Red Hat Bugzilla – Bug 1460596
please don't pass -k/--insecure to curl when using SSL/TLS
Last modified: 2017-06-20 08:58:35 EDT
Section Number and Name:
3.1. Using SSL Authentication
Describe the issue:
The section suggests to call "curl … -k … --cacert katello-server-ca.crt" when talking to the API via TLS. However -k means --insecure and thus curl will ignore the given cacert. Please remove the "-k" to actually check the certificate.
Suggestions for improvement:
The curl line should read:
curl -X GET -u sat_username:sat_password \
-H "Accept:application/json" --cacert katello-server-ca.crt \
IMHO "-X GET" is also not needed here and only confuses the reader.
Assigning to Sergei for review.
These changes are now live on the Custom Portal.