The administrative trust defaults in deploy.nsf and the Internet certifiers in the install kit's Java™ keystore are processed to define trusted certifiers. The Keystore is used directly during installation but is ignored at runtime. The deploy.nsf is processed at startup to add trust certifiers to the user's Contacts application (names.nsf) to be used at runtime. You can install the deploy.nsf application as part of a Notes® client install kit. Notes use an embedded Mozilla browser (XULRunner), which does not have a UI option to add custom certificates to its Mozilla certificate store.
Notes should have a UI option to add custom certificates. To work around this limitation, customers can:
--Use Mozilla Firefox to update the certificate store with the required custom certificates.
--Copy the updated certificate files (cert8.db, k3.db) to the Notes browser profile folder after the first client run.
A suggestion is to have a UI option to add custom certificates to its Mozilla certificate store.