# Still x509 error while executing authorization request

**URL:** https://hub.mender.io/t/still-x509-error-while-executing-authorization-request/2786
**Category:** General Discussions
**Created:** [November 5, 2020, 3:33pm UTC](https://hub.mender.io/t/still-x509-error-while-executing-authorization-request/2786 "2020-11-05T15:33:14Z")
**Posts on this page:** 3
**Page:** 1

<div class="post-metadata">

### Author: ![buffo](https://yyz2.discourse-cdn.com/flex036/user_avatar/hub.mender.io/buffo/32/909_2.png) [@buffo](https://hub.mender.io/u/buffo)
#### Post date: [November 5, 2020, 3:33pm UTC](https://hub.mender.io/t/still-x509-error-while-executing-authorization-request/2786/1 "2020-11-05T15:33:14Z")

</div>

Hi.

I am trying to connect my device to the [hosted.mender.io](http://hosted.mender.io) server without a full Mender integration. For this purpose, I compiled the mender client for my architecture and followed the steps [here](https://docs.mender.io/2.2/client-configuration/installing). However, I always get the x509 authorization error:

 ![mender_daemon](https://canada1.discourse-cdn.com/flex036/uploads/mender/original/1X/9b90b898876dd72e8efd5bcd0379f5baf4324b24.png)

My /etc/mender/mender.conf looks like this:

```
{
   "IntervalSeconds": 5,
   "RetryPollIntervalSeconds": 30,
   "ServerURL": "https://hosted.mender.io/",
   "TenantToken": " MY TOKEN ",
   "UpdatePollIntervalSeconds": 5
 }

```

I tried it without any server.crt at /etc/mender and created one on my own using:

```
CERT_API_CERT_API_CN=hosted.mender.io CERT_STORAGE_CN=hosted.mender.io ./keygen

```

with the integration repository and copied that file on my device.

What are the final steps to authorities my device?

---

<div class="post-metadata">

### Author: ![dellgreen](https://yyz2.discourse-cdn.com/flex036/user_avatar/hub.mender.io/dellgreen/32/85_2.png) [@dellgreen](https://hub.mender.io/u/dellgreen)
#### Post date: [November 5, 2020, 3:59pm UTC](https://hub.mender.io/t/still-x509-error-while-executing-authorization-request/2786/2 "2020-11-05T15:59:04Z")

</div>

As you are using [https://hosted.mender.io](https://hosted.mender.io), as far as I am aware you shouldn’t need to provide the Server.crt as its using the real online mender cert. What you may not have your end is the full certificate authority chain installed on your device. This is usually satisfied by installing the ca-certificates package/recipe depending on if you are doing a Yocto build or some other Linux distro build.

---

<div class="post-metadata">

### Author: ![buffo](https://yyz2.discourse-cdn.com/flex036/user_avatar/hub.mender.io/buffo/32/909_2.png) [@buffo](https://hub.mender.io/u/buffo)
#### Post date: [November 6, 2020, 12:18pm UTC](https://hub.mender.io/t/still-x509-error-while-executing-authorization-request/2786/3 "2020-11-06T12:18:05Z")

</div>

A missing ca-certificates package was also my best guess, but the functionality along with OpenSSL implementation is fully available.  
However, I noticed that my certificates were not available at the default location `/usr/local/ssl`. Switching to that directory made it working for me.  
Anyway, thanks @dellgreen! ☀
