← AC Camerfirma, S.A. cases
Bugzilla #1688215 Policy Compliance

Camerfirma: CP/CPS of Intesa Sanpaolo Sub-CA is Non-Compliant

RESOLVED FIXED AC Camerfirma, S.A.
AI Summary

The CP/CPS documents for the Intesa Sanpaolo Sub-CA were found to be non-compliant with Mozilla's policies, specifically lacking clarity on domain validation and CAA requirements. The issue was reported by Andrew Ayer on January 22, 2021, prompting Camerfirma to initiate a review and update of their CPS. The new version was published by February 5, 2021, addressing the identified deficiencies. This incident highlights ongoing concerns regarding Camerfirma's oversight of its sub-CAs and their compliance practices.

Model: gpt-4o-mini Generated: 2026-06-13 21:32 UTC Confidence: 0.90
Chronology
  1. Bug reported by Andrew Ayer regarding non-compliance of CP/CPS.
  2. Camerfirma began the process of updating the CPS.
  3. New version of the CPS published.
Participants
Andrew Ayer Ana Lopes Ryan Sleevi Ben Wilson Eusebio Herrera
Similar Local Cases
#1672562 RESOLVED Policy Compliance Opened 2020-10-22 · Closed 2023-02-22 · 75% similar
Camerfirma: Incorrect disclosure of Intesa Sanpaolo sub-CA
#1688382 RESOLVED Policy Compliance Opened 2021-01-23 · Closed 2023-02-22 · 74% similar
Camerfirma: No disclosure of verification sources
#1672029 RESOLVED Policy Compliance Opened 2020-10-19 · Closed 2023-02-22 · 74% similar
Camerfirma: Failure to abide by Section 8 of Mozilla Policy: Unauthorized, improperly disclosed Subordinate CA
#1693113 RESOLVED Policy Compliance Opened 2021-02-16 · Closed 2023-01-18 · 71% similar
Camerfirma: SMIME Improvement Plan
#1575530 RESOLVED Policy Compliance Opened 2019-08-21 · Closed 2023-02-22 · 71% similar
Camerfirma: Govern d'Andorra audits
#1549861 RESOLVED Policy Compliance Opened 2019-05-07 · Closed 2023-02-22 · 67% similar
Camerfirma: Outdated audit statements for intermediate certs
#1705904 RESOLVED Policy Compliance Opened 2021-04-17 · Closed 2023-02-22 · 64% similar
KIR S.A.: CP/CPS contains noncompliant DV method, does not specify CAA domains
#1713976 RESOLVED Policy Compliance Opened 2021-06-02 · Closed 2023-02-22 · 64% similar
Amazon Trust Services: CP/CPS does not specify key compromise methods

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action