← Krajowa Izba Rozliczeniowa S.A. (KIR) cases
Bugzilla #1967929 Incident

KIR: Failed to respond to a Certificate Problem Report within 24 hours

RESOLVED FIXED Krajowa Izba Rozliczeniowa S.A. (KIR)
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

This case concerns KIR’s failure to provide a preliminary response within 24 hours after receiving Certificate Problem Reports, as required by TLS BR section 4.9.5. The reports were sent by the Chrome Root Program Team on 2025-05-02 and 2025-05-05 to KIR contact points disclosed in CCADB. KIR said the first report went to a general webform that routed to a standard queue, and the second went to a CA email alias that included staff who were on vacation. KIR later filed a preliminary incident report, then a full incident report, and described remediation steps including a dedicated CPR email address, updated CCADB contact details, and an internal procedure for quarterly checking email group addresses. The bug was resolved as FIXED, and the thread later notes that all action items were completed and a closure report was submitted.

Model: gpt-5.4-mini Generated: 2026-06-13 21:17 UTC Revised: 2026-06-17 20:14 UTC Confidence: 0.98 14 comments
Chronology
  1. A CPR was sent to KIR’s CCADB-listed problem reporting mechanism.
  2. A CPR was sent to KIR’s CCADB-listed CA email alias.
  3. KIR submitted a preliminary incident report.
  4. KIR submitted a full incident report.
  5. KIR submitted a closure report stating all action items were completed.
Thread Activity
  1. Kir representative — KIR filed a preliminary incident report saying it failed to respond within the TLS BR 4.9.5 timeframe.
  2. Kir representative — KIR filed the full incident report with timeline, impact, root cause analysis, and related incidents.
  3. Kir representative — KIR said all action items were completed and listed the completed remediation steps.
  4. CCADB representative — CCADB requested a closure report if the case was ready for closure.
  5. Kir representative — KIR submitted a report closure summary and requested closure.
  6. CCADB representative — CCADB issued a final call for comments or questions before closure.
Participants
Kir representative Community commenter CCADB representative
Similar Local Cases
#2041774 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Repository Issue Opened 2026-05-22 · Closed 2026-08-13 · 85% similar
OATI: AIA CA Issuer field pointing to PEM encoded cert
#2047952 RESOLVED Ca Certificate Compliance Incident Externally Reported Incident Problem Reporting Failure Opened 2026-06-16 · Closed 2026-08-04 · 78% similar
KIR: OCSP responder does not return status for precertificate
#2032468 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Certificate Misissuance Opened 2026-04-16 · Closed 2026-08-09 · 76% similar
VISA: Misissuance detected by PKIMetal
#2055539 RESOLVED Problem Reporting Failure Incident Externally Reported Incident Revocation Issue Opened 2026-07-16 · Closed 2026-08-11 · 70% similar
DigiCert: Delayed availability of OCSP responses
#2052541 ASSIGNED Problem Reporting Failure Incident Externally Reported Incident Opened By Ca Opened 2026-07-03 Still Open · 70% similar
NETLOCK: Failure to Respond to a Certificate Problem Report Within 24 Hours
#2050274 RESOLVED Incident Ccadb Disclosure Issue Problem Reporting Failure Remediation Tracking Opened 2026-06-24 · Closed 2026-08-04 · 70% similar
FNMT: Delay in incident disclosure reporting for Bug 2049012
#2054464 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Problem Reporting Failure Opened 2026-07-13 · Closed 2026-08-17 · 69% similar
CFCA: Delayed response to CPR-related email related with bug 2049179
#2049179 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Problem Reporting Failure Opened 2026-06-21 · Closed 2026-08-04 · 69% similar
CFCA: OCSP Service return unauthorized responses

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action