read_cert
ret = read_cert(ent->fts_path, tree, exclude);
ret = read_cert(argv[i], &extra, &trusted);
ret = read_cert(argv[i], &untrusted, NULL);