← Telia Company cases
Bugzilla #1737808
Certificate Problem Report
Telia: Delayed revocation of 5 EE certificates in connection to id=1736020
RESOLVED
FIXED
Telia Company
AI Summary
Telia Company reported a delayed revocation issue involving five EE certificates. The CA initially discovered the problem on October 14, 2021, due to confusion over domain validation. Although the revocation process began promptly, it faced delays due to the weekend and the critical nature of the affected systems. Ultimately, all certificates were successfully revoked by October 29, 2021, following a planned replacement strategy to minimize disruption.
Chronology
- Problem discovered regarding domain validation.
- Analysis revealed six certificates needing revocation.
- First affected certificate revoked.
- Status update reported in Bugzilla.
- Second certificate replaced and revoked.
- All affected certificates successfully revoked.
Participants
pekka.lahtiharju@teliasonera.com
ali.gholami@teliacompany.com
bwilson@mozilla.com
External References
Similar Local Cases
Telia: Invalid email contact address was used for few domains
Telia: Certificates with RSA keys where modulus is not divisible by 8
Telia: Issued three precertificates with non-NIST EC curve
Telia: AIA CA Issuer field pointing to PEM encoded cert
Telia: Two Intermediate CA certificates not listed in audit report
ACCV: Delayed revocation of TLS certificates affected by bug #1884532
Telia: Delayed revocation of seven (7) certificates related to incident 1896108
Telia: Findings in 2025 ETSI Audit - Incident Report #1 – Vulnerability management