← Start Commercial (StartCom) Ltd. cases
Bugzilla #1015767
Technical Compliance
startcom: still issuing < 2048 bit certificates
RESOLVED
Start Commercial (StartCom) Ltd.
AI Summary
The case addresses the issue of StartCom issuing certificates with key lengths less than the required 2048 bits. A specific instance of a 2043-bit certificate was reported, prompting an investigation. Although the issue was deemed low risk, it raised concerns about compliance with security standards. The case was ultimately resolved with assurances that such occurrences would be addressed.
Chronology
- Initial report of a 2043-bit certificate
- Case resolved with acknowledgment of the issue
Participants
Kurt Roeckx
Eddy Nigg (StartCom)
Gervase Markham
External References
Similar Local Cases
StartCom: Certificates using secp256k1
Amazon Trust Services: Failure to comply with RFC 5280
Amazon Trust Services: CRL not DER-encoded
Amazon Trust Services: Missing CAA Check For Test Website Certificates
Apple: CRL issuance frequency deviates from CPS in some cases
DigiCert: SCEE / Justica: Non-BR-Compliant Certificate Issuance