Kaspersky
Solved

Disable certificate check for internal server, The certificate chain is not complete.

  • 10 May 2019
  • 5 replies
  • 20985 views

For an internal server I would like to switch off the certificate check. Unfortunately it looks like adding the exception doesn't seem to work.

SETTINGS -> ADDITIONAL -> NETWORK -> MANAGE EXCLUSION

I've added 192.168.96.40 and localhost.localdomain but still I receive:

Connection not protected
The security of your connection is reduced. Criminals can attempt to steal your data from the website. You are advised to leave this website.
URL:
localhost.localdomain
Reason:
The certificate chain is not complete. View certificate

I don't want to switch off the certificate protection completely, so please could you help me out?
icon

Best answer by harlan4096 18 May 2019, 09:41

Welcome to the new Kaspersky Community!

Please check if the solution provided in this thread may helps You:

https://community.kaspersky.com/kaspersky-total-security-14/untrusted-root-center-site-blocked-connection-not-protected-and-can-t-exclude-it-i-understand-the-risks-is-not-available-812
View original

5 replies

Userlevel 7
Badge +7
Welcome to the new Kaspersky Community!

Please check if the solution provided in this thread may helps You:

https://community.kaspersky.com/kaspersky-total-security-14/untrusted-root-center-site-blocked-connection-not-protected-and-can-t-exclude-it-i-understand-the-risks-is-not-available-812
Yeah, that did the trick! Thanks a lot 🙂
Userlevel 7
Badge +7
Great! 🙂
https://secure.incometax.gov.bd/TINHome

Peer’s Certificate issuer is not recognized.

HTTP Strict Transport Security: true
HTTP Public Key Pinning: false

Certificate chain:

-----BEGIN CERTIFICATE-----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-----END CERTIFICATE-----

how do I do this for my whole subnet ?

 

192.168.*, 192.168.1.-254 doesnt work. 

Reply / Ответить