← GlobalSign nv-sa cases
Bugzilla #1654544 Certificate Misissuance

GlobalSign: Use of Domain Validation Random Value for more than 30 days

RESOLVED FIXED GlobalSign nv-sa
AI Summary

GlobalSign identified a compliance issue where random values used for domain validation exceeded the 30-day limit set by the Baseline Requirements. This oversight allowed 78 domains to be validated with expired random values, leading to the issuance of 101 certificates over a two-week period. All affected certificates were revoked by July 17, 2020. The incident prompted a review of their processes, resulting in a commitment to update random values every 28 days to prevent future occurrences.

Model: gpt-4o-mini Generated: 2026-06-13 21:25 UTC Confidence: 0.90
Chronology
  1. Reset all random values for legacy product.
  2. 30-day random value limit requirement came into effect.
  3. Script to reset random values failed.
  4. Script executed to update random values.
  5. All domains validated with expired RVs were reset.
  6. All certificates issued with expired RVs were revoked.
Participants
Arvid Vermote Ryan Sleevi
External References
Similar Local Cases
#1690807 RESOLVED Certificate Misissuance Opened 2021-02-04 · Closed 2023-02-22 · 70% similar
GlobalSign: RSA-1024 leaf certificate issued after 2013-12-31
#1599775 RESOLVED Certificate Misissuance Opened 2019-11-27 · Closed 2023-02-22 · 59% similar
GlobalSign: Wrong business category (Non Commercial Entity when should have been Private Organization)
#1714968 RESOLVED Certificate Misissuance Opened 2021-06-07 · Closed 2023-02-22 · 58% similar
GlobalSign: Incorrect RegNumber-Org Type combination
#1866806 RESOLVED Certificate Misissuance Opened 2023-11-27 · Closed 2024-02-01 · 52% similar
GlobalSign: S/MIME Sponsor validated certificates with CommonName value equal to OrganizationName
#1782391 RESOLVED Certificate Misissuance Opened 2022-07-31 · Closed 2023-02-22 · 52% similar
GlobalSign: EV certificate with wildcard domain in common name and SAN
#1595921 RESOLVED Certificate Misissuance Opened 2019-11-12 · Closed 2023-02-22 · 52% similar
DigiCert: Domain validation skipped
#1576133 RESOLVED Certificate Misissuance Opened 2019-08-23 · Closed 2023-02-22 · 52% similar
SECOM: Mis-issued EV Certificates
#1552586 RESOLVED Certificate Misissuance Opened 2019-05-17 · Closed 2023-02-22 · 52% similar
GlobalSign: 4 Misissued certificates with invalid CN

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action