← IdenTrust Services, LLC cases
Bugzilla #1446121 Self Reported Incident Security Incident

IdenTrust: Improper encoding of wildcard certificate

RESOLVED FIXED IdenTrust Services, LLC
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case involves IdenTrust Services, LLC, which disclosed an improper encoding issue with wildcard certificates. The CA identified the problem during an audit on August 14, 2017, and confirmed that no new certificates with the issue were issued after that date. IdenTrust provided a formal incident report detailing the issue, the certificates affected, and the steps taken to resolve it, including revocation of the impacted certificates. As of March 23, 2018, all six certificates identified with the encoding issue were revoked. IdenTrust has since implemented pre-issuance certificate linting to prevent future occurrences.

Model: gpt-4o-mini Generated: 2026-06-13 17:45 UTC Revised: 2026-06-16 19:12 UTC Confidence: 0.90 11 comments
Chronology
  1. IdenTrust identified a configuration problem during an audit.
  2. All six certificates with the encoding issue were revoked.
  3. IdenTrust implemented pre-issuance certificate linting.
Thread Activity
  1. Fastly representative — Requested an incident report regarding the improper encoding issue.
  2. IdenTrust Services, LLC — Acknowledged receipt of the bug and committed to providing a formal incident report.
  3. IdenTrust Services, LLC — Provided a formal report detailing the issue and remediation steps.
  4. IdenTrust Services, LLC — Confirmed that all six certificates have been revoked.
  5. IdenTrust Services, LLC — Announced successful implementation of pre-issuance certificate linting.
Participants
Fastly representative IdenTrust Services, LLC
External References
Similar Local Cases
#2016585 RESOLVED Self Reported Incident Incident Opened 2026-02-12 · Closed 2026-06-15 · 89% similar
IdenTrust: Test Certificates from cross-signed roots not disclosed in CT Logs
#2014609 RESOLVED Self Reported Incident Certificate Misissuance Opened 2026-02-05 · Closed 2026-04-11 · 86% similar
IdenTrust: Cross-signed root certificate mis-issuance
#1910195 RESOLVED Certificate Misissuance Self Reported Incident Opened 2024-07-26 · Closed 2024-09-06 · 84% similar
IdenTrust: Invalid special characters in S/MIME Certificates
#1930029 RESOLVED Self Reported Incident Certificate Misissuance Opened 2024-11-08 · Closed 2025-02-19 · 84% similar
IdenTrust: Approval of TLS certificate renewal without domain validation
#1991215 RESOLVED Self Reported Incident Opened 2025-09-26 · Closed 2025-11-21 · 84% similar
IdenTrust: ICA with invalid CDP
#2014610 RESOLVED Self Reported Incident Incident Opened 2026-02-05 · Closed 2026-04-11 · 84% similar
IdenTrust: Root OCSP Signer certificate mis-issuance
#2014590 RESOLVED Self Reported Incident Incident Opened 2026-02-04 · Closed 2026-04-23 · 82% similar
IdenTrust: Unauthorized OCSP responses for cross-signed roots
#1671410 RESOLVED Self Reported Incident Opened 2020-10-15 · Closed 2024-06-30 · 82% similar
IdenTrust: Inconsistent Disclosure of Externally-Operated Intermediate

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action