View Issue Details

IDProjectCategoryView StatusLast Update
0009892Kali LinuxKali Package Bugpublic2026-10-05 09:09
Reporterganguin Assigned To 
PrioritynormalSeverityminorReproducibilityhave not tried
Status newResolutionopen 
Summary0009892: Docker image fails to apt update when an HTTPS mirror is selected
Description

the docker image kalilinux/kali-rolling does not contain the package 'ca-certificates' and fails to update when the mirrorselect chooses and HTTPS mirror (or HTTP redirecting to HTTPS). /etc/apt/sources.list.d/kali.sources must be forced to an HTTP mirror to make it work (and install ca-certificates).

docker run -it --rm kalilinux/kali-rolling
┌──(root㉿47371d219145)-[/]
└─# apt update
Ign:1 https://kalimirror.velden.media/kali kali-rolling InRelease
Ign:1 https://kalimirror.velden.media/kali kali-rolling InRelease
Ign:1 https://kalimirror.velden.media/kali kali-rolling InRelease
Err:1 https://kalimirror.velden.media/kali kali-rolling InRelease
SSL connection failed: error:0A000086:SSL routines::certificate verify failed / Success [IP: 77.73.242.235 443]
All packages are up to date.
Warning: Failed to fetch http://http.kali.org/kali/dists/kali-rolling/InRelease SSL connection failed: error:0A000086:SSL routines::certificate verify failed / Success [IP: 77.73.242.235 443]
Warning: Some index files failed to download. They have been ignored, or old ones used instead.

Activities

ganguin

ganguin

2026-10-05 09:09

reporter   ~0022047

To consistently reproduce (and not rely on mirrorselect), changing the apt source URL to be HTTPS makes it fail all the time.

Issue History

Date Modified Username Field Change
2026-10-05 09:07 ganguin New Issue
2026-10-05 09:09 ganguin Note Added: 0022047