@@ -165,7 +165,7 @@ public static EnvoyServerProtoData.UpstreamTlsContext buildUpstreamTlsContext(
165165 commonInstanceName ,
166166 "ROOT" ,
167167 null ,
168- null , false );
168+ null );
169169 }
170170
171171 /** Gets a cert from contents of a resource. */
@@ -182,8 +182,7 @@ private static CommonTlsContext buildCommonTlsContextForCertProviderInstance(
182182 String rootInstanceName ,
183183 String rootCertName ,
184184 Iterable <String > alpnProtocols ,
185- CertificateValidationContext staticCertValidationContext ,
186- boolean useSystemRootCerts ) {
185+ CertificateValidationContext staticCertValidationContext ) {
187186 CommonTlsContext .Builder builder = CommonTlsContext .newBuilder ();
188187 if (certInstanceName != null ) {
189188 builder =
@@ -194,8 +193,7 @@ private static CommonTlsContext buildCommonTlsContextForCertProviderInstance(
194193 }
195194 builder =
196195 addCertificateValidationContext (
197- builder , rootInstanceName , rootCertName , staticCertValidationContext ,
198- useSystemRootCerts );
196+ builder , rootInstanceName , rootCertName , staticCertValidationContext );
199197 if (alpnProtocols != null ) {
200198 builder .addAllAlpnProtocols (alpnProtocols );
201199 }
@@ -230,8 +228,7 @@ private static CommonTlsContext.Builder addCertificateValidationContext(
230228 CommonTlsContext .Builder builder ,
231229 String rootInstanceName ,
232230 String rootCertName ,
233- CertificateValidationContext staticCertValidationContext ,
234- boolean useSystemRootCerts ) {
231+ CertificateValidationContext staticCertValidationContext ) {
235232 CertificateValidationContext .Builder contextBuilder ;
236233 if (staticCertValidationContext == null ) {
237234 contextBuilder = CertificateValidationContext .newBuilder ();
@@ -243,10 +240,6 @@ private static CommonTlsContext.Builder addCertificateValidationContext(
243240 .setInstanceName (rootInstanceName )
244241 .setCertificateName (rootCertName ));
245242 builder .setValidationContext (contextBuilder .build ());
246- } else if (useSystemRootCerts ) {
247- builder .setValidationContext (contextBuilder .setSystemRootCerts (
248- CertificateValidationContext .SystemRootCerts .getDefaultInstance ())
249- .build ());
250243 }
251244 return builder .setCombinedValidationContext (CombinedCertificateValidationContext .newBuilder ()
252245 .setDefaultValidationContext (contextBuilder ));
@@ -280,17 +273,15 @@ private static CommonTlsContext.Builder addNewCertificateValidationContext(
280273 @ Nullable String rootInstanceName ,
281274 @ Nullable String rootCertName ,
282275 Iterable <String > alpnProtocols ,
283- CertificateValidationContext staticCertValidationContext ,
284- boolean useSystemRootCerts ) {
276+ CertificateValidationContext staticCertValidationContext ) {
285277 return buildUpstreamTlsContext (
286278 buildCommonTlsContextForCertProviderInstance (
287279 certInstanceName ,
288280 certName ,
289281 rootInstanceName ,
290282 rootCertName ,
291283 alpnProtocols ,
292- staticCertValidationContext ,
293- useSystemRootCerts ));
284+ staticCertValidationContext ));
294285 }
295286
296287 /** Helper method to build UpstreamTlsContext for CertProvider tests. */
@@ -329,8 +320,8 @@ private static CommonTlsContext.Builder addNewCertificateValidationContext(
329320 rootInstanceName ,
330321 rootCertName ,
331322 alpnProtocols ,
332- staticCertValidationContext ,
333- false ), requireClientCert );
323+ staticCertValidationContext ) ,
324+ requireClientCert );
334325 }
335326
336327 /** Helper method to build DownstreamTlsContext for CertProvider tests. */
0 commit comments