SUSE / susecloud-repocheck

SUSECloud Update Infrastructure Check for Azure, AWS, and GCP
GNU General Public License v3.0
22 stars 10 forks source link

Add check for lingering certs in /usr/share/pki/trust/anchors #52

Open thimslugga opened 1 year ago

thimslugga commented 1 year ago

Add check for lingering registration server cert files e.g. in the /usr/share/pki/trust/anchors directory.

Old:

https://github.com/SUSE-Enceladus/cloud-regionsrv-client/blob/e1fe0b2a2edf43edeaca544aebcbaf0b634b9d61/lib/cloudregister/registerutils.py#L937C5-L937C47

/usr/share/pki/trust/anchors/
/usr/share/pki/trust/anchors/registration_server_*.pem

# Example
/usr/share/pki/trust/anchors/registration_server_54_197_240_216.pem

New:

/etc/pki/trust/anchors/
/etc/pki/trust/anchors/registration_server_*.pem