← HARICA cases
Bugzilla #2049237 Problem Reporting Failure

HARICA: Continued issuance and refusal to revoke DV TLS certificates for EU-sanctioned blocked entities

ASSIGNED HARICA
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

A reporter audited HARICA-issued active public TLS certificates and filed Certificate Problem Reports (CPRs) to HARICA’s compliance/support team for certificates issued to domains associated with EU-sanctioned blocked entities under EU Council Regulation (EU) No 269/2014. The reporter states that HARICA formally refused to revoke the reported certificates and closed the CPRs, asserting the certificates are DV (Domain Validated) Server TLS certificates and that DV certificates “do not require any additional vetting” beyond domain control confirmation. The reporter lists specific still-active domains/certificates (including sberbank.com, vtb.com, and wildcard domains such as *.kamaz.ru, *.veb.ru, and *.dialog.info) and argues HARICA is in violation of EU law and must immediately revoke the certificates. A participant comment supports the view that HARICA needs to handle the issue and notes that similar DV incidents have been discussed previously on Bugzilla. The bug remains in ASSIGNED status, with no resolution stated in the provided thread.

Model: gpt-5.4-nano Generated: 2026-06-23 19:11 UTC Confidence: 0.50 9 comments
Chronology
  1. Reporter filed CPRs to HARICA requesting revocation of specific HARICA-issued DV TLS certificates for EU-sanctioned blocked entities.
  2. HARICA refused to revoke the reported certificates and closed the CPRs, stating the certificates are DV and require no additional vetting beyond domain control.
Thread Activity
  1. g6h6m238929@gmail.com — Created the case with attachments and stated that HARICA refused to revoke the CPR-reported DV TLS certificates and closed the reports with a copy-paste statement explaining its rationale.
  2. g6h6m238929@gmail.com — Added additional certificate-related attachments for other reported domains.
  3. g6h6m238929@gmail.com — Added more certificate-related attachments for additional reported domains.
  4. g6h6m238929@gmail.com — Added more certificate-related attachments for additional reported domains.
  5. rdaurne77@gmail.com — Commented that HARICA needs to handle the issue, that baseline requirements still apply even if not explicitly stated in CP/CPS, and referenced a similar DV incident discussed on Bugzilla.
Participants
g6h6m238929@gmail.com rdaurne77@gmail.com public-incident-reports@harica.gr
Related Bugzilla IDs Mentioned
Similar Local Cases
#2041774 ASSIGNED Incident Repository Issue Problem Reporting Failure Ccadb Disclosure Issue Opened 2026-05-22 Still Open · 68% similar
OATI: AIA CA Issuer field pointing to PEM encoded cert
#2047952 ASSIGNED Problem Reporting Failure Opened 2026-06-16 Still Open · 59% similar
KIR: OCSP responder does not return status for precertificate
#2032482 ASSIGNED Ca Certificate Compliance Incident Self Reported Incident Certificate Misissuance Opened 2026-04-16 Still Open · 59% similar
OATI: Misissuance detected by PKIMetal
#2046230 ASSIGNED Problem Reporting Failure Revocation Issue Delayed Revocation Incident Opened 2026-06-09 Still Open · 58% similar
certSIGN: Inconsistent revocation status (CRL "revoked" vs OCSP "good") for intermediate CA "certSIGN Web CA"
#2047579 ASSIGNED Incident Policy Document Issue Problem Reporting Failure Audit Document Opened 2026-06-15 Still Open · 57% similar
ANF AC: 2026 Audit Report Finding 1 out of 3
#2017845 ASSIGNED Self Reported Incident Certificate Misissuance Problem Reporting Failure Opened 2026-02-19 Still Open · 55% similar
HARICA: Incorrect nCAId in PSD2 QCStatement for QWACs
#1963629 RESOLVED Problem Reporting Failure Opened 2025-04-30 · Closed 2025-07-08 · 48% similar
HARICA: One of the two Certificate Problem Report email aliases not working
#1970727 RESOLVED Problem Reporting Failure Opened 2025-06-05 · Closed 2025-07-16 · 44% similar
eMudhra: Failure to respond to a Problem Report within 24 hours

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action