← Chunghwa Telecom cases
Bugzilla #1959278 Delayed Revocation

Chunghwa Telecom: Delayed revocation for bug 1951415

RESOLVED FIXED Chunghwa Telecom
AI Summary

Chunghwa Telecom (CHT) reported a delayed revocation incident involving four TLS certificates that were not revoked within the required 24-hour period as specified by TLS BR 4.9.1.1 Item 5. This delay was attributed to a misunderstanding of the relevant policies and the timing of the incident coinciding with a holiday, which complicated customer communication. CHT has since completed the revocation of the affected certificates and implemented measures to enhance compliance with TLS requirements, including retraining staff and improving subscriber communication.

Model: gpt-4o-mini Generated: 2026-06-13 21:33 UTC Confidence: 1.00
Chronology
  1. Non-compliance start date
  2. Non-compliance identified date
  3. Non-compliance end date
  4. Preliminary Incident Report submitted
  5. Report Closure Summary submitted
Participants
Tsung-Min Kuo
Related Bugzilla IDs Mentioned
Similar Local Cases
#2009048 RESOLVED Delayed Revocation Opened 2026-01-07 · Closed 2026-02-19 · 58% similar
Chunghwa Telecom: Delayed disclosure to Bug 2008803 GTLSCA Audit Incident Report #4 - Missing evaluation for third parties
#2009045 RESOLVED Delayed Revocation Opened 2026-01-07 · Closed 2026-02-19 · 58% similar
Chunghwa Telecom: Delayed disclosure to Bug 2008788 GTLSCA Audit Incident Report #2 - Domain validation records without the TLS BR version
#1892419 RESOLVED Delayed Revocation Opened 2024-04-19 · Closed 2025-02-12 · 51% similar
Chunghwa Telecom: Delayed Revocation Due to GTLSCA EKU Misissuance
#1903066 RESOLVED Delayed Revocation Opened 2024-06-17 · Closed 2025-02-12 · 51% similar
Chunghwa Telecom: Delayed Revocation with Controversial Extension (2.5.29.9, SubjectDirectoryAttributes)
#1872738 RESOLVED Delayed Revocation Opened 2024-01-02 · Closed 2025-02-14 · 46% similar
Buypass: Delayed revocation of TLS certificates
#1889062 RESOLVED Delayed Revocation Opened 2024-04-02 · Closed 2025-04-03 · 44% similar
GDCA: Delayed revocation of SSL/TLS certificates with Non-critical Basic Constraints
#1804753 RESOLVED Delayed Revocation Opened 2022-12-08 · Closed 2023-04-19 · 43% similar
Entrust: Delayed Revocation for EV TLS Certificate incorrect jurisdiction
#1877388 RESOLVED Delayed Revocation Opened 2024-01-30 · Closed 2025-03-14 · 43% similar
Telekom Security: Revocation delay for TLS certificates with basicConstraints not marked as critical

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action