diff --git a/pkgs/development/python-modules/cert-chain-resolver/default.nix b/pkgs/development/python-modules/cert-chain-resolver/default.nix index 91da4c22f15d..a5aa6edc6f0e 100644 --- a/pkgs/development/python-modules/cert-chain-resolver/default.nix +++ b/pkgs/development/python-modules/cert-chain-resolver/default.nix @@ -1,26 +1,30 @@ { lib, buildPythonPackage, + cacert, cryptography, fetchFromGitHub, + setuptools, pytestCheckHook, pytest-mock, six, }: -buildPythonPackage rec { +buildPythonPackage (finalAttrs: { pname = "cert-chain-resolver"; version = "1.4.1"; - format = "setuptools"; + pyproject = true; src = fetchFromGitHub { owner = "rkoopmans"; repo = "python-certificate-chain-resolver"; - tag = version; + tag = finalAttrs.version; hash = "sha256-DWE+mR7EO5ohuRAR0WC40GBY7HpwXIpU0hhVUnWNRno="; }; - propagatedBuildInputs = [ cryptography ]; + build-system = [ setuptools ]; + + dependencies = [ cryptography ]; nativeCheckInputs = [ pytestCheckHook @@ -28,10 +32,13 @@ buildPythonPackage rec { six ]; + env.SSL_CERT_FILE = "${cacert}/etc/ssl/certs/ca-bundle.crt"; + disabledTests = [ # Tests require network access "test_cert_returns_completed_chain" "test_display_flag_is_properly_formatted" + "test_display_flag_includes_warning_when_root_was_requested_but_not_found" ]; pythonImportsCheck = [ "cert_chain_resolver" ]; @@ -40,8 +47,8 @@ buildPythonPackage rec { description = "Resolve / obtain the certificate intermediates of a x509 certificate"; mainProgram = "cert-chain-resolver"; homepage = "https://github.com/rkoopmans/python-certificate-chain-resolver"; - changelog = "https://github.com/rkoopmans/python-certificate-chain-resolver/blob/${src.tag}/CHANGELOG.md"; + changelog = "https://github.com/rkoopmans/python-certificate-chain-resolver/blob/${finalAttrs.src.tag}/CHANGELOG.md"; license = lib.licenses.mit; maintainers = with lib.maintainers; [ veehaitch ]; }; -} +})