← DigiCert cases
Bugzilla #1651828
Delayed Revocation
DigiCert: Delay of revocation for EV audit inconsistency incident
RESOLVED
DigiCert
AI Summary
DigiCert reported a delay in revoking approximately 35,000 certificates due to inconsistencies in their EV audit process. The delay was attributed to operational challenges exacerbated by the COVID-19 pandemic, impacting critical infrastructure and customer timelines. DigiCert committed to revoking the affected certificates by July 30, 2020, while emphasizing their adherence to industry standards and the necessity of timely communication with impacted customers.
Chronology
- Bug filed for EV inconsistent audits.
- Impacted customers notified.
- Majority of revocations executed.
- Final revocation deadline.
Participants
Brenda Bernal
Ryan Sleevi
Ben Wilson
Jeremy Rowley
External References
Similar Local Cases
Digicert: Delayed Revocation for bug 1894560
DigiCert: Delayed revocation of 1910322
SECOM: Delayed Revocation of non-technically constrained FUJIFILM Certificates
SECOM: Delayed Revocation of CA Certificate with OCSP EKU Issue
PKIoverheid: Failure to revoke within 7 days: OCSP EKU issue
DigiCert: Delayed revocation of IV certificates
NETLOCK: Policy Qualifiers other than id-qt-cps is included in TLS certificates - delayed revocation
Camerfirma: Delayed revocations of certificates issued by old CAs with an RSA modulus size of 2047 bits