Does updating the keystore for ROR require restarting Elasticsearch? If using Let’s Encrypt, I’d have to recreate the keystore every 90 days, so would I also have to trigger a restart? Or will ROR pick up the new keystore automatically?

Hmm good question, I think the SSL part is the only part of the settings that needs a restart. The use case is actually very reasonable, so we’ll look into removing this limitation.