SSL Certificate Signed with the Revoked DigiNotar Certificate Authority

Medium Nessus Plugin ID 56043


The SSL certificate for this service was signed by a compromised CA certificate.


The X.509 certificate of the remote host was signed by a certificate belonging to a Certificate Authority (CA) called DigiNotar, which was revoked due to a known compromise. You should verify that the remote certificate indeed was obtained legally, and you should get a new CA to sign it, as most web browsers are being updated to stop trusting this authority.


Purchase or generate a new certificate for this service.

See Also

Plugin Details

Severity: Medium

ID: 56043

File Name: ssl_diginotar.nasl

Version: $Revision: 1.9 $

Type: remote

Family: General

Published: 2011/09/01

Modified: 2017/05/16

Dependencies: 56984

Risk Information

Risk Factor: Medium


Base Score: 6.4

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Information

Required KB Items: SSL/Supported