← IdenTrust Services, LLC cases
Bugzilla #1772633 Technical Compliance

IdenTrust: OCSP responses for subordinate CA exceed the validity period per CPS guidelines

RESOLVED FIXED IdenTrust Services, LLC
AI Summary

IdenTrust identified a compliance issue where OCSP response validity periods for 14 subordinate CAs exceeded the guidelines set forth in their TrustID CPS. The discrepancy was discovered during an internal review, leading to an investigation that confirmed the OCSP responses were valid for longer than the allowed 24 hours. IdenTrust promptly updated their CPS to rectify the issue, publishing the revised document on May 27, 2022. The situation is now considered resolved as the updated CPS aligns with compliance requirements.

Model: gpt-4o-mini Generated: 2026-06-13 21:17 UTC Confidence: 1.00
Chronology
  1. Internal message identified discrepancy in OCSP response validity.
  2. Investigation confirmed multiple subordinate CA OCSP responders were affected.
  3. Initiated CPS update process.
  4. Published updated TrustID CPS.
Participants
IdenTrust Mozilla
Similar Local Cases
#1732745 RESOLVED Technical Compliance Opened 2021-09-27 · Closed 2023-02-22 · 43% similar
Certainly: Root CRL validity period exceeds maximum by one second
#1771552 RESOLVED Technical Compliance Opened 2022-05-27 · Closed 2023-02-22 · 40% similar
Google Trust Services: OCSP responses not published in a timely manner
#1731164 RESOLVED Technical Compliance Opened 2021-09-16 · Closed 2023-02-22 · 40% similar
Google Trust Services: CRL validity period set to expected value plus one second
#1738191 RESOLVED Technical Compliance Opened 2021-10-28 · Closed 2023-02-22 · 40% similar
GDCA: CRL validity period exceeds allowed value by one second
#1848280 RESOLVED Technical Compliance Opened 2023-08-11 · Closed 2023-10-12 · 40% similar
Microsoft PKI Services: 3-Month Access Review Process Failure
#1735761 RESOLVED Technical Compliance Opened 2021-10-14 · Closed 2023-02-22 · 40% similar
Sectigo: CRL validity beyond CPS allowed value
#1428891 RESOLVED Technical Compliance Opened 2018-01-08 · Closed 2023-02-22 · 40% similar
Entrust: Non-BR-Compliant OCSP Responder
#1914893 RESOLVED Technical Compliance Opened 2024-08-26 · Closed 2024-09-18 · 40% similar
Amazon Trust Services: CRL not DER-encoded

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action