Home / Docs / Apache Kafka (KRaft, Hardened) / Configuration
/opt/kafka/config/kraft-server.properties
No application credential exists; rotate your SSH keys through your cloud's own key management.
/opt/kafka/bin/kafka-broker-api-versions.sh --bootstrap-server localhost:9092 — wire this into your cloud's monitoring agent or an external probe.Replace the instance with the newest image version. Data topics ride /var/lib/kafka — for eval workloads, re-create; for durable pipelines, mirror to the new instance before cutover.
Snapshot the volume with kafka stopped, or use MirrorMaker 2 to replicate topics off-box.