Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[FirefoxDevEdition] Extra certificates in /etc/ssl/certs are ignored #23

Open
khardix opened this issue May 10, 2017 · 4 comments
Open

Comments

@khardix
Copy link

khardix commented May 10, 2017

As said in title, imported certificates in /etc/ssl/certs not in ca-bundle.crt are ignored by the browser.

Flatpak version: 0.9.3
OS: Fedora 25 x86_64
FF version: 54.0b7

@xhorak
Copy link
Owner

xhorak commented May 29, 2017

What kind of Firefox is it? DevEdition, Nightly? NightlyWayland?

@khardix
Copy link
Author

khardix commented May 30, 2017

DevEdition, currently at 54.0b12.
I have my employer's CA certificate as extra PEM file, and on pages with certificates issued by that CA I'm getting UNKNOWN_ISSUER error. Non-flatpak Firefox works fine.

@xhorak
Copy link
Owner

xhorak commented Jun 19, 2017

Oh, I may I know why is that. The DevEdition flatpak gives access only to the $HOME directory.
However when I run
flatpak run --filesystem=host --devel --command=sh org.mozilla.FirefoxDevEdition
I still get different directory listing of ls -l /etc/ssl/certs than on my machine. Is that okay, how it can be overridden, any idea @alexlarsson ?

@alexlarsson
Copy link

/etc/ssl/certs is atm supplied from the runtime. I want to expose the host certificates, but it is complicated because every distro exposes this differently. The current plan is: flatpak/flatpak#677 (comment)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants