error: Peer's Certificate issuer is not recognized. That means it can not find the corresponding ssl server key in the global system keyring. I want to check this by looking at the list of all system wide available ssl keys on a gentoo linux system. How can I get this list?

A number of certificate authorities sign up to another CA's root cert, such as how GoDaddy signs up to ValiCert (though GoDaddy now also has their own real root), so as long as an endpoint server responds with a certificate chain that includes a certificate that is directly trusted by's list of trusted certificates, the server's

To view your certificate stores, run certmgr.msc as described there.The "root" store contains the root CA, i.e. the CA which are trusted a priori.certmgr.msc shows you an aggregate view of all root CA which apply to the current user; internally, there are several relevant stores (the "local machine" stores apply to all users, the "current user" stores are specific to the current user; and

The digital certificate issued to them will be validated by a trusted root certificate authority or by a server that is trusted by the trusted root. This chain of certificates is called a certificate hierarchy. A small group of trusted certificate authorities is installed on computers within the operating system.

Click the "Trusted Root Certification Authorities" tab. A list of about 400 pre-installed trusted root CA certificates shows up.

As the FPKI root and trust anchor for the Federal Government, the FCPCA supports government person trust and and a small number of agency intranet enterprise devices, including Personal Identity Verification (PIV) credentials. The FCPCA's design enables any certificate issued by any FPKI CA to validate its certificate path to a single root CA.

From the Certificate Import Wizard I browse to the certificate, click the "Place all certificates in the following store" button and browse to the Trusted Root Certification Authorities folder. I click finish, and after a few seconds I get a window saying that the import was successful.

