I can confirm the certificate has expired. The site contains the package repositories for the Buster, Jessie, Stretch and Wheezy versions of Raspbian which is upstream from 32-bit Raspberry Pi OS.It very much seems like someone needs to update the certificate, or am I doing something completely wrong?
In my opinion, anyone planning to maintain a Pi running one of those older distributions should create a local mirror of the repository--including the source packages.
I'd also consider upgrading ssh to a version with the quantum-hardened handshake.
Statistics: Posted by ejolson — Wed Dec 31, 2025 4:33 pm