OneCRL Entry
e51b8276-12aa-46b1-af3c-fef58c6de7ba
Revocation Entry
- Status
- disabled
- Serial
5BFDD1BB152D106BAA6D6D17E73C561F0DD9C8CA- Last Modified
- 2021-02-09 22:05:30 UTC
- Schema
- 1612858930249
Issuer
- DN
- C=BM, O=QuoVadis Limited, CN=QuoVadis Root CA 2
- DN SHA-256
f1502792df303efb232e64e5c472eff9804eeda35966f16a207cd4112b3d3b2f- Issuer DER
MEUxCzAJBgNVBAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBMaW1pdGVkMRswGQYDVQQDExJRdW9WYWRpcyBSb290IENBIDI=
Context
- Bugzilla
- 1691771
- Action
- A batch of 23 issuer-and-serial-based certificate revocation entries was proposed for addition to OneCRL by the Common CA Database to OneCRL Bot on 2021-02-09T17:00:43Z, based on revoked intermediate certificates reported in the CCADB. Kathleen Wilson confirmed the entries, Dana Keeler ran onecrl-entry-checker, and Kathleen Wilson confirmed Dana approved the changes at Kinto Staging and Production on 2021-02-09. Kathleen Wilson then confirmed on 2021-02-10 that the new entries were present in Firefox Nightly and Release profiles.
- Confidence
- Explicit in OneCRL thread · 0.98
CCADB Link
- Issuer CA
- QuoVadis Root CA 2
- CA Owner
- DigiCert
AI Summary
Generated 2026-06-30 11:41 UTC · Model: gpt-5.4Bug 1691771 is a batch OneCRL case created automatically by the CCADB-to-OneCRL bot on 2021-02-09. The bot stated that it was adding entries to OneCRL based on revoked intermediate certificates reported in the CCADB. The public record here shows 23 disabled local OneCRL entries tied to this bug, covering certificates associated with DigiCert/QuoVadis, GlobalSign, SECOM Trust Systems, and Firmaprofesional. Kathleen Wilson explicitly confirmed the listed issuer/serial pairs were the correct entries to add, stated staging and production visual inspection checked out, and directed Dana Keeler to proceed with onecrl-entry-checker and approvals. Dana Keeler then provided onecrl-entry-checker output, after which Kathleen Wilson confirmed approval at Kinto Staging and Production. On 2021-02-10, Kathleen Wilson confirmed the new OneCRL entries were present in her Nightly and Release Firefox profiles. The thread does not state per-certificate CCADB revocation reasons, revocation dates, or any external compliance incident for the affected intermediates. Any linkage to specific CA incidents or closures would therefore be inference beyond the explicit OneCRL thread.
A batch of 23 issuer-and-serial-based certificate revocation entries was proposed for addition to OneCRL by the Common CA Database to OneCRL Bot on 2021-02-09T17:00:43Z, based on revoked intermediate certificates reported in the CCADB. Kathleen Wilson confirmed the entries, Dana Keeler ran onecrl-entry-checker, and Kathleen Wilson confirmed Dana approved the changes at Kinto Staging and Production on 2021-02-09. Kathleen Wilson then confirmed on 2021-02-10 that the new entries were present in Firefox Nightly and Release profiles.
Explicitly stated as revoked intermediate certificates reported in the CCADB; no per-certificate revocation reason, revocation date, or candidate-report state is stated in the thread.
Unknown; the OneCRL bug thread does not state any related compliance incident, root program report, mailing-list discussion, or CA closure as the reason for these revocations.
Explicit in OneCRL thread · 0.98
- 2021-02-09CCADB-to-OneCRL bot filed Bug 1691771 stating entries were being added to OneCRL based on revoked intermediate certificates reported in the CCADB.
- 2021-02-09Bot attached issuer/serial pairs, proposed OneCRL additions, and decoded entry details.
- 2021-02-09Kathleen Wilson confirmed the entries were correct to add to OneCRL.
- 2021-02-09Kathleen Wilson said Kinto Staging and Production visual inspection checked out and TLS Canary was not needed for this batch.
- 2021-02-09Dana Keeler provided onecrl-entry-checker output.
- 2021-02-09Kathleen Wilson confirmed Dana approved at Kinto Staging and Production.
- 2021-02-10Kathleen Wilson confirmed the new OneCRL entries were present in her Nightly and Release Firefox profiles.
- 2021-04-15Bugzilla automation moved the bug to Core::Security Block-lists, Allow-lists, and other State.
AI-generated from the OneCRL record and linked Bugzilla thread. Mozilla and CCADB records remain authoritative.
Raw Remote Settings Record
{
"schema": 1612858930249,
"details": {
"bug": "https://bugzilla.mozilla.org/show_bug.cgi?id=1691771",
"who": "",
"why": "",
"name": "",
"created": ""
},
"enabled": false,
"issuerName": "MEUxCzAJBgNVBAYTAkJNMRkwFwYDVQQKExBRdW9WYWRpcyBMaW1pdGVkMRswGQYDVQQDExJRdW9WYWRpcyBSb290IENBIDI=",
"serialNumber": "W/3RuxUtEGuqbW0X5zxWHw3ZyMo=",
"id": "e51b8276-12aa-46b1-af3c-fef58c6de7ba",
"last_modified": 1612908330359
}