|
|
b4bc2f |
This directory /etc/pki/ca-trust/extracted/pem/ contains
|
|
|
b4bc2f |
CA certificate bundle files which are automatically created
|
|
|
b4bc2f |
based on the information found in the
|
|
|
b4bc2f |
/usr/share/pki/ca-trust-source/ and /etc/pki/ca-trust/source/
|
|
|
b4bc2f |
directories.
|
|
|
b4bc2f |
|
|
|
b4bc2f |
All files are in the BEGIN/END CERTIFICATE file format,
|
|
|
b4bc2f |
as decribed in the x509(1) manual page.
|
|
|
b4bc2f |
|
|
|
b4bc2f |
Distrust information cannot be represented in this file format,
|
|
|
b4bc2f |
and distrusted certificates are missing from these files.
|
|
|
b4bc2f |
|
|
|
b4bc2f |
If your application isn't able to load the PKCS#11 module p11-kit-trust.so,
|
|
|
b4bc2f |
then you can use these files in your application to load a list of global
|
|
|
b4bc2f |
root CA certificates.
|
|
|
b4bc2f |
|
|
|
b4bc2f |
Please never manually edit the files stored in this directory,
|
|
|
b4bc2f |
because your changes will be lost and the files automatically overwritten,
|
|
|
b4bc2f |
each time the update-ca-trust command gets executed.
|
|
|
b4bc2f |
|
|
|
b4bc2f |
Please refer to the update-ca-trust(8) manual page for additional information.
|