It seems that the SSL certificate for the qubes-templates-itl-testing repo has expired.
sudo qubes-dom0-update --enablerepo=qubes-templates-itl-testing qubes-template-debian-9-minimal [...] DNF will only download packages for the transaction. Downloading Packages: [MIRROR] qubes-template-debian-9-minimal-4.0.1-201901271906.noarch.rpm: Curl error (60): Peer certificate cannot be authenticated with given CA certificates for https://mirrors.dgplug.org/qubes/repo/yum/r4.0/templates-itl-testing/rpm/qubes-template-debian-9-minimal-4.0.1-201901271906.noarch.rpm [SSL certificate problem: certificate has expired] GPG signature of the packages is checked by dom0 anyway, so they can be downloaded using an insecure connection, right? Should the httpS be removed in /etc/yum.repos.d/qubes-templates.repo, or can the certificate be updated? Cheers, Georges Dupéron -- You received this message because you are subscribed to the Google Groups "qubes-users" group. To unsubscribe from this group and stop receiving emails from it, send an email to qubes-users+unsubscr...@googlegroups.com. To post to this group, send email to qubes-users@googlegroups.com. To view this discussion on the web visit https://groups.google.com/d/msgid/qubes-users/CAKQnwqakNaA2Z8f%2B6OkkepTRApaHR81CXMvRBdRxxuzv-1iAbQ%40mail.gmail.com. For more options, visit https://groups.google.com/d/optout.