|
|
d77b68 |
This directory /etc/pki/ca-trust/extracted/pem/ contains
|
|
|
d77b68 |
CA certificate bundle files which are automatically created
|
|
|
d77b68 |
based on the information found in the
|
|
|
d77b68 |
/usr/share/pki/ca-trust-source/ and /etc/pki/ca-trust/source/
|
|
|
d77b68 |
directories.
|
|
|
d77b68 |
|
|
|
d77b68 |
All files are in the BEGIN/END CERTIFICATE file format,
|
|
|
d77b68 |
as described in the x509(1) manual page.
|
|
|
d77b68 |
|
|
|
d77b68 |
Distrust information cannot be represented in this file format,
|
|
|
d77b68 |
and distrusted certificates are missing from these files.
|
|
|
d77b68 |
|
|
|
d77b68 |
If your application isn't able to load the PKCS#11 module p11-kit-trust.so,
|
|
|
d77b68 |
then you can use these files in your application to load a list of global
|
|
|
d77b68 |
root CA certificates.
|
|
|
d77b68 |
|
|
|
d77b68 |
Please never manually edit the files stored in this directory,
|
|
|
d77b68 |
because your changes will be lost and the files automatically overwritten,
|
|
|
d77b68 |
each time the update-ca-trust command gets executed.
|
|
|
d77b68 |
|
|
|
d77b68 |
Please refer to the update-ca-trust(8) manual page for additional information.
|