← DigiCert cases
Bugzilla #1845634 · Certificate Problem Report
DigiCert: TLS certificates with incorrect policy OID
DigiCert · RESOLVED
AI Summary
DigiCert identified an issue with TLS certificates incorrectly labeled with an Individual Validation (IV) policy OID instead of Organization Validation (OV). This was discovered during an internal audit and led to a review of affected certificates. The CA has since patched the underlying system bug and revoked the impacted certificates, ensuring compliance moving forward.
Chronology
- Issue discovered during internal linter updates.
- Compliance team confirmed mislabeling and initiated corrective actions.
- Certificates scheduled for revocation.
- All certificates revoked and remediation completed.
Participants
Martin Sullivan
External References
Similar Local Cases
DigiCert: Sub CA with EV OIDs without audit report
Digicert: SMIME certs missing State in Org ID
DigiCert: OCSP responder returning invalid responses
DigiCert: Inconsistent validation information
DigiCert: 4 CRLs unavailable or not responding
DigiCert: Incorrect OCSP Delegated Responder Certificate
DigiCert: Incorrect RegNumber-Org Type combination
DigiCert: Incorrect OrgID in S/MIME certificates for one customer