From a336334d18c99378652a12bc338f7efa945cf405 Mon Sep 17 00:00:00 2001 From: Armaan Bhojwani Date: Thu, 15 Jul 2021 13:02:08 -0400 Subject: [PATCH] libressl: skip updating cert if not root --- core/libressl/checksums | 2 +- core/libressl/files/update-certdata.sh | 14 +++++++++----- core/libressl/version | 2 +- 3 files changed, 11 insertions(+), 7 deletions(-) diff --git a/core/libressl/checksums b/core/libressl/checksums index a523f3a..0930208 100644 --- a/core/libressl/checksums +++ b/core/libressl/checksums @@ -1,2 +1,2 @@ a471565b36ccd1a70d0bd7d37c6e95c43a26a62829b487d9d2cdebfe58be3066 -a75b76146a4ec6be2cb72f4334f29459cb0769659223179be1eb96851d0a7afc +001c4fa873c59ab0ad5d02ed2dc633c92f386158d76c97f413f0782760021b26 diff --git a/core/libressl/files/update-certdata.sh b/core/libressl/files/update-certdata.sh index 6db69c7..2901c7b 100755 --- a/core/libressl/files/update-certdata.sh +++ b/core/libressl/files/update-certdata.sh @@ -1,7 +1,11 @@ #!/bin/sh -e -cd /etc/ssl && { - curl -LO https://curl.haxx.se/ca/cacert.pem - mv -f cacert.pem cert.pem - printf '%s\n' "${0##*/}: updated cert.pem" -} +if [ -w /etc/ssl/cacert.pem ]; then + cd /etc/ssl && { + curl -LO https://curl.haxx.se/ca/cacert.pem + mv -f cacert.pem cert.pem + printf '%s\n' "${0##*/}: updated cert.pem" + } +else + printf "Skipping updating certdata as /etc/ssl/cacert.pem is not writable\n" +fi diff --git a/core/libressl/version b/core/libressl/version index e82f87f..75f3a39 100644 --- a/core/libressl/version +++ b/core/libressl/version @@ -1 +1 @@ -3.3.3 1 +3.3.3 2 -- 2.39.2