Revocación de certificados EV de DigiCert el día 11/07/2020


El pasado día 8 de julio de 2020 DigiCert notificó a los usuarios solicitantes de los certificados EV emitidos mediante la autoridad intermedia TERENA SSL High Assurance CA 3 que estos serían revocados el día 11 de julio.

El mensaje que enviaron a todos los solicitantes de certifiados afectados fue:

ACTION REQUIRED

Dear XXXXXXX YYYYYYYYY,

During a recent review, we discovered an issue where some of our intermediate CAs (ICAs) were not included as part of our most recent WebTrust EV audit. To resolve the issue, we must migrate issuance to new ICAs and revoke all certificates issued under the impacted ICAs. Although there is no security threat, the EV Guidelines require that we revoke EV certificates signed by the affected ICAs by July 11, 2020 at 12 pm MDT (July 11, 18:00 UTC).

Which certificates are affected?

These certificates will be revoked on July 11, 2020 at 12 pm MDT (July 11, 18:00 UTC).

ORDER ID SERIAL NO. COMMON NAME
6559990 11111111111111122222222233333333 a1b1.bbb.es
6561110 111111223344557787987879879879BB a1b2.bbb.es

What you need to do

Although the contract between GÉANT and DigiCert ended, you can replace these certificates with DigiCert certificates. However, we recommend that you replace them through your new provider to ensure continued services and support. To ensure your systems are unimpacted by the revocation, you must replace your certificates before July 11 regardless of which provider you use.

If you would like a replacement DigiCert certificate, please contact Jason Lewis (jason.lewis@digicert.com) or Ruud-Maarten van de Kreeke (ruud.vandekreeke@digicert.com) to create a CertCentral account and receive a free replacement certificate. We may provide a temporary DV certificate in place of your EV certificate if our validation volumes are high.

We apologize for this inconvenience.

Thank you,

Ruud-Maarten van de Kreeke

Puedes conocer el listado de certificados afectados de tu institución utilizando la herramienta digEV2secOV que hemos desarrollado. El acceso se realiza de forma federada para los administradores de TCS.

Por favor, ponte en contacto con la persona que es administrador de TCS en tu institución para asegurar que se han iniciado los trabajos de solicitud de nuevos certificados tipo OV en Seticgo u otro plan de contingencia.