KIR S.A.: Many certificates with OCSP Unknown
Krajowa Izba Rozliczeniowa S.A. (KIR) faced issues with many certificates returning an OCSP status of 'Unknown'. This situation arose due to procedural controls that were insufficient to prevent the issuance of certificates that were not delivered to clients. KIR acknowledged the problem and initiated a series of procedural and technical changes to address the issue. They reported that a technical change was implemented to ensure that all certificates would be correctly reflected in OCSP responses. Following these changes, KIR confirmed that no certificates with an OCSP status of 'Unknown' were found after a full scan.
- KIR's procedural controls deemed insufficient; recommendation to halt issuance.
- Implementation of technical changes began.
- Technical changes deployed in production.