readline-7.0: registering info file /usr/pkg/info/history.info
readline-7.0: registering info file /usr/pkg/info/readline.info
readline-7.0: registering info file /usr/pkg/info/rluserman.info
gnupg-1.4.21nb2: registering info file /usr/pkg/info/gnupg1.info
libffi-3.2.1nb2: registering info file /usr/pkg/info/libffi.info
gmake-4.1nb3: registering info file /usr/pkg/info/make.info
pkg_add: package `python27-2.7.13nb1' was already installed as dependency, now marked as installed manually
===========================================================================
$NetBSD: MESSAGE,v 1.5 2014/08/10 10:47:42 wiz Exp $

Execute this command to extract and rehash all CA root certificates
distributed by the Mozilla Project, so that they can be used by third
party applications using OpenSSL. It also creates a single file
certificate bundle in PEM format which can be used by applications using
GnuTLS.

	# mozilla-rootcerts install

To mark these certificates as trusted for users of gnupg2, do
the following (assuming default PKG_SYSCONFBASE and a Bourne shell):

	# mkdir -p /usr/pkg/etc/gnupg
	# cd /usr/pkg/etc/gnupg
	# for c in /etc/openssl/certs/*.pem; do
	> openssl x509 -in $c -noout -fingerprint|sed 's|^.*=\(.*\)|\1 S|'
	> done > trustlist.txt
===========================================================================