← eMudhra Technologies Limited cases
Bugzilla #1931683
Certificate Problem Report
eMudhra emSign PKI Services : Key Blocking Mechanism Fails to Validate Historical Public Key Reuse.
RESOLVED
FIXED
eMudhra Technologies Limited
AI Summary
eMudhra Technologies Limited faced an issue with their key blocking mechanism, which failed to validate previously issued certificates that used public keys revoked for 'Key Compromise.' This oversight affected three certificates, leading to their revocation after identification by the Google team. eMudhra has since implemented corrective actions, including retroactive validation of public key history and enhanced controls across all issuance channels. The incident has been resolved, and eMudhra is committed to maintaining high security standards.
Chronology
- Key blocking mechanism implemented.
- Issue reported by Google team.
- ACME ARI adopted for improved automation.
- Closure summary submitted.
Participants
Naveen Kumar ML
Ben Wilson
External References
Similar Local Cases
eMudhra emSign PKI Services : Issue with revocation as part of automated reissuance
eMudhra emSign PKI Services: CA Certificates not published in DER Encoded Format
eMudhra emSign PKI Services: Policy Document Inconsistency
eMudhra: Invalid CRL signatures
eMudhra emSign PKI Services : OCSP Responder Time Inconsistency
eMudhra: Delayed Publication of Issuing CA Certificates In CCADB
eMudhra: Failure to respond to a Problem Report within 24 hours
iTrusChina: CRL Reason Codes