← China Financial Certification Authority (CFCA) cases
Bugzilla #1524143
Certificate Problem Report
CFCA: Internal iPAddress in certificate
RESOLVED
FIXED
China Financial Certification Authority (CFCA)
AI Summary
The China Financial Certification Authority (CFCA) issued a certificate containing a reserved IP address, which is a violation of the Baseline Requirements. Upon being notified, CFCA promptly contacted the affected customer, Standard Chartered Bank, and arranged for the certificate's revocation after a mandatory stable period due to regulatory constraints. The certificate was successfully revoked on February 20, 2019, after the bank completed necessary testing. CFCA has since implemented measures to prevent future occurrences, including system updates and enhanced training for staff.
Chronology
- CFCA notified of the certificate issue.
- Certificate revoked after testing.
Participants
Corey Bonnell
Jonathan Sun
Ryan Sleevi
Wayne Thayer
External References
Similar Local Cases
CFCA: invalid dnsNames
CFCA: Invalid TLD in SAN
CFCA: Wrong SerialNumber encoding
CFCA: O > 64 characters
Sectigo: "Some-State" in stateOrProvinceName
CFCA: Wrong OrganizationName
SECOM: certificate for which “L” and “ST” not set
TrustCor: Insufficient Serial Number Entropy