← Google Trust Services LLC cases
Bugzilla #2032511
Certificate Problem Report
Google Trust Services: Short OCSP outage
RESOLVED
FIXED
Google Trust Services LLC
AI Summary
Google Trust Services experienced a two-hour outage of its OCSP responder service due to an access control configuration error. This incident resulted in HTTP 503 errors for clients requesting certificate status information. The issue was identified through automated monitoring and was resolved by rolling back the configuration change. GTS has since implemented safeguards to prevent similar incidents in the future, including enabling production-critical protections for access groups and conducting audits of related workloads.
Chronology
- Outage starts due to access control misconfiguration.
- GTS alerted to the issue by automated monitoring.
- Outage resolved by restoring correct permissions.
- Final incident report submitted and action items completed.
Participants
Google Trust Services
External References
Similar Local Cases
Google Trust Services: Missing authorization audit log entry for certificate issuance
Google Trust Services: Self-audit tooling MPIC perspective verification inconsistency
Google Trust Services: Failure to properly validate IP address
Google Trust Services: Incorrect OCSP responses for new ICAs under test
Google Trust Services: Outdated BR version in some validation records
Google Trust Services: OCSP serving issue 2020-04-09
Google Trust Services: Inconsistent MPCAA secondary perspective logging
Google Trust Services: Improper OCSP response for intermediate certificate