Certificates created locally don't use subjectAltName
for setting the DNS
and fail to authenticate when running BrowserSync
#3653
Labels
bug
Something aint working right!
When using BrowserSync for local development (and the
https
feature), using the Lando certs causesNET::ERR_CERT_COMMON_NAME_INVALID
errors on Chromium browsers (Chrome, Arc, etc.). We were able to generate a new certificate using theopenssl
library for MacOS (see code snippet below) which includes the additionalsubjectAltName
parameter that properly generates theDNS
fields within the certificate, which allows Chromium browsers to properly recognize that the certificate is valid when using a port on the URL (testsite.lndo.site:3000).I should note that the current Lando local certificate works perfectly if you're not running BrowserSync, but only fails when adding the BrowserSync port. I'm hoping to get the certificate generation within Lando updated to include the
subjectAltName
so that we can continue to use the built-in Lando cert, instead of having to generate our own to get around the post issues.I wasn't sure quite where this issue should go so please let me know if it's in the wrong place and I'll gladly move, thank you!
The text was updated successfully, but these errors were encountered: