Created attachment 8607639
435736-CAInformation.pdf

The Root Cert URL, http://www.cert.fnmt.es/certs/ACRAIZFNMTRCM.crt, now
points to the SHA-256 root, so I updated the technical details about the
root cert in SalesForce. Please confirm that the information in the
attached document is correct.

Also, due to the frequency of OCSP errors being found during the
discussion phase we have added a check for CAs to address these issues
before their request goes to the discussion phase, using the
http://certificate.revocationcheck.com/ website.

When I entered https://www.sede.fnmt.gob.es/certificados into the
revocation checker the following OCSP errors were listed. Please comment
in this bug when these have been resolved.

http://certificate.revocationcheck.com/www.sede.fnmt.gob.es
- bad signature on embedded certificate
- OCSP response expired
- NextUpdate happens before the date in the Expires cache header
- Error parsing OCSP response

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1271513

Title:
  www.cert.fnmt.es certificates are not included in Mozilla products

To manage notifications about this bug go to:
https://bugs.launchpad.net/firefox/+bug/1271513/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to