Dont check Linux CA locations on macOS

This commit is contained in:
Kovid Goyal 2021-08-16 22:23:24 +05:30
parent d8f09d377f
commit a2e25331a5
No known key found for this signature in database
GPG Key ID: 06BC317B515ACE7C

View File

@ -128,18 +128,20 @@ def setup_openssl_environment() -> None:
# their NIH SSL library instead of OpenSSL.
if 'SSL_CERT_FILE' in os.environ or 'SSL_CERT_DIR' in os.environ:
return
candidates = [
'/etc/ssl/certs/ca-certificates.crt', # Debian/Ubuntu/Arch/Gentoo etc.
"/etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem" # RHEL 7
'/etc/pki/tls/certs/ca-bundle.crt', # Fedora/RHEL 6
'/etc/ssl/ca-bundle.pem', # OpenSUSE
"/etc/pki/tls/cacert.pem", # OpenELEC
]
ext_dir = getattr(sys, 'kitty_extensions_dir', '')
if ext_dir:
d = os.path.dirname
if 'darwin' in sys.platform.lower():
candidates.insert(0, os.path.join(d(d(d(ext_dir))), 'cacert.pem'))
d = os.path.dirname
candidates: tuple = ()
if 'darwin' in sys.platform.lower():
ext_dir = getattr(sys, 'kitty_extensions_dir', '')
if ext_dir:
candidates = (os.path.join(d(d(d(ext_dir))), 'cacert.pem'),)
else:
candidates = (
'/etc/ssl/certs/ca-certificates.crt', # Debian/Ubuntu/Arch/Gentoo etc.
"/etc/pki/ca-trust/extracted/pem/tls-ca-bundle.pem" # RHEL 7
'/etc/pki/tls/certs/ca-bundle.crt', # Fedora/RHEL 6
'/etc/ssl/ca-bundle.pem', # OpenSUSE
"/etc/pki/tls/cacert.pem", # OpenELEC
)
for q in candidates:
if os.access(q, os.R_OK):
os.environ['SSL_CERT_FILE'] = q