Closed Bug 1697074 Opened 3 years ago Closed 3 years ago

Enable EV Treatment for e-commerce monitoring's GLOBALTRUST 2020 root certificate

Categories

(Core :: Security: PSM, task)

task

Tracking

()

VERIFIED FIXED
91 Branch
Tracking Status
firefox90 --- verified
firefox91 --- verified

People

(Reporter: kathleen.a.wilson, Assigned: rmf)

References

Details

(Whiteboard: [psm-blocked] Depends on June 2021 Batch of Root Changes)

Attachments

(1 file)

Per bug #1627552 the request from e-commerce monitoring GmbH has been approved to enable the following root certificate for EV use. Please make the corresponding changes to PSM.

Friendly Name: GLOBALTRUST 2020
SHA-1 Fingerprint: D067C11351010CAAD0C76A65373116264F5371A2
SHA-256 Fingerprint: 9A296A5182D1D451A2E37F439B74DAAFA267523329F90F9A0D2007C334E23C9A
EV Policy: 2.23.140.1.1
Test URL: https://testok-2020-server-qualified-ev-1.e-monitoring.at

NOTE: Bug #1697071 must be completed (cert added to NSS), before this EV-enablement may be implemented.

Summary: Enable EV Treatment for GLOBALTRUST 2020 root certificate → Enable EV Treatment for e-commerce's GLOBALTRUST 2020 root certificate
Summary: Enable EV Treatment for e-commerce's GLOBALTRUST 2020 root certificate → Enable EV Treatment for e-commerce monitoring's GLOBALTRUST 2020 root certificate
Assignee: nobody → bugs
Status: NEW → ASSIGNED
Pushed by dkeeler@mozilla.com:
https://hg.mozilla.org/integration/autoland/rev/0b2840a4cc06
Enable EV Treatment for e-commerce monitoring's GLOBALTRUST 2020 root certificate r=keeler
Status: ASSIGNED → RESOLVED
Closed: 3 years ago
Resolution: --- → FIXED
Target Milestone: --- → 91 Branch

Comment on attachment 9225016 [details]
Bug 1697074 - Enable EV Treatment for e-commerce monitoring's GLOBALTRUST 2020 root certificate r=keeler

Beta/Release Uplift Approval Request

  • User impact if declined: No extended validation treatment for certificates issued by this CA
  • Is this code covered by automated tests?: No
  • Has the fix been verified in Nightly?: Yes
  • Needs manual test from QE?: Yes
  • If yes, steps to reproduce: Visit https://testok-2020-server-qualified-ev-1.e-monitoring.at and check if the padlock popup displays extended validation info.
  • List of other uplifts needed: None
  • Risk to taking this patch: Low
  • Why is the change risky/not risky? (and alternatives if risky): The patch just adds this CA to the list of CAs who can do EV.
  • String changes made/needed:
Attachment #9225016 - Flags: approval-mozilla-beta?
Flags: qe-verify+
QA Whiteboard: [qa-triaged]

Reproduced the issue on affect Firefox 90.0b5 on MacOS 10.15.
Verified-fixed on the latest Firefox Nightly 91.0a1 (2021-06-09) (64-bit) (buildID: 20210609093513) on Windows 10, MacOS 10.15 and Ubuntu 18.04.
Waiting for the Uplift process to verify further.

Comment on attachment 9225016 [details]
Bug 1697074 - Enable EV Treatment for e-commerce monitoring's GLOBALTRUST 2020 root certificate r=keeler

approved for 90.0b7, thanks

Attachment #9225016 - Flags: approval-mozilla-beta? → approval-mozilla-beta+

Verified-fixed on the latest Beta 90.0b7.

Status: RESOLVED → VERIFIED
QA Whiteboard: [qa-triaged]
Flags: qe-verify+
Regressions: 1717843
No longer regressions: 1717843
You need to log in before you can comment on or make changes to this bug.

Attachment

General

Created:
Updated:
Size: