Daisuke
Contributor
- Joined
- Jun 23, 2011
- Messages
- 1,041
My bad, I thought we are talking the latest TrueNAS release.Because we're discussing FreeNAS
For us who use the latest version, I presume we do not have to do anything, right? What jail package we need to make sure is installed, which has the latest LetsEncrypt root certificate? Thank you.Starting in FreeBSD 12.2, a new certificate manager has been added to FreeBSD
Edit: I believe this will be all fixed into ca_root_nss-3.72. To import the latest LetsEncrypt root certificate into Mono certificate store, use @jgreco's fix and run these commands inside your jail:
Code:
$ iocage console yourjailname # pkg provides /usr/local/share/certs/ca-root-nss.crt Name : ca_root_nss-3.71 Desc : Root certificate bundle from the Mozilla Project Repo : FreeBSD Filename: usr/local/share/certs/ca-root-nss.crt # fetch --no-verify-peer https://extranet.www.sol.net/files/misc/ca-root-nss.crt.src # mv -f ca-root-nss.crt.src /usr/local/share/certs/ca-root-nss.crt # cert-sync /usr/local/share/certs/ca-root-nss.crt
cert-sync
is a binary part of mono6.8-6.8.0.123
, note there was an importing bug present into a previous version.You can always restore the original
/usr/local/share/certs/ca-root-nss.crt
with:Code:
# pkg install -f ca_root_nss
Restart the jail, the error will still show when you access the System Status inside Radarr UI. You need to test and save each indexer configuration in Settings > Indexers, then the error will be gone:
You do not need to disable the Certificate Validation in Settings > General:
Last edited: