[oe-commits] [openembedded-core] 30/30: gnutls: Use ca-certificates as default trust store file

git at git.openembedded.org git at git.openembedded.org
Tue Jun 18 10:32:02 UTC 2019


This is an automated email from the git hooks/post-receive script.

rpurdie pushed a commit to branch warrior
in repository openembedded-core.

commit 712c78984c891e6357e1b1dc414431fb6c226c49
Author: Philippe Normand <philn at igalia.com>
AuthorDate: Mon Jun 3 09:20:31 2019 +0100

    gnutls: Use ca-certificates as default trust store file
    
    Since version 2.58 the glib-networking TLS database relies on GnuTLS's system
    trust store, so not enabling it leads to TLS errors in applications depending on
    glib-networking. The raised runtime warning is:
    
    process:500): GLib-Net-WARNING **: 09:14:09.321: Failed to load TLS database: Failed to load system trust store: GnuTLS was not configured with a system trust
    (app:490): ... TLS Error: TLS certificate  has unknown CA.
    
    (From OE-Core rev: 1d147be584d2f016853edbe9751247d7daa0b5d0)
    
    Signed-off-by: Richard Purdie <richard.purdie at linuxfoundation.org>
    Signed-off-by: Armin Kuster <akuster808 at gmail.com>
---
 meta/recipes-support/gnutls/gnutls_3.6.7.bb | 1 +
 1 file changed, 1 insertion(+)

diff --git a/meta/recipes-support/gnutls/gnutls_3.6.7.bb b/meta/recipes-support/gnutls/gnutls_3.6.7.bb
index e05dc2b..01dd23c 100644
--- a/meta/recipes-support/gnutls/gnutls_3.6.7.bb
+++ b/meta/recipes-support/gnutls/gnutls_3.6.7.bb
@@ -44,6 +44,7 @@ EXTRA_OECONF = " \
     --enable-local-libopts \
     --enable-openssl-compatibility \
     --with-libpthread-prefix=${STAGING_DIR_HOST}${prefix} \
+    --with-default-trust-store-file=/etc/ssl/certs/ca-certificates.crt \
 "
 
 LDFLAGS_append_libc-musl = " -largp"

-- 
To stop receiving notification emails like this one, please contact
the administrator of this repository.


More information about the Openembedded-commits mailing list