← eMudhra Technologies Limited cases
Bugzilla #1763700
Certificate Misissuance
eMudhra: emSign CA Invalid AIA Extension Value
RESOLVED
FIXED
eMudhra Technologies Limited
AI Summary
eMudhra Technologies Limited reported that 84 SSL certificates were incorrectly issued with invalid Authority Information Access (AIA) values. The issue was identified on April 6, 2022, following a report and subsequent investigation. The misconfiguration was attributed to human error and lack of intuitive user interface design. All affected certificates were revoked, and corrective measures, including software updates to improve configuration clarity, were implemented. The case has been resolved with all actions completed.
Chronology
- Reported issue started
- Issue reported and confirmed
- Affected certificates revoked
- Software update deployed
- All remediation actions completed
Participants
Vijay Kumar
Ryan Sleevi
Mathew Hodson
External References
Similar Local Cases
eMudhra: emSign CA ECC Test Certificate Misissuance
eMudhra: emSign CA Invalid OrganizationalUnitName
GlobalSign: Incorrect RegNumber-Org Type combination
IdenTrust: Inconsistent Disclosure of Externally-Operated Intermediate
eMudhra emSign PKI Services : www Subdomain Inclusion in Certificate SAN via ACME Issuance Workflow
Sectigo: Incorrect EV businessCategory
SwissSign: Misissuance of Leaf Certificates because of incorrect postcode
Sectigo: State name in localityName