> So it does report something, just not what it should.  "ca" should not need a
> "root" or "issuer" cert to work. 

The text of the error messages represent the API.  You gave me a directory.  
It's getting plugged in as the place where openssl looks for system root certs.

The issuer line is leftover from debugging.  We could reduce clutter by only 
printing that pair of lines when the cert didn't pass the validation check.


-- 
These are my opinions.  I hate spam.



_______________________________________________
devel mailing list
devel@ntpsec.org
http://lists.ntpsec.org/mailman/listinfo/devel

Reply via email to