RetroPie forum home
    • Recent
    • Tags
    • Popular
    • Home
    • Docs
    • Register
    • Login
    Please do not post a support request without first reading and following the advice in https://retropie.org.uk/forum/topic/3/read-this-first

    Nespi+ Scrip install error

    Scheduled Pinned Locked Moved Help and Support
    scripts
    7 Posts 2 Posters 521 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • C
      Col1kill
      last edited by Col1kill

      Every time I try to install the script I get
      ERROR: The certificate of ‘raw.githubusercontent.com’ is expired
      ERROR: The certificate of ‘raw.githubusercontent.com’ is not trusted.
      and something about " Owner does not match host name "

      I have updated system time, updated retro pi
      updated CA & SSl certs

      I even tried crcerror but get the same error. I am seriously at a loss here

      System: Pi 3B with supplied power cable
      OS: Retropi 4.8
      Case: NESPi+
      Controler: USB SNES controler
      Keyboard: Standard US type

      Directions followed
      Make sure internet connected.
      Make sure keyboard connected.
      Press F4 enter terminal.
      In the terminal, type the one-line command below(Case sensitive):
      wget -O - "https://raw.githubusercontent.com/RetroFlag/retroflag-picase/master/install.sh" | sudo bash

      1 Reply Last reply Reply Quote 0
      • mituM
        mitu Global Moderator
        last edited by

        Please add some details about your setup (see https://retropie.org.uk/forum/topic/3/read-this-first).
        Can you post the download/install command you're trying ?

        C 1 Reply Last reply Reply Quote 0
        • C
          Col1kill @mitu
          last edited by

          @mitu

          Edited the post with applicable info

          1 Reply Last reply Reply Quote 0
          • mituM
            mitu Global Moderator
            last edited by

            If you have been able to update RetroPie, then your time/date should be set correctly. For some reason wget thinks the Github site is not trusted or expired.
            Can you run

             curl -vvI https://raw.githubusercontent.com/RetroFlag/retroflag-picase/master/install.sh
            

            and post the output ?

            Do you any special network setup on your network (firewall/proxy) that might affect the network connections ?

            C 1 Reply Last reply Reply Quote 0
            • C
              Col1kill @mitu
              last edited by Col1kill

              @mitu said in Nespi+ Scrip install error:

              curl -vvI https://raw.githubusercontent.com/RetroFlag/retroflag-picase/master/install.sh

              No special network setup

              • Expire in 0 ms for 6 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 0 ms for 1 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 1 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 2 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Expire in 3 ms for 1 (transfer 0x5678b0)
              • Expire in 3 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Expire in 3 ms for 1 (transfer 0x5678b0)
              • Expire in 3 ms for 1 (transfer 0x5678b0)
              • Expire in 4 ms for 1 (transfer 0x5678b0)
              • Trying 185.199.110.133...
              • TCP_NODELAY set
              • Expire in 149993 ms for 3 (transfer 0x5678b0)
              • Expire in 200 ms for 4 (transfer 0x5678b0)
              • Connected to raw.githubusercontent.com (185.199.110.133) port 443 (#0)
              • ALPN, offering h2
              • ALPN, offering http/1.1
              • successfully set certificate verify locations:
              • CAfile: none
                CApath: /etc/ssl/certs
              • TLSv1.3 (OUT), TLS handshake, Client hello (1):
              • TLSv1.3 (IN), TLS handshake, Server hello (2):
              • TLSv1.3 (IN), TLS handshake, Encrypted Extensions (8):
              • TLSv1.3 (IN), TLS handshake, Certificate (11):
              • TLSv1.3 (IN), TLS handshake, CERT verify (15):
              • TLSv1.3 (IN), TLS handshake, Finished (20):
              • TLSv1.3 (OUT), TLS change cipher, Change cipher spec (1):
              • TLSv1.3 (OUT), TLS handshake, Finished (20):
              • SSL connection using TLSv1.3 / TLS_AES_256_GCM_SHA384
              • ALPN, server accepted to use h2
              • Server certificate:
              • subject: C=US; ST=California; L=San Francisco; O=GitHub, Inc.; CN=*.github.io
              • start date: Mar 18 00:00:00 2022 GMT
              • expire date: Mar 21 23:59:59 2023 GMT
              • subjectAltName: host "raw.githubusercontent.com" matched cert's "*.githubuser content.com"
              • issuer: C=US; O=DigiCert Inc; CN=DigiCert TLS RSA SHA256 2020 CA1
              • SSL certificate verify ok.
              • Using HTTP2, server supports multi-use
              • Connection state changed (HTTP/2 confirmed)
              • Copying HTTP/2 data in stream buffer to connection buffer after upgrade: len=0
              • Using Stream ID: 1 (easy handle 0x5678b0)

              HEAD /RetroFlag/retroflag-picase/master/install.sh HTTP/2
              Host: raw.githubusercontent.com
              User-Agent: curl/7.64.0
              Accept: /

              • TLSv1.3 (IN), TLS handshake, Newsession Ticket (4):
              • Connection state changed (MAX_CONCURRENT_STREAMS == 100)!
                < HTTP/2 200
                HTTP/2 200
                < cache-control: max-age=300
                cache-control: max-age=300
                < content-security-policy: default-src 'none'; style-src 'unsafe-inline'; sandbo x
                content-security-policy: default-src 'none'; style-src 'unsafe-inline'; sandbox
                < content-type: text/plain; charset=utf-8
                content-type: text/plain; charset=utf-8
                < etag: "1c7295bffa99409f2e75da4bffd4ed2d417ccb0a970ea146e51b7f233ecf8746"
                etag: "1c7295bffa99409f2e75da4bffd4ed2d417ccb0a970ea146e51b7f233ecf8746"
                < strict-transport-security: max-age=31536000
                strict-transport-security: max-age=31536000
                < x-content-type-options: nosniff
                x-content-type-options: nosniff
                < x-frame-options: deny
                x-frame-options: deny
                < x-xss-protection: 1; mode=block
                x-xss-protection: 1; mode=block
                < x-github-request-id: 9C68:34E0:121392:1BDA04:63989D69
                x-github-request-id: 9C68:34E0:121392:1BDA04:63989D69
                < accept-ranges: bytes
                accept-ranges: bytes
                < date: Tue, 13 Dec 2022 15:42:33 GMT
                date: Tue, 13 Dec 2022 15:42:33 GMT
                < via: 1.1 varnish
                via: 1.1 varnish
                < x-served-by: cache-fty21351-FTY
                x-served-by: cache-fty21351-FTY
                < x-cache: MISS
                x-cache: MISS
                < x-cache-hits: 0
                x-cache-hits: 0
                < x-timer: S1670946153.264076,VS0,VE117
                x-timer: S1670946153.264076,VS0,VE117
                < vary: Authorization,Accept-Encoding,Origin
                vary: Authorization,Accept-Encoding,Origin
                < access-control-allow-origin: *
                access-control-allow-origin: *
                < x-fastly-request-id: eca94a9cd98bb036c36049bec06d785f056d214d
                x-fastly-request-id: eca94a9cd98bb036c36049bec06d785f056d214d
                < expires: Tue, 13 Dec 2022 15:47:33 GMT
                expires: Tue, 13 Dec 2022 15:47:33 GMT
                < source-age: 0
                source-age: 0
                < content-length: 1679
                content-length: 1679

              <

              • Connection #0 to host raw.githubusercontent.com left intact
              1 Reply Last reply Reply Quote 0
              • mituM
                mitu Global Moderator
                last edited by mitu

                @Col1kill said in Nespi+ Scrip install error:

                subjectAltName: host "raw.githubusercontent.com" matched cert's "*.githubuser content.com"
                issuer: C=US; O=DigiCert Inc; CN=DigiCert TLS RSA SHA256 2020 CA1
                SSL certificate verify ok.

                Ok, so curl seems to work and the cert is ok (doesn't seem to be a mismatch from some middlebox).
                Try using curl instead of wget to download the install script for the RetroFlag case:

                curl -o - "https://raw.githubusercontent.com/RetroFlag/retroflag-picase/master/install.sh" | sudo bash
                

                wget seems to work for me on a standard RetroPie installation (4.8.x), I don't understand why it's refusing to work on your system. Have you tried a system update after you installed the RetroPie image ?

                C 1 Reply Last reply Reply Quote 0
                • C
                  Col1kill @mitu
                  last edited by Col1kill

                  @mitu I got it to work by remoting in with SSH and running it from there rather than using f4 on the pi directly.

                  1 Reply Last reply Reply Quote 0
                  • First post
                    Last post

                  Contributions to the project are always appreciated, so if you would like to support us with a donation you can do so here.

                  Hosting provided by Mythic-Beasts. See the Hosting Information page for more information.