I have IdenTrust 1 and my Mac OSX is still screwed

Hi guys!

Half of my team on MacOS/iOS are not able to connect to a number of endpoints with certificates generated including buffalochip.com. There are no failures on Windows and a minority of MacOS/iOS devices can connect.

I have a feeling @Mikek won't be able to load the below sites:

Examples:
https://random.iamonthe.cloud
https://certtest.rightflank.app (a successful tls connection expects a no healthy upstream response)

Is there a wider issue with MacOS/iOS that has not been considered with the rollout of the new root certificates? See: Why won’t Safari open that web page? – The Eclectic Light Company

Update: Fixed on Mac and iOS by providing the full chain - works for both default and alt chain.