It would be nice to use app-misc/ca-certificates also for own CAs, by using an additional config file. This would make it easier when /etc/ca-certificates.conf changes (on package updates). For example /etc/ca-certificates-local.conf could be used for this. With that additional config file any merging with your own entries after an update would be unnecessary. Example usage: /etc/ca-certificates-local.conf file content: local/ca-netswarm.crt /usr/share/ca-certificates/local/ dir content: ca-netswarm.crt Reproducible: Always Steps to Reproduce:
This is a good idea, as I have been recently bitten by this missing feature ;) It should also handle duplicates between system and local certificates in case same certificate gets added into ca-certificates (or other similar packages) .
In recent versions, ca-certificates automatically trusts any .crt's you put in /usr/local/share/ca-certificates. Does that not address your need?
(In reply to comment #2) > In recent versions, ca-certificates automatically trusts any .crt's you put in > /usr/local/share/ca-certificates. Does that not address your need? > I guess so. Maybe this bug can be marked as fixed now?
Yes, it works. Closing the bug.