← Krajowa Izba Rozliczeniowa S.A. (KIR) cases
Bugzilla #1966006 Policy Compliance

KIR: Intermediate CA - SZAFIR Trusted CA3 - revocation status not changed in CCADB

RESOLVED FIXED Krajowa Izba Rozliczeniowa S.A. (KIR)
AI Summary

Krajowa Izba Rozliczeniowa S.A. (KIR) faced an incident where the revocation status of the subordinate CA certificate SZAFIR Trusted CA3 was not updated in the CCADB within the required 7-day timeframe after its revocation on March 5, 2025. This non-compliance was identified by the Chrome Root Program Team on May 9, 2025, leading to a series of internal reviews and updates to KIR's operational procedures. KIR has since implemented corrective actions, including training for the WebPKI team and regular reviews of CCADB entries to prevent future occurrences.

Model: gpt-4o-mini Generated: 2026-06-13 21:16 UTC Confidence: 0.90
Chronology
  1. Revocation of SZAFIR Trusted CA3 certificate.
  2. Expected CCADB disclosure deadline.
  3. Non-compliance identified by Chrome Root Program Team.
  4. Correct status set in CCADB.
  5. Operational procedure updated for CCADB disclosures.
  6. Regular review process for CCADB entries established.
  7. All action items completed.
Participants
Waldemar Brzozowski
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
#1921595 RESOLVED Policy Compliance Opened 2024-09-28 · 50% similar
KIR: Intermediate CA - SZAFIR Trusted CA4 - Certificate Policies extension - non-compliance
#1705904 RESOLVED Policy Compliance Opened 2021-04-17 · Closed 2023-02-22 · 49% similar
KIR S.A.: CP/CPS contains noncompliant DV method, does not specify CAA domains
#1525082 RESOLVED Policy Compliance Opened 2019-02-04 · Closed 2022-11-14 · 48% similar
Ernst & Young Poland: KIR OCSP "unknown" status for revoked certificate
#2013400 RESOLVED Policy Compliance Opened 2026-01-29 · Closed 2026-04-17 · 44% similar
NETLOCK: did not file a preliminary incident report or respond to a third-party report within the 72-hour timeframe
#1586787 RESOLVED Policy Compliance Opened 2019-10-07 · Closed 2023-02-22 · 44% similar
Actalis: Issuance of intermediates after 2019-01-01 that do not comply with Mozilla Policy
#1956681 RESOLVED Policy Compliance Opened 2025-03-27 · Closed 2025-05-08 · 43% similar
Entrust: Cross-certified CA CP/CPS not updated in CCADB
#2031164 RESOLVED Policy Compliance Opened 2026-04-12 · Closed 2026-05-29 · 42% similar
Google Trust Services: Incomplete CRL Distribution Point URLs in CCADB for GTS Roots
#2025917 RESOLVED Policy Compliance Opened 2026-03-24 · Closed 2026-05-18 · 42% similar
IdenTrust: Full Incident Report for bug 2016585 was not published within 14 days of discovering the issue

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action