Blame SOURCES/README.pem

d77b68
This directory /etc/pki/ca-trust/extracted/pem/ contains 
d77b68
CA certificate bundle files which are automatically created
d77b68
based on the information found in the
d77b68
/usr/share/pki/ca-trust-source/ and /etc/pki/ca-trust/source/
d77b68
directories.
d77b68
d77b68
All files are in the BEGIN/END CERTIFICATE file format, 
d77b68
as described in the x509(1) manual page.
d77b68
d77b68
Distrust information cannot be represented in this file format,
d77b68
and distrusted certificates are missing from these files.
d77b68
d77b68
If your application isn't able to load the PKCS#11 module p11-kit-trust.so,
d77b68
then you can use these files in your application to load a list of global
d77b68
root CA certificates.
d77b68
d77b68
Please never manually edit the files stored in this directory,
d77b68
because your changes will be lost and the files automatically overwritten,
d77b68
each time the update-ca-trust command gets executed.
d77b68
d77b68
Please refer to the update-ca-trust(8) manual page for additional information.