- 
    Type:Task 
- 
    Resolution: Fixed
- 
    Priority:Major - P3 
- 
    Affects Version/s: None
- 
    Component/s: None
- 
    None
- 
        Fully Compatible
- 
        Security 2022-02-07
- 
        140
- 
        None
- 
        None
- 
        None
- 
        None
- 
        None
- 
        None
- 
        None
Apple released some new requirements for certificates on MacOS 10.15 and newer, including M1 Macs. https://support.apple.com/en-us/HT210176
This issue seems to have presented on our new M1 Macs we received from MacStadium:
https://jira.mongodb.org/browse/BUILD-13029
One of our provisioning steps is to add trusted-ca-v1.pem (Trusted Kernel Test CA) to the user and system keychain, however, we receive a "This root certificate is not trusted" message from the Keychain Access app. 
On our macos-1014 hosts, the certificates are automatically trusted when added.
Is the fact that the certificate expired past 825 days relevant to this issue?
- is related to
- 
                    SERVER-64838 Renew all test certs - Closed
 
- 
                    SERVER-75246 Renew all test certs - Closed
 
- 
                    SERVER-87889 Renew all test certs for 8.0 -         
- Closed
 
-         
- 
                    SERVER-100276 Renew all test certs for 8.1 -         
- Closed
 
-         
- 
                    SERVER-107076 Renew all test certs for 8.2 -         
- Closed
 
-         
- related to
- 
                    SERVER-56364 Disable ssl and sslSpecial suites on macOS >= 10.15 (temporarily) -         
- Closed
 
-         
