ca-certificate refresh from NSS

Asked by Quentin Bracken on 2020-10-19

Is it possible to refresh the default ca-certificates package with the latest NSS roots?

Specifically, we would like to ensure these two roots from NSS 3.54 (26 June 2020) are included in the package:

Bug 1641716 - Microsoft ECC Root Certificate Authority 2017
SHA-256 Fingerprint: 358DF39D764AF9E1B766E9C972DF352EE15CFAC227AF6AD1D70E8E4A6EDCBA02

Bug 1641716 - Microsoft RSA Root Certificate Authority 2017
SHA-256 Fingerprint: C741F70F4B2A8D88BF2E71C14122EF53EF10EBA0CFA5E64CFA20F418853073E0

Question information

Language:
English Edit question
Status:
Answered
For:
Ubuntu ca-certificates Edit question
Assignee:
No assignee Edit question
Last query:
2020-10-19
Last reply:
2020-10-20

I suggest you report a bug

Can you help with this problem?

Provide an answer of your own, or ask Quentin Bracken for more information if necessary.

To post a message you must log in.