mirror of
https://github.com/clearlinux/swupd-client.git
synced 2026-10-03 23:38:25 +00:00
Remove certificate pinning
To enable swupd-client to communicate with a CDN for updates, the custom cert pinning must be removed. Signed-off-by: Tudor Marcu <tudor.marcu@intel.com>
This commit is contained in:
-10
@@ -447,16 +447,6 @@ static CURLcode swupd_curl_set_security_opts(CURL *curl)
|
||||
goto exit;
|
||||
}
|
||||
|
||||
curl_ret = curl_easy_setopt(curl, CURLOPT_PINNEDPUBLICKEY, UPDATE_CA_CERTS_PATH "/425b0f6b.key");
|
||||
if (curl_ret != CURLE_OK) {
|
||||
goto exit;
|
||||
}
|
||||
|
||||
curl_ret = curl_easy_setopt(curl, CURLOPT_CAPATH, UPDATE_CA_CERTS_PATH);
|
||||
if (curl_ret != CURLE_OK) {
|
||||
goto exit;
|
||||
}
|
||||
|
||||
#if 0
|
||||
// TODO: add the below when you know the paths:
|
||||
curl_easy_setopt(curl, CURLOPT_CRLFILE, path-to-cert-revoc-list);
|
||||
|
||||
Reference in New Issue
Block a user