On 11/25/2018 2:25 AM, DJ Lucas via blfs-dev wrote:
On a related note, why not gradually make this the official location
for GNUTLS? It made sense in the past, but today OpenSSL and GNUTLS do
not share their certs. GNUTLS shouldn't be looking at OpenSSL's
configuration directory at all. I can change the default in make-ca at
a later date.
Done. I reversed the symlink in the book for backwards compatibility,
but it should probably go away after the next release. All references to
/etc/ssl/ca-bundle.crt and /etc/ssl/java/cacerts have been changed to
/etc/pki/tls/certs/ca-bundle.crt and /etc/pki/tls/java/cacects (resp.).
Make sure to delete the files, and create the new links (else you will
be using old certs).
--DJ
--
http://lists.linuxfromscratch.org/listinfo/blfs-dev
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page