← Government of The Netherlands, PKIoverheid (Logius) cases
Bugzilla #1398251
Certificate Problem Report
Staat der Nederlandend / PKIoverheid: Non-BR-Compliant OCSP Responders
RESOLVED
FIXED
Government of The Netherlands, PKIoverheid (Logius)
AI Summary
The case addresses issues with OCSP responders operated by PKIoverheid, which were found to be non-compliant with the Baseline Requirements (BR) regarding the response status for unissued certificates. The problem was identified on August 29, 2017, and was resolved by August 31, 2017. The CA has since implemented measures to prevent future occurrences, including active monitoring of OCSP responses. The incident report was documented as required by Mozilla's guidelines.
Chronology
- Notification of possible violation of BR section 4.9.10 received.
- Issue confirmed fixed.
- New monitoring mechanism implemented.
Participants
Kathleen Wilson
Mark Janssen
Ryan Sleevi
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
PKIoverheid: KPN Insufficient Serial Number Entropy
PKIoverheid: TSP CPS lacks problem reporting instructions
DocuSign/Keynectis: Non-BR-Compliant OCSP Responders
certSIGN: Non-BR-Compliant OCSP Responders
GlobalSign: Non-BR-Compliant Certificate Issuance - metadata-only subject fields
DocuSign/Keynectis: Non-BR-Compliant Certificate Issuance
Disig: Non-BR-Compliant OCSP Responders
DigiCert / InfoCert: Insufficient Serial Number Entropy