# Metricbeat x509 Certificate error

**URL:** https://discuss.elastic.co/t/metricbeat-x509-certificate-error/342072
**Category:** Elasticsearch
**Created:** [August 31, 2023, 3:53pm UTC](https://discuss.elastic.co/t/metricbeat-x509-certificate-error/342072 "2023-08-31T15:53:09Z")
**Posts on this page:** 1
**Showing post:** 2

<div class="post-metadata">

### Author: ![carly.richmond](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/carly.richmond/32/104935_2.png) [@carly.richmond](https://discuss.elastic.co/u/carly.richmond)
#### Post date: [September 1, 2023, 9:47am UTC](https://discuss.elastic.co/t/metricbeat-x509-certificate-error/342072/2 "2023-09-01T09:47:44Z")

</div>

Hi @artschooldropout ,

Which version of Metricbeat and Filebeat are you using? Can you try adding the `ssl_certificate_authorities` option which looks to be missing from your configuration [as per this thread](https://discuss.elastic.co/t/metricbeat-certificate-signed-by-unknow-authority/288391)?

As an FYI from version 8 onwards you may need to update your certificates to use Subject Alternative Names over CommonName:

> [@artschooldropout](#):
>
> `Treating the CommonName field on X.509 certificates as a host name when no Subject Alternative Names are present is going to be removed. Please update your certificates if needed. Will be removed in version: 8.0.0","service.name":"metricbeat","ecs.version":"1.6.0`

---

_[View the full topic](https://discuss.elastic.co/t/metricbeat-x509-certificate-error/342072)._
