← Swisscom (Switzerland) Ltd cases
Bugzilla #1034949
Self Reported Incident
Swisscom: valid 512 bit certificate
RESOLVED
FIXED
Swisscom (Switzerland) Ltd
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
A valid certificate issued by Swisscom was identified as using a 512-bit RSA key, which is below the minimum size requirement. The issue was raised by a user, leading to discussions about the certificate's compliance with the CA/B Forum Baseline Requirements. Swisscom confirmed that the certificate was for internal testing and committed to revoking it. The certificate was successfully revoked on September 10, 2014, and the issue has been resolved.
Chronology
- Swisscom revoked the 512-bit certificate.
Thread Activity
- Roeckx representative — Reported a certificate using a 512-bit RSA key that is still valid.
- Mozilla representative — Inquired about a response from Swisscom regarding the issue.
- Swisscom representative — Confirmed the certificate was for internal test use and would be revoked.
- Swisscom representative — Confirmed the certificate was revoked on September 10, 2014.
Participants
Roeckx representative
Rossde representative
Tu-ilmenau representative
Mozilla representative
Swisscom representative
External References
Similar Local Cases
SHA-1 issuance by Visa root
Camerfirma: Startcom are issuing by proxy using Camerfirma
GlobalSign: Non-BR-Compliant Certificate Issuance -- RSA key smaller than 2048 bits
DigiCert / Justica: Invalid DNS names
DigiCert: Mis-Issuance Rekey certificates
Visa: Non-BR-Compliant OCSP Responders
SECOM: Non-BR-Compliant OCSP Responders
DigiCert / Inteso San Paulo: Double dot characters