← SECOM Trust Systems CO., LTD. cases
Bugzilla #1398259
Certificate Problem Report
SECOM: Non-BR-Compliant OCSP Responders
RESOLVED
FIXED
SECOM Trust Systems CO., LTD.
AI Summary
SECOM Trust Systems CO., LTD. faced issues with their OCSP responders returning 'good' status for unissued certificates, violating the Baseline Requirements (BRs). The problem was reported in the Mozilla security policy forum, leading to an investigation and collaboration with a software vendor for countermeasures. SECOM acknowledged the oversight and implemented changes to ensure compliance. The issue was resolved by March 2018, with confirmation that the OCSP responders were functioning correctly.
Chronology
- Initial report of OCSP issues.
- Revocation of SHA-1 OCSP responder certificates.
- Confirmation that the issue for intermediate CAs was resolved.
Participants
Kathleen Wilson
Hisashi Kamo
Gervase Markham
Wayne Thayer
External References
Similar Local Cases
DigiCert: Non-BR-Compliant OCSP Responders
DocuSign/Keynectis: Non-BR-Compliant OCSP Responders
SECOM: certificate for which “L” and “ST” not set
SECOM: failure to revoke underscores
Consorci AOC: Non-BR-Compliant Certificate Issuance
SECOM: Ambiguity on KeyUsage with ECC public key
SECOM: certificate for .test TLD
SECOM: Insufficient Serial Number Entropy