← D-TRUST cases
Bugzilla #2009149 Incident

D-Trust: Expired certificate provided on the CA TLS test website for demonstration of valid certificates

RESOLVED FIXED D-TRUST
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

D-Trust received a report that a TLS test website was serving an expired certificate. This incident was triggered by a third-party report and was linked to a misinterpretation of policy during a rollover transition, which led to an operational issuance stop. D-Trust restored valid certificates on the test website on January 15, 2026, and implemented a new validation process for policy updates to prevent future occurrences. The incident report was completed and is now resolved.

Model: gpt-4o-mini Generated: 2026-06-13 21:33 UTC Revised: 2026-06-16 18:48 UTC Confidence: 0.85 18 comments
Chronology
  1. Expired certificate served on the test website.
  2. Non-compliance identified after third-party report.
  3. Valid certificates restored on the test website.
Thread Activity
  1. D-Trust — Preliminary incident report received regarding expired certificate.
  2. D-Trust — Full incident report detailing timeline and root cause analysis.
  3. Bdr representative — Closure report summary provided, detailing remediation and commitments.
Participants
D-Trust Google representative Bdr representative Community commenter CCADB representative
External References
Similar Local Cases
#1976837 RESOLVED Incident Opened 2025-07-11 · Closed 2025-08-19 · 100% similar
D-Trust: Defective certificate incident reporting form
#2010600 RESOLVED Incident Opened 2026-01-15 · Closed 2026-02-27 · 100% similar
D-Trust: CRLs of CAs issuing CA certificates exceed the maximum validity period
#2007116 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Externally Reported Incident Opened 2025-12-19 Still Open · 93% similar
D-Trust: CRL URL Disclosure
#1682270 RESOLVED Ca Certificate Compliance Incident Closure Request Opened 2020-12-14 · Closed 2026-06-12 · 87% similar
D-TRUST: Private Key Disclosed by Customer as Part of CSR
#2037000 ASSIGNED Self Reported Incident Certificate Misissuance Problem Reporting Failure Opened 2026-05-05 Still Open · 86% similar
D-Trust: Missing Pre-Sign Linting for S/MIME Issuing CAs
#2009491 RESOLVED Ca Certificate Compliance Incident Self Reported Incident Repository Issue Opened 2026-01-09 · Closed 2026-02-17 · 78% similar
DigiCert: Several non-functioning AIA URLs
#2004732 RESOLVED Ca Certificate Compliance Incident Opened 2025-12-08 · Closed 2026-01-05 · 76% similar
Certigna: AIA CA issuer field pointing to PEM encoded cert
#2014590 RESOLVED Self Reported Incident Incident Opened 2026-02-04 · Closed 2026-04-23 · 75% similar
IdenTrust: Unauthorized OCSP responses for cross-signed roots

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action