Apr 19, 2018 · Similar to other platforms like Windows and macOS, Android maintains a system root store that is used to determine if a certificate issued by a particular Certificate Authority (CA) is trusted. As a developer, you may want to know what certificates are trusted on Android for compatibility, testing, and device security.

GlobalSign Root Certificates are already distributed in all operating systems, browsers, and mobile devices, meaning that all certificates issued from hierarchies beneath these roots are transparently trusted. For closed ecosystems, where public trust isn't wanted or allowed, private and dedicated customer roots and intermediates are issued. The entire certificate chain is trusted, and thus the site certificate is trusted as well. In the event that the last certificate is not a root certificate, and there are no more certificates …

Trusted Root Intermediate Certificates. This support article is all about Trusted Root Intermediate Certificates, a select service with strict requirements. PKI hierarchies allow you to control the chain of trust in your ecosystem, whether you're implementing client authentication within an enterprise or deploying. To better protect Apple customers from security issues related to the use of public key infrastructure certificates and enhance the experience for users, Apple products use a common store for root certificates. You may apply to have your root certificate included in Apple products via the Apple Root Certificate Program.

Note: This setting only imports certificates from the Windows Trusted Root Certification Authorities store, not corresponding Intermediate Certification Authorities store. See bug 1473573. See bug 1473573.

In cryptography, a certificate authority or certification authority (CA) is an entity that issues digital certificates.A digital certificate certifies the ownership of a public key by the named subject of the certificate. This allows others (relying parties) to rely upon signatures or on assertions made about the private key that corresponds to the certified public key.