Consultancy

Transition From Expiring Issuing CA

Project Description

We were engaged to build and transition all people, systems and services to a new issuing CA from an existing service, soon to expire. There was to be no business or operational impact during the transition period.​

Outcomes & Deliverables

Within 3 weeks we had built the new CA, ready for an expansive round of user testing in the customer’s live environment. We derived a comms and support strategies from the user testing, enabling us to provide clear communication and extensive risk management and support to live users as they transitioned to the new CA. Batching customers into transition groups avoided overwhelming the service whilst mitigating the risks of an outages or issues related to the transition. Additional to the CA replacement, the new CA, combined with our bespoke signing scripts, increased signing throughput by 10x per hour.​

Challenges

Very short deadlines combined with a vast array of customer requirements meant we had to build and deploy a new CA in a very tight timeframe to maximise the scope of testing and to ensure a smooth transition. An expansive and diverse user base, meant providing support to a range of project teams with a wide variety of technology stacks.​

Technologies Used

KeyFactor EJBCA, Thales Key Protection, VMWare, Dell, Cisco ​