Skip to content

Conversation

velenux
Copy link
Contributor

@velenux velenux commented Jul 2, 2021

Since it is such a sensitive file, it probably makes sense to download it via https.

@geerlingguy
Copy link
Owner

Is there a chance this would fail if the current certs are out of date?

@velenux
Copy link
Contributor Author

velenux commented Jul 5, 2021

Is there a chance this would fail if the current certs are out of date?

yes.
One alternative could be to download the file first, then make a basic sanity check (with openssl for example) before overwriting the original one, so you can still use https but keep the file as it is if the download fails. What do you think?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants