# Logic - Make a HTTP POST request - fails on certificate validation

**URL:** <https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411>\
**Category:** Questions & Help\
**Tags:** flow\
**Created:** [August 16, 2022, 5:29am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411 "2022-08-16T05:29:39Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![OH2TH](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/oh2th/32/111414_2.png) [@OH2TH](https://community.homey.app/u/OH2TH)\
**Post date:** [August 16, 2022, 5:29am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/1 "2022-08-16T05:29:39Z")

</div>

I’m trying to get Logic to Make a HTTP POST, where:

- URL = [https://192.168.x.x:4343/api/v1/dev/widget/update/com.lametric](https://192.168.x.x:4343/api/v1/dev/widget/update/com.lametric)…
- Headers: Content-Type:application/json, X-Access-Token:TOKENSTRING==
- Body: { “frames”: [{ “icon”: “48963”, “text”: “Temperature˚C” }] }

Now all I get is that Homey is unable to validate the certificate.

request to [https://192.168.100.219:4343/api/v1/dev/widget/update/com.lametric](https://192.168.100.219:4343/api/v1/dev/widget/update/com.lametric)… failed, reason: unable to verify the first certificate.

This is probably due to that LaMetric using self-signed certificate. Is there a way to get Homey not validate certificates?

---

<div class="post-metadata">

**Author:** ![OH2TH](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/oh2th/32/111414_2.png) [@OH2TH](https://community.homey.app/u/OH2TH)\
**Post date:** [August 16, 2022, 5:37am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/2 "2022-08-16T05:37:14Z")

</div>

Found a work around using http on port 8080 on the LaMetric device. But never the less, is there a way to tell Homey to not validate certificates?

---

<div class="post-metadata">

**Author:** ![robertklep](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/robertklep/32/160628_2.png) [@robertklep](https://community.homey.app/u/robertklep)\
**Post date:** [August 16, 2022, 6:05am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/3 "2022-08-16T06:05:54Z")

</div>

> [@OH2TH](#):
>
> But never the less, is there a way to tell Homey to not validate certificates?

No.

---

<div class="post-metadata">

**Author:** ![Quenderin](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/quenderin/32/57449_2.png) [@Quenderin](https://community.homey.app/u/Quenderin)\
**Post date:** [September 30, 2025, 8:56am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/4 "2025-09-30T08:56:38Z")

</div>

I ran into a similar issue when trying to talk with Philips Hue’s v2 API (which is HTTPS only).

Has anyone found a fix?

---

<div class="post-metadata">

**Author:** ![robertklep](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/robertklep/32/160628_2.png) [@robertklep](https://community.homey.app/u/robertklep)\
**Post date:** [September 30, 2025, 9:14am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/5 "2025-09-30T09:14:12Z")

</div>

You’re going to have to use HomeyScript and `fetch()`.

---

<div class="post-metadata">

**Author:** ![Quenderin](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/quenderin/32/57449_2.png) [@Quenderin](https://community.homey.app/u/Quenderin)\
**Post date:** [October 10, 2025, 5:34pm UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/6 "2025-10-10T17:34:39Z")

</div>

Same issue there.

---

<div class="post-metadata">

**Author:** ![robertklep](https://sea1.discourse-cdn.com/flex025/user_avatar/community.homey.app/robertklep/32/160628_2.png) [@robertklep](https://community.homey.app/u/robertklep)\
**Post date:** [October 11, 2025, 5:10am UTC](https://community.homey.app/t/logic-make-a-http-post-request-fails-on-certificate-validation/67411/7 "2025-10-11T05:10:33Z")

</div>

I assume you’re not telling it to ignore self-signed certificates, which you do like this:

```auto
const agent = new https.Agent({ rejectUnauthorized: false });
const response = await fetch(URL, { agent });

```
