Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

"Trust anchor for certification path not found" when using custom CA, even after installing into trust store #191

Open
adityaruplaha opened this issue Nov 23, 2024 · 0 comments

Comments

@adityaruplaha
Copy link

Firstly, thanks for this awesome app!

I run a personal CA for my self-hosted WebDAV server. While certificate overriding is possible for the desktop application, for the Android application, even adding the custom CA to the system-wide trust store doesn't work, as Zotero is configured to accept only pre-installed system certificates (see https://developer.android.com/privacy-and-security/security-config#certificates):

This is a problem for those using self-hosted or institutional WebDAV servers. The fix is trivial, moving

into the base-config section.

I feel that Android has plenty of safeguards against users accidentally adding CAs opening their traffic up to interception, so this change would not significantly impact security, and would be an important QOL improvement for a good chunk of users.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

1 participant