Comment 7 for bug 1795242

Revision history for this message
Schroeffu (david-schroff) wrote :

@seth-arnold more and more intermediate certificates are also included in Chrome/Firefox, because a lot of website admins forget to include them in their .pem file of their domain certificate. To prevent showing an ugly error message, browsers are integrate all the intermediates too. thats what i saw the last year.

Another example of required intermediate missing in ca-certificats: Thawte EV RSA CA 2018

When using Ubuntu as Proxy Server with SSL MITM, this is a huge problem. We need the official intermediate certifications also in this package.