Fallback to system CAs

No automated test for this case because it's complicated to get a
properly signed certificate in tests:

- the domain we use is sslip.io (not sure if letsencrypt would sign it)
- we need to use the letsencrypt production and that has quotas not
  suitable for CI

Signed-off-by: Dimitris Karakasilis <dimitris@karakasilis.me>
This commit is contained in:
Dimitris Karakasilis
2023-02-09 11:24:10 +02:00
parent 1cd4d9a7af
commit 0d3406fa7b
3 changed files with 2 additions and 11 deletions

View File

@@ -327,17 +327,6 @@ kcrypt:
Expect(out).To(MatchRegexp("could not encrypt partition.*x509: certificate signed by unknown authority"))
})
})
When("the certificate signed by a well known CA (system certs)", func() {
BeforeEach(func() {
Skip("No way to implement")
})
It("successfully talks to the server", func() {
// TODO: How do we get a properly signed cert? Maybe do that once,
// and put the cert is the assets directory?
// Is it possible to have a signed cert without a proper domain?
})
})
})
})