← Government of Spain, Fábrica Nacional de Moneda y Timbre (FNMT) cases
Bugzilla #1625421
Technical Compliance
FNMT: QC Statement that contains at least one of the ETSI ESI statements
RESOLVED
INVALID
Government of Spain, Fábrica Nacional de Moneda y Timbre (FNMT)
AI Summary
The case involves FNMT's handling of QC statements related to non-qualified certificates. A Zlint error was identified in 21 precertificates issued by AC Componentes Informáticos, prompting FNMT to temporarily suspend SSL certificate issuance. After discussions, it was confirmed that the QC statements used do not imply a violation of ETSI standards, allowing FNMT to resume issuing certificates. The case was ultimately resolved as invalid.
Chronology
- Initial report of Zlint error on precertificates
- FNMT suspends SSL certificate issuance
- Discussion confirms compliance with ETSI standards
Participants
Michel Le Bihan
Alain
Ryan Sleevi
External References
Similar Local Cases
E-Tugra: Forbidden Domain Validation Method 3.2.2.4.6
Entrust: Non-BR-Compliant OCSP Responder
GoDaddy: DV certificates with organizationalUnit field in subject
Google Trust Services: digitalSignature KeyUsage not set
Visa: Non-BR-Compliant OCSP Responders
Asseco DS / Certum: Forward dating certificates (notBefore in the future)
Telekom Security: Finding in 2020 ETSI-Audit regarding weekly review of changes to configurations
startcom: still issuing < 2048 bit certificates