← Government of The Netherlands, PKIoverheid (Logius) cases
Bugzilla #1578809 Policy Compliance

PKIoverheid: Compliance issues CIBG TLS certificates

RESOLVED FIXED Government of The Netherlands, PKIoverheid (Logius)
AI Summary

The case addresses compliance issues related to TLS certificates issued by CIBG under the PKIoverheid. Following a QA check, multiple compliance issues were identified, leading to the decision to revoke 3311 affected certificates that contained forbidden fields. The CA had previously ceased issuing publicly trusted certificates in December 2017, and the issues were not detected earlier due to oversight and the specific use of certificates for machine-to-machine communication in the healthcare sector. The situation has since been resolved with a commitment to improve oversight and compliance.

Model: gpt-4o-mini Generated: 2026-06-13 19:34 UTC Confidence: 0.90
Chronology
  1. Logius requests a list of affected certificates from CIBG.
  2. CIBG provides Logius with a full list of affected certificates.
  3. Publication of the compliance issue on Bugzilla.
Participants
Jochem van den Berge Ryan Sleevi Wayne Thayer
External References
Similar Local Cases
#1586125 RESOLVED Policy Compliance Opened 2019-10-03 · Closed 2024-06-30 · 65% similar
PKIoverheid: No BR Audit for Intermediate CAs technically capable of issuing TLS certs
#1596923 RESOLVED Policy Compliance Opened 2019-11-15 · Closed 2024-06-30 · 64% similar
PKIoverheid: KPN CPS lacks CPR problem reporting instructions
#1609706 RESOLVED Policy Compliance Opened 2020-01-16 · Closed 2024-06-30 · 58% similar
PKIoverheid: Missing Intermediate CA from audit statement
#1391864 RESOLVED Policy Compliance Opened 2017-08-19 · Closed 2023-02-22 · 58% similar
Staat der Nederlandend / PKIoverheid: Non-BR-Compliant Certificate Issuance
#1719451 RESOLVED Policy Compliance Opened 2021-07-07 · Closed 2023-02-22 · 57% similar
PKIoverheid: KPN CPS Lists Forbidden Domain Validation Method 3.2.2.4.6
#1612389 RESOLVED Policy Compliance Opened 2020-01-30 · Closed 2023-02-22 · 56% similar
Google Trust Services: invalid curve-hash combination
#1650234 RESOLVED Policy Compliance Opened 2020-07-02 · Closed 2023-02-22 · 56% similar
PKIoverheid / QuoVadis: CPS inconsistencies
#1586795 RESOLVED Policy Compliance Opened 2019-10-07 · Closed 2023-02-22 · 55% similar
NetLock: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action