Bug 2338974

Summary: Moving of off /etc/pki/tls/certs/ca-bundle.crt
Product: [Fedora] Fedora Reporter: Frantisek Krenzelok <fkrenzel>
Component: mercurialAssignee: Mads Kiilerich <mads>
Status: CLOSED NOTABUG QA Contact: Fedora Extras Quality Assurance <extras-qa>
Severity: high Docs Contact:
Priority: unspecified    
Version: rawhideCC: fedoraproject.org, mads, ndbecker2, opohorel, pstodulk
Target Milestone: ---   
Target Release: ---   
Hardware: Unspecified   
OS: Unspecified   
Whiteboard:
Fixed In Version: Doc Type: If docs needed, set a value
Doc Text:
Story Points: ---
Clone Of: Environment:
Last Closed: 2025-07-23 08:26:46 UTC Type: Bug
Regression: --- Mount Type: ---
Documentation: --- CRM:
Verified Versions: Category: ---
oVirt Team: --- RHEL 7.3 requirements from Atomic Host:
Cloudforms Team: --- Target Upstream Version:
Embargoed:
Bug Depends On:    
Bug Blocks: 2360110    

Description Frantisek Krenzelok 2025-01-20 09:51:25 UTC
Hello in anticipation of https://fedoraproject.org/wiki/Changes/dropingOfCertPemFile fedora change proposal, we would like you to consider using the `/etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem` file in the following place:
https://src.fedoraproject.org/rpms/mercurial/blob/rawhide/f/mercurial.spec#_202

as suggested by Miro HronĨok in https://discussion.fedoraproject.org/t/f42-change-proposal-dropping-of-cert-pem-file-system-wide/135119/15

Comment 1 Aoife Moloney 2025-02-26 13:24:57 UTC
This bug appears to have been reported against 'rawhide' during the Fedora Linux 42 development cycle.
Changing version to 42.

Comment 2 Frantisek Krenzelok 2025-07-08 11:30:00 UTC
Hello,

Be advised that the this planned change will be deployed with the system-wide rebuild on July 23rd, 2025.

Comment 3 Mads Kiilerich 2025-07-22 16:40:53 UTC
This seems to be an automated and incorrectly filed bug report.

If it is intentional, please clarify the problem and the expected action.

Comment 4 Frantisek Krenzelok 2025-07-23 08:26:46 UTC
Hey Mads,

Indeed this was automated, it got triggered by the presence of /etc/ssl/certs/ca-certificates.crt in the source code:

contrib/packaging/debian/cacerts.rc:5:        cacerts = /etc/ssl/certs/ca-certificates.crt

I presume this doesn't affect fedora, so closing..