← Netlock cases
Bugzilla #2001327
Certificate Problem Report
NETLOCK: Missing CDP Disclosure in CCADB
RESOLVED
FIXED
Netlock
AI Summary
NETLOCK received a report indicating that a CA certificate lacked the required CRL Distribution Points (CDP) disclosure in the CCADB. An internal investigation confirmed that while the certificate contained a valid CDP extension, this information was not accurately reflected in the CCADB metadata due to a disclosure workflow omission. NETLOCK has since revoked four affected CA certificates and implemented measures to prevent future occurrences, including a mandatory checklist for CCADB submissions.
Chronology
- Non-compliance begins with CA certificate validity.
- Non-compliance detected.
- Revocation of all affected CA certificates completed.
Participants
Roland Kaluha
Community Members
External References
Similar Local Cases
Netlock: unspecifed revocation code (0) in CRL
Netlock: CA in AIA in PEM format
NETLOCK: Unavailability of the document repository
NETLOCK: CPR was not responded to in 24 hours
NETLOCK: SSL certificates with OU field
NETLOCK: SSL certificates with OU field - revocation delay
NETLOCK: CRL Error on CRL Watch of NETLOCK DVCA CRL
NetLock: Non-BR-Compliant Certificate Issuance -- * in not the leftmost position in dnsName