← Asseco Data Systems S.A. cases
Bugzilla #1495518 Ca Certificate Compliance

Asseco DS / Certum: Unallowed key usage for EC public key (Key Encipherment)

RESOLVED FIXED Asseco Data Systems S.A.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

Asseco Data Systems S.A. (Certum) reported a compliance issue involving unallowed key usage for certificates issued with EC public keys. The problem was identified through a Bugzilla report created by Wayne Thayer on October 1, 2018. Certum acknowledged the issue, provided a detailed incident report, and outlined corrective actions taken, including revocation of affected certificates and software fixes to prevent future occurrences. The CA implemented pre-issuance linting to enhance detection of misissuance. The case has been resolved with all necessary actions completed.

Model: gpt-4o-mini Generated: 2026-06-13 17:55 UTC Revised: 2026-06-16 18:04 UTC Confidence: 0.90 11 comments
Chronology
  1. Bugzilla bug 1495518 created regarding unallowed key usage.
  2. Certum deployed fully automatic pre-issuance linting for SSL certificates.
Thread Activity
  1. Fastly representative — Reported the issue regarding unallowed key usage for EC public keys.
  2. Asseco Data Systems S.A. — Provided a detailed incident report addressing the compliance issue.
  3. Fastly representative — Confirmed that all questions have been answered and remediation is complete.
Participants
Fastly representative Asseco Data Systems S.A.
External References
Similar Local Cases
#1879845 RESOLVED Ca Certificate Compliance Opened 2024-02-12 · Closed 2024-10-02 · 87% similar
Asseco DS / Certum: S/MIME certificates with error in subjectAlternativeName
#1815355 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2023-02-07 · Closed 2023-08-16 · 85% similar
Asseco DS / Certum: Cross-Signed non-EV-audited root with an EV-enabled root
#1409766 RESOLVED Ca Certificate Compliance Self Reported Incident Certificate Misissuance Opened 2017-10-18 · Closed 2023-02-22 · 83% similar
Asseco DS / Certum: CAA Mis-Issuance on CNAME pointing directly to restrictive CAA record
#1888689 RESOLVED Ca Certificate Compliance Incident Opened 2024-03-29 · Closed 2024-10-02 · 83% similar
Asseco DS / Certum: CRL non-conformance with the TLS BRs
#1904494 RESOLVED Ca Certificate Compliance Ca Documents Audit Document Remediation Tracking Opened 2024-06-25 · Closed 2024-09-04 · 82% similar
Asseco DS / Certum: Cross-certificate not included in 2024 S/MIME Audit statement
#1909203 RESOLVED Ca Certificate Compliance Incident Opened 2024-07-22 · Closed 2025-05-13 · 82% similar
Asseco DS / Certum: CP/CPS, Revocation Requests Mechanism, Certificate Problem Report, CRL and OCSP disruption
#1917571 RESOLVED Ca Certificate Compliance Certificate Misissuance Opened 2024-09-09 · Closed 2024-11-06 · 81% similar
Asseco DS / Certum: Organization Identifier and Country field discrepancies
#1433118 RESOLVED Ca Certificate Compliance Opened 2018-01-25 · Closed 2022-11-14 · 79% similar
Asseco DS / Certum: certificate issued by Certum with compromised private key not revoked (windows10.microdone.cn)

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action