← SECOM Trust Systems CO., LTD. cases
Bugzilla #1649962
Certificate Problem Report
SECOM: Incorrect OCSP Delegated Responder Certificate
RESOLVED
FIXED
SECOM Trust Systems CO., LTD.
AI Summary
SECOM Trust Systems issued OCSP Delegated Responder certificates without including the required 'id-pkix-ocsp-nocheck' response, violating Baseline Requirements. The issue was reported on July 2, 2020, leading to an investigation and a plan to reissue the affected intermediate CA certificates. SECOM confirmed the reissuance was completed by July 10, 2020, and they are now working on key rotation and destruction plans to prevent future occurrences. The case was resolved with a commitment to improve compliance and oversight.
Chronology
- Issue reported regarding missing OCSP response requirement.
- Reissuance of intermediate CA certificates completed.
Participants
Ryan Sleevi
Hisashi Kamo
External References
Similar Local Cases
SECOM: certificate for which “OU=-”
SECOM: FUJIFILM intermediate CA Certificate not listed in audit statement
SECOM: Insufficient Serial Number Entropy
SECOM: certificate for which “L” and “ST” not set
SECOM: Ambiguity on KeyUsage with ECC public key
SECOM: Outdated audit statements for intermediate certificates
SECOM: Non-BR-Compliant OCSP Responders
SECOM: failure to revoke underscores