On Nov 28, 2013, at 10:32 , Rainer Müller <[email protected]> wrote:

> The only catch is that custom added certificates or trust anchors need
> to be in the system keychain to be picked up by certsync by default.

Yeah, this was an unfortunate trade-off; since certsync is a system-wide 
daemon, and the resulting CA certs file is also system-wide, it seemed to be 
the most appropriate course of action. Most of the alternatives involve 
patching OpenSSL and some of the software that depends on it, which is a road 
I'm personally wary of committing to.

-landonf

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

_______________________________________________
macports-dev mailing list
[email protected]
https://lists.macosforge.org/mailman/listinfo/macports-dev

Reply via email to