← Netlock cases
Bugzilla #1819105
Certificate Problem Report
NETLOCK: Disclosed CRL is expired
RESOLVED
FIXED
Netlock
AI Summary
Netlock disclosed an expired Certificate Revocation List (CRL) for its NETLOCK Trust EV CA 3. The CRL had a last update in May 2020 and a next update that was never issued. The issue was identified through a Bugzilla ticket, and while Netlock took steps to address the problem, including redesigning their monitoring systems, delays in incident reporting were noted. Netlock has since implemented new monitoring tools to improve their response times and compliance with incident reporting requirements.
Chronology
- CRL disclosed as expired
- Problem identified and averted by support engineers
- Netlock acknowledged delays in incident reporting
- Review of monitoring system initiated
- Case resolved
Participants
Andrew Ayer
Tamás Horváth
Chris Clements
Ryan Dickson
Ben Wilson
External References
Similar Local Cases
NETLOCK: SSL certificates with OU field
NETLOCK: SSL certificates with OU field - revocation delay
NETLOCK: Invalid CT data in issued certs (SABRE.CT misconfiguration)
NETLOCK: CRL Error on CRL Watch of NETLOCK DVCA CRL
CFCA: Delayed reporting of revocation of an intermediate CA certificate
NetLock: Intermediate CA Certificate Missing from Audit Reports
DigiCert: 4 CRLs unavailable or not responding
NETLOCK: Pre-certificates revoked with certificateHold reason