Re: new tls-cert-store and cert-bundle methods

From: Dag-Erling_Smørgrav <des_at_FreeBSD.org>
Date: Mon, 14 Oct 2024 07:40:38 UTC
void <void@f-m.fm> writes:
> Now that we have system tls-cert-store, if one needs to reference
> a tls-cert-bundle like provided by ca_root_nss, do we need
> to concatenate all of the certs listed in /usr/share/certs/trusted
> into, for example cert.pem then symlink /etc/ssl/cert.pem to
> that concatenated file?

This is being worked on.  For now, if you need a bundle, just install
ca_root_nss, which has the same contents as the system store but in
bundle form.

DES
-- 
Dag-Erling Smørgrav - des@FreeBSD.org