ca-certificates-mozilla-2.84-150200.44.1<>,,iKp9|{#VIh(4A%n\%pPfK_m`/=nhJ~k xp}U߄)o FP 1z1 M=k{5nsrYL28_($YN;?M⥉)qN.BYHT%.@b}=D+HK 7W<#uƔL8C+i u|-j>GYh?YXd + G 1IOVu    H L\p   (8*9*:*>V@VBVFV,GV@HVPIV`XVdYVhZV|[V\V]V^VbWLcWdXeXfXlXuXvXzXXYYY YYTCca-certificates-mozilla2.84150200.44.1CA certificates for OpenSSLThis package contains some CA root certificates for OpenSSL extracted from MozillaFirefoxiKh03-ch2a \SUSE Linux Enterprise 15SUSE LLC MPL-2.0https://www.suse.com/Productivity/Networking/Securityhttps://www.mozilla.orglinuxnoarchupdate-ca-certificates || trueupdate-ca-certificates || true;g !A큤A큤iKiKiKiK45788ff1636774b567706f4a42262269912aab7e9017094450c1c3fdb7722a3e5ba0384f4a096f96ac58968b273a771ea71db447b1c7085fba3cb38e580d3489rootrootrootrootrootrootrootrootca-certificates-mozilla-2.84-150200.44.1.src.rpmca-certificates-mozilla     /bin/sh/bin/sh/bin/shca-certificatesca-certificatesrpmlib(CompressedFileNames)rpmlib(FileDigests)rpmlib(PayloadFilesHavePrefix)rpmlib(PayloadIsXz)3.0.4-14.6.0-14.0-15.2-1p11-kit-tools0.23.2-4.5.24.14.1ig@gggg@g@g/@g^fe}@e}@e}@dܺ@d@dS@cFc @boaXIaM`@``"y@__!d^|@^@]]ʞ]F\@n@[ug@[?YZZiY|XAW@V@TZ@T@meissner@suse.commeissner@suse.commeissner@suse.comeroca@suse.commeissner@suse.comdmueller@suse.comdmueller@suse.comsteven.kowalik@suse.comdmueller@suse.commeissner@suse.commeissner@suse.commeissner@suse.comdimstar@opensuse.orgmeissner@suse.commeissner@suse.comdimstar@opensuse.orgmeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comdmueller@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.comlnussel@suse.delnussel@suse.deandreas.stieger@gmx.demeissner@suse.commeissner@suse.commeissner@suse.comkukuk@suse.demeissner@suse.comjmatejek@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.commeissner@suse.com- Updated to 2.84 state (bsc#1258002) - Removed: - Baltimore CyberTrust Root - CommScope Public Trust ECC Root-01 - CommScope Public Trust ECC Root-02 - CommScope Public Trust RSA Root-01 - CommScope Public Trust RSA Root-02 - DigiNotar Root CA - Added: - e-Szigno TLS Root CA 2023 - OISTE Client Root ECC G1 - OISTE Client Root RSA G1 - OISTE Server Root ECC G1 - OISTE Server Root RSA G1 - SwissSign RSA SMIME Root CA 2022 - 1 - SwissSign RSA TLS Root CA 2022 - 1 - TrustAsia SMIME ECC Root CA - TrustAsia SMIME RSA Root CA - TrustAsia TLS ECC Root CA - TrustAsia TLS RSA Root CA- reenable the distrusted certs again. the distrust is only for certs issued after the distrust date, not for all certs of a CA. remove: remove-distrusted.patch- explit remove distruted certs, as the distrust does not get exported correctly and the SSL certs are still trusted. (bsc#1240343) - Entrust.net Premium 2048 Secure Server CA - Entrust Root Certification Authority - AffirmTrust Commercial - AffirmTrust Networking - AffirmTrust Premium - AffirmTrust Premium ECC - Entrust Root Certification Authority - G2 - Entrust Root Certification Authority - EC1 - GlobalSign Root E46 - GLOBALTRUST 2020 - remove-distrusted.patch: apply to certdata.txt- Fix awk to compare (missing a =) and give the following output: [#] NSS_BUILTINS_LIBRARY_VERSION "2.74"- pass file argument to awk (bsc#1240009)- update to 2.74 state of Mozilla SSL root CAs: Removed: * SwissSign Silver CA - G2 Added: * D-TRUST BR Root CA 2 2023 * D-TRUST EV Root CA 2 2023- remove extensive signature printing in comments of the cert bundle- Define two macros to break a build cycle with p11-kit.- Updated to 2.72 state of Mozilla SSL root CAs (bsc#1234798) Removed: - SecureSign RootCA11 - Security Communication RootCA3 Added: - TWCA CYBER Root CA - TWCA Global Root CA G2 - SecureSign Root CA12 - SecureSign Root CA14 - SecureSign Root CA15- Updated to 2.68 state of Mozilla SSL root CAs (bsc#1227525) - Added: FIRMAPROFESIONAL CA ROOT-A WEB - Distrust: GLOBALTRUST 2020- Updated to 2.66 state of Mozilla SSL root CAs (bsc#1220356) Added: - CommScope Public Trust ECC Root-01 - CommScope Public Trust ECC Root-02 - CommScope Public Trust RSA Root-01 - CommScope Public Trust RSA Root-02 - D-Trust SBR Root CA 1 2022 - D-Trust SBR Root CA 2 2022 - Telekom Security SMIME ECC Root 2021 - Telekom Security SMIME RSA Root 2023 - Telekom Security TLS ECC Root 2020 - Telekom Security TLS RSA Root 2023 - TrustAsia Global Root CA G3 - TrustAsia Global Root CA G4 Removed: - Autoridad de Certificacion Firmaprofesional CIF A62634068 - Chambers of Commerce Root - 2008 - Global Chambersign Root - 2008 - Security Communication Root CA - Symantec Class 1 Public Primary Certification Authority - G6 - Symantec Class 2 Public Primary Certification Authority - G6 - TrustCor ECA-1 - TrustCor RootCert CA-1 - TrustCor RootCert CA-2 - VeriSign Class 1 Public Primary Certification Authority - G3 - VeriSign Class 2 Public Primary Certification Authority - G3 - remove-trustcor.patch: removed, now upstream - do a versioned obsoletes of "openssl-certs".- use rpm 4.20 compatible patch syntax- Use %patch -P N instead of deprecated %patchN.- readd _multibuild- Updated to 2.62 state of Mozilla SSL root CAs (bsc#1214248) Added: - Atos TrustedRoot Root CA ECC G2 2020 - Atos TrustedRoot Root CA ECC TLS 2021 - Atos TrustedRoot Root CA RSA G2 2020 - Atos TrustedRoot Root CA RSA TLS 2021 - BJCA Global Root CA1 - BJCA Global Root CA2 - LAWtrust Root CA2 (4096) - Sectigo Public Email Protection Root E46 - Sectigo Public Email Protection Root R46 - Sectigo Public Server Authentication Root E46 - Sectigo Public Server Authentication Root R46 - SSL.com Client ECC Root CA 2022 - SSL.com Client RSA Root CA 2022 - SSL.com TLS ECC Root CA 2022 - SSL.com TLS RSA Root CA 2022 Removed CAs: - Chambers of Commerce Root - E-Tugra Certification Authority - E-Tugra Global Root CA ECC v3 - E-Tugra Global Root CA RSA v3 - Hongkong Post Root CA 1- Add _multibuild to define 2nd spec file as additional flavor. Eliminates the need for source package links in OBS.- Updated to 2.60 state of Mozilla SSL root CAs (bsc#1206622) Removed CAs: - Global Chambersign Root - EC-ACC - Network Solutions Certificate Authority - Staat der Nederlanden EV Root CA - SwissSign Platinum CA - G2 Added CAs: - DIGITALSIGN GLOBAL ROOT ECDSA CA - DIGITALSIGN GLOBAL ROOT RSA CA - Security Communication ECC RootCA1 - Security Communication RootCA3 Changed trust: - TrustCor certificates only trusted up to Nov 30 (bsc#1206212) - Removed CAs (bsc#1206212) as most code does not handle "valid before nov 30 2022" and it is not clear how many certs were issued for SSL middleware by TrustCor: - TrustCor RootCert CA-1 - TrustCor RootCert CA-2 - TrustCor ECA-1 Patch: remove-trustcor.patch- Updated to 2.56 state of Mozilla SSL root CAs (bsc#1202868) Added: - Certainly Root E1 - Certainly Root R1 - DigiCert SMIME ECC P384 Root G5 - DigiCert SMIME RSA4096 Root G5 - DigiCert TLS ECC P384 Root G5 - DigiCert TLS RSA4096 Root G5 - E-Tugra Global Root CA ECC v3 - E-Tugra Global Root CA RSA v3 Removed: - Hellenic Academic and Research Institutions RootCA 2011- Updated to 2.54 state of Mozilla SSL root CAs (bsc#1199079) Added: - Autoridad de Certificacion Firmaprofesional CIF A62634068 - D-TRUST BR Root CA 1 2020 - D-TRUST EV Root CA 1 2020 - GlobalSign ECC Root CA R4 - GTS Root R1 - GTS Root R2 - GTS Root R3 - GTS Root R4 - HiPKI Root CA - G1 - ISRG Root X2 - Telia Root CA v2 - vTrus ECC Root CA - vTrus Root CA Removed: - Cybertrust Global Root - DST Root CA X3 - DigiNotar PKIoverheid CA Organisatie - G2 - GlobalSign ECC Root CA R4 - GlobalSign Root CA R2 - GTS Root R1 - GTS Root R2 - GTS Root R3 - GTS Root R4- updated to 2.50 state of the Mozilla NSS Certificate store (bsc#1188006) - Added CAs: + HARICA Client ECC Root CA 2021 + HARICA Client RSA Root CA 2021 + HARICA TLS ECC Root CA 2021 + HARICA TLS RSA Root CA 2021 + TunTrust Root CA- remove the DST_Root_CA_X3.pem trust, as it expires september 30th 2021. (bsc#1190858)- updated to 2.50 state of the Mozilla NSS Certificate store (bsc#1188006) Added CAs: * AC RAIZ FNMT-RCM SERVIDORES SEGUROS * ANF Secure Server Root CA * Certum EC-384 CA * Certum Trusted Root CA * GlobalSign Root E46 * GlobalSign Root R46 * GlobalSign Secure Mail Root E45 * GlobalSign Secure Mail Root R45 * GLOBALTRUST 2020 Removed CAs: * GeoTrust Primary Certification Authority - G2 * QuoVadis Root Certification Authority * Sonera Class2 CA * Trustis FPS Root CA * VeriSign Universal Root Certification Authority- fix mozila typo in installed files- Updated to 2.46 state of the Mozilla NSS Certificate store (bsc#1181994) - Added new root CAs: - NAVER Global Root Certification Authority - Removed old root CA: - GeoTrust Global CA - GeoTrust Primary Certification Authority - GeoTrust Primary Certification Authority - G3 - GeoTrust Universal CA - GeoTrust Universal CA 2 - thawte Primary Root CA - thawte Primary Root CA - G2 - thawte Primary Root CA - G3 - VeriSign Class 3 Public Primary Certification Authority - G4 - VeriSign Class 3 Public Primary Certification Authority - G5- Updated to 2.44 state of the Mozilla NSS Certificate store (bsc#1177864) - Removed CAs: - EE Certification Centre Root CA - Taiwan GRCA - Added CAs: - Trustwave Global Certification Authority - Trustwave Global ECC P256 Certification Authority - Trustwave Global ECC P384 Certification Authority- update to 2.42 state of the Mozilla NSS Certificate store (bsc#1174673) Removed CAs: - AddTrust External CA Root - AddTrust Class 1 CA Root - LuxTrust Global Root 2 - Staat der Nederlanden Root CA - G2 - Symantec Class 1 Public Primary Certification Authority - G4 - Symantec Class 2 Public Primary Certification Authority - G4 - VeriSign Class 3 Public Primary Certification Authority - G3 Added CAs: - certSIGN Root CA G2 - e-Szigno Root CA 2017 - Microsoft ECC Root Certificate Authority 2017 - Microsoft RSA Root Certificate Authority 2017- also run update-ca-certificates in %posttrans- update to 2.40 state of the Mozilla NSS Certificate store (bsc#1160160) - removed: - Certplus Class 2 Primary CA - Deutsche Telekom Root CA 2 - CN=Swisscom Root CA 2 - UTN-USERFirst-Client Authentication and Email - added: - Entrust Root Certification Authority - G4- make sure p11-kit with patches is installed on SLE (boo#1154871)- export correct p11kit trust attributes so Firefox detects built in certificates (boo#1154871). Courtesy of Fedora.- update to 2.34 state of the Mozilla NSS Certificate store (bsc#1144169) - Removed CAs: - Certinomis - Root CA - includes added root CAs from the 2.32 version: - emSign ECC Root CA - C3 (email and server auth) - emSign ECC Root CA - G3 (email and server auth) - emSign Root CA - C1 (email and server auth) - emSign Root CA - G1 (email and server auth) - Hongkong Post Root CA 3 (server auth)- updated to 2.30 state of the Mozilla NSS Certificate store. (bsc#1121446) - Removed CAs: - AC Raiz Certicamara S.A. - Certplus Root CA G1 - Certplus Root CA G2 - OpenTrust Root CA G1 - OpenTrust Root CA G2 - OpenTrust Root CA G3 - Visa eCommerce Root - Added Root CAs: - Certigna Root CA (email and server auth) - GTS Root R1 (server auth) - GTS Root R2 (server auth) - GTS Root R3 (server auth) - GTS Root R4 (server auth) - OISTE WISeKey Global Root GC CA (email and server auth) - UCA Extended Validation Root (server auth) - UCA Global G2 Root (email and server auth)- updated to 2.26 state of the Mozilla NSS Certificate store. (bsc#1104780) - removed server auth - Certplus Root CA G1 - Certplus Root CA G2 - OpenTrust Root CA G1 - OpenTrust Root CA G2 - OpenTrust Root CA G3 - remove CA - ComSign CA - added new CA - GlobalSign- Updated to 2.24 state of the Mozilla NSS Certificate store. (bsc#1100415) - Removed CAs: * S-TRUST_Universal_Root_CA:2.16.96.86.197.75.35.64.91.100.212.237.37.218.217.214.30.30.crt * TC_TrustCenter_Class_3_CA_II:2.14.74.71.0.1.0.2.229.160.93.214.63.0.81.191.crt * TÜRKTRUST_Elektronik_Sertifika_Hizmet_Sağlayıcısı_H5:2.7.0.142.23.254.36.32.129.crt- Use %license instead of %doc [bsc#1082318]- Updated to 2.22 state of the Mozilla NSS Certificate store (bsc#1071152, bsc#1071390, bsc#1010996) - Removed CAs: * ACEDICOM Root * AddTrust Public CA Root * AddTrust Qualified CA Root * ApplicationCA - Japanese Government * CA Disig Root R1 * CA WoSign ECC Root * Certification Authority of WoSign G2 * Certinomis - Autorité Racine * China Internet Network Information Center EV Certificates Root * CNNIC ROOT * Comodo Secure Certificate Services * Comodo Trusted Certificate Services * ComSign Secured CA * DST ACES CA X6 * GeoTrust Global CA 2 * StartCom Certification Authority * StartCom Certification Authority * StartCom Certification Authority G2 * Swisscom Root CA 1 * TÜBİTAK UEKAE Kök Sertifika Hizmet Sağlayıcısı - Sürüm 3 * TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı * TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı H6 * UTN USERFirst Hardware Root CA * UTN USERFirst Object Root CA * VeriSign Class 3 Secure Server CA - G2 * WellsSecure Public Root Certificate Authority * Certification Authority of WoSign * WoSign China - Added CAs: * D-TRUST Root CA 3 2013 * GDCA TrustAUTH R5 ROOT * SSL.com EV Root Certification Authority ECC * SSL.com EV Root Certification Authority RSA R2 * SSL.com Root Certification Authority ECC * SSL.com Root Certification Authority RSA * TrustCor RootCert CA-1 * TrustCor RootCert CA-2 * TUBITAK Kamu SM SSL Kok Sertifikasi - Surum 1- convert processing script to Python 3 - ensure a stable conversion of UTF8 hex-encoded certificate names - ensure a stable ordering of trust/distrust bits in headers- updated to 2.11 state of the Mozilla NSS Certificate store. - removed CAs: - Buypass_Class_2_CA_1:2.1.1.crt serverAuth - EBG_Elektronik_Sertifika_Hizmet_Sağlayıcısı:2.8.76.175.115.66.28.142.116.2.crt codeSigning emailProtection serverAuth - Equifax_Secure_CA:2.4.53.222.244.207.crt emailProtection - Equifax_Secure_eBusiness_CA_1:2.1.4.crt emailProtection - Equifax_Secure_Global_eBusiness_CA:2.1.1.crt emailProtection - IGC_A:2.5.57.17.69.16.148.crt codeSigning emailProtection serverAuth - Juur-SK:2.4.59.142.75.252.crt codeSigning serverAuth - Root_CA_Generalitat_Valenciana:2.4.59.69.229.104.crt codeSigning emailProtection serverAuth - RSA_Security_2048_v3:2.16.10.1.1.1.0.0.2.124.0.0.0.10.0.0.0.2.crt codeSigning emailProtection serverAuth - Sonera_Class_1_Root_CA:2.1.36.crt emailProtection - S-TRUST_Authentication_and_Encryption_Root_CA_2005_PN:2.16.55.25.24.230.83.84.124.26.181.184.203.89.90.219.53.183.crt emailProtection - Verisign_Class_1_Public_Primary_Certification_Authority:2.16.63.105.30.129.156.240.154.74.243.115.255.185.72.162.228.221.crt emailProtection - Verisign_Class_2_Public_Primary_Certification_Authority_-_G2:2.17.0.185.47.96.204.136.159.161.122.70.9.184.91.112.108.138.175.crt emailProtection - Verisign_Class_3_Public_Primary_Certification_Authority:2.16.112.186.228.29.16.217.41.52.182.56.202.123.3.204.186.191.crt emailProtection - added CAs: + AC_RAIZ_FNMT-RCM:2.15.93.147.141.48.103.54.200.6.29.26.199.84.132.105.7.crt serverAuth + Amazon_Root_CA_1:2.19.6.108.159.207.153.191.140.10.57.226.240.120.138.67.230.150.54.91.202.crt emailProtection serverAuth + Amazon_Root_CA_2:2.19.6.108.159.210.150.53.134.159.10.15.229.134.120.248.91.38.187.138.55.crt emailProtection serverAuth + Amazon_Root_CA_3:2.19.6.108.159.213.116.151.54.102.63.59.11.154.217.232.158.118.3.242.74.crt emailProtection serverAuth + Amazon_Root_CA_4:2.19.6.108.159.215.193.187.16.76.41.67.229.113.123.123.44.200.26.193.14.crt emailProtection serverAuth + Certplus_Root_CA_G1:2.18.17.32.85.131.228.45.62.84.86.133.45.131.55.183.44.220.70.17.crt emailProtection serverAuth + Certplus_Root_CA_G2:2.18.17.32.217.145.206.174.163.232.197.231.255.233.2.175.207.115.188.85.crt emailProtection serverAuth + Hellenic_Academic_and_Research_Institutions_ECC_RootCA_2015:2.1.0.crt emailProtection serverAuth + Hellenic_Academic_and_Research_Institutions_RootCA_2015:2.1.0.crt emailProtection serverAuth + ISRG_Root_X1:2.17.0.130.16.207.176.210.64.227.89.68.99.224.187.99.130.139.0.crt (bsc#1010996) serverAuth + LuxTrust_Global_Root_2:2.20.10.126.166.223.75.68.158.218.106.36.133.158.230.184.21.211.22.127.187.177.crt serverAuth + OpenTrust_Root_CA_G1:2.18.17.32.179.144.85.57.125.127.54.109.100.194.167.159.107.99.142.103.crt emailProtection serverAuth + OpenTrust_Root_CA_G2:2.18.17.32.161.105.27.191.189.185.189.82.150.143.35.232.72.191.38.17.crt emailProtection serverAuth + OpenTrust_Root_CA_G3:2.18.17.32.230.248.76.252.36.176.190.5.64.172.218.131.27.52.96.63.crt emailProtection serverAuth + Symantec_Class_1_Public_Primary_Certification_Authority_-_G4:2.16.33.110.51.165.203.211.136.164.111.41.7.180.39.60.196.216.crt emailProtection + Symantec_Class_1_Public_Primary_Certification_Authority_-_G6:2.16.36.50.117.242.29.47.210.9.51.247.180.106.202.208.243.152.crt emailProtection + Symantec_Class_2_Public_Primary_Certification_Authority_-_G4:2.16.52.23.101.18.64.59.183.86.128.45.128.203.121.85.166.30.crt emailProtection + Symantec_Class_2_Public_Primary_Certification_Authority_-_G6:2.16.100.130.158.252.55.30.116.93.252.151.255.151.200.177.255.65.crt emailProtection - diff-from-upstream-2.7.patch: removed as we should be able to do intermediate root chains now with openssl 1.0.2 and also gnutls 3.5 is able to do so.- diff-from-upstream-2.7.patch: restore some important legacy CAs, otherwise Pidgin fails to talk to Google Talk for instance.- Updated to 2.7 (bsc#973042). - diff-from-upstream-2.2.patch: removed as openssl 1.0.2 can do immediate root CAs. - Removed server trust from: AC Raíz Certicámara S.A. ComSign Secured CA NetLock Uzleti (Class B) Tanusitvanykiado NetLock Business (Class B) Root NetLock Expressz (Class C) Tanusitvanykiado TC TrustCenter Class 3 CA II TURKTRUST Certificate Services Provider Root 1 TURKTRUST Certificate Services Provider Root 2 Equifax Secure Global eBusiness CA-1 Verisign Class 4 Public Primary Certification Authority G3 - enable server trust Actalis Authentication Root CA - Deleted CAs: A Trust nQual 03 Buypass Class 3 CA 1 CA Disig Digital Signature Trust Co Global CA 1 Digital Signature Trust Co Global CA 3 E Guven Kok Elektronik Sertifika Hizmet Saglayicisi NetLock Expressz (Class C) Tanusitvanykiado NetLock Kozjegyzoi (Class A) Tanusitvanykiado NetLock Minositett Kozjegyzoi (Class QA) Tanusitvanykiado NetLock Uzleti (Class B) Tanusitvanykiado SG TRUST SERVICES RACINE Staat der Nederlanden Root CA TC TrustCenter Class 2 CA II TC TrustCenter Universal CA I TDC Internet Root CA UTN DATACorp SGC Root CA Verisign Class 1 Public Primary Certification Authority - G2 Verisign Class 3 Public Primary Certification Authority Verisign Class 3 Public Primary Certification Authority - G2 - New added CAs: CA WoSign ECC Root Certification Authority of WoSign Certification Authority of WoSign G2 Certinomis - Root CA Certum Trusted Network CA 2 CFCA EV ROOT COMODO RSA Certification Authority DigiCert Assured ID Root G2 DigiCert Assured ID Root G3 DigiCert Global Root G2 DigiCert Global Root G3 DigiCert Trusted Root G4 Entrust Root Certification Authority - EC1 Entrust Root Certification Authority - G2 GlobalSign GlobalSign IdenTrust Commercial Root CA 1 IdenTrust Public Sector Root CA 1 OISTE WISeKey Global Root GB CA QuoVadis Root CA 1 G3 QuoVadis Root CA 2 G3 QuoVadis Root CA 3 G3 Staat der Nederlanden EV Root CA Staat der Nederlanden Root CA - G3 S-TRUST Universal Root CA SZAFIR ROOT CA2 TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı H5 TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı H6 USERTrust ECC Certification Authority USERTrust RSA Certification Authority 沃通根证书- diff-from-upstream-2.2.patch: Temporary reenable some root ca trusts, as openssl/gnutls have trouble using intermediates as root CA. - GTE CyberTrust Global Root - Thawte Server CA - Thawte Premium Server CA - ValiCert Class 1 VA - ValiCert Class 2 VA - RSA Root Certificate 1 - Entrust.net Secure Server CA - America Online Root Certification Authority 1 - America Online Root Certification Authority 2- Updated to 2.2 (bnc#888534) - The following CAs were removed: + America_Online_Root_Certification_Authority_1 + America_Online_Root_Certification_Authority_2 + GTE_CyberTrust_Global_Root + Thawte_Premium_Server_CA + Thawte_Server_CA - The following CAs were added: + COMODO_RSA_Certification_Authority codeSigning emailProtection serverAuth + GlobalSign_ECC_Root_CA_-_R4 codeSigning emailProtection serverAuth + GlobalSign_ECC_Root_CA_-_R5 codeSigning emailProtection serverAuth + USERTrust_ECC_Certification_Authority codeSigning emailProtection serverAuth + USERTrust_RSA_Certification_Authority codeSigning emailProtection serverAuth + VeriSign-C3SSA-G2-temporary-intermediate-after-1024bit-removal - The following CAs were changed: + Equifax_Secure_eBusiness_CA_1 remote code signing and https trust, leave email trust + Verisign_Class_3_Public_Primary_Certification_Authority_-_G2 only trust emailProtection/bin/sh/bin/shopenssl-certsh03-ch2a 17713263582.84-150200.44.12.84ca-certificates-mozillaCOPYINGtrustca-certificates-mozilla.trust.p11-kit/usr/share/licenses//usr/share/licenses/ca-certificates-mozilla//usr/share/pki//usr/share/pki/trust/-fmessage-length=0 -grecord-gcc-switches -O2 -Wall -D_FORTIFY_SOURCE=2 -fstack-protector-strong -funwind-tables -fasynchronous-unwind-tables -fstack-clash-protection -gobs://build.suse.de/SUSE:Maintenance:42786/SUSE_SLE-15-SP2_Update/a000423f8d6dacee66cdbbaa2e1a479a-ca-certificates-mozilla.SUSE_SLE-15-SP2_Updatedrpmxz5noarch-suse-linuxdirectoryUTF-8 Unicode text\{?tD;update-ca-certificates || true/bin/shutf-8af1c3abacf2f27fb6a681a9c4ca0710624cd843b29b1ad1b522ce09edd5b9ec2?7zXZ !t/I]"k%=v41 GSlUuOl[;UC/-PDqGTfn!%I)z7Oʱ)&M:dhĸ}SG%?PCpk?AE*:QkG} $偌KN-~籵w4aOj(-}D,5O) PE kL$ 󝆊75EֿN.VyT1Z^_FBRz:xiѢصnhqpA\cpb$ݸ솮5B2f]SԎ5hIU#iM=ד;_@VQa's%E5x>9UȍmQT ^+M\>BCdL'a_jK'AykwKP5N)\z+k$ \;Nl=aElDu2 OD8f$^xq|6e>L_;S[ *4$ 7ɆFNug߬Hߟl R+JncS,V~ %<.Տe}9 \;#TbI5'%3H=lmi&ӥKӅj@YI1M_86LX+fTY#Zˈ,+>#Z|dLZ|/$E| Xf3I:Xѕ@KP09YRn QKue"N: ]fL4rZgq&Zq,Nة jB_IJ^z9Pj6BGim/bz#o( 19a8:$ҹ7Yd$O%ڪHY5E^FT Fѷ߁d{-f[\yD$^:jG%QtIyc>Fp6rⶻS?jc9qLJ󹹩ˣJŘ3d hOyPxᲝTI;RZ.Rxo~,ٷod_;eќCf[`*lBS[.dWEo[hBLm͒|b9+%cߛƀ|,8;4Ty8B$dUǘl @hfK YQ'\MLZ3]m$DCt'gk0 L}~M>!10W*ja}GLtW4VoPnTwrIv)jg)bvYˏ rd 4]D V  J%H/>@*:0IͼH@n bc RlIx;Z͎ݤb;(媓㫇pZTjFiz?,rq͔ݽg«1%%fߓ˽7\e>%n#HD8eY;M$  ZXc(#q땀Fh.̾e/ەh=maN4[#!>&٫^mc&,MAT') }nB[A*y) 9IrrHCB$3+bukMtf 5Nn7% sS¹5Lbj\򒉩gl8A7z*]j-CAB D<?K̫%G]% $ąLJ^&ewݺ-fLJU J@j:W§@\LW/L ;O Nϐ4dEZr![-m`1碋O iQf[lcK(J3Eec{b@-Y,&;kgE;c;uNSm?5k>)t^bԁΣs3FqWO"m_33/]DB|'`2)u<+bؕ L  %ߩ}$Ya-uY{dG*?GC>zf̜ƿFȌFN|/uX~(6Vp8 s 0&bOJAඬW]+1R` ҕMsN5`a|N gHg!mzzJ`cCIhn:c1 m^^ld?ezF*Av' &=pb:B@ ?T0,\Dd9/)]<D:b%wg \-59=q |(1)w}& -ݎv 699!5 g:Ũ}\>2 QauG&#}q o6"w%- 쓪YPya ųJtI0Ho4`*Goka_JQTsAnw_͙'*dT|Ό}Jo?786ohր$)_@0xC0-@?rO=;u>_ժYA'7UaYQ1P>}nZ NEy!JqW1 @.KpUJ݁ZyǸ-hr]}p"Lg%^ScTƉ̺yd[/%cܟˆde1oLDo!0A6RqƁTo/be<1n/^;I[a x RJ=9w54:&A,Bayڢk>Rp!}QǝAjߛra/c^3a%C#wrkQ2LKƮMBBʙĎKV CrBEAםٰ2a{N~nL> WXm/P'4?>Vmy3Lie?43&Аr*t\yqDS` !x[mm?wh*iվGHzX{%*4okÚRRfNIs_SaGM| uAvcJ#I`G }5 jҍw&R>Ħ3l{ KOtdiשUxGKבxJ-8M[F ]@ şz櫗sPb$dnt%ۼپkŕ +lE6ڬ&޳ z-|8&Y#\|.b󏶶n?~HQ$y[XðHmZ0J>X_DuWk.*|WD'|g۾~YE*aKܱ#ޒKG LL]~nƶpԀ8/Ln{ (O,Kn$s*/ 8W%VqjuӨY'4Npkh}2:O1^Z%0^D0yԍ~73М6SEApdmШ\?mKhijTek*{IBxnH08ndЃ" bONfwgh 0@z|WڌnΨBSmby ?>: @p!`A dK׎x7HwwPS/[?\Kcō%sqM/-#l״$ +VV^m3 6a 쾪qe.!4_4DpZ襁dLsm8OQMydQBy;T2-iM"וkSTԵsHDy/9F+°o T7:V˶WgnS/9PFLzI$I7FsEp%0@>AEyEyo0)eDZ< Q@٬2# Y +=^q:& #k! &b W2xc؝T{~,$~`#Xu6]6;6C`:Z;(gg wTM n㹉.u4HG1PlT>=Gwp^u~%jTܼ.Ћ:I+iSu%'-ػV\H+n4z,k{d͟SDп-Rr_E}D@*)u-7k?HP}<bm|@wsCӺԆY`|w ppC'$k}5 Aj7PVn r_[v%&5Ѻ.}-F{x$~`SSpmF)X6vNl'TO~H6aI\ƹrzmfؽ5ܹ֤9 a癌ܷہkٔC9|>e9]>(_4VJi<pm1T[g")ظŒ Lъ9@]/CqZbRfik8~im4~Vq9-d?7b{UlqZLΨ཮f~ͨg`0KQl.hh`PH8u$#R}Zy^" r$fP+|*i -?֡"xq=\!Y|i _CJo^[Ƙ] 7%s~֭-SX}GѭCx<<_.Ā2b "r; Z$v"MjcaD!J&ň5̯c!p(v7_+=(Je%$[m*'ڲWFh>^_t.IJ "]XM2+-)--Os)!WǡGU-ΰ?c}0rzU,2dfYwe!hF}_}KT*yJ:%7$E(e"a/):y[?ؗksqCKK `X~*#!0$@ٽǁ>'ir:wMgZ949K^ $?wwC:66QfNր~s@ 5wlxǷz6]P GSĦNg77Eĥɚn3X6w~㰕elxoX0rhyz{TzX%N⨲ѩy/F:c9=1ܪ޽ j7d0CzbK񔞴k}܂Eǜ셐DR ;3mf~a~kOTRHy2́ W06_$c@Eq8iAJ=aG)bVQY`Ihja*A`HXp ! QUm}oAߓMrr+FXtҩoGEJP s/Qb_YS8Z}0 P7V*L|^39B/r91[|>=5}D KwV!(}ů"Z*!r D|Lr=Kf98ުUBsci՛mcG6#IQwCӝpF[i|' VhI*4jឍ+۾i`bo+.c7M[V9V䆆:AY[c!?38F=[n߫c51rC  ѱ|yDf|%5q5naoӉ{.$1CMZC˸d5\3MV[{GV>m" I[At"^ȸkhRUN={s_tIsgL?vx6AD-dsĩcCф~%sUit d;8}-XټJZ!Ӆ9 +st nH4A-KR% ܂Ӆ:b d;Ll@=B{_s a utO'O7X;g SQ [iHryyD藣|MF7]HYQe< n vYEI%AAĪk f'M#mz<:hP7EHK݈yY:'Rk぀ҫBkawu ?)_AaB溩32b{'QQ Zɐ9`TQ SeHezQ?$lHj3ӹeDg=qXD$|w~5M2?Ӭ}):ti[ֲceevJg4FwĐGv9CiO⋃sgr3:6+1!ַ2Uilni˓P_Z,9 $zP *erunyǸؑJ[B q2?UMqEӹv5~tG4ާKU3X"UOߜm8ɛW@ kO6. YiBAe-=q]`wmXpAlEM:" r=0"T)0 [Χ@t]_ab{+v/j@b(H `4lJnmZo}{oB.1!W?OVv1 G}}Z#).pQm7HT(z}dȿk]%E" &6:lX-^"m U`4AS*~\6o/B 3䕋8o"E1}8=*fD Sy\Oa`;=rvXl㏞o>0@.[%EIX.)S:s+qV,:tmzK0U b#]O_"\gߏI 3c Y}4/^߂alIN}I= Ι'Mҵ9?;ɳbW" a`۫!/Vav etfs[:^+|# N&ӧsclu*DKk 8b1^ {a9ἺE\LP.<^]Fd3?ك V?" b?@ʳ8K) 9|:zՏ1[4rx61hgSʌ̡ ~CDnӵw/LZk@{eEخΒ8@B5J/=}|R_@c`‡݌9b3Z-nlr N&P}dlxn׎g0_8kȤ)1OZtK Nl_&' N--sƉVf,a UFO`0d>҂cR ג#3t>vK)ԯ„Q#ek4@SJ}1}DMMZK^TqVua<̪ޚ s"/G(w#_!hBNP{Q}* HvG)e)]+ 0|\VєTwbBY_';'Fa5>򏻺m,N& 5gN&CCWmP"HO/h-ʽgi~v}y~½wf]]6NL1~;Wx` 9-6`eESl=ڹAp7Tj:=-u X L"E49#2xN+(|KG4@I|c>Ԯvzu#nX~&@ **(537 8I/]%/5˖03LjzJZ=BMx W:dWǍYu5*EÝ(L$:Q#c[Ih "l)៰ ;>EJR}Ms@ST%Bs%e&T-&p x尻BKwyY p>7UHrTd{KTͱ $:;d9rKgC<xB:Fqԅ_MC$ )۽ƕz?CxC?\~oJ<$QU5,(})[Ga.rS%ٱt8oSAقKn*1/D»=G]XߴDƨd?ؗEMpe1p?JdJؓv7]u5rЊ{ +ې$ f셤z5%\"cNJ0ӷ/ cZif&;Dgxz6zBVǝi58-gЬSJW%ܷfʩ~|]v]誡ɉ%CbF:9z?{mc.#Դ0vu{}G>g"lZ/)+cr!ҋvv?kWL|181>paNZI0Ptv Kb&jݘ:d Qo1.ӀaIC^JNH)փȮxI/Z?@'\"||7^L0}Am1T2O~HJ7LJs'( L-FyJH)|^껄&p(b)-;W ȿ' J{/nMD }'6~IMIÊY][Sˆ(AWT`Mњ 7=A"Z "  O)8NmAP-U4u*dEtNa)Dah蟗#z]&\#\$$sj-sm?_˒+PM#TcgMI")󎎴8މӂal<Ub9ЛO| HL {Rt {rs/pyQa>)D ?z&r| O{o3zpӒmĄQA1Mw8Rm`⧯: gОcK|, 7VRC(-|!~*foDe %zWnv*倞{;AA7Fq SAh|Njمq}axM2,+sBq!Z<>G^LB z3F %O'q1y8+% l,Dh мtj7@wnL+tzѮrfL*nFU1boauI.#- |d/a3.85,P/_28+L^g hU{C+|A YU9rT;5ɒZH4N ,7 TТNSPAR ݤFMзZIUN kyFs~ =lǨ1ckK7{}<- d%e;zͿzn~6|fF/<@yBQWRF~&ohe]Rp.(ON4`0+r_nt|)F9=4΅K%CM@ 'OՖ/]w+bOX*-FQ:*c)V{F!oH viw37@>f[=Osj/ޒo ܧ>)h…M?eZXExQSf[4ӫ0 :dɜWrx<i)աd N[QH^YG%1pT= ߌCS}x[dz6UFQkz V2cX//ea?f ?[}FEB VbM UV;ڪǾ4=u|35e 6 %qyg'CPXO"}`P~/gRgbN';-zR#v3u;NF0Q hŋ`:sK_)6A4pr |T|:UE! 8O5xϛݡIS.tY tf{m1Zy;Ort6FD# O}`U`8kzF1[WhTUo$6&m)D?nE=܁S鐇Ȩ\dH8j| uqPNAi(S*OZ|/bUǂҀh(F@KEמgU'GcfQ%<$Ob<^ Dni~ۤ~0Pz yY#/ܾ8M5ط7 a'v(,t"-g#}3M`V5lT6QNO[BW`?P]LxkG|C†@x_}AOݤnY|'v4CD ºȧzO׵8PYpu)fud#l BU8#># +G4䈣ZM"S>HƇ11d)D^ ;@?7m,[Ʋu4sY( aєi#ɆW`i`+WT&n,S&zc].(5.G+~`aj Q521|v~54̋|qq cI *cɠ5aaŧVm ?j FyBi/̈́fz,IĵS[.v.22r9j#j,F,sNW/-5|1( Mq m׿i 1T<Nj)PϮ\>`쉋( k]Z~ȜV0zs9Q)g%Wz ql@@/jc2 *|ȃa*\+" 茐'vye@|"YRn OYٔ+n8E-dDnJo,`Φ{dy9j)N/ };7)X,N`?+?lcJDbo{#}?̻NAװR=cmn9S \[=ܫx[*w@,on!F1Ѹs$͝ǂ.|/ vXXYF@Պo<-e@Q/3ٳDk 2#!*f'qy}LCl˩wfc1%e3DEG+I祐g5: _(@w.)2;r OX햻X0=E1:Oq`[n NtJ: ̨ %5 ǘ4jt`8qqaXC,4ZS] JlwYmɀZvPy.B=i𚌒hU bû{KԁʭYȚ;Ḅ^+~럎.zX ?ţx5~ͥ~g$$^2{(qʥBlawSªUg Bg,"Jʨ*ddQ}(p/OqLνB`;:"xjG<-Bd;wɌ<7ё42Ֆ2Y'T^}#EGB¥},D3жhuHNzdY)=s>D] y@P 9(x} le1̥ X(r1`}Z9r_TZ4^FtްSjCGJmw *%"Erwvņޚ3NrQ9qm2 4gv"+^t`Ur>Tl\>GDb̕-ǰvl 1x3#;@|(DqދW{M[ ɐ@0\_m+0zS:ڌl&KyNލ\Jp'[Lo"$̵uDu!_FLiw+Ҁ7NލJF!?ہ*B Z}&;Lje&8n5,p͞Wo(]CpB{S"'WCPev'8W!(ɣ/1i.rBwZwZiS7-lAaR0=/\ߎl3 :<*fB5+c:mh IC3{.|Nh(gį߉c3q}Q$UrK=aLzZt<ϠDžڏf"5,0ǨпK'37 o4 ,o\%v?s^}QWGr3EAf&|?̲G3' }F'lv&މj.N[П gbI'}6o]8*maK[]2qyܜŢ~&CW1n1çAEd-бΜh2ecm`q90HάD3y%e} Tww|3,|Z(Q">ʼnOJ ~dSV{/)cIAe]y΋׆UIV(g:G!pb*{--!gxv#Ҕc`-gPXY;EChsq"GM/o1PR۬ = Xy~nK[ц`F( #gL bA,Vb_^n@9(~")b}U7FnvrJ(*tW=MPk}|Njf*;/qioiŠWf>Iɯz BD[Ǭm?5{oGed_+40toJ b1SHUZ:5< Zv_خ˚A(ey9+JԗM!V02MNΚ|se,oxJIf;'sKPW/}3TIR[yˀ9`$Kw> TF.?m,^/k]Tu+)'ik%RC@VT'Njڽٱ{ Ô0ܮi[NA;6_szgfb8ǗaFI&.a7ʣٜ'ƫ莄>M jNT,qG Jcy݆7Q \JZ$rtjf, 4_p7aX9x]e|5D!< ۟Ө/ԐO1RC@{6#E̫I'K#O#i W]Nͣ¢T3;Cﻔݮ%g@h#Pwc CTiSb(g2E}JiSGͭ< gͬ:tzڶ^QO5͜/%XGL@C0w:gˈnSb jѽg{Xp>P8t*0LkEDۋtTke獖ؾ1r̂!SK @G:tGRfcJ WeϲO̯&1[[ec<B9GIN\ VSU]XNs`+ĜԔAF;Int8g ExB ƢV_|b{Å%sY;oU͚+}=+_YmENpV+(:s@Je3~I?vsxEIQ+ fNaQSAls#,Qެ6p J-١k1 Qa~G=.SIT_#! )fN-(R+w tIX 9甴`n(B}`▷{:59I=r!,M1xgc>O@*oXk-(Iq1GD$ <[aRmW+= \o ML?;X pF0Al\ٔ | ߕ*1RΏFk'.h{:헱 J^-)& ҖlA\CԝW\WhzԻBlv_:緕&-;d*E+EnvZw4@z$r04t]Ϭ\Uӻ|x4!գt-Q[']wK> 75uxV :Ve]L?娟|†})IAS%RHd/wB;NO\i[NMc[\%EꧪqJ\eG׳tg.۞T*Sł*\LY!/h*E]-LqxŶ YZ