← Autoridad de Certificacion Firmaprofesional cases
Bugzilla #1398240
Technical Compliance
Firmaprofesional: Non-BR-Compliant OCSP Responders
RESOLVED
FIXED
Autoridad de Certificacion Firmaprofesional
AI Summary
The case addresses issues with OCSP responders from the CA Firmaprofesional, which were found to be non-compliant with the Baseline Requirements (BRs). The CA was alerted to the problem in August 2017 and confirmed that affected CAs had ceased issuing SSL/EV certificates. Subsequent actions included revocation of all valid certificates and improvements to their OCSP response mechanisms. The case was resolved after the CA implemented necessary changes to ensure compliance.
Chronology
- CA became aware of OCSP issues via email.
- All valid SSL certificates issued by CA1 and AA.PP. were revoked.
- Non-compliant CA certificates added to OneCRL.
Participants
Kathleen Wilson
chemalogo
External References
Similar Local Cases
Consorci AOC: Non-BR-Compliant OCSP Responders
Visa: Non-BR-Compliant OCSP Responders
Entrust: Non-BR-Compliant OCSP Responder
DigiCert: SCEE / Justica: Non-BR-Compliant Certificate Issuance
DocuSign/Keynectis: Non-Compliant Technically Constrained Intermediates
startcom: still issuing < 2048 bit certificates
Amazon Trust Services: Failure to comply with RFC 5280
Amazon Trust Services: Missing CAA Check For Test Website Certificates