Errors / Network errors
net::ERR_CERT_AUTHORITY_INVALID
The site's security certificate was not issued by anyone the browser trusts.
The browser refuses the connection; for the page itself, visitors see a full-page warning.
Why it happens
- A self-signed certificate, or one from an internal authority, on a public site.
- A missing intermediate certificate: the server sends its own certificate but not the chain to a trusted root.
- On the visitor's side, antivirus or a corporate proxy intercepting HTTPS.
How to fix it
- Use a certificate from a public authority (Let's Encrypt is free).
- Serve the full chain (
fullchain.pem, notcert.pem); an SSL checker shows a missing intermediate. - Click the padlock (or Not secure) in the address bar, then the certificate, to read who issued it: your own server's name or an unknown authority is the site's problem; an antivirus or a company's name is the visitor's network intercepting the connection.
openssl s_client -connect example.com:443 -showcertslists the chain the server really sends.
Whose problem it is
Usually the server that answers the request.
Does your site have it?
Free, no account. We open your page and four more in a clean Chrome and list every error like this one, with the page and the click that caused it. How the free page check works.
Often seen with
- ERR_CERT_COMMON_NAME_INVALIDThe site's certificate was made for a different address than the one being visited.
- ERR_CERT_DATE_INVALIDThe site's security certificate has expired.