tech-pkg archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: Proposal: validate TLS when fetching



* On 2024-12-13 at 03:28 GMT, coypu%sdf.org@localhost wrote:

Any objections to a patch like the following?

I broadly agree, though I think we should put it behind FETCH_INSECURE:U or something, just to consider cases where someone needs to fetch security/mozilla-rootcerts and doesn't yet have certs, or they are obsolete, or whatever.

mktool always validates certs, but has its own builtin cert store.

Obviously after Q4 though please.

--
Jonathan Perkin   -   mnx.io   -   pkgsrc.smartos.org
Open Source Complete Cloud   www.tritondatacenter.com


Home | Main Index | Thread Index | Old Index