← Deutsche Telekom Security GmbH cases
Bugzilla #1266944
Technical Compliance
Deutsche Telekom: certificate missing localityName/stateOrProvinceName
RESOLVED
FIXED
Deutsche Telekom Security GmbH
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
The bug reports that a Deutsche Telekom Security GmbH certificate (linked via crt.sh) lacked the subject attributes localityName and stateOrProvinceName, which the reporter said are required by the Baseline Requirements. Mozilla asked the CA to resolve the issues and provide progress updates. The CA stated that it fixed the problem in the affected service so that certificates with organizationName now include either localityName or stateOrProvinceName. The CA also said it would revoke the affected certificate immediately. The bug was resolved with the resolution marked as FIXED.
Chronology
- A CA certificate was identified as missing required subject locality/state attributes.
- The CA implemented a fix to include localityName or stateOrProvinceName and planned immediate revocation of the affected certificate.
Thread Activity
- Roeckx representative — Reported that the certificate linked on crt.sh does not include localityName or stateOrProvinceName in the subject as required by the Baseline Requirements.
- Mozilla representative — Asked Bernd to resolve the issues in the bug and update the bug with progress.
- T-systems representative — Said the CA fixed the affected service so certificates with organizationName include either localityName or stateOrProvinceName, and that it would revoke the certificate immediately.
Participants
Roeckx representative
Mozilla representative
T-systems representative
External References
Similar Local Cases
entrust: Invalid Teletext strings