@brokenman to save doing pm....modest update to repack of core to resolve ca-certs issue.
New improved script will use your chroot suggestion, already tested and sym links are working. This means have certs for my november date but now in the process of importing and testing if the Debian command update-ca-certificates with its config file will work for me.
If successful, those files will be injected into XZM. So far, I need to make a number of tests as first attempts are not so good.
Keeping u/sh/ca-c/mozilla/filenames.crt but deleting entire contents of /etc/ssl/certs and re-running command I can see this result
Code: Select all
W: /etc/ssl/certs/Go_Daddy_Class_2_CA.pem not found, but listed in /etc/ca-certificates.conf
actual entry in config is
Go_Daddy_Class_2_CA.pem
My current problem that needs testing is running it with my prevous set up...before deleting entire contents etc gave this snippet inside /etc/ssl/certs
after running the update command
ls -al ---with snip
Code: Select all
lrwxrwxrwx 1 root root 58 Nov 27 08:19 Go_Daddy_Class_2_CA.pem -> /usr/share/ca-certificates/mozilla/Go_Daddy_Class_2_CA.crt
lrwxrwxrwx 1 root root 38 Nov 27 08:42 Go_Daddy_Class_2_CA.pem.pem -> /etc/ssl/certs/Go_Daddy_Class_2_CA.pem
the first problem to resolve is its making a new filename.pem.
pem
So I thought OK, if I delete entire contents, it won't find the first pem and may create normal sym links. but No its not that simple.
I will now change the etc folder to use sym links as name.crt sym link to u/sh....name.crt and see if that improves the update process.
2) Still no reply to my openssl build failure test result at other forum.
#######################################################
Question when you digest above
Would you be upset, if my tests work without sym links back to usr/share/ca-certificates?
Meaning...larger size of core as real files will exist in both directories?
EDIT this is result of direct injection no rebuild
Code: Select all
-rw-r--r-- 1 root root 1448 Nov 26 15:23 Go_Daddy_Class_2_CA.crt
lrwxrwxrwx 1 root root 38 Nov 27 09:23 Go_Daddy_Class_2_CA.pem -> /etc/ssl/certs/Go_Daddy_Class_2_CA.crt
Looks promising