Sectigo: Intermittent OCSP unauthorized responses for certificates older than 15 minutes
Sectigo reported an incident involving intermittent OCSP unauthorized responses for certificates issued more than 15 minutes prior, which violates the TLS Baseline Requirements. The issue was identified on February 8, 2025, when users began experiencing unauthorized responses for several certificates. Sectigo's preliminary investigation indicated a replication delay in their database replicas as the root cause. They implemented changes to their OCSP infrastructure, which resolved the immediate availability issue. A full incident report was provided, detailing the root cause and remediation steps taken, including improvements to documentation and alerting systems. The incident was resolved, and all action items were completed by May 2025.
- Sectigo identified intermittent OCSP unauthorized responses for multiple certificates.
- Sectigo completed all action items related to the incident.
- Community commenter — Reported OCSP unauthorized responses for several Sectigo certificates.
- Sectigo — Acknowledged the report and began investigating the issue.
- Sectigo — Identified the cause as a replication delay in database replicas.
- Sectigo — Provided a report closure summary detailing the incident and remediation.