← DigiCert cases
Bugzilla #1925106 Certificate Problem Report

DigiCert: Incorrect CP listed in CCADB

CLOSED DigiCert
AI Summary

DigiCert reported an incident involving the incorrect disclosure of a Certificate Policy (CP) for Apple-operated subordinate CAs in the Common CA Database (CCADB). The CP field incorrectly pointed to Apple's private CP instead of the appropriate public trust CP. This issue persisted for several years until it was identified in October 2024. DigiCert has since updated the CP field to reflect the correct policy documents and is working with Apple to ensure compliance with CCADB policies moving forward.

Model: gpt-4o-mini Generated: 2026-06-13 11:45 UTC Confidence: 0.90
Chronology
  1. Sectigo notified DigiCert about the incorrect CP in CCADB.
  2. DigiCert acknowledged the incident and began investigating.
  3. Apple published its combined CP/CPS.
  4. DigiCert updated CCADB entries to reflect the new CP/CPS.
Participants
Tim Hollebeek Ben Wilson Rob Stradling Martijn Katerbarg
External References
Similar Local Cases
#1896462 RESOLVED Certificate Problem Report Opened 2024-05-13 · Closed 2024-06-01 · 67% similar
Digicert: Preview certificate uploaded to CCADB instead of the actual certificate
#1936908 RESOLVED Certificate Problem Report Opened 2024-12-12 · Closed 2025-03-18 · 65% similar
DigiCert: Encoded HTML entities in attribute values
#1910322 RESOLVED Certificate Problem Report Opened 2024-07-29 · Closed 2025-06-18 · 65% similar
DigiCert: Random value in CNAME without underscore prefix
#1937210 RESOLVED Certificate Problem Report Opened 2024-12-13 · Closed 2025-02-28 · 64% similar
DigiCert: Late incident report for bug 1925106
#1910258 RESOLVED Certificate Problem Report Opened 2024-07-27 · Closed 2025-01-29 · 64% similar
DigiCert: Typo in TLS Org Name
#1932994 RESOLVED Certificate Problem Report Opened 2024-11-23 · Closed 2025-02-12 · 63% similar
DigiCert: Some CRLs were not updated for a few days
#1800756 RESOLVED Certificate Problem Report Opened 2022-11-15 · Closed 2023-02-22 · 60% similar
Sectigo: Failure to revoke ECC certificates with non-DER encoded keyUsage within 5 days
#1891531 RESOLVED Certificate Problem Report Opened 2024-04-15 · Closed 2024-05-02 · 58% similar
Digicert: Government Entity listed instead of registration number

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action