← DocuSign (OpenTrust/Keynectis) cases
Bugzilla #1497700
Certificate Misissuance
DocuSign/Keynectis: Undisclosed Intermediate certificate
RESOLVED
WONTFIX
DocuSign (OpenTrust/Keynectis)
AI Summary
DocuSign failed to disclose an intermediate certificate as required by Mozilla policy. The certificate in question can be found at the provided link. An incident report was requested to be submitted in accordance with Mozilla's guidelines. The case was resolved as DocuSign/Keynectis will no longer be a member of the Mozilla program starting July 2019 due to a related issue.
Chronology
- Initial report of undisclosed intermediate certificate
- Case resolved due to membership termination
Participants
Wayne Thayer
Erwann Abalea
External References
Similar Local Cases
SHA-1 issuance by DocuSign root
SwissSign: Undisclosed Intermediate Certificates
Firmaprofesional: Undisclosed Intermediate certificate
Camerfirma: Missing audit for Intermediate certificate
SECOM: Undisclosed intermediate certificates
SwissSign: Cert issued with a to long validity period
NetLock: CN not in SAN
GRCA: Misissued certificates - invalid CN, bad validity period, missing extensions