← DigiCert cases
Bugzilla #2009491
Certificate Problem Report
DigiCert: Several non-functioning AIA URLs
RESOLVED
DigiCert
AI Summary
DigiCert identified several non-functioning AIA URLs in webPKI TLS certificates that returned 404 errors. The issue affected a total of 30 URLs across various certificate types, including TLS and S/MIME. The root cause was a missed manual upload step during CA creation, compounded by a lack of automation for URL validation. All affected URLs were remediated promptly, and DigiCert is implementing ongoing checks to prevent future occurrences.
Chronology
- External report received reporting two nonfunctioning AIA URLs
- Verification that affected AIA republished
- Closure Summary planned to be posted
Participants
DigiCert
chrome-root-program@google.com
rob@sectigo.com
External References
Similar Local Cases
DigiCert: DCV logging issue
DigiCert: Some certificates issued with CRLDPs that don’t exactly match CCADB disclosures
DigiCert: Subject Serial Numbers for Non-Commercial Entities
DigiCert: Re-use of WHOIS validation shortly after deadline
DigiCert: inconsistent revocation / OCSP / CRL behavior
DigiCert: Incorrect Org ID Scheme in S/MIME
DigiCert: Non-BR Compliant Certificates - missing CP/CPS OID
Digicert: SMIME certs missing State in Org ID