← GlobalSign nv-sa cases
Bugzilla #1547691 Certificate Misissuance

GlobalSign: AT&T SSL certificates without the AIA extension

RESOLVED FIXED GlobalSign nv-sa
AI Summary

GlobalSign reported that AT&T issued SSL certificates lacking the required AIA extension due to a misconfiguration during an EJBCA upgrade. The issue was identified on April 16, 2019, and affected approximately 20,000 certificates. AT&T has since worked on replacing and revoking the misissued certificates, with most replacements completed by early May. The incident raised concerns about AT&T's capability to operate a publicly-trusted CA, leading to commitments for future compliance and operational improvements.

Model: gpt-4o-mini Generated: 2026-06-13 18:11 UTC Confidence: 0.95
Chronology
  1. Misissued certificates identified
  2. Incident report details shared
  3. AT&T revoked their 2 CAs
  4. GlobalSign revoked the CAs issued to AT&T
Participants
douglas.beattie@gmail.com wthayer@fastly.com ryan.sleevi@gmail.com
Similar Local Cases
#1552586 RESOLVED Certificate Misissuance Opened 2019-05-17 · Closed 2023-02-22 · 74% similar
GlobalSign: 4 Misissued certificates with invalid CN
#1623356 RESOLVED Certificate Misissuance Opened 2020-03-18 · Closed 2023-02-22 · 64% similar
GlobalSign: Misissuance of QWAC Certificates
#1612332 RESOLVED Certificate Misissuance Opened 2020-01-30 · Closed 2023-02-22 · 54% similar
Telia: Ambiguity on KeyUsage with ECC public key
#1528263 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 54% similar
Telia: Misissued certificate - Invalid wildcard format
#1599775 RESOLVED Certificate Misissuance Opened 2019-11-27 · Closed 2023-02-22 · 50% similar
GlobalSign: Wrong business category (Non Commercial Entity when should have been Private Organization)
#1048045 RESOLVED Certificate Misissuance Opened 2014-08-03 · Closed 2022-11-14 · 50% similar
GlobalSign Partner: No SAN
#1524567 RESOLVED Certificate Misissuance Opened 2019-02-01 · Closed 2023-02-22 · 49% similar
Telia: invalid IP value in SAN DNS field
#1528264 RESOLVED Certificate Misissuance Opened 2019-02-15 · Closed 2023-02-22 · 49% similar
Telia: Misissued certificate - Invalid OU value "-"

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action