← DigiCert cases
Bugzilla #1455150
CCADB Compliance
DigiCert: Missing audits for Intermediate certificates
RESOLVED
DigiCert
AI Summary
DigiCert was found to be non-compliant with Mozilla's CA policy by failing to disclose audit information for several intermediate certificates capable of issuing S/MIME certificates. The case was initiated due to a requirement for all such certificates to be audited and disclosed by April 15, 2018. Following discussions and updates, it was confirmed that all relevant certificates had either been audited or revoked, resolving the compliance issue.
Chronology
- Initial report of missing audits
- Revocation of Bechtel CA
- Revocation of Microsoft Email CA 1 certificates
- Case marked as resolved
Participants
Wayne Thayer
Ben Wilson
External References
Similar Local Cases
DigiCert: Intermediate Cert(s) not disclosed in CCADB
DigiCert: Non-audited, non-technically-constrained intermediate certificates
Microsec: ALV Failures
Consorci AOC: Qualified audit statements
Telia: Intermediate Cert(s) Not Disclosed in CCADB
SECOM: Intermediate CA Certificates Missing from Audit Reports
Swisscom: Missing Audits for Unconstrained Intermediate Certificates
Dhimyotis / Certigna: Intermediate Cert(s) not disclosed in CCADB