← DigiCert cases
Bugzilla #1891531 · Certificate Problem Report
Digicert: Government Entity listed instead of registration number
DigiCert · RESOLVED
AI Summary
DigiCert identified a mis-issuance of a TLS certificate that incorrectly listed 'Government Entity' instead of the required registration number. Following a report received on April 13, 2024, the company conducted an investigation, which revealed that 27 certificates were affected. DigiCert has since revoked the incorrect certificates and removed 'Government Entity' as an option for validation from the KVK source to prevent future occurrences.
Chronology
- Received report of mis-issued certificate
- Revocation notices sent for affected certificates
- Final list of impacted certificates obtained
- Bug closed
Participants
Jeremy Rowley
Ben Wilson
External References
Similar Local Cases
Digicert: SMIME certificate with unvalidated information
DigiCert: Truncation of Registration Number
DigiCert: Certificate Issues Identified on the Mailing List
DigiCert: Random value in CNAME without underscore prefix
Digicert: Preview certificate uploaded to CCADB instead of the actual certificate
DigiCert / InfoCert: Insufficient Serial Number Entropy
DigiCert: Failure to revoke key-compromised certificates within 24 hours
DigiCert: Entity not verified in organizationalUnitName