NETLOCK: CA/Browser Forum TLS BR Non-compliance
NETLOCK reported a compliance issue involving an expired TLS certificate served on its designated test website, https://valid.ev.tanusitvany.hu/. The incident was triggered by a community report on April 21, 2025, which highlighted that the expired certificate violated CA/Browser Forum TLS Baseline Requirements. NETLOCK acknowledged the non-compliance, attributed it to an under-configured monitoring system during a transition to automated workflows, and took corrective actions. A new valid certificate was issued and deployed by April 28, 2025. The CA has since implemented enhanced monitoring and operational responsibilities to prevent future occurrences.
- Certificate for the test website expired.
- Community member reported the expired certificate.
- New valid certificate issued and deployed.
- Netlock — Opened a preliminary incident report regarding the expired certificate.
- Netlock — Submitted a full incident report detailing the compliance failure.
- Netlock — Provided an update on the implementation of monitoring systems.
- Netlock — Submitted an incident closure summary confirming all action items were completed.