X509: certificate signed by unknown authority


#1

Greetings,

Using BOSH: https://github.com/concourse/concourse-bosh-release to deploy Concourse (latest). Looks like when I try to integrate CF_AUTH, Concourse is having problem with self-signed certificates. This is what I get:

x509: certificate signed by unknown authority
server: Failed to open connector cf: failed to open connector: failed to create connector cf: Get https://api.system.cflab02-cg.localnet.com/v2/info: x509: certificate signed by unknown authority
server: Failed to open connector cf: failed to open connector: failed to create connector cf: Get https://api.system.cflab02-cg.localnet.com/v2/info: x509: certificate signed by unknown authority

Is there any way I can specify a flag to along the lines of ssl-skip-verify or something ?

Thanks again.


#2

hi akamalov,

i experienced other problems with the x509 certificates as well -> https://github.com/concourse/concourse/issues/2902 .

best,
D


#3

I had to modify Concourse startup to include --cf-skip-ssl-validation. Once done, Concourse did come up and was able to connect to CF.