Network Solutions: 2021 Audit Observation #1
This case addresses an incident involving Network Solutions where certain CAs were found to perform direct OCSP signing without the required Digital Signature bit in their certificates. The issue was raised during a 2021 audit and led to discussions about compliance with the Baseline Requirements (BRs). Network Solutions argued that their practices were in line with historical norms for pre-BR roots, but the Chrome Root Authority Program deemed their actions noncompliant. Ultimately, Network Solutions decided to transition to a managed CA model, ceasing to issue new certificates from their own roots.
- Bug reported by Ben Wilson regarding OCSP signing issues.
- Chrome Root Authority Program declares Network Solutions' OCSP signing noncompliant.
- Network Solutions announces transition to managed CA model.
- Transition to managed CA model completed.