(1) Where the private key corresponding to the public key listed in the Digital Signature Certificate has been compromised, the subscriber shall communicate the same without any delay to the Certifying Authority.
(2) An application for revocation of the key pair shall made in Form online on the web site of the concerned Certifying Authority to enable revocation and publication in the Certificate Revocation List. The Subscriber shall encrypt this transaction by using the public key of the Certifying Authority. The transaction shall be further authenticated with the private key of the subscriber even though it may have already been compromised.
[F. No. 1 (6)/2001-CCA] (K.N. GUPTA) Controller of Certifying Authorities 184 FORM [See Regulation 6] Communication of compromise of Private Key
1. Name of Holder : ___________________________________________
2. Public Key of Holder : (Attach PKC)
3. Category of Certificate : Individual/Organisation/Web Server …../Other (please specify)
4. e-mail address : ___________________________________________
5. Distinguished Name : ___________________________________________
6. Serial No. of Certificate : ___________________________________________
7. Certificate Fingerprint : ___________________________________________ ___________________________________________
8. Date & Time of : ___________________________________________ communication (Digital Signature of Holder)