← Entrust cases
Bugzilla #1968246 Self Reported Incident

Entrust: Incomplete privileged access removal within 24 hours

RESOLVED FIXED Entrust
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

Entrust reported a compliance incident it discovered during a quarterly access review. The incident was that, on 2025-05-21, one infrastructure personnel’s privileged access to Certificate Systems was only partially disabled within 24 hours after termination of employment. Entrust cited Network and Certificate System Security Requirements Version 1.7, Section 2.l, which requires disabling all privileged access to Certificate Systems within 24 hours upon termination. Entrust stated that no certificates were impacted and that issuance was not stopped because the still-active privilege enabled an out-of-band network management application that did not provide access to any certificate issuance system. Entrust completed access removal on 2025-05-21 and reviewed audit logs to confirm no unauthorized access occurred. In its report closure summary, Entrust described remediation including updating the de-registration process to explicitly detail privileges to be removed, requiring an additional review by a second trusted role, and reviewing trusted role access monthly. The bug is marked RESOLVED with resolution FIXED.

Model: gpt-5.4-nano Generated: 2026-06-13 21:43 UTC Revised: 2026-06-16 18:59 UTC Confidence: 0.90 7 comments
Chronology
  1. Non-compliance period began when a departing trusted role privilege was held for an out-of-band network management application.
  2. Entrust discovered during a quarterly access review that privileged access to Certificate Systems was not fully disabled within 24 hours after termination; access removal was completed the same day.
  3. Entrust posted the full incident report describing impact, root causes, and remediation.
  4. Entrust requested closure after completing action items described in the incident report.
Thread Activity
  1. Entrust representative — Posted a preliminary incident report stating Entrust discovered during a quarterly access review that one infrastructure personnel’s privileged access to Certificate Systems was only partially disabled within 24 hours after termination.
  2. Entrust representative — Noted that the final incident report was being drafted and would be posted no later than 2025-06-04.
  3. Entrust representative — Posted the full incident report, stating CA CCADB unique ID A011701, that total certificates impacted was 0, and that no unauthorized access occurred per audit log review.
  4. Entrust representative — Indicated monitoring and that closure would be requested if there were no further comments.
  5. Entrust representative — Provided a report closure summary with remediation steps (explicit de-registration privileges, second trusted-role review, monthly trusted role access review) and requested closure.
  6. CCADB representative — Issued a final call for comments and stated the incident report would be closed around 2025-07-01.
Participants
Entrust representative CCADB representative
External References
Related Bugzilla IDs Mentioned
Similar Local Cases
#1894111 RESOLVED Ca Documents Self Reported Incident Opened 2024-04-29 · Closed 2025-01-22 · 89% similar
Entrust: Not updating CPR Problem Reporting Mechanism fields in CCADB
#1921387 RESOLVED Self Reported Incident Opened 2024-09-27 · Closed 2025-03-18 · 89% similar
Entrust: Improperly Verified Business Category
#1867130 RESOLVED Self Reported Incident Opened 2023-11-28 · Closed 2024-05-10 · 88% similar
Entrust: Jurisdiction Locality Wrong in EV Certificate
#1952635 RESOLVED Self Reported Incident Opened 2025-03-08 · Closed 2025-08-11 · 87% similar
Entrust: Missing or Inconsistent Disclosure of S/MIME BR Audits
#1897630 RESOLVED Self Reported Incident Opened 2024-05-19 · Closed 2024-08-15 · 86% similar
Entrust: Jurisdiction issue in some EV TLS & Code Signing certificates
#1448986 RESOLVED Self Reported Incident Opened 2018-03-26 · Closed 2023-02-22 · 86% similar
Entrust: IP Address in dNSName form
#1879602 RESOLVED Security Incident Self Reported Incident Opened 2024-02-09 · Closed 2024-07-19 · 85% similar
Entrust: OCSP response signed with SHA-1
#1914999 RESOLVED Self Reported Incident Opened 2024-08-26 · Closed 2025-02-28 · 80% similar
Entrust: S/MIME OrgID Country not matching C field

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action