← Autoridad de Certificacion Firmaprofesional cases
Bugzilla #1649679
Policy Compliance
Firmaprofesional: 2020 Audit Report Finding 2 out of 4
RESOLVED
FIXED
Autoridad de Certificacion Firmaprofesional
AI Summary
The case addresses findings from a 2020 audit of Firmaprofesional, specifically regarding the security measures of their contingency datacenter. It was noted that the contingency datacenter lacked the same security protocols as the main datacenter, raising concerns about physical access controls. Firmaprofesional acknowledged the issue and outlined steps taken to enhance security, including plans for improved access control mechanisms. The case was resolved with the understanding that the CA would implement necessary changes to ensure compliance with industry standards.
Chronology
- Non Conformity registered in JIRA and action plan established.
- Request made to supplier for installation of intelligent rack access lock.
- Case deemed resolvable by Mozilla.
Participants
Maria Jose Prieto
Ryan Sleevi
Ben Wilson
External References
Similar Local Cases
Firmaprofesional: 2021 Audit Report Finding 2 out of 3
Firmaprofesional: 2023 - documentary inconsistency
GlobalSign: SHA-256 hash algorithm used with ECC P-384 key
NetLock: Replacement of enduser certificates after the EVGL 1.7.4 self-audit
Amazon Trust Services: CP/CPS does not specify key compromise methods
Camerfirma: Failure to abide by Section 8 of Mozilla Policy: Unauthorized, improperly disclosed Subordinate CA
PKIoverheid / QuoVadis: CPS inconsistencies
TWCA: Policy OID not set to indicate the assurance level to the issued certs