Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 14 Oct 2024 09:40:38 +0200
From:      =?utf-8?Q?Dag-Erling_Sm=C3=B8rgrav?= <des@FreeBSD.org>
To:        freebsd-current@freebsd.org
Subject:   Re: new tls-cert-store and cert-bundle methods
Message-ID:  <864j5fuo7d.fsf@ltc.des.dev>
In-Reply-To: <Zc_1fZGq3qoxSeko@int21h> (void@f-m.fm's message of "Fri, 16 Feb 2024 23:53:33 %2B0000")
References:  <Zc_1fZGq3qoxSeko@int21h>

next in thread | previous in thread | raw e-mail | index | archive | help
void <void@f-m.fm> writes:
> Now that we have system tls-cert-store, if one needs to reference
> a tls-cert-bundle like provided by ca_root_nss, do we need
> to concatenate all of the certs listed in /usr/share/certs/trusted
> into, for example cert.pem then symlink /etc/ssl/cert.pem to
> that concatenated file?

This is being worked on.  For now, if you need a bundle, just install
ca_root_nss, which has the same contents as the system store but in
bundle form.

DES
--=20
Dag-Erling Sm=C3=B8rgrav - des@FreeBSD.org



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?864j5fuo7d.fsf>