← TurkTrust cases
Bugzilla #1367842
Certificate Problem Report
TurkTrust: Non-audited, non-technically-constrained intermediate certs
RESOLVED
TurkTrust
AI Summary
This case addresses concerns regarding three intermediate certificates issued by TurkTrust that are not audited and lack technical constraints. These certificates chain to a root certificate in Mozilla's root store. The CA was advised on potential remediation options, including revocation or inclusion in audits. Ultimately, the certificates were added to OneCRL, mitigating the issue without further action required from Mozilla.
Chronology
- Initial report of non-audited intermediate certificates
- Bug filed to add certificates to OneCRL
- Intermediate certificates added to OneCRL
Participants
Kathleen Wilson
Atilla Biler
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
Firmaprofesional: Non-audited, non-technically-constrained intermediate certificates
StartCom: IV without localityName or stateOrProvinceName
GoDaddy's intermediate CA not in the Mozilla CA bundle
Add revoked certificate Certification Authority of WoSign G2 issued by Certum CA root to OneCRL
DigiCert: Revoked intermediate certificates not in CRL
Add DigiCert non-TLS Intermediate Certs to OneCRL
Camerfirma: Startcom are issuing by proxy using Camerfirma
Atos: duplicate serial numbers