← IdenTrust Services, LLC cases
Bugzilla #1850807 Policy Compliance

IdenTrust: basicConstraints not flagged "Critical" Per Certification Practices Statement

RESOLVED FIXED IdenTrust Services, LLC
AI Summary

IdenTrust Services, LLC identified a compliance issue where 1187 EV TLS certificates had the 'basicConstraints' extension present but not marked as critical, violating their TrustID Certification Practices Statement (CPS). The issue was discovered during a routine review on August 28, 2023, and corrective actions were implemented by August 29, 2023, including updating the certificate profile to prevent further misissuance. Affected customers were notified, and a full incident report was promised by September 15, 2023. The case has since been resolved with no outstanding remediation items.

Model: gpt-4o-mini Generated: 2026-06-13 21:19 UTC Confidence: 1.00
Chronology
  1. Compliance issue discovered during routine review.
  2. Certificate profile updated to prevent further misissuance.
  3. Full incident report promised to be disclosed.
  4. Bug confirmed for closure.
Participants
roots@identrust.com bwilson@mozilla.com
External References
Similar Local Cases
#1817023 RESOLVED Policy Compliance Opened 2023-02-15 · Closed 2024-05-09 · 51% similar
Microsoft PKI Services: Failure to modify policy documents within 365 days
#2025913 RESOLVED Policy Compliance Opened 2026-03-24 · Closed 2026-05-18 · 50% similar
IdenTrust: Full Incident Report for Bug 2014609 was not published within 14 days of discovering the issue
#1542082 RESOLVED Policy Compliance Opened 2019-04-04 · Closed 2023-02-22 · 50% similar
IdenTrust: Failure to disclose Unconstrained intermediate Within 7 Days
#2025917 RESOLVED Policy Compliance Opened 2026-03-24 · Closed 2026-05-18 · 49% similar
IdenTrust: Full Incident Report for bug 2016585 was not published within 14 days of discovering the issue
#2025914 RESOLVED Policy Compliance Opened 2026-03-24 · Closed 2026-05-18 · 49% similar
IdenTrust: Full Incident Report for bug 2014610 was not published within 14 days of discovering the issue
#1658995 RESOLVED Policy Compliance Opened 2020-08-13 · Closed 2024-05-09 · 49% similar
Microsoft PKI Services: Firewall log data retention
#1649502 RESOLVED Policy Compliance Opened 2020-06-30 · Closed 2023-02-22 · 48% similar
Firmaprofesional: 2020 Audit Report Finding 1 out of 4
#1923279 RESOLVED Policy Compliance Opened 2024-10-08 · Closed 2025-03-17 · 48% similar
iTrusChina: lacking 2018 KGC and GAP period audit report

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action