← AC Camerfirma, S.A. cases
Bugzilla #1557085
Certificate Misissuance
Camerfirma: Intesa Sanpaolo misissued certificates
RESOLVED
FIXED
AC Camerfirma, S.A.
AI Summary
Camerfirma reported misissued certificates by Intesa Sanpaolo, which included issues such as incorrect serial number lengths and improper alternative names. The CA's Quality Control Team identified these problems through audits and communicated them to Intesa Sanpaolo, which subsequently revoked the affected certificates. Delays in revocation were attributed to difficulties in replacing the certificates. Following the incident, Camerfirma implemented new procedures to ensure compliance with BR revocation timelines and prevent future occurrences.
Chronology
- Certificates with incorrect serial numbers detected
- Intesa Sanpaolo revoked the certificate
- New enrolment procedure implemented
Participants
Eusebio Herrera
Ryan Sleevi
Martin Ja
External References
Similar Local Cases
Camerfirma: failure to revoke underscores
Camerfirma: Infocert misissued certificates
Camerfirma: MULTICERT Misissuance and missing audits
Camerfirma: EV Certificates issued with wrong Business Category
Camerfirma: MULTICERT Misissuance and missing audits
Camerfirma: Non-BR-Compliant Issuance - Non-printable characters in OU field
Entrust: Issued Certificates to incorrect Organization
NetLock: CN not in SAN