Uploaded image for project: 'MariaDB Server'
  1. MariaDB Server
  2. MDEV-9435

yum.mariadb.org intermittent ssl certificate ca bundle problem

    XMLWordPrintable

Details

    • Bug
    • Status: Closed (View Workflow)
    • Major
    • Resolution: Fixed
    • N/A
    • N/A
    • Packaging
    • None
    • yum

    Description

      While I am not sure this is the best place to report this, It seems that I do not get a valid connection to https://yum.mariadb.org reliably:

       
       
      # date; curl https://yum.mariadb.org/RPM-GPG-KEY-MariaDB 2>&1 | head -c500; echo
      Tue Jan 19 23:01:45 UTC 2016
       
      curl: (60) Peer certificate cannot be authenticated with known CA certificates
      More details here: http://curl.haxx.se/docs/sslcerts.html
       
      curl performs SSL certificate verification by default, using a "bundle"
       of Certificate Authority (CA) public keys (CA certs). If the default
       bundle file isn't adequate, you can specify an alternate file
       using the --cacert option.
      If this HTTPS server uses a certificate signed by a CA represented in
       the bundle, the certificate verification probably failed
      # date; curl https://yum.mariadb.org/RPM-GPG-KEY-MariaDB 2>&1 | head -c500; echo
      Tue Jan 19 23:01:47 UTC 2016
       
      curl: (60) Peer certificate cannot be authenticated with known CA certificates
      More details here: http://curl.haxx.se/docs/sslcerts.html
       
      curl performs SSL certificate verification by default, using a "bundle"
       of Certificate Authority (CA) public keys (CA certs). If the default
       bundle file isn't adequate, you can specify an alternate file
       using the --cacert option.
      If this HTTPS server uses a certificate signed by a CA represented in
       the bundle, the certificate verification probably failed
      # date; curl https://yum.mariadb.org/RPM-GPG-KEY-MariaDB 2>&1 | head -c500; echo
      Tue Jan 19 23:01:51 UTC 2016
        % Total    % Received % Xferd  Average Speed   Time    Time     Time  Current
                                       Dload  Upload   Total   Spent    Left  Speed
        0     0    0     0    0     0      0      0 --:--:-- --:--:-- --:--:--     0-----BEGIN PGP PUBLIC KEY BLOCK-----
      Version: GnuPG v1.4.14 (GNU/Linux)
       
      mQGiBEtohJARBACxvZpWSIMTp/e7BUzSW+WDL7Pl0JDg6v7ZJFGJk9qo+5JXIiis
      497Ul0FmVJ6EoyVzfpqe5FyUvqtLCkM6UP5adyvXTHi1KMiYacu2q5yRhDpMKbpM
      LkAg23Yyz1yK/d0TsAkerLJ6K1Bh8NIm44Op+qFrDxeYZDIR5Q8WaCdK8wCg
      # date; curl https://yum.mariadb.org/RPM-GPG-KEY-MariaDB 2>&1 | head -c500; echo
      Tue Jan 19 23:01:55 UTC 2016
       
      curl: (60) Peer certificate cannot be authenticated with known CA certificates
      More details here: http://curl.haxx.se/docs/sslcerts.html
       
      curl performs SSL certificate verification by default, using a "bundle"
       of Certificate Authority (CA) public keys (CA certs). If the default
       bundle file isn't adequate, you can specify an alternate file
       using the --cacert option.
      If this HTTPS server uses a certificate signed by a CA represented in
       the bundle, the certificate verification probably failed

      Attachments

        Activity

          People

            dbart Daniel Bartholomew
            mg MG
            Votes:
            0 Vote for this issue
            Watchers:
            2 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved:

              Git Integration

                Error rendering 'com.xiplink.jira.git.jira_git_plugin:git-issue-webpanel'. Please contact your Jira administrators.