← DigiCert cases
Bugzilla #1401407 · Certificate Misissuance
DigiCert: Mis-Issuance Rekey certificates
DigiCert · RESOLVED
AI Summary
DigiCert identified a misissuance issue where 1,090 certificates were rekeyed using expired domain validation documents. The problem was discovered during a routine internal review, leading to immediate corrective actions including system patches to prevent further misuse of expired documentation. The CA has since revoked five certificates that could not be revalidated and is actively working to ensure compliance with validation requirements.
Chronology
- Potential issue discovered during internal review.
- System patched to prevent further rekeying with expired documents.
- Final list of revoked certificates compiled.
Participants
Jeremy Rowley
External References
Similar Local Cases
Digicert: Failure to include CPS URI in 1 certificate
DigiCert / Inteso San Paulo: Double dot characters
DigiCert: Incorrect case in Business Category
DigiCert: Org-JOI type mismatch
DigiCert: SHA-1 intermediate issued after 2016-01-01
DigiCert: Validation Scope Incident
DigiCert: Internal Domain Name cert mis-issuance
DigiCert / Symantec: EV JOI Issue