SHA-1 certificates erroneously issued by DocuSign (OpenTrust/Keynectis) root
Mozilla received reports of SHA-1 certificates chaining up to CAs trusted by Mozilla that had not been brought up on the list or in Bugzilla. The certificates were described as chaining to “Class 2 Primary CA” (DocuSign (OpenTrust/Keynectis)) via “CLASS 2 KEYNECTIS CA,” and the report stated this was a violation of the Baseline Requirements. DocuSign responded that its CP/CPS forbids SHA-1 and mandates SHA-256, and that four SHA-1 certificates were erroneously issued. DocuSign stated that two certificates were revoked on 11 February 2016 and the other two were revoked on 26 May 2016. DocuSign explained that technical and organizational controls at the RA level were not followed for two certificates due to access-rights issues, and that the fault was detected during internal self-audits, after which access rights were corrected and procedures reminded. DocuSign also stated it could not disable SHA-1 workspaces immediately because it would prevent RA actors from revoking certificates associated with those workspaces, and it planned to set up technical means to make SHA-1 issuance always fail by modifying certificate templates at the CA level. The bug is marked RESOLVED with resolution FIXED.
- Mozilla security policy discussion identified SHA-1 certificates chaining to the DocuSign (OpenTrust/Keynectis) hierarchy that were not previously reported.
- DocuSign provided details of four erroneously issued SHA-1 certificates and their revocation dates, and described corrective actions and planned template changes.
- Community commenter — Gerv asked DocuSign to explain the SHA-1 issuance, including CP/CPS restrictions, audit status, and technical controls bypassed.
- Community commenter — Kathleen Wilson asked Erwann to investigate and update the bug with the requested information.
- Community commenter — Gerv added another crt.sh link for an additional SHA-1 certificate.
- Docusign representative — Erwann Abalea stated the CP/CPS forbids SHA-1, provided audit information, described RA-level access-rights control failures for four certificates, and reported revocation dates and corrective actions plus a plan to modify CA-level templates to prevent SHA-1 issuance.
- Docusign representative — Erwann corrected a serial-number typo and provided crt.sh links for the certificates.
- Community commenter — Gerv thanked DocuSign for the explanation and the steps to prevent recurrence.