NetSignOn Version 2.0

CSV information

Status archived
Valid from 16.04.2012
Valid until 16.04.2017
Scheme 🇲🇾 MY
Manufacturer MagnaQuest Solutions Sdn Bhd
Category Access Control Devices and Systems
Security level EAL1

Heuristics summary

Certificate ID: ISCB-5-RPT-C027-CR-v1a

Certificate

certificate could not be downloaded, no link is available.

Certification report

Extracted keywords

Vendor
Microsoft

Security level
EAL1, EAL 1
Security Assurance Requirements (SAR)
ALC_DEL
Certificates
ISCB-5-RPT-C027-CR-v1a

Standards
ISO/IEC15408, ISO/IEC 18045

File metadata

Title C027 Certification Report
Subject NetSignOn version 2.0
Keywords NSO
Author MyCB Department
Creation date D:20120417100120+08'00'
Modification date D:20120417100157+08'00'
Pages 25
Creator Acrobat PDFMaker 8.1 for Word
Producer Acrobat Distiller 8.1.0 (Windows)

Security target

Extracted keywords

Vendor
Sagem, Microsoft

Security level
EAL 1, EAL1
Claims
OE.NOEVIL, OE.INSTALL, OE.RELIABLE, OE.CREDEN, OE.COMM, OE.CONFIG, OE.DB, OE.PIN, OE.SYNC, OE.ATTMP, OE.PHYSICAL
Security Assurance Requirements (SAR)
ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ATE_IND.1, AVA_VAN.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.1, ASE_REQ.1, ASE_TSS.1
Security Functional Requirements (SFR)
FDP_ACC.1, FDP_ACF.1, FDP_ACC, FDP_ACF, FDP_ACC.1.1, FDP_ACF.1.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_IFC.1, FIA_AFL.1, FIA_ATD.1, FIA_SOS.1, FIA_UAU.2, FIA_UAU.5, FIA_UAU.6, FIA_UID.2, FIA_AFL, FIA_ATD, FIA_SOS, FIA_UAU, FIA_UID, FIA_UAU.1, FIA_UID.1, FMT_MSA.1, FMT_MSA.3, FMT_SMF.1, FMT_SMR.1, FMT_MSA, FMT_SMF, FMT_SMR

File metadata

Title ST
Author RosYusoff
Creation date D:20120314123743+08'00'
Modification date D:20120314123757+08'00'
Pages 26
Creator Acrobat PDFMaker 9.1 for Word
Producer Adobe PDF Library 9.0

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

ISCB-5-RPT-C027-CR-v1a

Extracted SARs

ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.1, ASE_REQ.1, ASE_TSS.1, ATE_IND.1, AVA_VAN.1

Scheme data

Cert No 2012-005-C027
Developer MagnaQuest Solutions Sdn. Bhd
Level EAL1
Product NetSignOn Version 2.0
Certification Date 16.04.2012
Expiration Date 16.04.2017
Recognition CCRA
Url https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/70
Enhanced
Developer Ramdas Nemani A-2-07 & A-2-09SME Technopreneur Centre1,2270 Jalan Usahawan 2,63000 Cyberjaya, Selangor DE,MALAYSIA URL: http://www.magnaquest.comEmail: [email protected]: +60 (3) 8318 2964Fax: +60 (3) 8319 2534
Status Archive
Scope The Target of Evaluation (TOE) is a software product, which comprises of MQAssureâ„¢/AppShield v1.2_CR6 integrated with MQAssureâ„¢/IAM v1.0_CR6. The MQAssureTM/AppShield v1.2_CR6 (hereafter referred as Appshield) combined with MQAssureTM/IAM v1.0_CR6 (hereafter referred as IAM) is an access control software for web applications. The TOE controls access to web filtering applications by enforcing authentication and authorisation using multifactor authentication schemes. It is also capable of session control, and request validation based on its core engine policy and rules. IAM or Identity and Access Management is the core engine of the TOE. It is a centralised identity and access management platform that provides the back bone for the AppShield security functionality. In the overall infrastructure, AppShield acts as a policy enforcement agent for the web applications. The security features within the scope of the evaluation for IAM includes: Multifactor User Authentication which includes MyKad-Biometric, iKey-PIN or password. TOE Administration which provides a web based GUI console for the administrator to configure and manage the TOE. Security Audit which generates audit records for relevant authentication events and access events to various objects. The security features within the scope of the evaluation for AppShield includes: Access Control which enforces access control policy decision made by the IAM. HTTP request validation which protects the web applications from common input tampering attacks.
Cert Id C027
Category Access Control Devices and System
Assurance Level EAL1
Product NetSignOn Version 2.0
Certification Date 16.04.2012
Expiration Date 16.04.2017
Mutual Recognition CCRA
Target Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C027/NetSignON%20ST%20v1.7.pdf
Report Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C027/ISCB-5-RPT-C027-CR-v1a.pdf
Type Client agent runs on Windows operating system platforms that leverages multifactor user authentication methods.

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Access Control Devices and Systems",
  "cert_link": null,
  "dgst": "1d7f84af6c6b8b93",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "ISCB-5-RPT-C027-CR-v1a",
    "cert_lab": null,
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL1",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.0"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "cert_no": "2012-005-C027",
      "certification_date": "2012-04-16",
      "developer": "MagnaQuest Solutions Sdn. Bhd",
      "enhanced": {
        "assurance_level": "EAL1",
        "category": "Access Control Devices and System",
        "cert_id": "C027",
        "certification_date": "2012-04-16",
        "developer": "Ramdas Nemani A-2-07 \u0026 A-2-09SME Technopreneur Centre1,2270 Jalan Usahawan 2,63000 Cyberjaya, Selangor DE,MALAYSIA URL: http://www.magnaquest.comEmail: [email protected]: +60 (3) 8318 2964Fax: +60 (3) 8319 2534",
        "expiration_date": "2017-04-16",
        "mutual_recognition": "CCRA",
        "product": "NetSignOn Version 2.0",
        "report_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C027/ISCB-5-RPT-C027-CR-v1a.pdf",
        "scope": "The Target of Evaluation (TOE) is a software product, which comprises of MQAssure\u2122/AppShield v1.2_CR6 integrated with MQAssure\u2122/IAM v1.0_CR6. The MQAssureTM/AppShield v1.2_CR6 (hereafter referred as Appshield) combined with MQAssureTM/IAM v1.0_CR6 (hereafter referred as IAM) is an access control software for web applications. The TOE controls access to web filtering applications by enforcing authentication and authorisation using multifactor authentication schemes. It is also capable of session control, and request validation based on its core engine policy and rules. IAM or Identity and Access Management is the core engine of the TOE. It is a centralised identity and access management platform that provides the back bone for the AppShield security functionality. In the overall infrastructure, AppShield acts as a policy enforcement agent for the web applications. The security features within the scope of the evaluation for IAM includes: Multifactor User Authentication which includes MyKad-Biometric, iKey-PIN or password. TOE Administration which provides a web based GUI console for the administrator to configure and manage the TOE. Security Audit which generates audit records for relevant authentication events and access events to various objects. The security features within the scope of the evaluation for AppShield includes: Access Control which enforces access control policy decision made by the IAM. HTTP request validation which protects the web applications from common input tampering attacks.",
        "status": "Archive",
        "target_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C027/NetSignON%20ST%20v1.7.pdf",
        "type": "Client agent runs on Windows operating system platforms that leverages multifactor user authentication methods."
      },
      "expiration_date": "2017-04-16",
      "level": "EAL1",
      "product": "NetSignOn Version 2.0",
      "recognition": "CCRA",
      "url": "https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/70"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "MagnaQuest Solutions Sdn Bhd",
  "manufacturer_web": "https://www.magnaquest.com",
  "name": "NetSignOn Version 2.0",
  "not_valid_after": "2017-04-16",
  "not_valid_before": "2012-04-16",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": null,
    "cert_frontpage": null,
    "cert_keywords": null,
    "cert_metadata": null,
    "report_filename": "ISCB-5-RPT-C027-CR-v1a.pdf",
    "report_frontpage": {},
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "MY": {
          "ISCB-5-RPT-C027-CR-v1a": 25
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_DEL": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL1": 12
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 18045": 2,
          "ISO/IEC15408": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 3
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "MyCB Department",
      "/Category": "PUBLIC",
      "/Company": "CyberSecurity Malaysia",
      "/CreationDate": "D:20120417100120+08\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 8.1 for Word",
      "/Keywords": "NSO",
      "/ModDate": "D:20120417100157+08\u002700\u0027",
      "/Producer": "Acrobat Distiller 8.1.0 (Windows)",
      "/SourceModified": "D:20120417020049",
      "/Subject": "NetSignOn version 2.0",
      "/Title": "C027 Certification Report",
      "pdf_file_size_bytes": 506859,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://en.wikipedia.org/wiki/Malaysia",
          "mailto:[email protected]",
          "http://en.wikipedia.org/wiki/Public_key_certificate",
          "http://en.wikipedia.org/wiki/Operating_system",
          "http://en.wikipedia.org/wiki/Logging_%28computer_security%29",
          "http://www.cybersecurity.my/mycc",
          "http://www.commoncriteriaportal.org/",
          "http://en.wikipedia.org/wiki/Identity_card",
          "http://en.wikipedia.org/wiki/Microsoft_Windows"
        ]
      },
      "pdf_is_encrypted": true,
      "pdf_number_of_pages": 25
    },
    "st_filename": "NetSignON ST v1.7.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "OE": {
          "OE.ATTMP": 1,
          "OE.COMM": 1,
          "OE.CONFIG": 1,
          "OE.CREDEN": 1,
          "OE.DB": 1,
          "OE.INSTALL": 1,
          "OE.NOEVIL": 1,
          "OE.PHYSICAL": 1,
          "OE.PIN": 1,
          "OE.RELIABLE": 1,
          "OE.SYNC": 1
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_FSP.1": 1
        },
        "AGD": {
          "AGD_OPE.1": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_CMC.1": 1,
          "ALC_CMS.1": 1
        },
        "ASE": {
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_INT.1": 1,
          "ASE_OBJ.1": 1,
          "ASE_REQ.1": 1,
          "ASE_TSS.1": 1
        },
        "ATE": {
          "ATE_IND.1": 1
        },
        "AVA": {
          "AVA_VAN.1": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 27,
          "EAL1": 1
        }
      },
      "cc_sfr": {
        "FDP": {
          "FDP_ACC": 1,
          "FDP_ACC.1": 5,
          "FDP_ACC.1.1": 1,
          "FDP_ACF": 1,
          "FDP_ACF.1": 4,
          "FDP_ACF.1.1": 1,
          "FDP_ACF.1.2": 1,
          "FDP_ACF.1.3": 1,
          "FDP_ACF.1.4": 1,
          "FDP_IFC.1": 1
        },
        "FIA": {
          "FIA_AFL": 1,
          "FIA_AFL.1": 5,
          "FIA_ATD": 1,
          "FIA_ATD.1": 4,
          "FIA_SOS": 1,
          "FIA_SOS.1": 5,
          "FIA_UAU": 3,
          "FIA_UAU.1": 4,
          "FIA_UAU.2": 5,
          "FIA_UAU.5": 5,
          "FIA_UAU.6": 4,
          "FIA_UID": 1,
          "FIA_UID.1": 7,
          "FIA_UID.2": 6
        },
        "FMT": {
          "FMT_MSA": 2,
          "FMT_MSA.1": 6,
          "FMT_MSA.3": 6,
          "FMT_SMF": 1,
          "FMT_SMF.1": 5,
          "FMT_SMR": 1,
          "FMT_SMR.1": 9
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 5
        },
        "Sagem": {
          "Sagem": 1
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "RosYusoff",
      "/Company": "ARTIO",
      "/CreationDate": "D:20120314123743+08\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 9.1 for Word",
      "/ModDate": "D:20120314123757+08\u002700\u0027",
      "/Producer": "Adobe PDF Library 9.0",
      "/SourceModified": "D:20120209055347",
      "/Title": "ST",
      "pdf_file_size_bytes": 303355,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://en.wikipedia.org/wiki/Operating_system\u0000",
          "http://en.wikipedia.org/wiki/Internet_Protocol\u0000",
          "http://en.wikipedia.org/wiki/Malaysia\u0000",
          "http://en.wikipedia.org/wiki/Logging_%28computer_security%29\u0000",
          "http://en.wikipedia.org/wiki/Public_key_certificate\u0000",
          "http://en.wikipedia.org/wiki/Trusted_third_party\u0000",
          "http://en.wikipedia.org/wiki/Identity_card\u0000",
          "http://en.wikipedia.org/wiki/Public_key_infrastructure\u0000",
          "http://en.wikipedia.org/wiki/Computer_network\u0000",
          "http://en.wikipedia.org/wiki/Microsoft_Windows\u0000"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 26
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C027-CR-v1a.pdf",
  "scheme": "MY",
  "security_level": {
    "_type": "Set",
    "elements": [
      "EAL1"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NetSignON%20ST%20v1.7.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": false,
      "download_ok": false,
      "extract_ok": false,
      "json_hash": null,
      "pdf_hash": null,
      "txt_hash": null
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "70f97eb1a6459779772645ddd506f2a959edbda1638bdc860b086d00f423fd40",
      "txt_hash": "3004fbde1c4b4068ba7bc5cb4bd73e6a142d2c500cd9b93c4c0ebf8286f349c1"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "deaa867428947d4f554cae88c8250cd8549515080f55de5cf222e23e09275a72",
      "txt_hash": "e5d166c9b7bcf011aa154ceb613c4e77e5fbf043cf0e3df7d99e42bdd58ab165"
    }
  },
  "status": "archived"
}