Closed Bug 1487164 Opened 7 years ago Closed 7 years ago

CCADB entries generated 2018-08-29T10:46:10Z

Categories

(Core :: Security Block-lists, Allow-lists, and other State, defect)

defect
Not set
normal

Tracking

()

RESOLVED FIXED

People

(Reporter: wthayer, Unassigned)

References

Details

Attachments

(2 files)

Here are some entries: Please ensure that the entries are correct.
Revocations data for new records
Attachment #9004969 - Flags: review?(mgoodwin)
Attachment #9004969 - Flags: review?(kwilson)
Attachment #9004969 - Flags: review?(jjones)
Attachment #9004969 - Flags: review?(cr)
Revocations data for new and existing records
Attachment #9004970 - Flags: review?(mgoodwin)
Attachment #9004970 - Flags: review?(kwilson)
Attachment #9004970 - Flags: review?(jjones)
Attachment #9004970 - Flags: review?(cr)
Downloading intermediates to be revoked from bug # 1487164 Results: Pending Kinto Dataset (Found): 793 Added Entries (Expected): 3 [GOOD] Expected But Not Pending (Not Found): 0 Deleted: 0 [GOOD] Entries In Production But Lost Without Being Deleted (Missing): 0 [GOOD] The Expected file matches the change between the staged Kinto and production. [GOOD] The Kinto dataset found at production equals the union of the expected file and the live list. Nothing not found. Nothing deleted.
Blocks: 1480853
Blocks: 1484798
Comment on attachment 9004969 [details] Intermediates to be revoked I confirm that these are the correct entries to add to OneCRL according to Bug #1480853 and Bug #1484798. We do not need compatibility testing for this change, so please review CR from the reviewers list.
Attachment #9004969 - Flags: review?(kwilson) → review+
Comment on attachment 9004970 [details] existing and new revocations in the form of a revocations.txt file Correct entries have been added. Again, please remove CR from reviewers list, because compat testing not needed for these changes.
Attachment #9004970 - Flags: review?(kwilson) → review+
Attachment #9004969 - Flags: review?(mgoodwin)
Attachment #9004969 - Flags: review?(jjones)
Attachment #9004969 - Flags: review?(cr)
Attachment #9004969 - Flags: review+
Attachment #9004970 - Flags: review?(mgoodwin)
Attachment #9004970 - Flags: review?(jjones)
Attachment #9004970 - Flags: review?(cr)
Attachment #9004970 - Flags: review+
r+s from all reviewers, tooling also gives an r+.
Signed at Kinto and released unto the world.
I have verified that the changes showed up in revocations.txt on my system. Thanks!
Status: NEW → RESOLVED
Closed: 7 years ago
Resolution: --- → FIXED
Ran this through TLS Canary tonight, seeing one regression: "host": "stage.crystalcruises.com", "rank": 696167, "host": "stage.crystalcruises.com", "rank": 696167, "short_error_message": "SEC_ERROR_REVOKED_CERTIFICATE",
(In reply to Christiane Ruetten [:cr] from comment #10) > Ran this through TLS Canary tonight, seeing one regression: > > "host": "stage.crystalcruises.com", > "rank": 696167, > "host": "stage.crystalcruises.com", > "rank": 696167, > "short_error_message": > "SEC_ERROR_REVOKED_CERTIFICATE", Looks like their staging environment has an old cert; https://www.crystalcruises.com/ is fine. Thanks, CR!

Moving bug to Core::Security Block-lists, Allow-lists, and other State.

Component: Blocklist Policy Requests → Security Block-lists, Allow-lists, and other State
Product: Toolkit → Core
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Creator:
Created:
Updated:
Size: