Unable to get issuer cert locally protocol error

hi all,

when im trying to go on a web page, squid cant connect and gives me an error page -

The system returned:

(71) Protocol error (TLS code: X509_V_ERR_UNABLE_TO_GET_ISSUER_CERT_LOCALLY)

SSL Certficate error: certificate issuer (CA) not known: /C=US/O=Let’s Encrypt/CN=Let’s Encrypt Authority X3

This proxy and the remote host failed to negotiate a mutually acceptable security settings for handling your request. It is possible that the remote host does not support secure connections, or the proxy is not satisfied with the host security credentials.

does anyone know what the problem is

cheers,

rob

1 Like

Hi @robertkwild,

Are you the administrator of this web site and/or of the Squid proxy that’s in use here?

The web site is probably configured incorrectly and is not serving the full certificate chain (it’s missing an intermediate certificate that should be served to clients). Browsers are more tolerant of this kind of error than other TLS clients, such as proxies, often are.

3 Likes

awesome ive done it!!!

https://docs.diladele.com/faq/squid/fix_unable_to_get_issuer_cert_locally.html

3 Likes