![]() * if you want to use the stock initramfs, you can make another initramfs containing just /usr/lib/ssl/certs/*.crt for whatever certificates you need, run c_rehash over that directory, and concatenate that to the stock initramfs either with cat or in your boot loaderĪccepted debian- installer- utils into precise-proposed. * overload debian-installer/allow_unauthenticated=false to imply wget -no-check-certificate (I think this is close enough I couldn't think of a reason why you would care deeply about the HTTPS certificate and then not care about installing unauthenticated packages) Once this is done, I'll be able to proceed with the next step, bug 1135163. * if you want to use the stock initramfs, you can make another initramfs containing just /usr/lib/ ssl/certs/ *.crt for whatever certificates you need, run c_rehash over that directory, and concatenate that to the stock initramfs either with cat or in your boot loader * add support to the d-i build system for local builds with SSLCERTS set to a list of paths to certificates * add wget-udeb to our default d-i builds (at least netboot, but probably globally) * overload debian- installer/ allow_unauthent icated= false to imply wget -no-check- certificate (I think this is close enough I couldn't think of a reason why you would care deeply about the HTTPS certificate and then not care about installing unauthenticated packages) * make fetch-url (for preseeding) and kickseed both work with HTTPS I deleted the dld-file and started the script again and failed again due to suspicious certificate.I've committed the start of this upstream, now that I've fixed things to permit the use of GNU wget. Saving to: `C:/Users/cas/Documents/CentralStation/RawNewsData/DFx_.html'ĠK. ![]() ![]() Reusing existing connection to HTTP request sent, awaiting response. WARNING: certificate common name `' doesn't match requested host name `HTTP request sent, awaiting response. WARNING: cannot verify certificate, issued by `/C=US/O=thawte, Inc./CN=thawte SHA256 SSL CA': 403 ForbiddenĢ) ignores the option -no-check-certificateģ) stops the dld due to a suspicious certificateĤ) tries the http-page and fails with a 403-errorīut all of a sudden (after 10 failures in a row) the wget-call worked - once, only once? Unable to locally verify the issuer's authority. WARNING: cannot verify certificate, issued by `/C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3': The error is always the same: - 21:23:26. Last Sunday this worked perfect if I run it in the ps-cmd and in Powershell's ISE but it fails regularly if the script was called by the task scheduler.įinally I got the task-scheduler-call to work by adding -verbose: $argList = "$urlDFx -O $rawDFx -o $logDFx -no-check-certificate -verbose "īut today (Sunday again) the task-scheduler call failed and now even the call in the ISE failed? $argList = " $urlDFx -O $rawDFx -o $logDFx -no-check-certificate " > WARNING: certificate common name `' doesn't match requested host name ` > HTTP request sent, awaiting response. > Unable to locally verify the issuer's authority. > WARNING: cannot verify certificate, issued by `/C=US/O=GeoTrust Inc./CN=GeoTrust SSL CA - G3': $argList = "$urlDFx -O $rawDFx -o $logDFx -no-check-certificate -verbose "īut today (Sunday again, a week later) the task-scheduler-call failed and now even the call in the ISE failed? Last Sunday this worked perfect if I run it in the ps-cmd and in Powershell's ISE but it fails regularly if the script was called by the task scheduler - no idea why?įinally I got the task-scheduler-call to work by adding -verbose: The other variables are names of my local files - if you know wget you will know. ![]() $wg = Start-Process wget -wait -NoNewWindow -PassThru -ArgumentList $argList $argList = "$urlDFx -O $rawDFx -o $logDFx -no-check-certificate" I want to download a https-page every Sunday evening and I want wget to ignore the certificate of the https-page! It has been working last Sunday but now it fails again - the same script!! ![]()
0 Comments
Leave a Reply. |