about summary refs log tree commit diff
path: root/tvix/glue
diff options
context:
space:
mode:
authorFlorian Klink <flokli@flokli.de>2024-07-07T14·16+0300
committerclbot <clbot@tvl.fyi>2024-07-07T15·11+0000
commitd17c3d96b61a38b8a1900ca3b08bafff8e863cd2 (patch)
tree15faeaa4efedfb9c6fdfc0841c32711c7ed7e9fd /tvix/glue
parent89d204d295345af6b64b2c5d515cfcf02828abf5 (diff)
refactor(tvix): point SSL_CERT_FILE to /dev/null r/8357
reqwest wants to be able to read a file of trust roots when constructed,
but as it doesn't actually do any HTTPS connections inside the nix
build, an empty list of trust roots is totally sufficient.

Thankfully /dev/null provides such a file.

Change-Id: I9bd1619b2c9f8ff2a6640d2ac410d4de5b20c2ea
Reviewed-on: https://cl.tvl.fyi/c/depot/+/11961
Autosubmit: flokli <flokli@flokli.de>
Tested-by: BuildkiteCI
Reviewed-by: aspen <root@gws.fyi>
Diffstat (limited to 'tvix/glue')
-rw-r--r--tvix/glue/default.nix4
1 files changed, 2 insertions, 2 deletions
diff --git a/tvix/glue/default.nix b/tvix/glue/default.nix
index 14c7e214f25b..e2b36e94b87f 100644
--- a/tvix/glue/default.nix
+++ b/tvix/glue/default.nix
@@ -3,7 +3,7 @@
 (depot.tvix.crates.workspaceMembers.tvix-glue.build.override {
   runTests = true;
   testPreRun = ''
-    export SSL_CERT_FILE=${pkgs.cacert}/etc/ssl/certs/ca-bundle.crt;
+    export SSL_CERT_FILE=/dev/null
   '';
 }).overrideAttrs (old: rec {
   meta.ci.targets = lib.filter (x: lib.hasPrefix "with-features" x || x == "no-features") (lib.attrNames passthru);
@@ -11,7 +11,7 @@
     inherit (old) crateName;
     features = [ "nix_tests" ];
     override.testPreRun = ''
-      export SSL_CERT_FILE=${pkgs.cacert}/etc/ssl/certs/ca-bundle.crt;
+      export SSL_CERT_FILE=/dev/null
     '';
   };
 })