← Microsoft Corporation cases
Bugzilla #1602999
Certificate Problem Report
Microsoft PKI Services: Loss of Archived Firewall logs from Retention Store
RESOLVED
FIXED
Microsoft Corporation
AI Summary
Microsoft reported a loss of approximately nine and a half months of archived firewall syslog data due to a misconfiguration in their monitoring and retention platform. The issue was detected on September 12, 2019, and was promptly corrected the same day. Continuous monitoring and alerting were implemented to prevent future occurrences. The incident did not impact the issuing of certificates, as the lost logs did not contain any problematic certificates. A root cause analysis was performed, leading to enhanced monitoring protocols.
Chronology
- Problem detected and misconfiguration corrected
- Continuous monitoring and alerting implemented
Participants
mohanr@microsoft.com
wthayer@fastly.com
External References
Similar Local Cases
Microsoft DSRE PKI: OCSP responders found to respond signed by the default CA when passed an invalid issuer in request
Microsoft PKI Services: Sample Site Certificates expired
Microsoft PKI Services: Malformed ICAs (missing certificate policy extensions)
Microsoft PKI Services: Subscriber certificate change made that was not compliant with CPS
Microsoft PKI Services: CA Certificates not published in DER Encoded Format
Microsoft PKI Services: Null Character Bug and Microsoft Root CAs
Microsoft PKI Services: Incorrect Revocation Reason Code
Microsoft PKI Services: OCSP Responder does not know a Certificate