article walks through each step from CA issuance to final cleanup with ASCII diagrams illustrating the transition.

  • Overlap old and new certificates during rotation to avoid SSL handshake failures
  • Upload new cert, shift traffic, monitor, then remove old cert — never replace first
  • Covers keystore/truststore updates, target server changes, and post-rotation validation

Generated with AI, which can make mistakes.

Is this a good recommendation for you?

Comments

Failed to load comments. Please try again.

Explore more