So, what is your advice, how to I make a good chain so no one would ask?I mean using this RBC cert? anyway, big thanks for helping)by eternity - Nginx Mailing List - English
But, this chain was automatically detected by chrome. Why chrome thinks that it is not broken?by eternity - Nginx Mailing List - English
So, i made a bit progress I took chrome which doesn't ask for risk, and exported chain So, now, old version asks only once to add root CA and then it becomes silent Now the question - how to add one more element in chain so old browsers won't even ask for adding CA site: https://svpage.ruby eternity - Nginx Mailing List - English
Hmm, the latest firefox also ask for security risk google chrome and opera doesn't how to make for all browsers be silent?by eternity - Nginx Mailing List - English
Sorry, I was confused a bit a have already intermidiate certificate, which was(I suppose) issued by comodo. I do openssl s_client -connect www.host.com:443 And it returns errors Verify return code: 21 (unable to verify the first certificate)by eternity - Nginx Mailing List - English
and your_cert.crt - Is a self-signed certificate?by eternity - Nginx Mailing List - English
I mean cert file AddTrustExternalCARoot.crt from comodoby eternity - Nginx Mailing List - English
I'm sorry, but can you explain plz what should I do after downloading intermediate certificate?Because I Have a task to make old browsers work without errors, but I don't know about chained certeficate, I have only ROOT ca certificate, and chained was downloaded and installed before meby eternity - Nginx Mailing List - English
It's from support.comodo.com I have .crt file with two certificatesby eternity - Nginx Mailing List - English
I have an nginx server as a frontend to apache. Nginx runs ssl with certificate that was bought and is valid. New versions of browsers(like opera 10) have no problems, but old(like 9.5 and some client-banking systems) show a message regarding certificate. What can I do to prevent this?by eternity - Nginx Mailing List - English