Actalis: Non-BR-Compliant Certificate Issuance
Actalis faced issues with the issuance of certificates containing invalid DNS names, specifically internal server names, which violated the Baseline Requirements (BRs). The CA became aware of the problem following a report on August 13, 2017, and acknowledged that a certificate should have been revoked by October 2016 but was not due to a human error in their compliance checking tool. After discussions and commitments from the affected customer, ENI, the problematic certificate was revoked on September 2, 2017. Actalis has since implemented a new compliance checking system to prevent future occurrences.
- Problem report received from Jonathan Rudenberg.
- Offending certificate revoked.
- New compliance checking system deployed.