Message213888
What Martin said is correct, IMO.
The actual problem I'd like to correct is: If I - for example - create an HTTPSConnection with cert validation enabled, and set to use the default OS trust mechanism, then the validation process should trigger Windows' root CA download mechanism if necessary (i.e. rather than just rejecting the CA cert if it hasn't already been locally cached).
I don't expect that ssl.enum_certificates() ever will return all the certificates that are (implicitly, via the update mechanism) trusted by Windows; that's probably not feasible. I chose that as the title of the issue because it seemed to be the most concrete root-cause, but maybe that wasn't ideal.
(I'll file a separate issue for that traceback I ran into, if I get a chance to dig into it more) |
|
Date |
User |
Action |
Args |
2014-03-17 19:53:38 | Adam.Goodman | set | recipients:
+ Adam.Goodman, loewis, pitrou, christian.heimes |
2014-03-17 19:53:38 | Adam.Goodman | set | messageid: <1395086018.59.0.573380355818.issue20916@psf.upfronthosting.co.za> |
2014-03-17 19:53:38 | Adam.Goodman | link | issue20916 messages |
2014-03-17 19:53:38 | Adam.Goodman | create | |
|