← SECOM Trust Systems CO., LTD. cases
Bugzilla #1313982 Ca Certificate Root Program Root Inclusion

SECOM request to add two new root certificates for email and website trust

RESOLVED FIXED SECOM Trust Systems CO., LTD.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update. Always refer to the official Bugzilla thread as the authoritative source. If you spot an inaccuracy, let me know via the contact form.
AI Summary

SECOM Trust Systems opened this case to request inclusion of two new root certificates: Security Communication RootCA3 and Security Communication ECC RootCA1. The request included CA details, audit information, CP/CPS links, and later English translations and test websites for valid, revoked, and expired certificate chains. Mozilla reviewers asked for additional information, including BR self-assessment materials, CP/CPS updates, and corrections to test-site and policy details, and SECOM provided multiple follow-up responses and updated repositories. In 2021 and 2022, Mozilla continued reviewing the PKI hierarchy and CP/CPS compliance, and SECOM confirmed that some subordinate CA certificates were already revoked and that there were no externally operated CAs under these roots. On 2022-08-15, Mozilla recommended approval for inclusion with website and email trust bits and no EV, and on 2022-08-17 Mozilla approved the request; bug 1785297 was then filed in NSS for the actual changes.

Model: gpt-5.4-mini Generated: 2026-06-13 14:07 UTC Revised: 2026-06-16 18:35 UTC Confidence: 0.98 52 comments
Chronology
  1. SECOM requested inclusion of Security Communication RootCA3 and Security Communication ECC RootCA1.
  2. SECOM provided valid, revoked, and expired test websites for both roots.
  3. SECOM said the test websites including OCSP setup had been finished.
  4. SECOM confirmed the subordinate CA information was accurate and said there were no externally operated CAs under the roots.
  5. Mozilla approved inclusion of the two SECOM roots for email and website trust.
Thread Activity
  1. Secom representative — SECOM opened the bug with CA and certificate details for the requested root certificates.
  2. Mozilla representative — Mozilla asked whether the bug would be used for a root inclusion/change request.
  3. Mozilla representative — Mozilla noted by email that the bug would be used to request inclusion of two new root certificates.
  4. Mozilla representative — Mozilla requested responses to recommended-practices and problematic-practices items.
  5. Mozilla representative — Mozilla asked SECOM to perform the BR self-assessment and attach the resulting document.
  6. Mozilla representative — Mozilla said it could not continue information verification until updated CP/CPS, BR self-assessment, and English translations were provided.
  7. Mozilla representative — Mozilla reported errors in the test websites, including expired intermediate and leaf certificates and a key-usage issue on one site.
  8. Mozilla representative — Mozilla asked SECOM to review and update the PKI Hierarchy section for each root.
  9. Mozilla representative — Mozilla posted a detailed CP/CPS compliance review for SECOM documents.
  10. Mozilla representative — Mozilla recommended approval of the SECOM roots for inclusion with website and email trust bits, no EV.
  11. Mozilla representative — Mozilla approved inclusion of Security Communication RootCA3 and Security Communication ECC RootCA1.
  12. Mozilla representative — Mozilla filed bug 1785297 in NSS for the actual changes.
Participants
Secom representative Mozilla representative Ml representative
Related Bugzilla IDs Mentioned
Similar Local Cases
#527419 RESOLVED Ca Certificate Root Program Root Inclusion Opened 2009-11-09 · Closed 2022-11-14 · 100% similar
Add Secom Trust SHA256 root certificate
#1933127 RESOLVED Ca Certificate Root Program Opened By Ca Duplicate Or Superseded Opened 2024-11-25 · 100% similar
SECOM: New Subordinate CA Request(Cybertrust Japan SureServer CA G5)
#1933132 RESOLVED Ca Certificate Root Program Opened By Ca Public Discussion Opened 2024-11-25 · Closed 2025-01-31 · 98% similar
SECOM: New Subordinate CA Request(Cybertrust Japan SureMail CA G5)
#1277336 RESOLVED Root Inclusion Trust Bit Enablement Ev Enablement Opened 2016-06-01 · Closed 2022-11-14 · 90% similar
Add SSL.com root certificate(s)
#1710831 RESOLVED Ca Certificate Root Program Root Inclusion Opened 2021-05-12 · Closed 2023-08-01 · 90% similar
Add LAWtrust Root CA2 to NSS
#1128392 RESOLVED Root Inclusion Opened 2015-02-02 · Closed 2022-11-14 · 88% similar
Add GDCA Root Certificate
#1265683 RESOLVED Root Inclusion Opened 2016-04-19 · Closed 2026-05-21 · 88% similar
Add [Certigna Root CA] root certificate(s)
#1799533 RESOLVED Ca Certificate Root Program Root Inclusion Opened 2022-11-07 · Closed 2024-03-15 · 87% similar
Add SSL.com 2022 TLS Root CA Certificates

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action