Bug 35611 - Add UCS Root CA as a trusted certificate
Add UCS Root CA as a trusted certificate
Status: RESOLVED DUPLICATE of bug 39179
Product: UCS
Classification: Unclassified
Component: SSL
UCS 3.2
Other Linux
: P5 enhancement with 2 votes (vote)
: UCS 3.2-x
Assigned To: Bugzilla Mailingliste
:
Depends on:
Blocks: 35677
  Show dependency treegraph
 
Reported: 2014-08-14 12:51 CEST by Janis Meybohm
Modified: 2015-11-26 12:25 CET (History)
2 users (show)

See Also:
What kind of report is it?: ---
What type of bug is this?: ---
Who will be affected by this bug?: ---
How will those affected feel about the bug?: ---
User Pain:
Enterprise Customer affected?:
School Customer affected?:
ISV affected?:
Waiting Support:
Flags outvoted (downgraded) after PO Review:
Ticket number:
Bug group (optional):
Max CVSS v3 score:


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Janis Meybohm univentionstaff 2014-08-14 12:51:48 CEST
Ticket#: 2014081321000306

Maybe we should add the generated UCS Root CA to the list of trusted certificates on every UCS system, like:

univention-install ca-certificates
ln -s /etc/univention/ssl/ucsCA/CAcert.pem /usr/local/share/ca-certificates/ucs-root.crt
update-ca-certificates

That would also "AUTOFIX" bug34294


At the moment it looks a bit strange that you get "certificate verification ... untrusted issuer" errors if you configure a system with UCS generated certificate as smtp relay.
Comment 1 Florian Best univentionstaff 2015-11-26 12:25:55 CET
Same as Bug #39179. The TM of that bug is better, so closing this bug as duplicate :)
@Jan Christoph: Please move your votes to the other Bug ;-)

*** This bug has been marked as a duplicate of bug 39179 ***