← Netlock cases
Bugzilla #1716874 Self Reported Incident Revocation Issue

NetLock: Intermediate CA Certificate Missing from Audit Reports

RESOLVED FIXED Netlock
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

NetLock disclosed an issue regarding an intermediate CA certificate, 'NetLock OnlineSSL (Class Online) Tanúsítványkiadó', which was missing from their audit reports despite its capability to issue TLS server certificates. The problem was first identified on June 16, 2021, and was attributed to an administrative error in the audit report. Following discussions with auditors and Mozilla, NetLock acknowledged the mistake and decided to revoke the intermediate CA certificate. The revocation process was scheduled, and all necessary steps were completed by November 10, 2021, with the certificate officially revoked on September 28, 2021.

Model: gpt-4o-mini Generated: 2026-06-13 21:04 UTC Revised: 2026-06-16 18:42 UTC Confidence: 0.85 25 comments
Chronology
  1. NetLock's audit report identified missing intermediate CA certificate.
  2. The intermediate CA certificate was revoked.
Thread Activity
  1. Mozilla representative — Netlock's audit report does not list the following CA Certificate even though it appears capable of issuing TLS server certificates.
  2. Netlock — The audit report contains a wrong SHA256 hash related to 'NetLock OnlineSSL (Class Online) Tanúsítványkiadó' CA.
  3. Netlock — We first became aware of the problem via comment #1 of this current ticket.
  4. Netlock — We are scheduling the process that will include revocation of the related intermediate CA.
  5. Netlock — All steps above have been done.
  6. Mozilla representative — It appears that this certificate was revoked on 9/28/2021.
Participants
Mozilla representative Netlock
External References
Similar Local Cases
#1680378 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2020-12-02 · Closed 2023-02-22 · 100% similar
NetLock: Replacement of enduser certificates after the EVGL 1.7.4 self-audit
#1820174 RESOLVED Self Reported Incident Opened 2023-03-03 · Closed 2023-07-28 · 89% similar
NETLOCK: SSL certificates with OU field
#1676440 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2020-11-10 · Closed 2023-02-22 · 87% similar
NetLock: Cumulative report connected to EV verification
#1904041 RESOLVED Ca Documents Self Reported Incident Opened 2024-06-21 · Closed 2025-07-01 · 87% similar
NETLOCK: Intermediate CA Certificate not disclosed to CCADB
#1889570 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2024-04-04 · Closed 2024-08-28 · 81% similar
NETLOCK: Policy Qualifiers other than id-qt-cps is included in TLS certificates
#1391056 RESOLVED Ca Certificate Compliance Self Reported Incident Opened 2017-08-16 · Closed 2023-02-22 · 80% similar
NetLock: Non-BR-Compliant Certificate Issuance
#2013400 RESOLVED Self Reported Incident Incident Opened 2026-01-29 · Closed 2026-04-17 · 79% similar
NETLOCK: did not file a preliminary incident report or respond to a third-party report within the 72-hour timeframe
#1649951 RESOLVED Self Reported Incident Revocation Issue Opened 2020-07-02 · Closed 2023-02-22 · 78% similar
DigiCert: Incorrect OCSP Delegated Responder Certificate

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action