Score:0

Client side certificate cannot be installed on Apple ios. Error-"The authenticity of "cloudflare" cannot be verified"

in flag

We use client side Cloudflare certificate to allow or disallow access to our site since the site is meant to be used by a small group of users who are provided a Cloudflare client certificate.

Our firewall blocks all requests from clients/browsers that do not have the certificate.

We are not using the certificate on a server - just on client side for the browser to pass to the server to identify the client.

The same certificate works on desktop browsers but some ios devices (iphone) are unable to use the certificate citing the error “The authenticity of “Cloudflare” cannot be verified”. This error comes when installing the profile. And of course the browser cannot access the site since there is no exchange of client certificate during the handshake.

On the internet we found suggestions to manually enable trust for the installed certificate BUT in our case we do not see out certificate listed there in order to toggle the trust setting there.

Binky avatar
de flag
Try adding the certificate that issued the client certificate to your iPhones, and then trusting that certificate. If that doesn't work, add the certificate that issued that certificate, and all the certificates in the chain, back to the root cert.
mangohost

Post an answer

Most people don’t grasp that asking a lot of questions unlocks learning and improves interpersonal bonding. In Alison’s studies, for example, though people could accurately recall how many questions had been asked in their conversations, they didn’t intuit the link between questions and liking. Across four studies, in which participants were engaged in conversations themselves or read transcripts of others’ conversations, people tended not to realize that question asking would influence—or had influenced—the level of amity between the conversationalists.