SECOM: Transition Plan for Existing Dual-Purpose Roots
This case is a Mozilla CA Program request from SECOM Trust Systems CO., LTD. for a transition plan covering an existing dual-purpose root, “Security Communication RootCA2.” The plan describes staged retirement of both the websites trust bit (TLS server authentication) and S/MIME trust for this root. SECOM states that the root CA key material generation date is May 29, 2009 and that the transition is based on Mozilla Root Store Policy Version 3.0, Section 7.4 (“Root CA Lifecycles”). SECOM requests removal of the websites trust bit on 2027-04-15 and requests distrust for S/MIME after 2028-12-31, with a transition timeline including last issuance and planned removal dates. SECOM also references expected full inclusion dates for new single-purpose roots (SECOM TLS RSA Root CA 2024 and SECOM TLS ECC Root CA 2024; and SECOM SMIME RSA Root CA 2024) and links to related Bugzilla requests for those roots. The bug is currently in the ASSIGNED state, and the CA notes that the transition plan has been placed into the formal review process.
- SECOM submitted a transition plan for the existing dual-purpose root Security Communication RootCA2, including planned removal of websites trust and S/MIME distrust dates.
- SECOM provided additional background and policy rationale for the transition plan, including key generation date and referenced lifecycle requirements.
- Mozilla representative — Ben Wilson posted the “Root Transition Plan” content for SECOM Trust Systems CO., LTD., including requested removal of the websites trust bit on 2027-04-15 and S/MIME distrust after 2028-12-31, plus a transition timeline and links to planned new roots.
- Ml representative — ONO Fumiaki (SECOM) thanked for the formal review placement and added background, stating the root key material generation date (May 29, 2009) and explaining how Mozilla lifecycle requirements map to the proposed trust-bit removal/distrust dates, with references to Mozilla policy and wiki lifecycle schedules.