Dylan Ratcliffe
Last Updated
playground
How to see if you're affected by the DigiCert revocation incident

How to see if you're affected by the DigiCert revocation incident

Due to an incident with the way Digicert were issuing new certificates, >80,000 certificates are due to be revoked with less than 24 hours notice. At the time of writing it's still unclear whether there are going to be any extensions to this deadline, and legal proceedings have already started from customers trying to block the revocation.

All customers who were affected should have received an email, telling them which certificates needed to be regenerated, and there are instruction on how to do that here. However just because a certificate has been issued to you, doesn't mean that you know if/where it's in use. Here's how to check for public-facing websites:

Open the Overmind Playground and click "Start from scratch"

Create a new query and select the "http" type:

Select the "Get" method, then paste the URL of your public-facing website e.g. https://htngtunica.boydgaming.com/ <- an example affected endpoint

Select, then double-click the resulting "http" item to determine the relationships:

Select the HTTP item
Double click to discover relationships

Find the certificate and select the serial number:

Search for the serial number in this GitHub repo. If it's not in there, you're not affected.

We support the tools you use most

Prevent Outages from Config Changes

Try out the new Overmind CLI today for free.
No agents, 3 minute deployment.