Skip to main content
Participant
February 6, 2016
Answered

Northrop Grumman root certificate not trusted?

  • February 6, 2016
  • 2 replies
  • 1984 views

I'm running Acrobat XI (11.0.14) on Mac OS X 10.11.3

I received a digitally signed document from a trusted source at Northrop Grumman.  The digital signature isn't trusted.  I right-clicked on the signature and reviewed the trust train: Northrop Grumman Corporate Root CA-G2 > Northrop Grumman Corporate Signing CA-G2 > Individual's Digital Signature

Both the Northrop Grumman Corporate Root CA-G2 and the Northrop Grumman Corporate Signing CA-G2 aren't trusted.  Shouldn't these be trusted by default.  Isn't Acrobat XI pre-loaded with major trusted root certificates?  Isn't OS X also similarly pre-loaded?

I know I can trust this individual's signature directly from the document, but I'd prefer not to.

Any ideas?

This topic has been closed for replies.
Correct answer Test Screen Name

If you want to know about Mac OS, see Lists of available trusted root certificates in OS X - Apple Support

Doesn't seem to be there.

2 replies

Test Screen NameCorrect answer
Legend
February 6, 2016

If you want to know about Mac OS, see Lists of available trusted root certificates in OS X - Apple Support

Doesn't seem to be there.

Participant
February 7, 2016

Thanks!  That explains it, but it brings up a new question: I then exported the Northrop Grumman Corporate Root CA-G2 certificate from the document and added it to my System keychain with a setting of Always Trust.  When I opened up the document again, the signature was still not trusted, and the Northrop Grumman Corporate Root CA-G2 was also still listed as not trusted.

Should at least the Northrop Grumman Corporate Root CA-G2 be listed as trusted then?

Inspiring
February 8, 2016

Add your certificate to Acrobat's Trusted Identities.

Participating Frequently
February 6, 2016

Hi mattheww94651223,

Would like to inform you this can be done after going through Acrobat pro > Preferences > Signatures > 'More' in Verification menu > uncheck the option for 'When document has valid but untrusted signatures, prompt to review & trust signers'.

Regards ,

Yatharth

Participant
February 6, 2016

But why isn't NG's root certificate already trusted by default?

- Matt