No, we already went through the Root expiration fiasco. These are all certs that were deleted and issued brand new on Sept 29 2021, and this issue just started today.
It's not a cert issue, just started having problems today.
Have one right now where a colleague is seeing an issue but I'm not.
Looks like it might be a DNS issue with Quad9 resolving OCSP servers.
[1]Authority Info Access
Access Method=On-line Certificate Status Protocol (1.3.6.1.5.5.7.48.1)
Alternative Name:
URL=http://r3.o.lencr.org
[2]Authority Info Access
Access Method=Certification Authority Issuer (1.3.6.1.5.5.7.48.2)
Alternative Name:
URL=http://r3.i.lencr.org/
I opened a ticket with Quad9 and it looks like they have resolved the issue.
Zachary (Quad9)
Oct 19, 2021, 19:04 UTC
Hello,
Thanks for contacting Quad9 support.
We have added *.lencr.org to our permanent allow list. We are pushing the update to all global servers now. If it's not already unblocked for you, it should be within the next 10 minutes.
We apologize for any inconvenience caused.
Best regards,
Zachary