← Consorci Administració Oberta de Catalunya (Consorci AOC, CATCert) cases
Bugzilla #1398246
Technical Compliance
Consorci AOC: Non-BR-Compliant OCSP Responders
RESOLVED
FIXED
Consorci Administració Oberta de Catalunya (Consorci AOC, CATCert)
AI Summary
The case addresses issues with the OCSP responders of Consorci AOC, which were found to be non-compliant with the Baseline Requirements (BRs). Specifically, the OCSP responders were responding with a 'good' status for unissued certificates, a violation of section 4.9.10 of the BRs. The CA acknowledged the problem and provided a timeline of actions taken to resolve it, including ceasing the issuance of problematic certificates. The OCSP responder was eventually updated to comply with BR requirements, and the CA confirmed that the issue was resolved as of April 20, 2018.
Chronology
- Initial report of OCSP issues
- Access to revocation servers opened worldwide
- OCSP responder confirmed compliant with BR
Participants
Kathleen Wilson
Francesc Ferrer
Gervase Markham
Paul Kehrer
Wayne Thayer
External References
Similar Local Cases
Visa: Non-BR-Compliant OCSP Responders
Entrust: Non-BR-Compliant OCSP Responder
Firmaprofesional: Non-BR-Compliant OCSP Responders
DocuSign/Keynectis: Non-Compliant Technically Constrained Intermediates
DigiCert: SCEE / Justica: Non-BR-Compliant Certificate Issuance
startcom: still issuing < 2048 bit certificates
Consorci AOC: Non-BR-Compliant Certificate Issuance
Amazon Trust Services: Missing CAA Check For Test Website Certificates