create a directory into /usr/local/share/ca-certificates mkdir new directory
copy the certificate directory file *.crt give permsissions and chmod 644 for the files
sudo update-ca-certificates
openssl s_client -connect HOST:PORTNUMBER -showcerts save the files as crt.