update-ca-certificates

Category: Web Servers & Proxies

update-ca-certificates

Refresh the system's trusted CA bundle

Rebuilds /etc/ssl/certs from the certificates in /etc/ssl/certs and /usr/local/share/ca-certificates, adding and removing entries as needed. Run it after installing a private CA so local tools and services trust it. Certificates you drop into /usr/local/share/ca-certificates must end in .crt.
Looking for more? Search all 7,657 commands — works offline, in English or Spanish, and fixes typos.