#1207: Einstein toolkit sites with invalid security certificates --------------------------------------+------------------------------------- Reporter: hinder | Owner: Type: enhancement | Status: new Priority: minor | Milestone: Component: EinsteinToolkit website | Version: Resolution: | Keywords: --------------------------------------+-------------------------------------
Comment (by rhaas):
I think the issue was occasionally not that the certificate itself was invalid but that it used a certificate authority that certain Linux distributions would not be default trust in their wget/curl packages (I guess they use openssl or gnutls or something similar). Browsers like Firefox seem to use their own list and may accept certificates that wget and curl rejected.
Even when technically correct certificates are , we should try to pick a "well known" certificate authority if possible if they are not widely accepted by eg wget/curl in Ubuntu/OSX (to name some common OS we may care about).