← Swisscom (Switzerland) Ltd cases
Bugzilla #1034949
Certificate Problem Report
Swisscom: valid 512 bit certificate
RESOLVED
Swisscom (Switzerland) Ltd
AI Summary
A certificate issued by Swisscom with a 512-bit RSA key was found to be valid and not revoked. This raised concerns regarding compliance with security standards, as the minimum key size should be 2048 bits. Swisscom confirmed that the certificate was for internal testing and was subsequently revoked. The issue highlights the importance of adhering to certificate issuance standards.
Chronology
- Initial report of a valid 512-bit certificate
- Certificate confirmed for internal use and revoked
- Confirmation of certificate revocation
Participants
Kurt Roeckx
Patrick Graber
Gervase Markham
Matthias Hunstock
External References
Similar Local Cases
Visa: Issuing 1024 bit certificates
LuxTrust: issuing 1024 bit certificates
DigiCert: no subject alternative name in Siemens certs
Actalis: Issusing 1024 bit certificates
GlobalSign: Incapsula issued a certificate for non-existing domain (testslsslfeb20.me)
Deutsche telekom: no localityName or stateOrProvinceName
D-Trust: issuing 1024 bit certificates
Swisscom: certificates without DNS names in subjectAltName