OneCRL Entry
81cbd120-6dce-4214-babf-3d72b3e9540b
Revocation Entry
- Status
- disabled
- Serial
12B9B0EC- Last Modified
- 2021-11-10 23:42:56 UTC
- Schema
- 1636563666710
Issuer
- DN
- C=JP, O=SECOM Trust.net, OU=Security Communication RootCA1
- DN SHA-256
1c7e53501f527f516049d64189230819491a1403a74a529d61a0da0139a85cd5- Issuer DER
MFAxCzAJBgNVBAYTAkpQMRgwFgYDVQQKEw9TRUNPTSBUcnVzdC5uZXQxJzAlBgNVBAsTHlNlY3VyaXR5IENvbW11bmljYXRpb24gUm9vdENBMQ==
Context
- Bugzilla
- 1740553
- Action
- 18 disabled issuer/serial entries were added to OneCRL by the ccadb2onercl bot from CCADB-reported revoked intermediate certificates; proposed on 2021-11-10T17:00:47Z, approved at staging on 2021-11-10T23:21:31Z, approved at production on 2021-11-10T23:43:26Z, and verified on 2021-11-11T00:12:44Z.
- Confidence
- Explicit in OneCRL thread · 0.98
CCADB Link
- Issuer CA
- Security Communication RootCA1
- CA Owner
- SECOM Trust Systems CO., LTD.
AI Summary
Generated 2026-06-30 11:41 UTC · Model: gpt-5.4-miniThis bug added 18 OneCRL entries, all disabled revocations for issuer/serial pairs, and the changes were generated by the ccadb2onercl bot from CCADB data. The bot opened the bug on 2021-11-10T17:00:47Z and attached the proposed OneCRL additions and decoded issuer/serial lists. Mozilla reviewer Kathleen Wilson confirmed the entries were correct and said TLS Canary was not needed for this batch. David Keeler approved the changes at staging on 2021-11-10T23:21:31Z and at production on 2021-11-10T23:43:26Z, and Kathleen Wilson verified them in Firefox Nightly and Release on 2021-11-11T00:12:44Z. The thread explicitly says the additions were based on revoked intermediate certificates reported in the CCADB. The thread does not state the specific CCADB revocation fields, candidate-report state, or the underlying external compliance incident for these certificates. Several of the added entries are for SECOM Trust Systems and D-TRUST roots, plus one NetLock root, but no closure or incident explanation is given in the bug thread.
18 disabled issuer/serial entries were added to OneCRL by the ccadb2onercl bot from CCADB-reported revoked intermediate certificates; proposed on 2021-11-10T17:00:47Z, approved at staging on 2021-11-10T23:21:31Z, approved at production on 2021-11-10T23:43:26Z, and verified on 2021-11-11T00:12:44Z.
Explicitly stated trigger: revoked intermediate certificates reported in the CCADB; specific CCADB fields, revocation date, or candidate-report state not stated.
Unknown / not stated; the thread does not identify a specific compliance incident, root program report, m.d.s.p. thread, or CA closure.
Explicit in OneCRL thread · 0.98
- 2021-11-10ccadb2onercl bot created Bug 1740553 and said it was adding OneCRL entries based on revoked intermediate certificates reported in CCADB.
- 2021-11-10Bot attached proposed OneCRL additions and decoded issuer/serial lists.
- 2021-11-10Kathleen Wilson confirmed the entries were correct and said TLS Canary was not needed.
- 2021-11-10David Keeler approved the changes at staging.
- 2021-11-10David Keeler approved the changes at production.
- 2021-11-11Kathleen Wilson verified the changes in Firefox Nightly and Release profiles.
AI-generated from the OneCRL record and linked Bugzilla thread. Mozilla and CCADB records remain authoritative.
Raw Remote Settings Record
{
"schema": 1636563666710,
"details": {
"bug": "https://bugzilla.mozilla.org/show_bug.cgi?id=1740553",
"who": "",
"why": "",
"name": "",
"created": ""
},
"enabled": false,
"issuerName": "MFAxCzAJBgNVBAYTAkpQMRgwFgYDVQQKEw9TRUNPTSBUcnVzdC5uZXQxJzAlBgNVBAsTHlNlY3VyaXR5IENvbW11bmljYXRpb24gUm9vdENBMQ==",
"serialNumber": "Ermw7A==",
"id": "81cbd120-6dce-4214-babf-3d72b3e9540b",
"last_modified": 1636587776766
}