Closed Ran-Xing closed 2 years ago
I'm having similar issue on macOS "certificate is not standards compliant".
When you want to have an intermediate in the chain, you'll need to ensure that you set the path length restriction appropriately on the root.
As is, you have a path length restriction of zero on the root, which makes an intermediate invalid. Try certstrap init --path-length 1
for the root.
BIG Web.crt
BIG Web.key
GTS_CA_1C3.crt
GTS CA 1C3.key
awvs.lan.crt
awvs.lan.key