# "RequestError: self-signed certificate"

**URL:** <https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017>\
**Category:** General\
**Created:** [7 June 2023 12:31 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017 "2023-06-07T12:31:09Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![CJ10](https://avatars.discourse-cdn.com/v4/letter/c/f6c823/32.png) [@CJ10](https://discourse.nodered.org/u/CJ10)\
**Post date:** [7 June 2023 12:31 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/1 "2023-06-07T12:31:09Z")

</div>

I am trying to scrape some information from a webpage but I seem to be failing at the first hurdle.  
I get an error on teh http request of "RequestError: self-signed certificate"

Is there a way I can get around this?

---

<div class="post-metadata">

**Author:** ![TotallyInformation](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/totallyinformation/32/31_2.png) [@TotallyInformation](https://discourse.nodered.org/u/TotallyInformation)\
**Post date:** [7 June 2023 15:57 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/2 "2023-06-07T15:57:06Z")

</div>

You can turn off certificate checks which would stop the error.

![image](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/3X/4/d/4d599f6eaaeef3693e5ef78985fcd7fd4319abb0.png)

So you need to include a msg.rejectUnauthorized property in the inbound msg.

---

<div class="post-metadata">

**Author:** ![CJ10](https://avatars.discourse-cdn.com/v4/letter/c/f6c823/32.png) [@CJ10](https://discourse.nodered.org/u/CJ10)\
**Post date:** [7 June 2023 16:55 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/3 "2023-06-07T16:55:28Z")

</div>

Thanks  
Do I do that in a 'funcction node' before the 'http request node'?

---

<div class="post-metadata">

**Author:** ![TotallyInformation](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/totallyinformation/32/31_2.png) [@TotallyInformation](https://discourse.nodered.org/u/TotallyInformation)\
**Post date:** [7 June 2023 17:05 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/4 "2023-06-07T17:05:09Z")

</div>

You could do it with a change node if you wanted.

---

<div class="post-metadata">

**Author:** ![CJ10](https://avatars.discourse-cdn.com/v4/letter/c/f6c823/32.png) [@CJ10](https://discourse.nodered.org/u/CJ10)\
**Post date:** [7 June 2023 19:41 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/5 "2023-06-07T19:41:20Z")

</div>

> [@TotallyInformation](#):
>
> msg.rejectUnauthorized

I think I may be able to do it by ticked the "Enable secure (SSL/TLS) connection" box, in the http request node and then edit the TLS configuration and uncheck the "Verify server certificate" box. I will try it tomorrow,

But I'm interested in how I would do it using a "change node"?  
Would the change node be before or after the http request node? ANd what am I changing? Something like;

```auto
options = 
  
  rejectUnauthorized: false

```

---

<div class="post-metadata">

**Author:** ![TotallyInformation](https://sea2.discourse-cdn.com/flex026/user_avatar/discourse.nodered.org/totallyinformation/32/31_2.png) [@TotallyInformation](https://discourse.nodered.org/u/TotallyInformation)\
**Post date:** [7 June 2023 19:56 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/6 "2023-06-07T19:56:19Z")

</div>

![image](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/3X/6/e/6efbf8b5e256d74934c63beb00984ac3523c7184.png)

---

<div class="post-metadata">

**Author:** ![CJ10](https://avatars.discourse-cdn.com/v4/letter/c/f6c823/32.png) [@CJ10](https://discourse.nodered.org/u/CJ10)\
**Post date:** [8 June 2023 19:19 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/7 "2023-06-08T19:19:45Z")

</div>

> [@CJ10](#):
>
> uncheck the "Verify server certificate" box.

Thank you that worked.  
FYI, I couldn't get it to work using the uncheck the "Verify server certificate" box though.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex026/uploads/nodered/original/1X/d073cd938eafa2e558d7c2cd59003b3ef4963033.png) [@system](https://discourse.nodered.org/u/system)\
**Post date:** [22 June 2023 19:20 UTC](https://discourse.nodered.org/t/requesterror-self-signed-certificate/79017/8 "2023-06-22T19:20:33Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
