Skip to content

Comment on Ask HN: Where do you get CA validated “Client Certificates”?parent

Comments

Nope, this really is weird. Can't you add a root CA to the machine providing the service? e.g. https://nginx.org/en/docs/http/ngx_http_ssl_module.html#ssl_...

Unfortunately no. That's how I think client certificates are usually given; generated with a self signed CA, but this 3rd party API want's a pre-trusted CA, not a self signed one.

I still can't understand what's going on :(

Who's doing what, and which machine connects to the other one?

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.