
Verify TLS certificates expiration on mirrors

etix opened this issue · 1 comments

etix commented

I originally thought it would be done automatically, but we have seen reports of that mechanism failing.

We should probably not downgrade to HTTP but disable the mirror till the issue is resolved.

ott commented

Do you have more detailed information where this issue occurs? If I'm not mistaken, the HTTP client from net/http should check certificate expiration.