Kai Engert
e24bfeb6b0
- Introduce the ca-legacy utility and a ca-legacy.conf configuration file.
...
By default, legacy roots required for OpenSSL/GnuTLS compatibility
are kept enabled. Using the ca-legacy utility, the legacy roots can be
disabled. If disabled, the system will use the trust set as provided
by the upstream Mozilla CA list. (See also: rhbz#1158197)
2014-10-28 20:54:15 +01:00
Kai Engert
f81c301d27
- Temporarily re-enable several legacy root CA certificates because of
...
compatibility issues with software based on OpenSSL/GnuTLS,
see rhbz#1144808
2014-09-21 10:33:16 +02:00
Kai Engert
18eedda612
- Update to CKBI 2.1 from NSS 3.16.4
...
- Fix rhbz#1130226
2014-08-14 17:06:04 +02:00
Kai Engert
f176bca921
Update to CKBI 1.97 from NSS 3.16
2014-03-19 11:30:07 +01:00
Kai Engert
5df4185c4d
* Thu Jan 09 2014 Kai Engert <kaie@redhat.com> - 2013.1.96-1
...
- Update to CKBI 1.96 from NSS 3.15.4
2014-01-09 17:38:04 +01:00
Kai Engert
9a4d41a78e
* Tue Dec 17 2013 Kai Engert <kaie@redhat.com> - 2013.1.95-1
...
- Update to CKBI 1.95 from NSS 3.15.3.1
2013-12-17 18:51:16 +01:00
Kai Engert
2dc4526741
- update to version 1.94 provided by NSS 3.15 (beta)
2013-05-27 14:57:04 +02:00
Paul Wouters
73800e131b
* Fri Jan 04 2013 Paul Wouters <pwouters@redhat.com> - 2012.87-1
...
- Updated to r1.87 to blacklist mis-issued turktrust CA certs
2013-01-04 12:50:54 -05:00
Paul Wouters
b65d8a87f1
* Tue Oct 23 2012 Paul Wouters <pwouters@redhat.com> - 2012.86-1
...
- update to r1.86
2012-10-23 16:04:09 -04:00
Joe Orton
df639e3f3e
update to r1.85
2012-07-23 11:50:51 +01:00
Joe Orton
229976ab38
update to r1.81
2012-02-13 10:20:14 +00:00
Joe Orton
596824452e
update to r1.80
...
fix handling of certs with dublicate Subject names (#733032 )
2011-11-09 14:36:15 -08:00
Joe Orton
f098063f3d
update to r1.78, removing trust from DigiNotar root ( #734679 )
2011-09-01 14:36:45 +01:00
Joe Orton
fbef64556c
update to r1.75
2011-08-03 11:40:12 +01:00
Joe Orton
37d25f7154
update to r1.74
2011-04-20 10:12:55 +01:00
Joe Orton
bf4a1f1789
- update to r1.70
2011-01-12 13:51:15 +00:00
Joe Orton
96465e81bb
- update to r1.65
2010-11-09 08:24:29 +00:00
jorton
b62ba6e474
- update to certdata.txt r1.63
...
- use upstream RCS version in Version
2010-04-07 09:40:17 +00:00
jorton
708646cc46
- update to certdata.txt r1.58
...
- add /etc/pki/tls/certs/ca-bundle.trust.crt using 'TRUSTED CERTICATE'
format
- exclude ECC certs from the Java cacerts database
- catch keytool failures
- fail parsing certdata.txt on finding untrusted but not blacklisted cert
2010-03-18 12:23:55 +00:00
jorton
5f392b3f7e
- adopt Python certdata.txt parsing script from Debian
2010-01-15 17:11:52 +00:00