← Amazon Trust Services cases
Bugzilla #1719920
Certificate Problem Report
Amazon Trust Services: Revocation Time for Intermediate Certificates
RESOLVED
FIXED
Amazon Trust Services
AI Summary
Amazon Trust Services identified two intermediate certificates that were not included in their audit reports but were present in the CCADB. These certificates were created in 2015 and were not revoked until June 2021, despite initial considerations for revocation in 2015. The delay in revocation was attributed to a lack of clarity on compliance requirements and internal decision-making processes. The CA has since implemented changes to prevent similar issues in the future, including a two-person control on policy interpretation.
Chronology
- Intermediate certificates issued.
- Decision made to revoke certificates.
- Certificates revoked.
Participants
Heather (Amazon Trust Services)
Ryan Sleevi
Trevoli P
External References
Similar Local Cases
Amazon Trust Services: Test revoked certificates with invalid validity period
Amazon Trust Services: Revoked Sample Certs - No SANs
DigiCert: CAA Checking Issue
DigiCert: Key Size Not Divisible By 8
D-TRUST: Non-BR-Compliant Certificate Issuance
Amazon Trust Services / DigiCert: 404 error when fetching CRL
DigiCert: Failure to properly encode Subject name
D-TRUST: Precertificate OU > 64 Characters