DocuSign/Keynectis: Non-BR-Compliant Certificate Issuance
This case addresses the issuance of non-Baseline Requirements (BR) compliant certificates by DocuSign (Keynectis). The CA was notified of multiple issues, including invalid DNS names and failure to respond to problem reports in a timely manner. The CA confirmed that it had stopped issuing problematic certificates and initiated revocation of affected certificates. A series of updates indicated ongoing remediation efforts, including the implementation of new controls and a new RA system to prevent future occurrences. The case was ultimately resolved with all identified non-compliant certificates revoked.
- Initial report of non-compliance issued.
- CA confirmed cessation of issuing problematic certificates.
- Update provided on revocation of non-compliant certificates.
- Further updates on remediation and new RA system implementation.
- Confirmation that all identified certificates have been revoked.