← DigiCert cases
Bugzilla #1932994 · Certificate Problem Report
DigiCert: Some CRLs were not updated for a few days
DigiCert · RESOLVED
AI Summary
DigiCert experienced an outage affecting some of their Certificate Revocation Lists (CRLs) due to a misconfiguration in their SSH settings. This led to communication issues between their European CA servers and the CRL publishing server, resulting in expired CRLs. The issue has been resolved, and all CRLs are now up to date. DigiCert has implemented action items to enhance monitoring and prevent similar incidents in the future.
Chronology
- SSH configuration change initiated
- Customer notified of CRL outage
- Full incident report submitted
- All action items completed
Participants
Tim Hollebeek
DigiCert Team
Ben Wilson
External References
Similar Local Cases
DigiCert: Encoded HTML entities in attribute values
DigiCert: Typo in TLS Org Name
DigiCert: 4 CRLs unavailable or not responding
DigiCert: Late incident report for bug 1925106
DigiCert: Incorrect OrgID in S/MIME certificates for one customer
DigiCert: Incorrect CP listed in CCADB
DigiCert: Random value in CNAME without underscore prefix
DigiCert: Domain used for CRLs and OCSP has expired