Security Incident Report
Info
To report a security incident related to CAs owned by CableLabs, please contact pkiops@cablelabs.com or +1-303-661-3726.
To report an incident related to CommScope CAs, or to request certificate revocation, please contact incident-report@pkiworks.com with the subject line Certificate Problem Report.
Additionally, for security incidents involving a compromised private key and for certificate revocation requests, please include both items 1 and 2 below as attachments in your email:
-
The CommScope-issued X.509 certificate involved in the incident or request. Please attach the certificate as a PEM-encoded file with a .pem extension.
The first line and last lines of the file must be-----BEGIN CERTIFICATE-----
and
-----END CERTIFICATE-----
respectively. -
One of the following demonstrating that you know the private key involved:
a. A PEM-encoded certificate signing request (CSR) file signed with the private key, with a .csr extension.
The commonName attribute of the CSR’s subject must have the value “Proof of Possession for Incident Report, for CommScope” (without the quotes).
The first line and last lines of the file must be-----BEGIN CERTIFICATE REQUEST-----
and
-----END CERTIFICATE REQUEST-----
respectively.
Whenever possible, please use this option instead of option (b) below, to avoid further circulating the private key involved.
b. The private key involved in cleartext, as a PEM-encoded PKCS #8 PrivateKeyInfo object with a .key file extension.
The first line and last lines of the file must be-----BEGIN PRIVATE KEY-----
and
-----END PRIVATE KEY-----
respectively.
Use this option only if you don’t have the means to generate the CSR file described in (a) above.
If you submit a problem report without the above information, processing and any resulting revocations may be delayed.