aboutsummaryrefslogtreecommitdiff
path: root/secure/caroot/trusted/Buypass_Class_2_Root_CA.pem
Commit message (Collapse)AuthorAgeFilesLines
* caroot: regenerate the root bundle with OpenSSL 3Kyle Evans2023-08-261-30/+31
| | | | No functional change intended.
* caroot: drop the VERSION tag from already-processed certsKyle Evans2023-08-261-1/+0
| | | | | An update is imminent; drop these now to make it easier to audit the results.
* caroot: reroll the remaining certsKyle Evans2021-04-131-0/+2
| | | | | | | This adds a specific note that these are explicitly trusted for server auth. MFC after: 3 days
* caroot: drop $FreeBSD$ expansion from root bundleKyle Evans2020-12-281-1/+1
| | | | | | | | This debatably could have waited until the next update would have taken place, but it's easier to see what changes if we get it out of the way now. MFC after: 3 days
* caroot: commit initial bundleKyle Evans2019-10-041-0/+131
Interested users can blacklist any/all of these with certctl(8), examples: - mv /usr/share/certs/trusted/... /usr/share/certs/blacklisted/...; \ certctl rehash - certctl blacklist /usr/share/certs/trusted/*; \ certctl rehash Certs can be easily examined after installation with `certctl list`, and certctl blacklist will accept the hashed filename as output by list or as seen in /etc/ssl/certs No objection from: secteam Relnotes: Definite maybe Notes: svn path=/head/; revision=353095