And directly need to bother you again, @nieldk 
After updating some packages (especially openssl, curl, libcurl, tcpdump and other e.g.msf3)
I cannot connect to git anymore, pushing fails with
[nemo@xalo2plus harbour-defender]$ git push
fatal: unable to access 'https://github.com/peterleinchen/harbour-defender/': SSL certificate OpenSSL verify result: unable to get local issuer certificate (20)
Some more openssl connect info:
No client certificate CA nanes sent
subject=CN=github.com issuer=C=GB, O=Sectigo Limited, CN=Sectigo Public Server Authentication CA DV E36 — No client certificate CA names sent Peer signing digest: SHA256 Peer signature type: ecdsa_secp256r1_sha256 Peer Temp Key: X25519, 253 bits — SSL handshake has read 3085 bytes and written 1605 bytes Verification: OK -–
And version info
[nemo@xalo2plus harbour-defender]$ openssl -v OpenSSL 3.6.0 1 Oct 2025 (Library: OpenSSL 3.6.0 1 Oct 2025) Information for package openssl: -------------------------------- Repository : nielnielsen-obs Name : openssl Version : 3.6.0-1.33.1.bso Arch : armv7hl Vendor : meego Installed Size : 4.3 MiB Installed : Yes Status : up-to-date Source package : openssl-3.6.0-1.33.1.bso.src Summary : The OpenSSL cryptography and TLS library Description : The OpenSSL cryptography and TLS library. S | Name | Type | Version | Arch | Repository —±----------------±--------±-------------------------±--------±--------------- i+ | openssl | package | 3.6.0-1.33.1.bso | armv7hl | nielnielsen-obs name: openssl i | openssl-libs | package | 1.1.1v+git2-1.13.1.jolla | armv7hl | jolla name: openssl-libs i | python3-openssl | package | 19.1.0+git2-1.6.2.jolla | armv7hl | jolla name: python3-openssl
So I decided to disable your repo and go back to old openssl.
All your packages seem to depend on openssl (or libcurl?) as also tcpdump/msf3 were automatically removed.
Removal
[root@xalo2plus ]# zypper in --oldpackage --from jolla openssl
Loading repository data...
Reading installed packages...
Resolving package dependencies...
Problem: the installed libcurl-8.18.0-1.17.5.bso.armv7hl requires 'libcrypto.so.3', but this requirement cannot b
e provided
deleted providers: openssl-3.6.0-1.33.1.bso.armv7hl
Solution 1: Following actions will be done:
downgrade of libcurl-8.18.0-1.17.5.bso.armv7hl to libcurl-8.9.1+git1-1.11.2.jolla.armv7hl
downgrade of tcpdump-4.99.6-1.5.2.bso.armv7hl to tcpdump-4.99.4+git1-1.5.1.jolla.armv7hl
downgrade of curl-8.18.0-1.17.5.bso.armv7hl to curl-8.9.1+git1-1.11.2.jolla.armv7hl
Solution 2: do not install openssl-1.1.1v+git2-1.13.1.jolla.armv7hl
Solution 3: break libcurl-8.18.0-1.17.5.bso.armv7hl by ignoring some of its dependencies
Choose from above solutions by number or cancel [1/2/3/c/d/?] (c): 1
Resolving dependencies...
Resolving package dependencies...
The following 4 packages are going to be downgraded:
curl libcurl openssl tcpdump
4 packages to downgrade.
Overall download size: 961.0 KiB. Already cached: 0 B. After the operation, 5.2 MiB will be freed.
Continue? [y/n/v/...? shows all options] (y): y
Retrieving: libcurl-8.9.1+git1-1.11.2.jolla.armv7hl (jolla) (1/4), 274.4 KiB
Retrieving: libcurl-8.9.1+git1-1.11.2.jolla.armv7hl.rpm .....................................[done (223.2 KiB/s)]
Retrieving: openssl-1.1.1v+git2-1.13.1.jolla.armv7hl (jolla) (2/4), 257.8 KiB
Retrieving: openssl-1.1.1v+git2-1.13.1.jolla.armv7hl.rpm ....................................[done (178.2 KiB/s)]
Retrieving: tcpdump-4.99.4+git1-1.5.1.jolla.armv7hl (jolla) (3/4), 345.3 KiB
Retrieving: tcpdump-4.99.4+git1-1.5.1.jolla.armv7hl.rpm .....................................[done (267.2 KiB/s)]
Retrieving: curl-8.9.1+git1-1.11.2.jolla.armv7hl (jolla) (4/4), 83.4 KiB
Retrieving: curl-8.9.1+git1-1.11.2.jolla.armv7hl.rpm .........................................[done (49.5 KiB/s)]
Checking for file conflicts: ..............................................................................[done]
warning: /home/.zypp-cache/packages/jolla/oss/armv7hl/libcurl-8.9.1+git1-1.11.2.jolla.armv7hl.rpm: Header V3 RSA/
SHA256 Signature, key ID 47394f23: NOKEY
(1/4) Installing: libcurl-8.9.1+git1-1.11.2.jolla.armv7hl .................................................[done]
warning: /home/.zypp-cache/packages/jolla/oss/armv7hl/openssl-1.1.1v+git2-1.13.1.jolla.armv7hl.rpm: Header V3 RSA
/SHA256 Signature, key ID 47394f23: NOKEY
(2/4) Installing: openssl-1.1.1v+git2-1.13.1.jolla.armv7hl ................................................[done]
warning: /home/.zypp-cache/packages/jolla/tools/armv7hl/tcpdump-4.99.4+git1-1.5.1.jolla.armv7hl.rpm: Header V3 RS
A/SHA256 Signature, key ID 47394f23: NOKEY
(3/4) Installing: tcpdump-4.99.4+git1-1.5.1.jolla.armv7hl .................................................[done]
warning: /home/.zypp-cache/packages/jolla/oss/armv7hl/curl-8.9.1+git1-1.11.2.jolla.armv7hl.rpm: Header V3 RSA/SHA
256 Signature, key ID 47394f23: NOKEY
(4/4) Installing: curl-8.9.1+git1-1.11.2.jolla.armv7hl ....................................................[done]
There are running programs which still use files and libraries deleted or updated by recent upgrades. They should
be restarted to benefit from the latest updates. Run 'zypper ps -s' to list these programs.
Attached output of openssl connect attempts.
Any ideas? Or do you need other outputs? (I did not play with giving path to ca cert directory or other possible “solutions” as I like to jave it out-of-the-box)
openssl.targz (6.3 KB)