← DigiCert cases
Bugzilla #1447192
Certificate Problem Report
DigiCert: Onion Certs
RESOLVED
DigiCert
AI Summary
DigiCert identified an issue with the issuance of onion certificates that lacked necessary Tor descriptors. Following a report, the CA revoked 20 affected certificates and implemented new technical controls to prevent future occurrences. The CA has ceased issuing such certificates until proper checks are in place. Remediation efforts included staff training and system updates to ensure compliance with requirements.
Chronology
- Received report about impacted certificates
- Revoked affected certificates
- Scanned database for additional certificates
- Added error handling for missing descriptors
- Confirmed completion of remediation efforts
Participants
Jeremy Rowley
W. Thayer
External References
Similar Local Cases
DigiCert: & character in a printableString in ICA
DigiCert: Underscore character certificates
DigiCert: Non-BR Compliant Certificates - missing CP/CPS OID
DigiCert: Issuance of certs with weak keys (ROCA)
Digicert: Government Entity listed instead of registration number
DigiCert: Failure to find and revoke key-compromised certificates within 24 hours
DigiCert: BR 3.2.5 Validation of Authority Failure for OV Certs
DigiCert: Org information issue in new validation workflow