← Entrust cases
Bugzilla #1636339
Certificate Problem Report
Entrust: Failure to revoke a certificate
RESOLVED
FIXED
Entrust
AI Summary
Entrust faced a failure to revoke an SSL certificate in a timely manner due to an invalid encoding in the printable string of the Organization field. The certificate was issued on April 30, 2020, but the OCSP software rejected it, leading to a lack of timely revocation response. The issue was identified by Entrust's compliance team, and the certificate was eventually revoked on May 1, 2020. Entrust has since migrated to updated software to prevent similar issues in the future.
Chronology
- SSL certificate issued with invalid encoding
- Certificate revoked on CRL
- OCSP software patched
- Subordinate CA migrated to new software
Participants
Ryan Sleevi
Bruce Morton
Ben Wilson
External References
Similar Local Cases
Entrust: Printable String Constraint Failure
Entrust: S/MIME Certificate Issued with Incorrect Policy OID
Entrust: SSL Certificates issued with Un-verified IP Addresses
Entrust: Incorrect keyUsage for ECC certificate
Entrust: IP Address in dNSName form
Entrust: EV Certificate missing Issuer’s EV Policy OID
Entrust: Late revocation of underscore certificate
Entrust: Late Revocation for SSL Certificates issued with Un-verified IP Addresses