Antoine Pitrou added the comment:

That whole paragraph in the documentation is weird. Usually, you don't download 
select root certificates from various CAs, you just elect to trust a 
predetermined set of root certs (the system ones, usually).

I would suggest rewording it and dropping the various download URLs.

(and if the suggestion to provide the full chain is obsolete for SSLv3 and 
TLSv1, then similarly it may be dropped entirely - we needn't support SSLv2 
specificities in the docs)

----------
nosy: +pitrou

_______________________________________
Python tracker <rep...@bugs.python.org>
<http://bugs.python.org/issue21043>
_______________________________________
_______________________________________________
Python-bugs-list mailing list
Unsubscribe: 
https://mail.python.org/mailman/options/python-bugs-list/archive%40mail-archive.com

Reply via email to