# How to enable TLS on MongoDB operator without requiring client certificates

**URL:** <https://forums.percona.com/t/how-to-enable-tls-on-mongodb-operator-without-requiring-client-certificates/7753>\
**Category:** Percona Operator for MongoDB\
**Created:** [July 8, 2020, 9:11am UTC](https://forums.percona.com/t/how-to-enable-tls-on-mongodb-operator-without-requiring-client-certificates/7753 "2020-07-08T09:11:42Z")\
**Posts on this page:** 3\
**Page:** 1

<div class="post-metadata">

**Author:** ![Anjitha](https://sea1.discourse-cdn.com/flex019/user_avatar/forums.percona.com/anjitha/32/1358_2.png) [@Anjitha](https://forums.percona.com/u/Anjitha)\
**Post date:** [July 8, 2020, 9:11am UTC](https://forums.percona.com/t/how-to-enable-tls-on-mongodb-operator-without-requiring-client-certificates/7753/1 "2020-07-08T09:11:42Z")

</div>

I am very new to the operator and only understand the basic features. I am trying to work out a way to enable TLS on the operator without the need of client certificates… I tried to modify the cr.yaml file, specifically the mongod.net.tls section. Reference:&nbsp;[https://docs.mongodb.com/manual/tutorial/upgrade-cluster-to-ssl/](https://docs.mongodb.com/manual/tutorial/upgrade-cluster-to-ssl/). I noticed that, the changes are not reflected onto the pods. ie, previously the sslMode was configured to be preferSSL, which I am guessing is the default mode. Evena fter applying above mentioned changes, it is not accepting the connection. I also want to be able to enable settings like&nbsp;allowConnectionsWithoutCertificates. Are those possible for the operator?&nbsp;  
PS: I am running the pods in a GKE cluster, following the installation instructions from&nbsp;[https://www.percona.com/doc/kubernetes-operator-for-psmongodb/kubernetes.html](https://www.percona.com/doc/kubernetes-operator-for-psmongodb/kubernetes.html)  
Any info regarding TLS certificates no matter how basic is also welcome.&nbsp;

---

<div class="post-metadata">

**Author:** ![felipegm](https://avatars.discourse-cdn.com/v4/letter/f/e9bcb4/32.png) [@felipegm](https://forums.percona.com/u/felipegm)\
**Post date:** [October 28, 2022, 4:51pm UTC](https://forums.percona.com/t/how-to-enable-tls-on-mongodb-operator-without-requiring-client-certificates/7753/2 "2022-10-28T16:51:59Z")

</div>

Hi @Anjitha, did you find any solution to this scenario? I am trying to achieve the same.

---

<div class="post-metadata">

**Author:** ![jamoser](https://avatars.discourse-cdn.com/v4/letter/j/b2d939/32.png) [@jamoser](https://forums.percona.com/u/jamoser)\
**Post date:** [November 1, 2022, 1:15pm UTC](https://forums.percona.com/t/how-to-enable-tls-on-mongodb-operator-without-requiring-client-certificates/7753/3 "2022-11-01T13:15:04Z")

</div>

> [@Anjitha](#):
>
> enable TLS on the operator without the need of client certificates

I think you missed the point of TLS … ?
