← Netlock cases
Bugzilla #1680378 Policy Compliance

NetLock: Replacement of enduser certificates after the EVGL 1.7.4 self-audit

RESOLVED FIXED Netlock
AI Summary

NetLock identified a compliance issue during a self-audit on November 20, 2020, regarding the absence of the CAB Forum Organization ID in their EV certificates, following changes in the EVGL 1.7.4 guidelines. The CA halted certificate issuance, issued replacement certificates, and revoked nearly all affected certificates by December 31, 2020. The incident highlighted shortcomings in monitoring policy changes, prompting NetLock to implement a new taskforce and improve compliance processes to prevent future occurrences.

Model: gpt-4o-mini Generated: 2026-06-13 21:04 UTC Confidence: 0.90
Chronology
  1. Problem identified; certificate issuance stopped.
  2. Mandatory extension set for new certificates.
  3. Replacement certificates issued.
  4. Revocation of almost all certificates.
  5. Revocation of the last certificate.
Participants
Varga Viktor Anna Bányai Zsófia Fehér Győző Drozdy Ryan Sleevi Ben Wilson
External References
Similar Local Cases
#1586795 RESOLVED Policy Compliance Opened 2019-10-07 · Closed 2023-02-22 · 77% similar
NetLock: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy
#1676440 RESOLVED Policy Compliance Opened 2020-11-10 · Closed 2023-02-22 · 73% similar
NetLock: Cumulative report connected to EV verification
#1693930 RESOLVED Policy Compliance Opened 2021-02-20 · Closed 2023-02-22 · 58% similar
Microsoft PKI Services: Policy Documentation, Failure to update Subscriber Certificate Max Validity Period
#1664328 RESOLVED Policy Compliance Opened 2020-09-10 · Closed 2023-02-22 · 57% similar
GlobalSign: SHA-256 hash algorithm used with ECC P-384 key
#1672029 RESOLVED Policy Compliance Opened 2020-10-19 · Closed 2023-02-22 · 56% similar
Camerfirma: Failure to abide by Section 8 of Mozilla Policy: Unauthorized, improperly disclosed Subordinate CA
#1738778 RESOLVED Policy Compliance Opened 2021-11-01 · Closed 2023-02-22 · 56% similar
TWCA: Policy OID not set to indicate the assurance level to the issued certs
#1907568 RESOLVED Policy Compliance Opened 2024-07-12 · Closed 2024-09-06 · 56% similar
NETLOCK: CPS 1.5.2. problem and contact information update
#1649679 RESOLVED Policy Compliance Opened 2020-07-01 · Closed 2023-02-22 · 55% similar
Firmaprofesional: 2020 Audit Report Finding 2 out of 4

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action