← Krajowa Izba Rozliczeniowa S.A. (KIR) cases
Bugzilla #1967929
Certificate Problem Report
KIR: Failed to respond a Certificate Problem Report within 24 hours
RESOLVED
FIXED
Krajowa Izba Rozliczeniowa S.A. (KIR)
AI Summary
Krajowa Izba Rozliczeniowa S.A. (KIR) failed to respond to two Certificate Problem Reports (CPRs) within the required 24-hour timeframe as mandated by Section 4.9.5 of the TLS BRs. The first CPR was sent on May 2, 2025, and the second on May 5, 2025. The delays were attributed to a misclassification of the reports and staffing issues, as key personnel were unavailable due to vacations. KIR has since implemented corrective actions, including updating their problem reporting mechanisms and ensuring proper staffing coverage.
Chronology
- First CPR sent by Chrome Root Program Team.
- Second CPR sent to CA Email Alias.
- Non-compliance identified.
- Preliminary incident report submitted.
- All action items completed.
- Closure report submitted.
Participants
Piotr Grabowski
External References
Similar Local Cases
KIR: Delayed revocation within seven (7) days for bug 1921598
KIR S.A.: CN domain not in SAN
KIR S.A.: Invalid organizationName
KIR S.A.: O > 64 characters
KIR S.A.: Invalid localityName + CRL Revoked but OCSP Unknown
KIR S.A.: Many certificates with OCSP Unknown
KIR S.A.: DV certificates with locality name, organization name and stateOrProvinceName
KIR S.A.: Certificates issued greater than stated in CPS