[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store
From: |
Sree Harsha Totakura |
Subject: |
Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store |
Date: |
Wed, 19 Feb 2014 15:37:45 +0100 |
User-agent: |
Mozilla/5.0 (X11; Linux x86_64; rv:17.0) Gecko/20131103 Icedove/17.0.10 |
On 02/19/2014 03:08 PM, Andreas Enge wrote:
> The next question is, where do these certificates come from in our system?
> I think a reasonable solution would be to:
> - create a package with certificates (maybe inspired from those contained
> in debian);
> - have gnutls depend on it, and use the gnutls configure flag to point to
> /nix/store/xxx-our-certificates/etc/ssl/... .
>
> I think this would be more in line with our approach than pointing to /etc.
> Also, if a certificate gets compromised and is withdrawn from the certificate
> package, this would force gnutls and all its dependencies to be recompiled.
>
> What do you think?
I like this solution.
Sree
- [PATCH] gnu: gnutls: Configure location of system-wide trust store, Mark H Weaver, 2014/02/18
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Andreas Enge, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Mark H Weaver, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Andreas Enge, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Ludovic Courtès, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Andreas Enge, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store,
Sree Harsha Totakura <=
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Ludovic Courtès, 2014/02/19
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Andreas Enge, 2014/02/20
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Ludovic Courtès, 2014/02/20
- Re: [PATCH] gnu: gnutls: Configure location of system-wide trust store, Mark H Weaver, 2014/02/20