The FreeBSD Ports Archive
FreeBSD security : ca-roots4>
A list of SSL CA root certificates
This port simply contains a list of SSL Certificate Authority root
certificates. Such a list performs a similar role for SSL Certificate
verfication that the root cache does for DNS servers.
This list originally came from mod_ssl (where it was ca-bundle.crt. They
originally got their list from Netscape Communicator/Navigator),
but will be maintained separately. The maintainer will apply strict
criteria to suggestions for additions to this list (in concert with
the FreeBSD security officer). CAs wishing to be added will need
to assure the FreeBSD user community that their certification procedures
are sufficiently secure to render their certificates trustworthy.
|
ca-roots history
v. 1.10
date: 2007/06/07 19:41:14; author: simon; state: Exp; lines: +3 -0
Deprecated and set one month expiration since it's not supported by
the FreeBSD Security Officer anymore.
The current ca-roots port makes promises with regard to CA verification
which the current Security Officer (and deputy) do not want to make.
With hat: so
Discussed with: cperciva (some time ago)
v. 1.9
date: 2007/04/08 10:46:39; author: erwin; state: Exp; lines: +1 -1
Reassign to secteam@
PR: 111371
Submitted by: Nils Vogels (maintainer)
v. 1.8
date: 2006/05/30 08:47:36; author: erwin; state: Exp; lines: +1 -1
Hand maintainership to submitter
PR: 98097
Submitted by: Nils Vogels
v. 1.7
date: 2006/02/19 15:11:12; author: vs; state: Exp; lines: +1 -1
Prune expired certificates (including one that will expire in 4 days during
the Ports Freeze)
PR: ports/93276
Approved by: secteam (remko)
v. 1.6
date: 2005/11/26 14:46:50; author: pav; state: Exp; lines: +1 -2
- Add CAcert.org certificates
PR: ports/89483
Submitted by: Peter Jeremy
v. 1.5
date: 2003/02/20 18:59:03; author: knu; state: Exp; lines: +1 -0
De-pkg-comment.
v. 1.4
date: 2002/10/21 02:31:08; author: nsayer; state: Exp; lines: +2 -2
Release all my ports.
kris made it clear that by his measure I'm not doing my job as a port
maintainer. Far be it from me to be an obstruction to the project.
v. 1.3
date: 2000/10/19 00:24:20; author: nsayer; state: Exp; lines: +2 -1
Oops. The plist entry isn't enough. We also need to do it in the
makefile.
v. 1.2
date: 2000/10/12 21:56:10; author: nsayer; state: Exp; lines: +2 -1
Make a symlink in /etc/ssl
PR: 21770
v. 1.1
date: 2000/09/05 17:36:46; author: nsayer; state: Exp;
ca-roots port -- a list of SSL Certificate Authority root certs
=============================================================================
v. 1.10
date: 2007/06/07 19:41:14; author: simon; state: Exp; lines: +3 -0
Deprecated and set one month expiration since it's not supported by
the FreeBSD Security Officer anymore.
The current ca-roots port makes promises with regard to CA verification
which the current Security Officer (and deputy) do not want to make.
With hat: so
Discussed with: cperciva (some time ago)
v. 1.9
date: 2007/04/08 10:46:39; author: erwin; state: Exp; lines: +1 -1
Reassign to secteam@
PR: 111371
Submitted by: Nils Vogels (maintainer)
v. 1.8
date: 2006/05/30 08:47:36; author: erwin; state: Exp; lines: +1 -1
Hand maintainership to submitter
PR: 98097
Submitted by: Nils Vogels
v. 1.7
date: 2006/02/19 15:11:12; author: vs; state: Exp; lines: +1 -1
Prune expired certificates (including one that will expire in 4 days during
the Ports Freeze)
PR: ports/93276
Approved by: secteam (remko)
v. 1.6
date: 2005/11/26 14:46:50; author: pav; state: Exp; lines: +1 -2
- Add CAcert.org certificates
PR: ports/89483
Submitted by: Peter Jeremy
v. 1.5
date: 2003/02/20 18:59:03; author: knu; state: Exp; lines: +1 -0
De-pkg-comment.
v. 1.4
date: 2002/10/21 02:31:08; author: nsayer; state: Exp; lines: +2 -2
Release all my ports.
kris made it clear that by his measure I'm not doing my job as a port
maintainer. Far be it from me to be an obstruction to the project.
v. 1.3
date: 2000/10/19 00:24:20; author: nsayer; state: Exp; lines: +2 -1
Oops. The plist entry isn't enough. We also need to do it in the
makefile.
v. 1.2
date: 2000/10/12 21:56:10; author: nsayer; state: Exp; lines: +2 -1
Make a symlink in /etc/ssl
PR: 21770
v. 1.1
date: 2000/09/05 17:36:46; author: nsayer; state: Exp;
ca-roots port -- a list of SSL Certificate Authority root certs
=============================================================================
v. 1.10
date: 2007/06/07 19:41:14; author: simon; state: Exp; lines: +3 -0
Deprecated and set one month expiration since it's not supported by
the FreeBSD Security Officer anymore.
The current ca-roots port makes promises with regard to CA verification
which the current Security Officer (and deputy) do not want to make.
With hat: so
Discussed with: cperciva (some time ago)
v. 1.9
date: 2007/04/08 10:46:39; author: erwin; state: Exp; lines: +1 -1
Reassign to secteam@
PR: 111371
Submitted by: Nils Vogels (maintainer)
v. 1.8
date: 2006/05/30 08:47:36; author: erwin; state: Exp; lines: +1 -1
Hand maintainership to submitter
PR: 98097
Submitted by: Nils Vogels
v. 1.7
date: 2006/02/19 15:11:12; author: vs; state: Exp; lines: +1 -1
Prune expired certificates (including one that will expire in 4 days during
the Ports Freeze)
PR: ports/93276
Approved by: secteam (remko)
v. 1.6
date: 2005/11/26 14:46:50; author: pav; state: Exp; lines: +1 -2
- Add CAcert.org certificates
PR: ports/89483
Submitted by: Peter Jeremy
v. 1.5
date: 2003/02/20 18:59:03; author: knu; state: Exp; lines: +1 -0
De-pkg-comment.
v. 1.4
date: 2002/10/21 02:31:08; author: nsayer; state: Exp; lines: +2 -2
Release all my ports.
kris made it clear that by his measure I'm not doing my job as a port
maintainer. Far be it from me to be an obstruction to the project.
v. 1.3
date: 2000/10/19 00:24:20; author: nsayer; state: Exp; lines: +2 -1
Oops. The plist entry isn't enough. We also need to do it in the
makefile.
v. 1.2
date: 2000/10/12 21:56:10; author: nsayer; state: Exp; lines: +2 -1
Make a symlink in /etc/ssl
PR: 21770
v. 1.1
date: 2000/09/05 17:36:46; author: nsayer; state: Exp;
ca-roots port -- a list of SSL Certificate Authority root certs
=============================================================================
|
| |

|