Solving TLS Certificate Chain Validation failures in Netop Host

Modified on Sun, 14 Sep at 2:26 PM

In some cases, and while connecting to a Host on Windows 7, the system may fail and throw an error when attempting to establish a remote connection using Portal Communication profile and connecting either through the Portal (browser) or the Guest app.
The reason why the connection fails is that the TLS Certificate Chain Validation fails and thus, the following error is thrown: Failed to connect to Host. Reason: Cannot connect to Connection Server

The certificate on our connection servers is issued by RapidSSL TLS RSA CA G1 (issued by root CA is DigiCert Global Root G2) and normally, operating systems of the Host machines get these trusted CAs in their Trusted Root Certification Authorities as part of OS updates. 

If you are missing these certificates in your Local Machine Certificate Store - Trusted Root Certification Authorities folder, the simplest fix is to install them either by:

For the actual import of the certificates, you can follow the below steps:

      Step 1: Open the "Local computer" certificates store:

      Start MMC -> File -> Add or Remove Snap In - >Certificates -> Add (from Local Computer)

       Step 2: Import the certificates:

       Go to Certificates -> Right click -> All Tasks - > Import (and select the previous downloaded certificates RapidSSL_TLS_RSA_CA_G1.crt and DigiCertGlobalRootG2.crt)

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article