All Sport Pro: How do I add Trust of All Sport Pro Root CA
Potential Symptoms
Using browser to connect to All Sport Server and getting an error message, Your Connection is not Private.
When first type in the address* (e.g., https://allsport or https://allsport.local ), the browser will alert with the following: Your connection isn't private.
👉Note on hostnames: The hostname allsport.local is used throughout this guide. However, your server may be named differently, such as D8Video-P.local or Venus-P.local. Replace allsport.local with your actual hostname in all steps below.
Within the advanced portion of the prompt, there is usually an option to proceed (Continue to allsport (unsafe)) to the website at which point the prompt is usually not repeated.
The address bar of the browser will continue to warn that the site is Not secure.
Environment
- Product: All Sport Pro
- Component: Using browser to connect to All Sport Pro server. Applicable with all browsers, including Chrome, Edge, Firefox, Safari.
- Control System: All Sport server
Cause
All Sport Pro uses a security certificate (a digital verification code) that is unique to each system. Your browser doesn't recognize this certificate by default, so it warns you that the connection might not be safe. To remove this warning, you need to tell your device to trust this certificate. This is a common and accepted design for HTTPS on a local network.
Important Notes
- Install on every device: You must perform these steps on each computer, tablet, or other device that accesses All Sport Pro.
- Each system has its own certificate: If you have multiple All Sport Pro systems (at different courts, venues, or facilities), each one has a different certificate. You will need to install the certificate from each system on your devices.
Resolution
The steps should be repeated on every client device that regularly interacts with All Sport Pro.
Download Root Certificate
The most direct way to obtain the certificate is via the direct download URL:
- Open a web browser and navigate to:
http://allsport.local:5000/api/v1/admin/cert - Save the certificate file and follow the steps below based on your device type.
Alternative method (after authentication): If you prefer to download the certificate through the application interface:
- Navigate to
https://allsport.local - Authenticate to All Sport Pro
- Go to the About page (accessible via the user icon in the top right corner)
- Click Download HTTPS Certificate at the bottom of the page
Install and Trust the Certificate
After downloading the certificate, follow the steps below for your device type.
Use the arrows to expand/collapse each section.
Add Trust on Windows
- Within the downloads view, click Open file.
- Click Install Certificate...
- Select Local Machine for Store Location and click Next.
- Select Place all certificates in the following store and click Browse...
- Select Trusted Root Certification Authorities and click OK.
- Click Next.
- Click Finish.
- Click OK in the prompt for import was successful.
- Close all open browsers.
- Reopen browser and go to https://allsport (if different, replace "allsport" with applicable hostname)
The website should now display a secure connection.
Add Trust on iPad
- Tap Allow
- Tap Close after successful downloaded.
- Go to Settings.
- Tap Profile Downloaded.
- Tap Install.
- Tap Install.
- Tap Install.
- Tap Done.
- Go to Settings > General > About > Certificate Trust Settings.
- Tap the on-off to toggle on trust.
- Tap Continue.
- The toggle should now show as green.
- All Sport Pro will now show as trusted with a padlock icon in Safari.
Additional information: https://support.apple.com/en-us/102390
Add Trust on MacOS
- Double-click the downloaded certificate file (
.cerfile). - You will be prompted to authenticate using Touch ID (or Face ID on some Macs). Authenticate to proceed.
- Keychain Access will open automatically and the certificate will be added to the System keychain..
- In the Keychain Access window, click on System in the left sidebar under "System Keychains".
- Click on the Certificates tab at the top of the window.
- In the search box at the top right, type "Daktronics" to find the certificate.
- Double-click the certificate to open its details.
- Expand the Trust section by clicking the disclosure triangle.
- For the option "When using this certificate:", change the dropdown from "Use System Defaults" to Always Trust.
- Close the certificate details window. You will be prompted to authenticate again with Touch ID to confirm the change.
- Navigate away from the Keychain Access window (switch to another app or minimize the window) and then return to Keychain Access. The red warning icon should now be gone, indicating the certificate is trusted.
- Close all open browsers.
- Reopen your browser and navigate to
https://allsport.local(or the applicable hostname). The website should now display a secure connection with a padlock icon in the address bar.
Related Resource
Venus Control Suite: How do I configure my browser to accept the VCS certificate
For Temporary Operation
Chrome: How to Disable HTTPS Enforcement for All Sport Pro Certificate Download
Issue
When attempting to download the All Sport Pro certificate using the direct download link http://allsport.local:5000/api/v1/admin/cert, Chrome may automatically redirect to HTTPS or display an error. This happens because Chrome is set to enforce HTTPS connections on all websites.
Since the certificate download requires an HTTP connection (not HTTPS), this enforcement can prevent you from accessing the download page.
To download the certificate, it is advised that an alternate browser is used. If that is not possible, Chrome can be set to temporarily allow HTTP connections.
Temporary Chrome Solution (Recommended for Certificate Download Only)
f you only need to disable HTTPS enforcement briefly to download the certificate:
- In the Chrome address bar, type:
chrome://net-internals/#hsts - Under "Delete domain security policies", type:
allsport.local - Click Delete.
- Now navigate to
http://allsport.local:5000/api/v1/admin/certto download the certificate. - After downloading the certificate, you can re-enable HTTPS enforcement by restarting Chrome or returning to the same page and re-entering the domain.
Permanent Solution (If You Frequently Need HTTP Access)
If you regularly need to access the certificate or other HTTP resources on your All Sport Pro system:
- In the Chrome address bar, type:
chrome://settings/security - Scroll down to "Always use secure connections".
- Toggle this setting OFF.
- You can now access
http://allsport.local:5000without Chrome forcing HTTPS.
Note: Disabling this setting makes your browsing less secure. Only disable it if you need to access local HTTP sites like All Sport Pro. Re-enable it once you've finished.
KB ID: 000028379
DISCLAIMER: Use of this content may void the equipment warranty, please read the disclaimer prior to performing any service of the equipment.
DAKTRONICS DOES NOT PROMISE THAT THE CONTENT PROVIDED HEREIN IS ERROR-FREE OR THAT ANY DEFECTS WILL BE CORRECTED, OR THAT YOUR USE OF THE CONTENT WILL PROVIDE SPECIFIC RESULTS. THE CONTENT IS DELIVERED ON AN "AS-IS" AND "AS-AVAILABLE" BASIS. ALL INFORMATION PROVIDED IN THIS ARTICLE IS SUBJECT TO CHANGE WITHOUT NOTICE. DAKTRONICS DISCLAIMS ALL WARRANTIES, EXPRESS OR IMPLIED, INCLUDING ANY WARRANTIES OF ACCURACY, NON-INFRINGEMENT, MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE. DAKTRONICS DISCLAIMS ANY AND ALL LIABILITY FOR THE ACTS, OMISSIONS AND CONDUCT OF YOU OR ANY THIRD PARTIES IN CONNECTION WITH OR RELATED TO YOUR USE OF THE CONTENT. ADJUSTMENT, REPAIR, OR SERVICE OF THE EQUIPMENT BY ANYONE OTHER THAN DAKTRONICS OR ITS AUTHORIZED REPAIR AGENTS MAY VOID THE EQUIPMENT WARRANTY. YOU ASSUME TOTAL RESPONSIBILITY FOR YOUR USE OF THE CONTENT AND ANY LINKED CONTENT. YOUR SOLE REMEDY AGAINST DAKTRONICS FOR DISSATISFACTION WITH THE CONTENT IS TO STOP USING THE CONTENT. THIS LIMITATION OF RELIEF IS A PART OF THE BARGAIN BETWEEN THE PARTIES.
The above disclaimer applies to any property damage, equipment failure, liability, infringement, or personal injury claim arising out of or in any way related to your use or application of the content, whether such claim is for breach of contract, tort, negligence or any other cause of action.