On Thu, Apr 11, 2013 at 1:22 PM, Guenter <[email protected]> wrote:
> (that info was already in OP's initial post)

Oh, it certainly is. I must have missed it.

So, I would check out OpenSSL's validation path. As a last resort, it
should be possible to run curl in a chroot or modified file system
namespace to remove access to any system-level trusted certificates.


--
David Strauss
   | [email protected]
   | +1 512 577 5827 [mobile]
-------------------------------------------------------------------
List admin: http://cool.haxx.se/list/listinfo/curl-library
Etiquette:  http://curl.haxx.se/mail/etiquette.html

Reply via email to