diff -urN mbank-cli-1.2.2.orig/mbank-cli mbank-cli-1.2.2/mbank-cli --- mbank-cli-1.2.2.orig/mbank-cli 2014-10-25 12:19:48.139241025 +0200 +++ mbank-cli-1.2.2/mbank-cli 2014-10-25 12:20:41.925905849 +0200 @@ -547,36 +547,7 @@ sub get_default_ca_path { - my ($name, @hashes) = @_; - my $filename = "$name.crt"; - $filename =~ y/ /_/; - my $path = "/usr/share/ca-certificates/mozilla/$filename"; - if (-r $path) { - return $path; - } - my $ssl_cert_dir = $ENV{SSL_CERT_DIR}; - if (not defined($ssl_cert_dir) and $Net::SSLeay::VERSION >= 1.43) { - # https://www.openssl.org/docs/crypto/SSLeay_version.html - # SSLEAY_DIR == 5 - my $openssl_info = Net::SSLeay::SSLeay_version(5); - my ($openssl_dir) = $openssl_info =~ m/\AOPENSSLDIR: "(.*)"\Z/; - if (defined($openssl_dir)) { - $ssl_cert_dir = "$openssl_dir/certs"; - } - } - if (defined($ssl_cert_dir)) { - for my $hash (@hashes) { - $path = "$ssl_cert_dir/$hash.0"; - # TODO: actually check if this is the certificate we want - # hash collisions are unlikely, but not impossible - -r $path or next; - my $rpath = readlink($path) or next; - $rpath =~ m{\A/} - or $rpath = "$ssl_cert_dir/$rpath"; - return $rpath; - } - } - return "$FindBin::Bin/ca.crt"; + return '/etc/certs/ca-certificates.crt'; } # ===========================