← SECOM Trust Systems CO., LTD. cases
Bugzilla #1652610 Delayed Revocation

SECOM: Delayed Revocation of CA Certificate with OCSP EKU Issue

RESOLVED FIXED SECOM Trust Systems CO., LTD.
AI Summary

This case addresses the delayed revocation of an intermediate CA certificate by SECOM Trust Systems due to an OCSP EKU issue. The revocation process was significantly behind the required timeline, with updates indicating that the revocation of 15% of affected TLS certificates could take up to 7 months, far exceeding the 5-day requirement set by Baseline Requirements. SECOM has communicated their plan to improve the situation, including automation of certificate management, but concerns remain regarding their ability to meet compliance standards in a timely manner.

Model: gpt-4o-mini Generated: 2026-06-13 21:01 UTC Confidence: 0.90
Chronology
  1. Bug opened to track incident report related to revocation delays.
  2. Discussion on the delays and steps being taken to resolve the issue.
  3. Key destruction for old intermediate CAs completed with auditor witness.
Participants
Ben Wilson Hisashi Kamo Ryan Sleevi
External References
Similar Local Cases
#1707229 RESOLVED Delayed Revocation Opened 2021-04-23 · Closed 2023-02-22 · 75% similar
SECOM: Delayed Revocation of non-technically constrained FUJIFILM Certificates
#1647099 RESOLVED Delayed Revocation Opened 2020-06-20 · Closed 2023-02-22 · 57% similar
Camerfirma: Delayed revocations related to Invalid authorityKeyIdentifier - recurrent incident
#1670861 RESOLVED Delayed Revocation Opened 2020-10-13 · Closed 2023-02-22 · 56% similar
Actalis: delayed revocation related to inaccurate value in stateOrProvinceName
#1651481 RESOLVED Delayed Revocation Opened 2020-07-08 · Closed 2023-02-22 · 55% similar
Entrust: Late Revocation due to SHA-256 hash algorithm
#1651828 RESOLVED Delayed Revocation Opened 2020-07-09 · Closed 2023-02-22 · 55% similar
DigiCert: Delay of revocation for EV audit inconsistency incident
#1652604 RESOLVED Delayed Revocation Opened 2020-07-13 · Closed 2023-02-22 · 54% similar
PKIoverheid: Failure to revoke within 7 days: OCSP EKU issue
#1877388 RESOLVED Delayed Revocation Opened 2024-01-30 · Closed 2025-03-14 · 49% similar
Telekom Security: Revocation delay for TLS certificates with basicConstraints not marked as critical
#1916478 RESOLVED Delayed Revocation Opened 2024-09-03 · Closed 2025-04-09 · 49% similar
eMudhra emSign PKI Services: Delayed Revocation of SSL/TLS Certificates

We use only essential cookies and local browser storage for preferences and security. See our Privacy Policy for details.

Confirm action