Addressing the unauthorized issuance of multiple TLS certificates for 1.1.1.1
Unauthorized TLS certificates for 1.1.1.1 were mistakenly issued by a Certification Authority without Cloudflare's consent, but have since been revoked.
MAIN POINTS
- Unauthorized TLS certificates were issued for 1.1.1.1.
- A Certification Authority issued these certificates without Cloudflare's permission.
- The rogue certificates have been identified and revoked.
- Cloudflare was not involved in the issuance of these certificates.
TAKEAWAYS
- Certification Authorities must ensure proper authorization before issuing certificates.
- Revocation of unauthorized certificates is crucial to maintain security.
- Vigilance is necessary to prevent unauthorized certificate issuance.
- Cloudflare's systems were not compromised in this incident.