← GlobalSign nv-sa cases
Bugzilla #1651447
Certificate Problem Report
GlobalSign: Failure to revoke noncompliant ICA within 7 days
RESOLVED
FIXED
GlobalSign nv-sa
AI Summary
GlobalSign faced challenges in revoking noncompliant Intermediate Certificate Authorities (ICAs) within the required seven-day timeframe as mandated by the SSL Baseline Requirements. The issue was identified during an internal review following a security disclosure. Despite efforts to manage the situation, GlobalSign acknowledged that they could not meet the revocation deadline for all affected ICAs. The case was resolved with a commitment to improve their processes and ensure compliance in the future.
Chronology
- OCSP EKU security issue disclosed
- Bug created to capture revocation failure
- Next batch of CAs scheduled for revocation
- Bug closed and tracking continued in related case
Participants
Arvid Vermote
Ryan Sleevi
Ben Wilson
External References
Similar Local Cases
GlobalSign: Invalid stateOrProvinceName value
GlobalSign: Failure to revoke noncompliant certificates within 5 days
GlobalSign: Failure to revoke noncompliant ICA within 7 days
GlobalSign: Failure to provide a preliminary report within 24 hours
GlobalSign: Invalid countryName
GlobalSign: Empty SingleExtension in OCSP responses
GlobalSign: ICAs in CCADB, without EKU extension are listed in WTCA report but not in WTBR report
GlobalSign: Untimely revocation of TLS certificate after submission of private key compromise