← Certigna cases
Bugzilla #1774418
Ca Certificate Compliance
Certificate Misissuance
Certigna: Certificate issued with validity period greater than 398-days
RESOLVED
FIXED
Certigna
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
Certigna identified a compliance issue where a certificate was issued with a validity period of 400 days, exceeding the maximum allowed of 398 days. The incident was escalated internally, and corrective actions were taken, including revocation of the certificate and updates to their validity check scripts. The CA communicated the incident to their supervisory body and has since implemented additional checks to prevent similar occurrences. The issue has been resolved, and the necessary improvements have been deployed.
Chronology
- Certificate with excessive validity period was revoked.
Thread Activity
- Dhimyotis representative — Reported a certificate issued with a validity period of 400 days.
- Dhimyotis representative — Confirmed that the incident was isolated and corrective measures were being implemented.
- Dhimyotis representative — Announced that post-delivery checks have been deployed.
- Mozilla representative — Indicated that the bug can be closed.
Participants
Community commenter
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
Certigna: TLS certificates with Basic constraint non-critical
Certigna: Subscriber certificate with EKU clientAuth only
Certigna: AIA CA issuer field pointing to PEM encoded cert
Entrust: Incorrect Jurisdiction Country Value in an EV Certificate
Certigna: Multiple Reserved Certificate Policy Identifiers in CA certificates
SwissSign: Certificate with key length 16258
Camerfirma: suspicious certificate for com.com
KIR S.A.: Invalid localityName + CRL Revoked but OCSP Unknown