Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

"Trust anchor for certification path not found" when using custom CA, even after installing into trust store #191

Open
adityaruplaha opened this issue Nov 23, 2024 · 1 comment · May be fixed by #204

Comments

@adityaruplaha
Copy link

Firstly, thanks for this awesome app!

I run a personal CA for my self-hosted WebDAV server. While certificate overriding is possible for the desktop application, for the Android application, even adding the custom CA to the system-wide trust store doesn't work, as Zotero is configured to accept only pre-installed system certificates (see https://developer.android.com/privacy-and-security/security-config#certificates):

This is a problem for those using self-hosted or institutional WebDAV servers. The fix is trivial, moving

into the base-config section.

I feel that Android has plenty of safeguards against users accidentally adding CAs opening their traffic up to interception, so this change would not significantly impact security, and would be an important QOL improvement for a good chunk of users.

@adityaruplaha
Copy link
Author

A corresponding thread has been filed on the forums: https://forums.zotero.org/discussion/120678/custom-ca-on-android

adityaruplaha added a commit to adityaruplaha/zotero-android that referenced this issue Dec 27, 2024
@adityaruplaha adityaruplaha linked a pull request Dec 27, 2024 that will close this issue
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

Successfully merging a pull request may close this issue.

1 participant