- fixes #3628 by showing certificate error(s) to user
- prevents accepting payment requests when certificate error(s) occur
- insecure payment requests are still possible with this, if they correctly set paymentRequest.pki_type() == "none"
Don't merge, NEEDS TO BE REWORKED!