Join GitHub today
GitHub is home to over 40 million developers working together to host and review code, manage projects, and build software together.Sign up
Allow user to define if the box_url is insecure #1712
Currently, it's possible to download a box from an insecure server using the command:
But I think set it in a Vagrantfile is a good feature.
Vagrant.configure("2") do |config| config.vm.box = "mybox" config.vm.box_url = "https://insecureserver.com/mybox.box" config.vm.box_download_insecure = true end
@mitchellh @sethvargo Since it is a terrible practice to disable SSL verification long term, would it be possible to add instructions on correcting the certificate issue the right way by catching this certificate error exception and giving a helpful suggestion, i.e. adding the certificate to the trust chain of the embedded Ruby and curl or better yet using the alternate CA path that was added to a newer Vagrant version?