← DarkMatter LLC cases
Bugzilla #1534535 Certificate Problem Report

QuoVadis / Siemens: Insufficient serial number entropy

RESOLVED FIXED DarkMatter LLC
AI Summary

The issue of insufficient serial number entropy was identified by Siemens during compliance scans in November 2017, leading to a proactive decision to increase the serial number length from 64 bits to 160 bits. This change was implemented on March 1, 2018, effectively stopping the issuance of certificates with the problematic configuration. A total of 35 certificates were identified with the issue, with the first issued on September 4, 2017, and the last on February 28, 2018. All problematic certificates have since been revoked.

Model: gpt-4o-mini Generated: 2026-06-13 18:07 UTC Confidence: 1.00
Chronology
  1. Siemens CA first becomes aware of the potential issue.
  2. New configuration with increased serial number length goes live.
  3. Revocation of the last two problematic certificates confirmed.
Participants
Stephen Davidson Rufus Buschart
External References
Similar Local Cases
#1468477 RESOLVED Certificate Problem Report Opened 2018-06-13 · Closed 2024-05-09 · 61% similar
QuoVadis / Freistaat Bayern: Non-BR-compliant Key Usage
#1540315 RESOLVED Certificate Problem Report Opened 2019-03-29 · Closed 2023-02-22 · 60% similar
QuoVadis: LLB insufficient Serial Number Entropy
#1521950 RESOLVED Certificate Problem Report Opened 2019-01-22 · Closed 2023-02-22 · 59% similar
QuoVadis: BR Error - san dns name starts with period
#1524879 RESOLVED Certificate Problem Report Opened 2019-02-03 · Closed 2023-02-22 · 59% similar
QuoVadis: IP in dnsName
#1586792 RESOLVED Certificate Problem Report Opened 2019-10-07 · Closed 2023-02-22 · 58% similar
QuoVadis: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy or the BRs
#1593357 RESOLVED Certificate Problem Report Opened 2019-11-01 · Closed 2023-02-22 · 57% similar
QuoVadis: Incorrect EV businessCategory
#1581234 RESOLVED Certificate Problem Report Opened 2019-09-13 · Closed 2023-02-22 · 57% similar
QuoVadis: EV JOI Issue
#1579950 RESOLVED Certificate Problem Report Opened 2019-09-09 · Closed 2022-11-14 · 57% similar
QuoVadis: OCSP handling of Certificate Transparency Pre-certs

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action