curl --cert thing.pem --cacert ca.crt https://somehost.com:8443/ #works ctx = OpenSSL::SSL::SSLContext.new store = OpenSSL::X509::Store.new store.add_file 'thing.pem' ctx.cert_store = store ctx.ca_file = 'ca.crt'