← DocuSign (OpenTrust/Keynectis) cases
Bugzilla #1321354
Certificate Problem Report
DocuSign France - Internal names certificates under a technically-constrained subordinate CA
RESOLVED
DocuSign (OpenTrust/Keynectis)
AI Summary
This case involved a subordinate CA under DocuSign that failed to revoke non-compliant internal name certificates as required by CABF BR. After an audit, it was found that several certificates remained valid despite a prior agreement to revoke them. The CA subsequently revoked the offending certificates and made necessary technical changes to comply with the policy.
Chronology
- Initial report of non-compliance and request for revocation.
- Two of the three problematic certificates were revoked.
- Technical changes made and new certificates generated.
- Case confirmed as resolved.
Participants
Erwann Abalea
Kathleen Wilson
Related Bugzilla IDs Mentioned
Similar Local Cases
DocuSign/Keynectis: Non-BR-Compliant OCSP Responders
DocuSign/Keynectis: Non-BR-Compliant Certificate Issuance
TrustCor: Non-audited intermediate certificates
Bug in GlobalSign Certificate Centre not populating EKUs in 68 SSL certificates
entrust: Invalid Teletext strings
Hongkong Post e-Cert CA 1 - 10 issuing certificates without subject alternative name extension
Izenpe: EV certificate with various issues
StartCom: IV without localityName or stateOrProvinceName