← SwissSign AG cases
Bugzilla #1614450 Audit Finding

SwissSign: Audit Letter Validation failures on intermediate certificates

RESOLVED WORKSFORME SwissSign AG
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case was filed regarding SwissSign AG’s intermediate certificates after Mozilla’s Audit Letter Validation (ALV) reported failures. The reporter noted that SwissSign had responded to Action 5 of Mozilla’s January 2020 CA Communication survey stating it had no audit issues with its intermediate certificates identified by CCADB, but ALV indicated that the CA needed to investigate and resolve the listed problems. The ALV results included an Audit Letter Validation failure for the certificate “SwissSign Personal Platinum CA 2014 - G22,” identified by its SHA-256 fingerprint. The bug was then closed with the explanation that the certificate was already listed in the audit statement, and that SwissSign only needed to ensure the next annual audit statement followed the formatting guidelines for SHA-256 fingerprints. The bug’s resolution is WORKSFORME and it is marked RESOLVED.

Model: gpt-5.4-nano Generated: 2026-06-13 20:50 UTC Revised: 2026-06-16 18:16 UTC Confidence: 0.86 3 comments
Chronology
  1. Bug filed by a Mozilla CA Program participant regarding ALV-reported validation failures for SwissSign AG intermediate certificates.
  2. Bug closed after confirming the certificate was listed in the audit statement and noting formatting requirements for the next annual audit statement.
  3. Assigned CA contact confirmed closure and cleared the needinfo flag.
Thread Activity
  1. Community commenter — Filed the bug stating ALV reported Audit Letter Validation failures for SwissSign intermediate certificates that the CA said had no audit issues in its January 2020 survey response.
  2. Community commenter — Closed the bug, stating the certificate is listed in the audit statement and the CA should ensure the next annual audit statement follows the CCADB formatting guidelines for SHA-256 fingerprints.
  3. SwissSign AG — Commented that the bug was closed by Kathleen and that the needinfo flag was cleared.
Participants
Community commenter SwissSign AG
Similar Local Cases
#1990254 RESOLVED Ca Documents Audit Finding Opened 2025-09-23 · Closed 2026-05-04 · 79% similar
SwissSign: recommendation on risk assessment
#1990272 RESOLVED Ca Documents Audit Finding Opened 2025-09-23 · Closed 2026-05-04 · 79% similar
SwissSign: recommendation on backup testing
#1990274 RESOLVED Ca Documents Audit Finding Opened 2025-09-23 · Closed 2026-05-04 · 79% similar
SwissSign: recommendation on synchronization of staging and production environments
#1990275 RESOLVED Ca Documents Audit Finding Opened 2025-09-23 · Closed 2026-05-04 · 79% similar
SwissSign: recommendation on publication process for CA related data
#1990276 RESOLVED Ca Documents Audit Finding Opened 2025-09-23 · Closed 2026-05-07 · 79% similar
SwissSign: recommendation on evaluation of cloud service providers
#1614444 RESOLVED Ca Certificate Compliance Audit Finding Opened 2020-02-10 · Closed 2024-06-30 · 73% similar
Chunghwa Telecom: ALV failures on intermediate certificates
#1614821 RESOLVED Audit Finding Opened 2020-02-11 · Closed 2024-06-30 · 63% similar
Dhimyotis / Certigna: Intermediate CAs missing audits
#1990277 RESOLVED Audit Finding Self Reported Incident Opened 2025-09-23 · Closed 2026-05-07 · 60% similar
SwissSign: recommendation on CA-specific risk assessment

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action