1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-11-25 00:51:21 +00:00
freebsd-ports/security/ca_root_nss
Kubilay Kocak 71ee70bfe9 security/ca_root_nss: Enable certificate verification (for Base OpenSSL)
Enable the ETCSYMLINK option so that SSL certificate verification is
enabled by default for OpenSSL in base.

This change is the third in a set of changes [1][2] that improves the
default configuration and behaviour of client software relying on
OpenSSL for SSL/TLS and certificate verification.

A symlink is installed which points to the root certificate bundle in
the location that OpenSSL in base looks for them, as configured at build
time [2].

This allows any and all software utilising SSL_CTX_load_verify_locations
function to verify SSL certificates by default after installation of
this package.

[1] https://svnweb.freebsd.org/changeset/ports/372629
[2] https://svnweb.freebsd.org/changeset/ports/378720

PR:		189811 196357
Requested by:	many
Submitted by:	dreamcat4 gmail com
Approved by:	maintainer timeout (>1 year)
2015-06-06 07:41:51 +00:00
..
files Fix spelling of "certification authority" 2015-05-20 18:08:35 +00:00
distinfo - Update NSS and ca_root_nss to 3.19.1 2015-06-01 14:21:53 +00:00
Makefile security/ca_root_nss: Enable certificate verification (for Base OpenSSL) 2015-06-06 07:41:51 +00:00
pkg-descr
pkg-plist