← Sectigo cases
Bugzilla #1590810
Certificate Problem Report
Sectigo: EV SSL Certificates with incorrect businessCategory
RESOLVED
FIXED
Sectigo
AI Summary
Sectigo received a report regarding the issuance of EV SSL certificates that incorrectly listed the businessCategory as 'Non-Commercial Entity', which is not compliant with the CA/Browser Forum EV Guidelines. The issue was confirmed, and Sectigo initiated steps to revoke the affected certificates and issue replacements with correct details. They also reviewed their validation processes to prevent future occurrences. The case has been resolved, with no further actions pending.
Chronology
- Received report of improperly issued EV certificates
- Confirmed the report and initiated revocation process
- Posted detailed incident response
- Published list of Non Commercial Entities
- Closed the case as all questions were answered
Participants
Robin Alden
W. Thayer
Ryan Sleevi
B. Wilson
External References
Similar Local Cases
Sectigo: invalid dnsName
Sectigo: invalid subject:organizationalUnitName on DV certificates
Sectigo: "Default City" in Subject:localityName
Sectigo: Failure to provide a preliminary report within 24 hours.
Sectigo: EV SSL Certificates with incorrect subject details.
Sectigo: Failure to provide a preliminary report within 24 hours
Sectigo: Use of forbidden subjectPublicKeyInfo algorithm
Sectigo: Non-revocation of certificates with subject:organizationalUnitName in DV certificates