On 11/25/2018 2:25 AM, DJ Lucas via blfs-dev wrote:
On a related note, why not gradually make this the official location for GNUTLS? It made sense in the past, but today OpenSSL and GNUTLS do not share their certs. GNUTLS shouldn't be looking at OpenSSL's configuration directory at all. I can change the default in make-ca at a later date.

Done. I reversed the symlink in the book for backwards compatibility, but it should probably go away after the next release. All references to /etc/ssl/ca-bundle.crt and /etc/ssl/java/cacerts have been changed to /etc/pki/tls/certs/ca-bundle.crt and /etc/pki/tls/java/cacects (resp.). Make sure to delete the files, and create the new links (else you will be using old certs).

--DJ


--
http://lists.linuxfromscratch.org/listinfo/blfs-dev
FAQ: http://www.linuxfromscratch.org/blfs/faq.html
Unsubscribe: See the above information page

Reply via email to