> ## Documentation Index
> Fetch the complete documentation index at: https://docs.lerian.studio/llms.txt
> Use this file to discover all available pages before exploring further.

# STA TLS trust configuration

> STA validates BACEN's public TLS chain through the system root pool and does not use a tenant trust store or client certificate.

<Badge stroke icon="calendar-days" iconType="regular">August 31, 2026</Badge> <Badge stroke icon="file-code" iconType="regular">Documentation correction</Badge> <Badge color="purple" size="lg" stroke icon="eye" iconType="regular">Review recommended</Badge>

## Affects

***

Teams that deploy or operate Lerian STA connections to BACEN.

## What changed

***

STA validates BACEN's public TLS chain through the system root pool and does not attach a client certificate. It does not use a tenant trust store or the removed `TRUST_STORE_*` configuration.

This is a documentation correction of current behavior; it does not announce a runtime release.

## Impact

***

**Classification: Review recommended.**

## What you need to do

***

<Steps>
  <Step>Review STA deployment and TLS runbooks against the system-root trust model and remove reliance on tenant trust-store operations.</Step>
</Steps>

### Deadline

Review before the next STA deployment or TLS troubleshooting activity.
