← SECOM Trust Systems CO., LTD. cases
Bugzilla #1544722
Self Reported Incident
SECOM: certificate for which “L” and “ST” not set
RESOLVED
FIXED
SECOM Trust Systems CO., LTD.
This summary was auto-generated by AI and revised by me when needed — accuracy improves with each update.
Always refer to the official Bugzilla thread as the authoritative source.
If you spot an inaccuracy, let me know via the contact form.
AI Summary
SECOM Trust Systems CO., LTD. identified a compliance issue involving a certificate that lacked the 'L' and 'ST' fields. The CA discovered the problem during an internal investigation on March 6, 2019, and subsequently contacted the customer to revoke the certificate, which was completed on March 15, 2019. Following this incident, SECOM found an additional seven certificates with similar issues and committed to revoking them by the end of June 2019. The CA has since updated its procedures to ensure compliance with revocation timelines as outlined in the Baseline Requirements.
Chronology
- Certificate issued without 'L' and 'ST' fields.
- Problem certificate discovered during internal investigation.
- Problem certificate revoked.
- All seven problematic certificates revoked.
Thread Activity
- Secom representative — SECOM reported the discovery of a certificate without 'L' and 'ST' and outlined the revocation process.
- Fastly representative — Requested clarification on the timeline for revocation of additional problematic certificates.
- Secom representative — Updated that three out of seven problematic certificates had been revoked.
- Secom representative — Confirmed that all seven problematic certificates had been revoked.
- Secom representative — Informed that the validation manual had been updated to prevent future delays.
Participants
Secom representative
Fastly representative
Community commenter
External References
Similar Local Cases
SECOM: Insufficient Serial Number Entropy
SECOM: Mis-issued EV Certificates
SECOM: "Default City" in Subject:localityName
SECOM: Non-BR-Compliant OCSP Responders
SECOM: certificate for which “OU=-”
SECOM: Ambiguity on KeyUsage with ECC public key
SECOM: Incorrect OCSP Delegated Responder Certificate
SECOM: Non-BR-Compliant Certificate Issuance