← Microsoft Corporation cases
Bugzilla #1644936 Certificate Misissuance

Microsoft PKI Services: Certificate Mis-Issuance, Locality Missing

RESOLVED FIXED Microsoft Corporation
AI Summary

Microsoft Corporation reported a misissuance incident involving eight certificates that were issued without the required locality or state/province values. The issue was identified during post-issuance linting tests, leading to the revocation of the certificates on April 29, 2020. The misissuance occurred due to manual processing outside of their automated issuance system, which typically enforces compliance with certificate profiles. Microsoft has since implemented additional manual quality checks and is working to enhance their automated tools to prevent similar issues in the future.

Model: gpt-4o-mini Generated: 2026-06-13 21:11 UTC Confidence: 0.90
Chronology
  1. Certificates issued manually
  2. Certificates failed linting and were revoked
  3. Mis-issuance reviewed with Web Trust auditors
  4. Final internal incident review completed
  5. Discussion on improving incident reporting processes
Participants
John Mason Wayne Thayer Ben Wilson Ryan Sleevi
External References
Similar Local Cases
#1674561 RESOLVED Certificate Misissuance Opened 2020-10-31 · Closed 2023-02-22 · 70% similar
Microsoft PKI Services: DV certificate issued with OV fields
#1670337 RESOLVED Certificate Misissuance Opened 2020-10-09 · Closed 2024-01-16 · 70% similar
Microsoft PKI Services: Certificate Mis-Issuance, DNSNames must have a valid TLD
#1613334 RESOLVED Certificate Misissuance Opened 2020-02-05 · Closed 2023-02-22 · 68% similar
SwissSign: Misissuance with mispellings in Location for a number of Certificates
#1706860 RESOLVED Certificate Misissuance Opened 2021-04-22 · Closed 2023-02-22 · 63% similar
Microsoft PKI Services: Certificate Mis-Issuance, DNSName is not FQDN, Preferred Name Syntax
#1523186 RESOLVED Certificate Misissuance Opened 2019-01-27 · Closed 2023-02-22 · 63% similar
KIR S.A.: Misissuance - missing OCSP AIA, Validity > 825 days
#1741026 RESOLVED Certificate Misissuance Opened 2021-11-13 · Closed 2023-02-22 · 61% similar
Sectigo: Incorrect JOI for federal credit unions
#1551372 RESOLVED Certificate Misissuance Opened 2019-05-14 · Closed 2023-02-22 · 60% similar
Telia: "Some-State" in stateOrProvinceName
#1651026 RESOLVED Certificate Misissuance Opened 2020-07-07 · Closed 2023-02-22 · 60% similar
Izenpe: certificate issued to internal domain

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action