Alpine Linux, wget, and ca-certificates
I’ve been working with Alpine Linux this week. This tiny Linux distribution is an excellent choice for a base docker image or, in my case, for a low power VPS. I love how easy and fast it is to install and configure this distribution.
One stumbling block that I ran into was downloading random things from the internet with wget.
Unable to locally verify the issuer's authority.
To connect to dl.eff.org insecurely, use `--no-check-certificate'
I saw this timely tweet by Joe Gross the other day and decided that rather than ignoring the error messages that wget was throwing I would go and figure out what was wrong.
It turns out that when you make an 83MB distribution you need to cut some of the fat. The ca-certificates package that is common in every Linux Distribution under the sun is missing from the default installation of Alpine.
In order to resolve the angry warnings from wget, you can install the ca-certificates package with the following command:
apk -U add ca-certificates
This will make wget happy, and your server secure. In case you are wondering, skipping this step and running wget with –no-check-certificate totally works. However, it is also inviting a man in the middle attack. Don’t ever do this.
Thank you for reading! Share your thoughts with me on bluesky, mastodon, or via email.
Check out some more stuff to read down below.
Most popular posts this month
- 2025
- My Custom Miniflux CSS Theme
- Setting up ANTLR4 on Windows
- 2024
- Convert Markdown to PDF in Sublime Text
Recent Favorite Blog Posts
This is a collection of the last 8 posts that I bookmarked.
- Fedora Magazine: Contribute to Fedora 44 KDE and GNOME Test Days from Fedora People
- Pluralistic: bunnie's piggyback hack (09 Jan 2026) from Pluralistic: Daily links from Cory Doctorow
- Clicks Communicator from Chris Hannah
- A Year Of Vibes from Armin Ronacher's Thoughts and Writings
- Pluralistic: A perfect distillation of the social uselessness of finance (18 Dec 2025) from Pluralistic: Daily links from Cory Doctorow
- Moving from WordPress to Substack from charity.wtf
- Grow, Like a Tree Not a Cancer from Jim Nielsen’s Blog
- Pluralistic: All the books I reviewed in 2025 (02 Dec 2025) from Pluralistic: Daily links from Cory Doctorow
Articles from blogs I follow around the net
Doing less, for her
My daughter will be born soon, and I’m reflecting on what that means for my OpenSource work.
via Carlos Becker February 1, 2026The Browser’s Little White Lies
So I’m making a thing and I want it to be styled different if the link’s been visited. Rather than build something myself in JavaScript, I figure I’ll just hook into the browser’s mechanism for tracking if a link’s been visited (a sensible approach, if I d…
via Jim Nielsen’s Blog February 1, 2026$29 million stolen from from Step Finance treasury wallets
The Solana-based defi portfolio tracker Step Finance lost 261,854 SOL (~$28.7 million) when a thief gained access to treasury and fee wallets. It's not yet clear how the attacker was able to steal the funds, although Step Finance…
via Web3 is Going Just Great February 1, 2026Generated by openring