← DigiCert cases
Bugzilla #1654967 · Self Incident Disclosure

DigiCert: Malformed ICA

DigiCert · RESOLVED
AI Summary

DigiCert reported a significant incident involving the issuance of intermediate CA certificates that did not comply with Mozilla's baseline requirements. The issue was identified during a post-issuance review, revealing that several ICAs lacked necessary extensions and contained improper profiles. Following the discovery, DigiCert halted all new certificate ceremonies until automation improvements were implemented to prevent future occurrences.

Model: gpt-4o-mini Generated: 2026-06-13 11:39 UTC Confidence: 0.95
Chronology
  1. Incident reported and initial investigation began.
  2. Additional checks and improvements to ICA process discussed.
  3. Updated incident report requested.
  4. Public Key Ceremony completed with new automation tool.
Participants
Martin Sullivan Jeremy Rowley Ryan Sleevi Rob Stradling
External References
Similar Local Cases
#1649951 RESOLVED Certificate Problem Report Opened 2020-07-02 · Closed 2023-02-22 · 39% similar
DigiCert: Incorrect OCSP Delegated Responder Certificate
#1593814 RESOLVED Certificate Problem Report Opened 2019-11-04 · Closed 2023-02-22 · 35% similar
DigiCert: & character in a printableString in ICA

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action