← SwissSign AG cases
Bugzilla #1990272
Technical Compliance
SwissSign: recommendation on backup testing
RESOLVED
FIXED
SwissSign AG
AI Summary
The audit report for SwissSign recommended enhancements to their backup testing procedures, specifically to include full restore tests rather than just partial restores. This recommendation was made to ensure the effectiveness of backup and restore controls in compliance with ETSI EN 319 401. SwissSign has since updated their procedures and completed the necessary action items, confirming their commitment to maintaining robust backup practices. The case is now resolved, with all action items completed and ongoing monitoring for community feedback.
Chronology
- Audit report containing recommendation published
- Action item completed and reviewed by auditors
Participants
Sandy Balzer
External References
Similar Local Cases
SwissSign: recommendation on synchronization of staging and production environments
PKIoverheid: TSP CIBG Findings in 2025 ETSI Audit - Incident Report #6 – Access Control Management
PKIoverheid: TSP KPN Findings in 2025 ETSI Audit - Incident Report #10 – Firewall Rules and Review
Sectigo: Late termination of privileged access to Certificate Systems
Visa: Non-BR-Compliant OCSP Responders
Entrust: Non-BR-Compliant OCSP Responder
Firmaprofesional: Non-BR-Compliant OCSP Responders
Amazon Trust Services: CRL not DER-encoded