← Actalis cases
Bugzilla #1887941
Certificate Problem Report
Actalis: revocation delay for certificates issued with invalid RDN Order
RESOLVED
FIXED
Actalis
AI Summary
Actalis experienced a delay in revoking 263 mis-issued EV certificates due to internal process inefficiencies. After confirming the mis-issuance on March 11, 2024, the revocation was completed by March 15, 2024, but not within the required timeframe as outlined in the Baseline Requirements. The incident prompted a review of their incident management processes, resulting in successful implementation of action items aimed at preventing future occurrences.
Chronology
- Received email reporting potential issue with EV certificate
- Confirmed mis-issuance and decided to revoke affected certificates
- All affected certificates revoked
- Deadline for action items completion
Participants
Marco Menonna
R. Daurne
B. Wilson
External References
Similar Local Cases
Actalis: two CAs with the same CRLDP
Actalis: inaccurate value in stateOrProvinceName
Actalis: CRL with duplicate serial number in revokedCertificates
Actalis: Use of CRLReason Code in Certificate Revocation
Actalis: CRL distribution point with ldap scheme
Actalis: Failure to revoke certs within the BR required timeframe
Netlock: CA in AIA in PEM format
Certigna: Revocation delay for TLS certificates with basic constraint not marked as critical