[gnutls-devel] GnuTLS | Supporting SSL_CERT_DIR and SSL_CERT_FILE (#1279)

Read-only notification of GnuTLS library development activities gnutls-devel at lists.gnutls.org
Sun Oct 17 09:37:27 CEST 2021




Daiki Ueno commented:


Thank you for the proposal. While I don't strongly oppose, I would rather avoid adding new envvars that affect the library behavior unless they are really commonly used. I still wonder why this can't be addressed in the application side, like using the `gnutls_x509_trust_list_t` object, which provides much more flexibility and even allows you to configure PKCS#11 backed store, which can be easily managed through the [trust](https://p11-glue.github.io/p11-glue/p11-kit/manual/trust.html) command.

cc @civodul.

-- 
Reply to this email directly or view it on GitLab: https://gitlab.com/gnutls/gnutls/-/issues/1279#note_705626500
You're receiving this email because of your account on gitlab.com.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.gnupg.org/pipermail/gnutls-devel/attachments/20211017/44fcd806/attachment.html>


More information about the Gnutls-devel mailing list