← LAWtrust cases
Bugzilla #1959721 Policy Compliance

Lawtrust: The S/MIME CA’s policy identifiers did not align with the CA/Browser Forum Requirements.

RESOLVED FIXED LAWtrust
AI Summary

The incident involved LAWtrust's S/MIME CA, where policy identifiers did not align with the CA/Browser Forum Requirements. This misalignment was identified during an audit, leading to the issuance of 12 internal test certificates that were not compliant. The CA team misinterpreted the requirements, resulting in incorrect Distinguished Name (DN) configurations. Following the identification of the issue, all affected certificates were revoked, and corrective measures were implemented, including updates to the certificate profiles and internal training to ensure compliance with the S/MIME Baseline Requirements.

Model: gpt-4o-mini Generated: 2026-06-13 21:11 UTC Confidence: 0.90
Chronology
  1. First S/MIME Test Certificate pair issued.
  2. Non-compliance identified regarding policy identifiers.
  3. All affected certificates revoked.
  4. Closure report submitted.
Participants
Marcile De Waal Malcolm Doody Martijn Katerbarg Taro Yamada
External References
Similar Local Cases
#1823723 RESOLVED Policy Compliance Opened 2023-03-21 · Closed 2023-04-05 · 47% similar
Sectigo: Incomplete Subscriber Agreement provisions
#1942651 RESOLVED Policy Compliance Opened 2025-01-20 · Closed 2025-02-14 · 47% similar
Sectigo / SSL.com: Late disclosure of updated SSL.com CP/CPS to CCADB
#1942651 RESOLVED Policy Compliance Opened 2025-01-20 · Closed 2025-02-14 · 47% similar
Sectigo / SSL.com: Late disclosure of updated SSL.com CP/CPS to CCADB
#1650910 RESOLVED Policy Compliance Opened 2020-07-06 · Closed 2023-02-22 · 43% similar
DigiCert: Inconsistent EV audits
#1680378 RESOLVED Policy Compliance Opened 2020-12-02 · Closed 2023-02-22 · 43% similar
NetLock: Replacement of enduser certificates after the EVGL 1.7.4 self-audit
#1979287 RESOLVED Policy Compliance Opened 2025-07-25 · Closed 2025-08-30 · 43% similar
NETLOCK: Expired Test Website Certificate
#1530971 RESOLVED Policy Compliance Opened 2019-02-27 · Closed 2023-02-22 · 43% similar
HARICA: P-384,ecdsa-with-SHA256 Certificates
#1887753 RESOLVED Policy Compliance Opened 2024-03-25 · Closed 2024-07-12 · 42% similar
Entrust: Delay in Updating CPS

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action