The forwarded email relates to imminent industry-wide removal of the OU field from digital certificates.The notification was sent only to owners of externally-signed HSBC digital certificates, because Cryptographic Services currently have no plans to introduce the same change for internally-signed HSBC issued certificates.Any queue manager (or MQIPT) instances which themselves use internally-signed certificates may still be affected by the change if they validate any externally-signed certificates presented to them (eg by a remote QM/client) by inspecting the certificate DN. If the certificate OU field is used as part of that validation, for example on an SSLPEER filter, that validation will fail once the OU field is removed from the externally-signed certificate (ie at renewal). To prevent service interruption, any instances performing such checking ought to be checked and if necessary updated before the externally signed certificates are renewed.Note the tight lead times for the change - it becomes effective on 1st Jan 2022.Please cascade within your teams as necessary for awareness, and refer any queries to Cryptographic Services Venafi TEAM