← Deutsche Telekom Security GmbH cases
Bugzilla #1675314
Certificate Problem Report
Telekom Security: Wrong jurisdiction entries in certificates
RESOLVED
FIXED
Deutsche Telekom Security GmbH
AI Summary
Deutsche Telekom Security GmbH reported the issuance of six EV certificates containing incorrect jurisdiction entries due to a software bug. The certificates were revoked the next working day and had never been used. An internal audit identified the issue, leading to immediate corrective actions and a temporary halt on EV certificate issuance. The CA has since implemented measures to prevent similar occurrences in the future.
Chronology
- RA-Team processes customer request and consults technical expert.
- Six certificates issued with incorrect jurisdiction.
- Internal Auditor identifies misissued certificates.
- Certificates revoked and issuance of new EV certificates put on hold.
- Issuance of EV certificates resumed for German and Swiss subjects.
Participants
Arnold Essing
External References
Similar Local Cases
Telekom Security: CRL also contained unrevoked certificates
Telekom Security: Key Encipherment in two ECC SAN TLS certificates
Telekom Security: CRL-Entries with wrong CRL Reason Codes
Telekom Security: Multiple commonName in certificates
Telekom Security: Improper use of a domain validation method
Telekom Security: TLS certificates with basicConstraints not marked as critical
Telekom Security / DFN: CRL of “DFN-Verein Certification Authority 2“ contains empty revoked certificate list
Telekom Security: Root-CA certificates published in PEM encoded format