Re: New report: Intermediate CA Certificates with their own audit statements

2019-03-27 Thread Kathleen Wilson via dev-security-policy

Copy-paste correction:

2) Intermediate CA Certificates with their own audit statements (CSV)
https://ccadb-public.secure.force.com/mozilla/IntermediateCertsSeparateAuditsCSV


On 3/27/19 11:50 AM, Kathleen Wilson wrote:

All,

Just FYI that we have added the following two reports to 
wiki.mozilla.org/CA/Intermediate_Certificates


1) Intermediate CA Certificates with their own audit statements (HTML)
https://ccadb-public.secure.force.com/mozilla/IntermediateCertsSeparateAudits 



2) Intermediate CA Certificates with their own audit statements (CSV)
https://ccadb-public.secure.force.com/mozilla/PublicIntermediateCertsRevokedWithPEMCSV 



These reports are Filtered By:
CA Owner/Certificate Record Type equals Intermediate Certificate
AND Revocation Status equals Not Revoked
AND Mozilla Root Status for the root cert equals Included,Change Requested
AND Audits Same as Parent equals False
AND Valid To (GMT) greater than TODAY
AND Technically Constrained equals False


I plan to add an "Audit Letter Validation (ALV)" button to the 
intermediate certificate records in the CCADB. Then I will add columns 
to these reports to indicate the ALV results and when the ALV was last 
run on the record.


Thanks,
Kathleen

PS: There is already an Incident Report for the KPN outdated audit 
statements that you will notice in these reports.

https://bugzilla.mozilla.org/show_bug.cgi?id=1539296



___
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy


New report: Intermediate CA Certificates with their own audit statements

2019-03-27 Thread Kathleen Wilson via dev-security-policy

All,

Just FYI that we have added the following two reports to 
wiki.mozilla.org/CA/Intermediate_Certificates


1) Intermediate CA Certificates with their own audit statements (HTML)
https://ccadb-public.secure.force.com/mozilla/IntermediateCertsSeparateAudits

2) Intermediate CA Certificates with their own audit statements (CSV)
https://ccadb-public.secure.force.com/mozilla/PublicIntermediateCertsRevokedWithPEMCSV

These reports are Filtered By:
CA Owner/Certificate Record Type equals Intermediate Certificate
AND Revocation Status equals Not Revoked
AND Mozilla Root Status for the root cert equals Included,Change Requested
AND Audits Same as Parent equals False
AND Valid To (GMT) greater than TODAY
AND Technically Constrained equals False


I plan to add an "Audit Letter Validation (ALV)" button to the 
intermediate certificate records in the CCADB. Then I will add columns 
to these reports to indicate the ALV results and when the ALV was last 
run on the record.


Thanks,
Kathleen

PS: There is already an Incident Report for the KPN outdated audit 
statements that you will notice in these reports.

https://bugzilla.mozilla.org/show_bug.cgi?id=1539296

___
dev-security-policy mailing list
dev-security-policy@lists.mozilla.org
https://lists.mozilla.org/listinfo/dev-security-policy