Self signed certificate and fedora chrome

On my fedora linux server, i have created the 2 files for self signed certificate with this command:

gitea cert --host alias1,alias2,alias3 --duration 87600h0m0s --ca

This produced a CERT and a KEY file which i’ve set in app.ini.

From a laptop linux fedora chrome 78, i visit https://alias1:3000 but I get NET::ERR_CERT_INVALID.
The subject/issuer/expires/PEMencodedchain all match the .pem files
Yet it says “Your connection is not private”

ANy ideas how to get chrome to accept that ?

ON gitea’s server gitea.log side, I see:

…c/net/http/server.go:3055:logf() [I] http: TLS handshake error from remote error: tls: unknown certificate