Add Actalis TLS Root CAs 2025 and Actalis SMIME Root CAs 2025
This case is a request to include four new Actalis root certificates in Mozilla’s root program. The requester states the new roots are intended to progressively replace Actalis’s current hierarchy using up-to-date key material and separating the TLS and S/MIME hierarchies. The four roots are: two TLS roots (one RSA and one ECC) and two S/MIME roots (one RSA and one ECC), each with provided SHA-256 fingerprints and CCADB case reference 00002732. For the TLS roots, the requester asks for EV enablement and provides the EV policy OID 2.23.140.1.1 (CABF EV). The requester also provides download links and test website URLs for the TLS roots, and a link to an attestation letter related to root key generation. The bug remains in ASSIGNED status, with no resolution stated in the thread content provided.
- Actalis submitted a request to include four new TLS and S/MIME root certificates (2025) in Mozilla’s root store.
- Staff representative — Requested inclusion of four new Actalis roots (TLS RSA/ECC and S/MIME RSA/ECC), including EV enablement for the TLS roots, and provided fingerprints, download links, test URLs, and an attestation letter URL.
- Staff representative — Attached demo S/MIME certificates (RSA and ECC) issued by the new S/MIME SubCAs.