Reply
Thread Tools
Posts: 198 | Thanked: 271 times | Joined on Mar 2015 @ Germany
#121
hi there today i cant connect with my n9 to openrepos.net via warehouse is there a solution?
 

The Following User Says Thank You to monkeyisland For This Useful Post:
Maemish's Avatar
Posts: 1,719 | Thanked: 4,765 times | Joined on Apr 2018 @ Helsinki, Finland.
#122
Fro another thread "How I got my N900 back on https..."

Originally Posted by Danct12 View Post
On September 30 2021, DST Root CA X3 expired which affected a lot of websites including my email provider and TMO.

But I decided not to give up so I started looking into it. Apparently ISRG Root X1 is added in a CSSU update (i'm on testing) but for some reason it ignored the existent of the CA.

After some further digging, I found this note on updating certs so I tried it: parse certdata.txt, transfer certs folder to MyDocs and run cmcli as said, still doesn't work

So out of the blue I decided to just google "isrg root x1" and check out Let's Encrypt Chain of Trust.
On that page I found root certificates along side with it's PEM files, there's another version with it cross-signed with DST X3 and that's something I never tried before as most of the certs on the device are self signed.

I downloaded it and installed it on the device, lo and behold, TMO now loads on my N900 without an error and my email now works again!

For good measure, I installed the ISRG X2 cert as well. Now my N900 on Fremantle is useful again.
But if you can't find help from this change your date in your device to 29. september and try again openrepos.
__________________
"I don't know how but I can try!" (active)

Master of not knowing (active)

For me it is possible to get lost in any case (active)

Learning to fall from high (DONE)

Learning to code with BASIC (WIP)
 

The Following 2 Users Say Thank You to Maemish For This Useful Post:
Posts: 263 | Thanked: 301 times | Joined on Oct 2021 @ Poland
#123
Awesome thread!
__________________
My Telegram group (Maemo / MeeGo / Sailfish):
https://t.me/linuxmobile_world
Channel for Maemo/MeeGo:
https://t.me/maemomeegoapps
 

The Following User Says Thank You to dredlok706 For This Useful Post:
Halftux's Avatar
Posts: 868 | Thanked: 2,516 times | Joined on Feb 2012 @ Germany
#124
New updated root certificate package. This package will delete all installed certificates. Then it will install all certificates which are inside this package. So I added certificates from Mozilla.

https://ccadb-public.secure.force.com/mozilla/IncludedCACertificateReport


These certs where converted to pem. It was not possible with all certificates.
I will attach the script which I used. It converts the crt to pem and reads the subject key identifier and renames the file with the id.

certs_2022_refresh.txt - all certificates in the package.
converted.txt - all mozilla certificates which are converted
makecert.sh - script for conversion

new common-ca package:
aegis-certman-common-ca_1.0.8+0m8_all_2022_refresh.deb

This is the old post related to this update:
https://talk.maemo.org/showpost.php?...9&postcount=94
Attached Files
File Type: deb aegis-certman-common-ca_1.0.8+0m8_all_2022_refresh.deb (195.5 KB, 189 views)
File Type: txt certs_2022_refresh.txt (13.0 KB, 212 views)
File Type: zip script_and_converted.zip (10.8 KB, 158 views)
 

The Following 7 Users Say Thank You to Halftux For This Useful Post:
Reply

Tags
harmattan, nokia n9


 
Forum Jump


All times are GMT. The time now is 21:13.