← Sectigo cases
Bugzilla #1714628 Certificate Misissuance

Sectigo: Forbidden Domain Validation Method

RESOLVED FIXED Sectigo
AI Summary

Sectigo identified a significant issue where their Certificate Policy Statement (CPS) did not include all supported Domain Control Validation (DCV) methods, specifically missing the ACME-http-01 method. This oversight led to the issuance of 369,922 certificates that did not comply with current standards. Following the discovery, Sectigo promptly updated their CPS and initiated a revocation process for the affected certificates. The case highlights the importance of maintaining accurate documentation and proactive compliance measures.

Model: gpt-4o-mini Generated: 2026-06-13 20:59 UTC Confidence: 0.90
Chronology
  1. Bug opened by Ryan Sleevi regarding CPS updates.
  2. Updated CPS published to site.
  3. Custom script runs, revoking all affected certificates.
Participants
Ryan Sleevi Tim Callan
External References
Similar Local Cases
#1710243 RESOLVED Certificate Misissuance Opened 2021-05-08 · Closed 2023-02-22 · 66% similar
Sectigo: Invalid stateOrProvinceName
#1715929 RESOLVED Certificate Misissuance Opened 2021-06-11 · Closed 2023-02-22 · 66% similar
Sectigo: Incorrect EV businessCategory
#1741026 RESOLVED Certificate Misissuance Opened 2021-11-13 · Closed 2023-02-22 · 65% similar
Sectigo: Incorrect JOI for federal credit unions
#1665763 RESOLVED Certificate Misissuance Opened 2020-09-17 · Closed 2023-02-22 · 65% similar
Sectigo: Failure to revoke within 5 days
#1712188 RESOLVED Certificate Misissuance Opened 2021-05-20 · Closed 2023-02-22 · 65% similar
Sectigo: test certificates issued from trusted CA
#1720744 RESOLVED Certificate Misissuance Opened 2021-07-15 · Closed 2023-02-22 · 65% similar
Sectigo: State name in localityName
#1723263 RESOLVED Certificate Misissuance Opened 2021-07-31 · Closed 2022-11-14 · 65% similar
Sectigo: IP Address Domain Validation Failure
#1712120 RESOLVED Certificate Misissuance Opened 2021-05-20 · Closed 2023-02-22 · 64% similar
Sectigo: Inappropriate subject:serialNumber information in EV certificates obtained through ACME

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action