← D-TRUST cases
Bugzilla #1896190
Certificate Problem Report
D-Trust: Issuance of an EV certificate containing a mixup of the Subject's postalCode and localityName
RESOLVED
FIXED
D-TRUST
AI Summary
D-Trust issued an EV certificate with a mix-up between the Subject's postalCode and localityName, which was reported by a third party. The affected certificate was revoked within the required 5-day period. The issue arose during the application process and was not detected by validation specialists due to the use of free text fields in the application form. D-Trust has since implemented a postcode check and conducted training for validation specialists to prevent similar issues in the future.
Chronology
- Third party reported certificate problem
- Affected certificate revoked
- Extended postcode check implemented
Participants
Enrico Entschew
External References
Similar Local Cases
D-Trust: Missed Revocation of TLS certificates affected by Bugzilla 1884714
D-TRUST: syntax error in one tls certificate
D-Trust: QCStatement with http link of PKI Disclosure Statements
D-TRUST: EV certificates with incorrectly used businessCategory entry
D-TRUST: Private Key Disclosed by Customer as Part of CSR
D-Trust: "unknown" OCSP response for issued certificates
D-TRUST: Precertificate OU > 64 Characters
D-TRUST: incorrectly formatted businessCategory entry