Closed
Bug 1487164
Opened 7 years ago
Closed 7 years ago
CCADB entries generated 2018-08-29T10:46:10Z
Categories
(Core :: Security Block-lists, Allow-lists, and other State, defect)
Core
Security Block-lists, Allow-lists, and other State
Tracking
()
RESOLVED
FIXED
People
(Reporter: wthayer, Unassigned)
References
Details
Attachments
(2 files)
Here are some entries: Please ensure that the entries are correct.
| Reporter | ||
Comment 1•7 years ago
|
||
Revocations data for new records
Attachment #9004969 -
Flags: review?(mgoodwin)
Attachment #9004969 -
Flags: review?(kwilson)
Attachment #9004969 -
Flags: review?(jjones)
Attachment #9004969 -
Flags: review?(cr)
| Reporter | ||
Comment 2•7 years ago
|
||
Revocations data for new and existing records
Attachment #9004970 -
Flags: review?(mgoodwin)
Attachment #9004970 -
Flags: review?(kwilson)
Attachment #9004970 -
Flags: review?(jjones)
Attachment #9004970 -
Flags: review?(cr)
Comment 3•7 years ago
|
||
Downloading intermediates to be revoked from bug # 1487164
Results:
Pending Kinto Dataset (Found): 793
Added Entries (Expected): 3
[GOOD] Expected But Not Pending (Not Found): 0
Deleted: 0
[GOOD] Entries In Production But Lost Without Being Deleted (Missing): 0
[GOOD] The Expected file matches the change between the staged Kinto and production.
[GOOD] The Kinto dataset found at production equals the union of the expected file and the live list.
Nothing not found.
Nothing deleted.
Comment 4•7 years ago
|
||
Comment on attachment 9004969 [details]
Intermediates to be revoked
I confirm that these are the correct entries to add to OneCRL according to Bug #1480853 and Bug #1484798.
We do not need compatibility testing for this change, so please review CR from the reviewers list.
Attachment #9004969 -
Flags: review?(kwilson) → review+
Comment 5•7 years ago
|
||
Comment on attachment 9004970 [details]
existing and new revocations in the form of a revocations.txt file
Correct entries have been added. Again, please remove CR from reviewers list, because compat testing not needed for these changes.
Attachment #9004970 -
Flags: review?(kwilson) → review+
Comment 6•7 years ago
|
||
Comment on attachment 9004969 [details]
Intermediates to be revoked
Matches https://github.com/mozilla/OneCRL-Tools/pull/127
Attachment #9004969 -
Flags: review?(mgoodwin)
Attachment #9004969 -
Flags: review?(jjones)
Attachment #9004969 -
Flags: review?(cr)
Attachment #9004969 -
Flags: review+
Updated•7 years ago
|
Attachment #9004970 -
Flags: review?(mgoodwin)
Attachment #9004970 -
Flags: review?(jjones)
Attachment #9004970 -
Flags: review?(cr)
Attachment #9004970 -
Flags: review+
Comment 7•7 years ago
|
||
r+s from all reviewers, tooling also gives an r+.
Comment 8•7 years ago
|
||
Signed at Kinto and released unto the world.
Comment 9•7 years ago
|
||
I have verified that the changes showed up in revocations.txt on my system. Thanks!
Status: NEW → RESOLVED
Closed: 7 years ago
Resolution: --- → FIXED
Comment 10•7 years ago
|
||
Ran this through TLS Canary tonight, seeing one regression:
"host": "stage.crystalcruises.com",
"rank": 696167,
"host": "stage.crystalcruises.com",
"rank": 696167,
"short_error_message": "SEC_ERROR_REVOKED_CERTIFICATE",
Comment 11•7 years ago
|
||
(In reply to Christiane Ruetten [:cr] from comment #10)
> Ran this through TLS Canary tonight, seeing one regression:
>
> "host": "stage.crystalcruises.com",
> "rank": 696167,
> "host": "stage.crystalcruises.com",
> "rank": 696167,
> "short_error_message":
> "SEC_ERROR_REVOKED_CERTIFICATE",
Looks like their staging environment has an old cert; https://www.crystalcruises.com/ is fine.
Thanks, CR!
Comment 12•5 years ago
|
||
Moving bug to Core::Security Block-lists, Allow-lists, and other State.
Component: Blocklist Policy Requests → Security Block-lists, Allow-lists, and other State
Product: Toolkit → Core
You need to log in
before you can comment on or make changes to this bug.
Description
•