← Taiwan-CA Inc. (TWCA) cases
Bugzilla #1738778 Policy Compliance

TWCA: Policy OID not set to indicate the assurance level to the issued certs

RESOLVED FIXED Taiwan-CA Inc. (TWCA)
AI Summary

The case involves Taiwan-CA Inc. (TWCA) and the absence of Policy OIDs in the X.509 certificates for certain domains, which is a violation of the Baseline Requirements. TWCA acknowledged that their Certificate Policy/Certificate Practice Statement (CP/CPS) was outdated and did not clearly document compliance with these requirements. They have since updated their procedures to ensure that all certificates issued after September 30, 2020, include the correct OIDs. The issue was resolved with the acknowledgment that the certificates in question were not mis-issued, as they predated the new requirements.

Model: gpt-4o-mini Generated: 2026-06-13 20:51 UTC Confidence: 0.90
Chronology
  1. Bug opened by Oscar Koeroo regarding missing Policy OIDs.
  2. TWCA acknowledged the issue and began investigating.
  3. TWCA confirmed the violation of Baseline Requirements and updated their CP/CPS.
Participants
Oscar Koeroo Hao-Chun Li Ben Wilson Ryan Sleevi
Similar Local Cases
#1693930 RESOLVED Policy Compliance Opened 2021-02-20 · Closed 2023-02-22 · 59% similar
Microsoft PKI Services: Policy Documentation, Failure to update Subscriber Certificate Max Validity Period
#1705904 RESOLVED Policy Compliance Opened 2021-04-17 · Closed 2023-02-22 · 57% similar
KIR S.A.: CP/CPS contains noncompliant DV method, does not specify CAA domains
#1713976 RESOLVED Policy Compliance Opened 2021-06-02 · Closed 2023-02-22 · 57% similar
Amazon Trust Services: CP/CPS does not specify key compromise methods
#1664328 RESOLVED Policy Compliance Opened 2020-09-10 · Closed 2023-02-22 · 56% similar
GlobalSign: SHA-256 hash algorithm used with ECC P-384 key
#1680378 RESOLVED Policy Compliance Opened 2020-12-02 · Closed 2023-02-22 · 56% similar
NetLock: Replacement of enduser certificates after the EVGL 1.7.4 self-audit
#1586795 RESOLVED Policy Compliance Opened 2019-10-07 · Closed 2023-02-22 · 55% similar
NetLock: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy
#1525082 RESOLVED Policy Compliance Opened 2019-02-04 · Closed 2022-11-14 · 55% similar
Ernst & Young Poland: KIR OCSP "unknown" status for revoked certificate
#1649679 RESOLVED Policy Compliance Opened 2020-07-01 · Closed 2023-02-22 · 54% similar
Firmaprofesional: 2020 Audit Report Finding 2 out of 4

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action