← MULTICERT cases
Bugzilla #1481862 Self Reported Incident

Camerfirma: MULTICERT organizationName Too Long

RESOLVED FIXED MULTICERT
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case involves MULTICERT, which discovered that it had issued five certificates with an organizationName field exceeding the allowed length, violating X.509 standards. The issue was detected on August 3, 2018, during a routine check of certificates. In response, MULTICERT revoked the problematic certificates on the same day and suspended further certificate issuance until operational controls were implemented. The CA has since added technical controls to prevent future occurrences and has begun monitoring issued certificates for compliance. The case is now resolved, with all remediation actions completed.

Model: gpt-4o-mini Generated: 2026-06-13 17:52 UTC Revised: 2026-06-16 19:09 UTC Confidence: 0.90 19 comments
Chronology
  1. MULTICERT detected five certificates with organizationName too long and initiated revocation.
  2. All identified certificates were revoked.
  3. Camerfirma deployed a post-issuance linting tool.
  4. Pre-issuance linting was implemented.
Thread Activity
  1. Fastly representative — Juan posted the incident report detailing the discovery of the misissued certificates.
  2. AC Camerfirma, S.A. — Confirmed that the technical control was deployed on August 14.
  3. AC Camerfirma, S.A. — Apologized for the delay in responding to questions regarding the technical controls.
  4. Fastly representative — Confirmed that all remediation actions have been completed.
Participants
Fastly representative AC Camerfirma, S.A.
External References
Similar Local Cases
#1532333 RESOLVED Self Reported Incident Opened 2019-03-04 · Closed 2023-02-22 · 96% similar
Camerfirma: Unrevocation of MULTICERT SSL Certification Authority 001 certificate
#1509002 RESOLVED Self Reported Incident Opened 2018-11-21 · Closed 2023-02-22 · 92% similar
Camerfirma: MULTICERT certificates with a validity period greater than 825 days
#1534429 RESOLVED Ca Certificate Compliance Self Reported Incident Incident Certificate Misissuance Opened 2019-03-11 · Closed 2023-02-22 · 90% similar
Camerfirma: Multicert SSL CA 001: Insufficient serial number entropy
#1481862 RESOLVED Self Reported Incident Opened 2018-08-08 · Closed 2023-02-22 · 86% similar
Camerfirma: MULTICERT organizationName Too Long
#1586860 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2019-10-07 · Closed 2023-02-22 · 77% similar
Camerfirma: Invalid authorityKeyIdentifier, violating Mozilla Policy and RFC 5280
#1557085 RESOLVED Certificate Misissuance Revocation Issue Self Reported Incident Opened 2019-06-05 · Closed 2023-02-22 · 75% similar
Camerfirma: Intesa Sanpaolo misissued certificates
#1575530 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2019-08-21 · Closed 2023-02-22 · 74% similar
Camerfirma: Govern d'Andorra audits
#1672409 RESOLVED Ca Certificate Compliance Certificate Misissuance Self Reported Incident Opened 2020-10-21 · Closed 2023-02-22 · 72% similar
Camerfirma: suspicious certificate for com.com

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action