Skip to main content
Topic solved
This topic has been marked as solved and requires no further attention.
Topic: [FIXED] omniverse repository: SSL certificate expired. (Read 259 times) previous topic - next topic
0 Members and 1 Guest are viewing this topic.

[FIXED] omniverse repository: SSL certificate expired.

Ahoj,

it seems that the SSL certificate of the omniverse repository has expired:

pacman -Sy:
Code: [Select]
:: Synchronizing package databases...
 system is up to date
 world is up to date
 galaxy is up to date
 omniverse.db failed to download
 lib32 is up to date
 extra                                                                                       7.7 MiB  3.55 MiB/s 00:02 [#######################################################################] 100%
error: failed retrieving file 'omniverse.db' from omniverse.artixlinux.org : SSL certificate problem: certificate has expired
error: failed to synchronize all databases (download library error)
curl -vvv --cert-status https://omniverse.artixlinux.org/:
Code: [Select]
11:29:17.285461 [0-x] == Info: [READ] client_reset, clear readers
11:29:17.355592 [0-0] == Info: Host omniverse.artixlinux.org:443 was resolved.
11:29:17.355747 [0-0] == Info: IPv6: (none)
11:29:17.355826 [0-0] == Info: IPv4: 185.194.141.76
11:29:17.355924 [0-0] == Info: [HTTPS-CONNECT] adding wanted h2
11:29:17.356028 [0-0] == Info: [HTTPS-CONNECT] added
11:29:17.356137 [0-0] == Info: [HTTPS-CONNECT] connect, init
11:29:17.356266 [0-0] == Info:   Trying 185.194.141.76:443...
11:29:17.356378 [0-0] == Info: [HTTPS-CONNECT] connect -> 0, done=0
11:29:17.356453 [0-0] == Info: [HTTPS-CONNECT] Curl_conn_connect(block=0) -> 0, done=0
11:29:17.356546 [0-0] == Info: [HTTPS-CONNECT] adjust_pollset -> 1 socks
11:29:17.415005 [0-0] == Info: [HTTPS-CONNECT] connect -> 0, done=0
11:29:17.415105 [0-0] == Info: [HTTPS-CONNECT] Curl_conn_connect(block=0) -> 0, done=0
11:29:17.415273 [0-0] == Info: [HTTPS-CONNECT] adjust_pollset -> 1 socks
11:29:17.416099 [0-0] == Info: [SSL] cf_connect()
11:29:17.416125 [0-0] == Info: [SSL] ossl_connect, step1
11:29:17.417146 [0-0] == Info: ALPN: curl offers h2,http/1.1
11:29:17.417201 [0-0] == Info: [SSL] ossl_connect, step2
11:29:17.417329 [0-0] => Send SSL data, 5 bytes (0x5)
0000: .....
11:29:17.417396 [0-0] == Info: TLSv1.3 (OUT), TLS handshake, Client hello (1):
11:29:17.417461 [0-0] => Send SSL data, 512 bytes (0x200)
0000: .......I.._..._....[...)......-...>.0. ..9\..[.....6>.W=.......X
0040: ..'..5..<.......,.0.........+./...$.(.k.#.'.g.....9.....3.....=.
0080: <.5./...w..............omniverse.artixlinux.org.................
00c0: .................................h2.http/1.1.........1.....0....
0100: .............................................+........-.....3.&.
0140: $... p=f........E.h*...{h...}.<..lh.............................
0180: ................................................................
01c0: ................................................................
11:29:17.418038 [0-0] == Info: [SSL] ossl_bio_cf_out_write(len=517) -> 517, err=0
11:29:17.418110 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=5) -> -1, err=81
11:29:17.418180 [0-0] == Info: [SSL] ossl_populate_x509_store, path=/etc/ssl/certs/ca-certificates.crt, blob=0
11:29:17.422047 [0-0] == Info:  CAfile: /etc/ssl/certs/ca-certificates.crt
11:29:17.422084 [0-0] == Info:  CApath: none
11:29:17.422131 [0-0] == Info: [SSL] SSL_connect() -> err=-1, detail=2
11:29:17.422190 [0-0] == Info: [SSL] SSL_connect() -> want recv
11:29:17.422250 [0-0] == Info: [SSL] cf_connect() -> 0, done=0
11:29:17.422310 [0-0] == Info: [HTTPS-CONNECT] connect -> 0, done=0
11:29:17.422371 [0-0] == Info: [HTTPS-CONNECT] Curl_conn_connect(block=0) -> 0, done=0
11:29:17.422453 [0-0] == Info: [SSL] adjust_pollset, POLLIN fd=4
11:29:17.422511 [0-0] == Info: [HTTPS-CONNECT] adjust_pollset -> 1 socks
11:29:17.493791 [0-0] == Info: [SSL] cf_connect()
11:29:17.493922 [0-0] == Info: [SSL] ossl_connect, step2
11:29:17.494104 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=5) -> 5, err=0
11:29:17.494326 [0-0] <= Recv SSL data, 5 bytes (0x5)
0000: ....z
11:29:17.494507 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=122) -> 122, err=0
11:29:17.494728 [0-0] == Info: TLSv1.3 (IN), TLS handshake, Server hello (2):
11:29:17.494930 [0-0] <= Recv SSL data, 122 bytes (0x7a)
0000: ...v...../.....6...G..............<... ..9\..[.....6>.W=.......X
0040: ..'..5.......+.....3.$... ...?...C ...#.=.".dHg,d.V#..2g%.
11:29:17.495379 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=5) -> 5, err=0
11:29:17.495445 [0-0] <= Recv SSL data, 5 bytes (0x5)
0000: .....
11:29:17.495489 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=1) -> 1, err=0
11:29:17.495551 [0-0] == Info: TLSv1.3 (IN), TLS change cipher, Change cipher spec (1):
11:29:17.495605 [0-0] <= Recv SSL data, 1 bytes (0x1)
0000: .
11:29:17.495645 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=5) -> 5, err=0
11:29:17.495711 [0-0] <= Recv SSL data, 5 bytes (0x5)
0000: ....*
11:29:17.495773 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=42) -> 42, err=0
11:29:17.495831 [0-0] <= Recv SSL data, 1 bytes (0x1)
0000: .
11:29:17.495876 [0-0] == Info: TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8):
11:29:17.495947 [0-0] <= Recv SSL data, 25 bytes (0x19)
0000: .................http/1.1
11:29:17.496021 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=5) -> 5, err=0
11:29:17.496067 [0-0] <= Recv SSL data, 5 bytes (0x5)
0000: ....1
11:29:17.496128 [0-0] == Info: [SSL] ossl_bio_cf_in_read(len=2609) -> 2609, err=0
11:29:17.496180 [0-0] <= Recv SSL data, 1 bytes (0x1)
0000: .
11:29:17.496231 [0-0] == Info: TLSv1.3 (IN), TLS handshake, Certificate (11):
11:29:17.496304 [0-0] <= Recv SSL data, 2592 bytes (0xa20)
0000: ...........0...0............gs....|.|.......0...*.H........031.0
0040: ...U....US1.0...U....Let's Encrypt1.0...U....R110...250112021027
0080: Z..250412021026Z0#1!0...U....omniverse.artixlinux.org0.."0...*.H
00c0: .............0.........0./5F(..-[].......j.Pd............1.^.X.3
0100: d.:..;xn.)...G.^&8.$.i.u.X.....V5.`k|.hq.....b?f5.j....C....p..U
0140: @.R.y..........5....H.l.}.C.t.E........2..V...FT..1.B...W....)..
0180: `.zs.)u...A..F..k.Y..'.e`/-....pGc._t......F.......a0._f..F.1.g:
01c0: .,......\.V.......5Ve..........0...0...U...........0...U.%..0...
0200: +.........+.......0...U.......0.0...U......P....pG..........B..0
0240: ...U.#..0.....F.....zl..-.^./&..0W..+........K0I0"..+.....0...ht
0280: tp://r11.o.lencr.org0#..+.....0...http://r11.i.lencr.org/0#..U..
02c0: ..0...omniverse.artixlinux.org0...U. ..0.0...g.....0.....+.....y
0300: ............v.....P$|k...V7....L.n..c..4.&...7....X|o......G0E.
0340: ...d..,...og.....I.Z...D..D5I....!...*(....T.....h..Z...q4.#u@.g
0380: (...v....j.q.e...S...|"..\.....~T..L......X|o......G0E. uIZ.P...
03c0: r.?..<./T....DtU.$.......!....mEoJ.........P......t..1....P0...*
0400: .H.................n.:ox....-7A_.k...J_.....LI.0..t....... Z..}y
0440: FZ?...7L.V..K.xK. S.....]..j.-...........=....:..@...>........b.
0480: /i1x.vXg...].....O.5.7.`..F....u..p...R.[....t...H......|....[.l
04c0: ...2M......N.m..G......e....@!L0..G.a...#.[...|.Y.P..!b.k..b.|".
0500: w..~>.p<..V.*.......0...0............}>../0.#..).k4.0...*.H.....
0540: ...0O1.0...U....US1)0'..U... Internet Security Research Group1.0
0580: ...U....ISRG Root X10...240313000000Z..270312235959Z031.0...U...
05c0: .US1.0...U....Let's Encrypt1.0...U....R110.."0...*.H............
0600: .0...........\..9.....g...<.N.a.&.R.....(.(..'.$.9g.....:.;w....
0640: 9TA.N.A..t.Q..{.X......1..r.rj..t..F.d....."......&z?..X.{....q.
0680: ...1....PM_..v=Z......f...fCH..e.7....2.........'...c..l.'gK..(^
06c0: i.y.I\.$P......{@m...A?.X./.\..........9....E.x.e*.._<..\M...'+.
0700: .BwSOyj...........0..0...U...........0...U.%..0...+.........+...
0740: ....0...U.......0.......0...U........F.....zl..-.^./&..0...U.#..
0780: 0...y.Y.{....s.....X...n02..+........&0$0"..+.....0...http://x1.
07c0: i.lencr.org/0...U. ..0.0...g.....0'..U... 0.0.......http://x1.c.
0800: lencr.org/0...*.H.............N..]....8....q\....7.zo.%.........
0840: ...r......SH...iB...>5......_.....I.......&...$.H M..T...!..6..w
0880: d)...K.]..y.....#...J.H1t.D....-.q.u{.....F.....tH%*....C.......
08c0: ./.j..1.c..)..f,?..gQ.A<.M.....fc...#..S..q....q.6...*2..1|..s..
0900: ..J.jw.Z...E..*d.0>s.....;cJ.F....F@'`c.P:.G..J..G..Z.b..l3.M.8.
0940: H-..h..].L.. A_h..Z.....1..C.IC...?.<..E0i..r.y..1.>#W..O.....w.
0980: o........9K.U..j.......K...;r.J.T...8.`..n5.u.T./.n....7.......u
09c0: FOw..YV.f-n.).....^dE.,..dBD..O.............c.f..r.........5....
0a00: .s#t....;J..X.....5.~;E.0FRk....
11:29:17.499430 [0-0] => Send SSL data, 5 bytes (0x5)
0000: .....
11:29:17.499532 [0-0] == Info: [SSL] ossl_bio_cf_out_write(len=7) -> 7, err=0
11:29:17.499600 [0-0] == Info: TLSv1.3 (OUT), TLS alert, certificate expired (557):
11:29:17.499681 [0-0] => Send SSL data, 2 bytes (0x2)
0000: .-
11:29:17.499739 [0-0] == Info: [SSL] SSL_connect() -> err=-1, detail=1
11:29:17.499804 [0-0] == Info: SSL certificate problem: certificate has expired
11:29:17.499872 [0-0] == Info: [SSL] cf_connect() -> 60, done=0
11:29:17.499927 [0-0] == Info: [HTTPS-CONNECT] connect, all attempts failed
11:29:17.499991 [0-0] == Info: [HTTPS-CONNECT] connect -> 60, done=0
11:29:17.500049 [0-0] == Info: [HTTPS-CONNECT] Curl_conn_connect(block=0) -> 60, done=0
11:29:17.500129 [0-0] == Info: [HTTPS-CONNECT] Curl_conn_connect(), filter returned 60
11:29:17.500205 [0-0] == Info: [WRITE] [OUT] done
11:29:17.500252 [0-0] == Info: closing connection #0
curl: (60) SSL certificate problem: certificate has expired
More details here: https://curl.se/docs/sslcerts.html

curl failed to verify the legitimacy of the server and therefore could not
establish a secure connection to it. To learn more about this situation and
how to fix it, please visit the webpage mentioned above.

Firefox says:
Quote
Websites prove their identity via certificates, which are valid for a set time period. The certificate for omniverse.artixlinux.org expired on 4/12/2025.
 
Error code: SEC_ERROR_EXPIRED_CERTIFICATE
 
View Certificate

Regards!


Re: omniverse repository: SSL certificate expired.

Reply #2
Re: sakamoto.pl

Both @mrbrklyn and myself have noted that it has been a problem recently

from 08Apr irc: mrbrklyn> error: failed retrieving file 'omniverse.db' from artix.sakamoto.pl : Failed to connect to artix.sakamoto.pl port 443 after 314 ms: Could not connect to server

It 404ed for me on the 4th, but I think it was blocking VPN's

but maybe it is nothing

Re: omniverse repository: SSL certificate expired.

Reply #3
Issue has been fixed.

artist
Linux is simple; use Artix, or Submit Your System To Evil Malicious D(a)emons

 
Artix forum uses a single cookie to remember youOK