← AC Camerfirma, S.A. cases
Bugzilla #1426233
Certificate Problem Report
Camerfirma: Non-BR-Compliant OCSP Responders
RESOLVED
FIXED
AC Camerfirma, S.A.
AI Summary
Camerfirma faced issues with their OCSP responders for the InfoCert and Intesa Sanpaolo Organization Validation CA intermediates, which were returning incorrect responses as per the Baseline Requirements (BRs). The OCSP responders were not compliant with the requirement to support the GET method and were incorrectly responding with a 'good' status for unissued certificates. The technical team addressed these issues, confirming that they were resolved by December 22, 2017. An incident report was requested to ensure compliance moving forward.
Chronology
- Initial report of non-compliance with OCSP responders.
- Camerfirma's technical team confirmed resolution of issues.
- Wayne Thayer marked the issue as resolved.
Participants
Wayne Thayer
Juan Angel Martin
External References
Similar Local Cases
Camerfirma: Invalid authorityKeyIdentifier, violating Mozilla Policy and RFC 5280
Camerfirma: Unrevocation of MULTICERT SSL Certification Authority 001 certificate
Camerfirma: BR revocation period exceeded
Camerfirma: Invalid authorityKeyIdentifier - recurrent incident
Camerfirma: MULTICERT certificates with a validity period greater than 825 days
SECOM: Non-BR-Compliant OCSP Responders
DocuSign/Keynectis: Non-BR-Compliant OCSP Responders
DigiCert: Non-BR-Compliant OCSP Responders