Regarding the usage of "BEGIN TRUSTED CERT".

This header is created when using the '-trustout' arg to x509(1ssl)

The change as such means breaks for example  :
'openssl verify -CApath /etc/ssl/certs'

if one of the certs in the chain has this header. 

The trust functionality as such is in x509(1ssl) marked as experimental.

But i did got a little peeve when my carefully created root ca cert
didnt appear as i think it should.... 


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to