← Internet Security Research Group cases
Bugzilla #1752670 Certificate Misissuance Self Reported Incident

Let's Encrypt: TLS-ALPN-01 challenge certificates allowed additional SAN identifiers (RFC 8737 non-compliance)

RESOLVED FIXED Internet Security Research Group
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case is a preliminary incident report from Let’s Encrypt / ISRG about a non-compliance in its TLS-ALPN-01 challenge implementation (RFC 8737). The issue was triggered when a bug report was received at 19:41 UTC on 2022-01-28 stating that Let’s Encrypt issued a TLS-ALPN-01 validated certificate that was non-compliant with RFC 8737 because the challenge certificate’s subjectAltName contained identifiers other than the dNSName being validated (including an IP Address). Let’s Encrypt confirmed the report and began incident response, including revoking the known misissued certificate at 21:22 UTC. The CA developed and merged a fix into Boulder and deployed it to production at 01:56 UTC on 2022-01-29. Let’s Encrypt also audited issuance/validation logs to identify additional affected authorizations and certificates, and it stated that affected certificates were revoked within five days of becoming aware of the issue. The bug was resolved as FIXED, and later updates directed reviewers to Bug 1751984 for remediation items; Mozilla indicated it would close the ticket if no further questions were raised.

Model: gpt-5.4-nano Generated: 2026-06-13 21:16 UTC Revised: 2026-06-16 19:22 UTC Confidence: 0.90 6 comments
Chronology
  1. Let’s Encrypt received a report of TLS-ALPN-01 non-compliance and began incident response.
  2. Let’s Encrypt revoked the known misissued certificate.
  3. Let’s Encrypt merged and deployed a Boulder fix to production for TLS-ALPN-01 validation.
  4. Let’s Encrypt revoked all identified affected authorizations and issued certificates based on the affected authorizations.
  5. Let’s Encrypt reported remediation items were completed on Bug 1751984 and requested closure.
Thread Activity
  1. Internet Security Research Group — Reported the incident details: RFC 8737 non-compliance due to extra SAN entries in the TLS-ALPN-01 challenge certificate, confirmed the issue, revoked the misissued certificate, merged a Boulder fix, deployed it to production, and planned log review and revocations by 2022-02-02.
  2. Internet Security Research Group — Stated ongoing auditing of validation logs to find additional affected authorizations/certificates and reiterated revocation and a full incident report by 2022-02-03.
  3. Internet Security Research Group — Provided a full incident report summary, stating the fix was merged/deployed, affected authorizations and issuances were identified, and affected certificates were revoked within five days; included a detailed timeline and stated only three certificates were affected.
  4. Internet Security Research Group — Gave a weekly update pointing to Bug 1751984 for remediation items and asked to close this ticket if no further questions, otherwise set Next Update to 2022-03-11.
  5. Internet Security Research Group — Reported remediation items were completed on Bug 1751984 and requested closure if no further questions.
  6. Mozilla representative — Indicated Mozilla would close the ticket on 2022-03-04 unless there were questions or concerns.
Participants
Internet Security Research Group Mozilla representative Community commenter
Related Bugzilla IDs Mentioned
Similar Local Cases
#1954861 RESOLVED Self Reported Incident Certificate Misissuance Opened 2025-03-18 · Closed 2025-04-09 · 100% similar
Let's Encrypt: Early CRL Removal Incident
#1619047 RESOLVED Self Reported Incident Certificate Misissuance Opened 2020-02-29 · Closed 2023-02-22 · 99% similar
Let's Encrypt: CAA Rechecking bug
#1715455 RESOLVED Self Reported Incident Opened 2021-06-09 · Closed 2024-01-10 · 97% similar
Let's Encrypt: certificate lifetimes 90 days plus one second
#1753123 RESOLVED Revocation Issue Self Reported Incident Opened 2022-02-01 · Closed 2023-01-04 · 97% similar
Let's Encrypt: Failure to provide OCSP Responses for some certificates
#1793114 RESOLVED Self Reported Incident Opened 2022-09-30 · Closed 2023-02-22 · 96% similar
Let's Encrypt: Incomplete and Inconsistent CRLs
#1751984 RESOLVED Incident Self Reported Incident Opened 2022-01-25 · Closed 2023-02-22 · 95% similar
Let's Encrypt: TLS Using ALPN TLS Version and OID
#1886876 RESOLVED Self Reported Incident Policy Document Issue Opened 2024-03-21 · Closed 2024-04-17 · 95% similar
Let's Encrypt: keyCompromise key blocking deviation from CP/CPS
#1742704 RESOLVED Incident Self Reported Incident Opened 2021-11-23 · Closed 2024-05-09 · 91% similar
Let's Encrypt: Potential Denial of Service against websites with broad private key reuse

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action