Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 19 May 2021 15:28:04 +0000
From:      bugzilla-noreply@freebsd.org
To:        ports-bugs@FreeBSD.org
Subject:   [Bug 256003] lang/go: seems to ignore system trusted TLS certificates
Message-ID:  <bug-256003-7788@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D256003

            Bug ID: 256003
           Summary: lang/go: seems to ignore system trusted TLS
                    certificates
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: dmgk@freebsd.org
          Reporter: lapo@lapo.it
             Flags: maintainer-feedback?(dmgk@freebsd.org)
          Assignee: dmgk@freebsd.org

In both net-mgmt/prometheus2, net-mgmt/victoria-metrics and
net-mgmt/blackbox_exporter I got a lot of:

  x509: certificate signed by unknown authority

until I installed ca_root_nss.

Is it necessary to use in order to have working X.509 validation in Go?

Or could the Go port made aware of the new system-based TLS certificate tru=
st?

(or, then again, would it be necessary for each single Go-based port to sup=
port
that?)

Sorry if the question might be silly, but I know very little about Go mysel=
f.

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-256003-7788>