← GlobalSign nv-sa cases
Bugzilla #1654545
Certificate Problem Report
GlobalSign: Failure to revoke noncompliant certificates within 5 days
RESOLVED
FIXED
GlobalSign nv-sa
AI Summary
GlobalSign failed to revoke noncompliant certificates within the required 5-day timeframe as specified in the SSL Baseline Requirements. The issue was identified during a compliance review, revealing that the last affected certificates were revoked 19 days after the CA became aware of the noncompliance. GlobalSign has since taken steps to improve their compliance incident response, including training existing staff to enhance their compliance team. The case has been resolved with all necessary actions completed by mid-August 2020.
Chronology
- Bug reported regarding failure to revoke certificates.
- GlobalSign provided a detailed update on the compliance issue.
- GlobalSign announced plans to expand the compliance incident team.
- GlobalSign confirmed completion of all actions related to the incident.
- Bug was scheduled for closure.
Participants
Arvid Vermote
Ryan Sleevi
B Wilson
External References
Similar Local Cases
GlobalSign: Failure to revoke noncompliant ICA within 7 days
GlobalSign: Failure to revoke noncompliant ICA within 7 days
GlobalSign: Invalid stateOrProvinceName value
GlobalSign: Incorrect OCSP Delegated Responder Certificate
GlobalSign: OCSP responder certificates with more than 64 characters in CN
GlobalSign: EV certificates with serialNumber Government Entity and businessCategory Private Organization
GlobalSign: Invalid countryName
GlobalSign: ICAs in CCADB, without EKU extension are listed in WTCA report but not in WTBR report