← certSIGN cases
Bugzilla #1924497
Certificate Problem Report
certSIGN: Missing certificate from the list of bad order subject attributes
RESOLVED
FIXED
certSIGN
AI Summary
certSIGN reported an issue regarding a missing certificate from a list of certificates with incorrect subject attribute order. This oversight was due to a delay in the linter's response for one certificate, which was not included in the initial report. Fortunately, the affected certificate had already expired, resulting in no impact on clients. The root cause was identified as a human error in monitoring the linter's output, leading to the implementation of improved technical controls and internal training to prevent future occurrences.
Chronology
- Issue reported by Ryan Dickson
- Bug opened in Bugzilla
- Updated script with pkimetal linter deployed
- Closure summary provided
Participants
Gabriel PETCU
Ryan Dickson
Dimitris Zacharopoulos
Wayne
Ben Wilson
External References
Similar Local Cases
certSIGN: delay in updating a Bugzilla ticket
certSIGN: Certificates with incorrect Subject attribute order
certSIGN: certificates with delayed SCT signature
certSIGN: Findings in 2025 ETSI Audit - Audit Incident Report #4 – Expired cert with bad order of attributes
Izenpe: Not allowed Qualifier ID OID on Certificate Policies extension of Precertificates
certSIGN: Incorrect data in stateOrProvinceName
certSIGN: Delayed revocation
Telekom Security: CRL-Entries with wrong CRL Reason Codes