Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Apps | Demo | Docs | Install
I

insuusvenerati

@insuusvenerati
About
Posts
5
Topics
1
Shares
0
Groups
0
Followers
0
Following
0

Posts

Recent Best Controversial

  • RequestError: unable to verify the first certificate
    I insuusvenerati

    @joseph Thanks Joseph. I’ll work on your suggestion. Meanwhile, for kasm, this appears to be the actual solution https://kasmweb.atlassian.net/wiki/spaces/KCS/pages/28835845/How+to+add+a+custom+CA+Certificate+Authority+Chain+to+Kasm+service+containers#Scenario-2%3A-You-need-to-register-a-custom-CA-certificate-to-allow-Kasm’s-services-(ie%3A-kasm_api)-to-access-network-resources-that-require-acceptance-of-a-custom-CA.

    Surfer

  • RequestError: unable to verify the first certificate
    I insuusvenerati

    Enabling debug mode on the oidc provider config on Kasm side fixes the issue. https://kasmweb.com/docs/latest/guide/oidc.html#configuration

    Surfer

  • RequestError: unable to verify the first certificate
    I insuusvenerati

    Here’s an error stacktrace from KasmWorkspaces which is external and I have configured for oidc with cloudron

    
    Unhandled exception occurred
    Traceback (most recent call last):
      File "urllib3/connectionpool.py", line 466, in _make_request
      File "urllib3/connectionpool.py", line 1095, in _validate_conn
      File "urllib3/connection.py", line 730, in connect
      File "urllib3/connection.py", line 909, in _ssl_wrap_socket_and_match_hostname
      File "urllib3/util/ssl_.py", line 469, in ssl_wrap_socket
      File "urllib3/util/ssl_.py", line 513, in _ssl_wrap_socket_impl
      File "ssl.py", line 455, in wrap_socket
      File "ssl.py", line 1041, in _create
      File "ssl.py", line 1319, in do_handshake
    ssl.SSLCertVerificationError: [SSL: CERTIFICATE_VERIFY_FAILED] certificate verify failed: unable to get local issuer certificate (_ssl.c:1000)
    
    

    I get similar SSL errors with other apps when oidc is used. Internal or not

    Surfer

  • RequestError: unable to verify the first certificate
    I insuusvenerati

    @joseph Depends on what you mean by valid certs 🙂 I added mkcert certs to Cloudron and have the CA trusted on my Mac so there aren’t errors in the browser. I just need to somehow ensure the other apps trust these certs as well

    Surfer

  • RequestError: unable to verify the first certificate
    I insuusvenerati

    Hello! I'm trying to setup Surfer and get the error

    {
        "status": "Internal Server Error",
        "message": "Issuer.discover() failed.\n    RequestError: unable to verify the first certificate\n    RequestError: unable to verify the first certificate"
    }
    

    when visiting the /_admin page. Running v8.2.3. The only thing is i'm using manually managed DNS because it's on an internal only domain / network that I manage through technitium dns. This actually happens with a lot of apps that use OIDC for login as well like Matrix Synapse. With Surfer, though, I can't manually manage users so I have to get the issue fixed at this point.

    Surfer
  • Login

  • Don't have an account? Register

  • Login or register to search.
  • First post
    Last post
0
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search