RSA NetWitness Platform v11.6

CSV information

Status active
Valid from 29.06.2022
Valid until 29.06.2027
Scheme 🇲🇾 MY
Manufacturer NETWITNESS, an RSA Business
Category Network and Network-Related Devices and Systems
Security level EAL2+, ALC_FLR.1
Maintenance updates RSA NetWitness Platform v11.7 (21.06.2023) Certification report Security target

Heuristics summary

Certificate ID: ISCB-5-RPT-C125-CR-v1

Certificate

Extracted keywords

File metadata

Title ISCB-5-CERT-C125-CERTIFICATE-v1 (signed)
Creation date D:20220711093940Z00'00'
Modification date D:20220711093940Z00'00'
Pages 1
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Certification report

Extracted keywords

Hash functions
MD5
Protocols
SSH, TLS 1.2, TLS, VPN

Vendor
Microsoft

Security level
EAL 2
Claims
A.AUDIT_PROTECTION, A.DATA_SOURCES, A.TIME, A.DEPLOY, A.PHYSICAL, A.MANAGE, A.TRUSTED_ADMIN, A.USER
Security Assurance Requirements (SAR)
ALC_FLR.1
Security Functional Requirements (SFR)
FAU_GEN.1.1, FAU_GEN.2.1, FAU_SAR.1.2, FAU_SAR.1.1, FAU_SAR.2.1, FAU_GEN.1.2, FAU_STG.1.1, FAU_STG.1.2, FCS_TLS_EXT.1.1, FIA_ATD.1.1, FIA_UAU.5.1, FIA_UID.1.2, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UID.1.1, FIA_UAU.5.2, FMT_MOF.1.1, FMT_MTD.1.1, FMT_SMR.1.1, FMT_SMF.1.1, FMT_SMR.1.2, FPT_ITT.1.1, FTA_SSL.4.1, FTA_SSL.3.1, FTA_TAB.1.1, FTP_TRP.1.1, FTP_TRP.1.3
Certificates
ISCB-5-RPT-C125-CR-v1
Evaluation facilities
Leidos

Standards
FIPS 140-2, ISO/IEC15408, ISO/IEC 18045

File metadata

Title ISCB-5-RPT-C125-CR-v1
Creation date D:20220711094127Z00'00'
Modification date D:20220711094127Z00'00'
Pages 42
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Security target

Extracted keywords

Symmetric Algorithms
AES-
Hash functions
SHA384, SHA256, SHA-256
Protocols
SSH, TLS, TLS 1.2, TLS 1.0, TLS 1.1

Vendor
Microsoft, Cisco

Security level
EAL2, EAL 2, EAL2 augmented, EAL 2 augmented
Claims
O.ANALYZE, O.PRIVACY_DATA_PROTECT, O.TOE_ACCESS, O.PROTECTED_COMMS, O.AUDIT_GENERATION, O.AUDIT_PROTECTION, O.MANAGE, T.UNPROTECTED_PRIVACY_DATA, T.MALICIOUS_ACTIVITY, T.INADVERTENT_ACTIVITY, T.MISUSE, T.TSF_COMPROMISE, T.UNACCOUNTABLE_USERS, A.AUDIT_PROTECTION, A.DATA_SOURCES, A.TIME, A.DEPLOY, A.PHYSICAL, A.MANAGE, A.TRUSTED_ADMIN, A.USER, OE.AUDIT_PROTECTION, OE.DATA_SOURCES, OE.DEPLOY, OE.MANAGE, OE.PHYSICAL, OE.TIME, OE.TRUSTED_ADMIN, OE.USER
Security Assurance Requirements (SAR)
ADV_ARC, ADV_FSP, ADV_TDS, ADV_ARC.1, ADV_FSP.2, ADV_TDS.1, AGD_OPE, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_FRL.1, ALC_FLR.1, ALC_CMC, ALC_CMS.2, ALC_DEL, ALC_FLR, ALC_CMC.2, ALC_DEL.1, ATE_COV, ATE_FUN, ATE_IND, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1
Security Functional Requirements (SFR)
FAU_GEN, FAU_GEN.1, FAU_SAR, FAU_SAR.1, FAU_STG, FAU_GEN.1.1, FAU_GEN.1.2, FAU_GEN.2, FAU_GEN.2.1, FAU_SAR.1.1, FAU_SAR.1.2, FAU_SAR.2, FAU_SAR.2.1, FAU_STG.1, FAU_STG.1.1, FAU_STG.1.2, FCS_COP.1, FCS_COP.1.1, FCS_TLS, FCS_TLS_EXT.1, FCS_TLS_EXT.1.1, FCS_CKM, FCS_SSH, FCS_SSH_EXT.1, FCS_SSH_EXT.1.1, FCS_SSH_EXT.1.2, FCS_SSH_EXT.1.3, FCS_SSH_EXT.1.4, FCS_SSH_EXT.1.5, FCS_SSH_EXT.1.6, FCS_CKM.1, FCS_SSH_EXT, FCS_TLS_EXT, FIA_AFL, FIA_ATD, FIA_UAU, FIA_UID, FIA_AFL.1, FIA_UAU.1, FIA_UAU.5, FIA_UID.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_ATD.1, FIA_ATD.1.1, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.5.1, FIA_UAU.5.2, FIA_UID.1.1, FIA_UID.1.2, FMT_MOF.1, FMT_MTD, FMT_SMF, FMT_SMR, FMT_SMF.1, FMT_SMR.1, FMT_MOF.1.1, FMT_MTD.1, FMT_MTD.1.1, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FPT_ITT, FPT_ITT.1, FPT_ITT.1.1, FPT_STM.1, FTA_SSL, FTA_TAB, FTA_SSL.3, FTA_SSL.4, FTA_SSL.3.1, FTA_SSL.4.1, FTA_TAB.1, FTA_TAB.1.1, FTP_TRP, FTP_TRP.1, FTP_TRP.1.1, FTP_TRP.1.2, FTP_TRP.1.3
Evaluation facilities
Leidos

Standards
FIPS 140-2, RFC 4252, RFC 5246

File metadata

Title Microsoft Word - RSA Netwitness v11.6_v1.0-Final.docx
Creation date D:20220623023133Z00'00'
Modification date D:20220623023133Z00'00'
Pages 69
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

ISCB-5-RPT-C125-CR-v1

Extracted SARs

ADV_ARC.1, ADV_FSP.2, ADV_TDS.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.2, ALC_CMS.2, ALC_DEL.1, ALC_FLR.1, ALC_FRL.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.2

Scheme data

Cert No 2022-004-C125
Developer NETWITNESS an RSA Business
Level EAL2+ ALC_FLR.1
Product RSA NetWitness Platform v11.6
Certification Date 29.06.2022
Expiration Date 29.06.2027
Recognition CCRA
Url https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/certified-products-and-systems-5/submission-view/100
Enhanced
Developer NETWITNESS, an RSA Business10700 Parkridge Bvld, Reston, VA 20191, United States of America
Status Valid
Scope The TOE is a collection of appliances that form a security infrastructure for an enterprise network. This architecture provides converged network security monitoring and centralised security information and event management (SIEM). The TOE provides real-time visibility into the monitored network and long-term network data storage to provide detection, investigation, analysis, forensics, and compliance reporting. The TOE implements additional security functions such as identification and authentication of TOE users; auditing; security management; and trusted path.The security management functions of the TOE are performed via the NetWitness Platform User Interface (UI), which is a web-based GUI. This interface allows authorised administrators to manage the user accounts, session lockout values and other TSF data, and view the IDS data and alerts. Navigation in the UI is based on Roles and is divided into major functional areas including Respond, Investigate, and Admin. The Respond view consolidates all alerts such as ESA Correlation Rules, Malware Analytics, and Reporting Alerts into one location and is used for incident tracking and triage. The Investigate view presents seven different views into a set of data, allowing authorized users to see metadata, events, and potential indicators of compromise. In the Admin view, Administrators can manage network hosts and services; manage system-level security; and manage Collection Methods/event sources.
Cert Id C125
Category Network and Network-Related Devices and Systems
Assurance Level EAL2+ ALC_FLR.1
Product RSA NetWitness Platform v11.6
Certification Date 29.06.2022
Expiration Date 29.06.2027
Mutual Recognition CCRA
Target Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/RSA_Netwitness_v11.6_v1.0-Final.pdf
Report Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/ISCB-5-RPT-C125-CR-v1.pdf
Type Network And Network-Related Devices And Systems

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Network and Network-Related Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-CERT-C125-CERTIFICATE-v1.pdf",
  "dgst": "3819070bba50ed92",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "ISCB-5-RPT-C125-CR-v1",
    "cert_lab": null,
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL2+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FRL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "11.6"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "cert_no": "2022-004-C125",
      "certification_date": "2022-06-29",
      "developer": "NETWITNESS an RSA Business",
      "enhanced": {
        "assurance_level": "EAL2+ ALC_FLR.1",
        "category": "Network and Network-Related Devices and Systems",
        "cert_id": "C125",
        "certification_date": "2022-06-29",
        "developer": "NETWITNESS, an RSA Business10700 Parkridge Bvld, Reston, VA 20191, United States of America",
        "expiration_date": "2027-06-29",
        "mutual_recognition": "CCRA",
        "product": "RSA NetWitness Platform v11.6",
        "report_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/ISCB-5-RPT-C125-CR-v1.pdf",
        "scope": "The TOE is a collection of appliances that form a security infrastructure for an enterprise network. This architecture provides converged network security monitoring and centralised security information and event management (SIEM). The TOE provides real-time visibility into the monitored network and long-term network data storage to provide detection, investigation, analysis, forensics, and compliance reporting. The TOE implements additional security functions such as identification and authentication of TOE users; auditing; security management; and trusted path.The security management functions of the TOE are performed via the NetWitness Platform User Interface (UI), which is a web-based GUI. This interface allows authorised administrators to manage the user accounts, session lockout values and other TSF data, and view the IDS data and alerts. Navigation in the UI is based on Roles and is divided into major functional areas including Respond, Investigate, and Admin. The Respond view consolidates all alerts such as ESA Correlation Rules, Malware Analytics, and Reporting Alerts into one location and is used for incident tracking and triage. The Investigate view presents seven different views into a set of data, allowing authorized users to see metadata, events, and potential indicators of compromise. In the Admin view, Administrators can manage network hosts and services; manage system-level security; and manage Collection Methods/event sources.",
        "status": "Valid",
        "target_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/RSA_Netwitness_v11.6_v1.0-Final.pdf",
        "type": "Network And Network-Related Devices And Systems"
      },
      "expiration_date": "2027-06-29",
      "level": "EAL2+ ALC_FLR.1",
      "product": "RSA NetWitness Platform v11.6",
      "recognition": "CCRA",
      "url": "https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/certified-products-and-systems-5/submission-view/100"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2023-06-21",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-M020-AMR-v1.pdf",
        "maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/RSA%20Netwitness%20v11.7%20ST_v1.0.pdf",
        "maintenance_title": "RSA NetWitness Platform v11.7"
      }
    ]
  },
  "manufacturer": "NETWITNESS, an RSA Business",
  "manufacturer_web": "https://www.netwitness.com/en-us",
  "name": "RSA NetWitness Platform v11.6",
  "not_valid_after": "2027-06-29",
  "not_valid_before": "2022-06-29",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "ISCB-5-CERT-C125-CERTIFICATE-v1.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {},
      "cc_security_level": {},
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": {
      "/CreationDate": "D:20220711093940Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220711093940Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "ISCB-5-CERT-C125-CERTIFICATE-v1 (signed)",
      "pdf_file_size_bytes": 770620,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": true,
      "pdf_number_of_pages": 1
    },
    "report_filename": "ISCB-5-RPT-C125-CR-v1.pdf",
    "report_frontpage": {},
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "MY": {
          "ISCB-5-RPT-C125-CR-v1": 41
        }
      },
      "cc_claims": {
        "A": {
          "A.AUDIT_PROTECTION": 1,
          "A.DATA_SOURCES": 1,
          "A.DEPLOY": 1,
          "A.MANAGE": 1,
          "A.PHYSICAL": 1,
          "A.TIME": 1,
          "A.TRUSTED_ADMIN": 1,
          "A.USER": 1
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR.1": 9
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 5
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN.1.1": 4,
          "FAU_GEN.1.2": 3,
          "FAU_GEN.2.1": 4,
          "FAU_SAR.1.1": 4,
          "FAU_SAR.1.2": 5,
          "FAU_SAR.2.1": 2,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1
        },
        "FCS": {
          "FCS_TLS_EXT.1.1": 1
        },
        "FIA": {
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_ATD.1.1": 2,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5.1": 3,
          "FIA_UAU.5.2": 2,
          "FIA_UID.1.1": 1,
          "FIA_UID.1.2": 2
        },
        "FMT": {
          "FMT_MOF.1.1": 3,
          "FMT_MTD.1.1": 3,
          "FMT_SMF.1.1": 1,
          "FMT_SMR.1.1": 2,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_ITT.1.1": 1
        },
        "FTA": {
          "FTA_SSL.3.1": 1,
          "FTA_SSL.4.1": 2,
          "FTA_TAB.1.1": 1
        },
        "FTP": {
          "FTP_TRP.1.1": 1,
          "FTP_TRP.1.3": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 4
        },
        "TLS": {
          "TLS": {
            "TLS": 5,
            "TLS 1.2": 1
          }
        },
        "VPN": {
          "VPN": 1
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 2
        },
        "ISO": {
          "ISO/IEC 18045": 2,
          "ISO/IEC15408": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/CreationDate": "D:20220711094127Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220711094127Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "ISCB-5-RPT-C125-CR-v1",
      "pdf_file_size_bytes": 1270700,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 42
    },
    "st_filename": "RSA Netwitness v11.6_v1.0-Final.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.AUDIT_PROTECTION": 3,
          "A.DATA_SOURCES": 2,
          "A.DEPLOY": 2,
          "A.MANAGE": 2,
          "A.PHYSICAL": 2,
          "A.TIME": 3,
          "A.TRUSTED_ADMIN": 2,
          "A.USER": 3
        },
        "O": {
          "O.ANALYZE": 5,
          "O.AUDIT_GENERATION": 2,
          "O.AUDIT_PROTECTION": 4,
          "O.MANAGE": 4,
          "O.PRIVACY_DATA_PROTECT": 2,
          "O.PROTECTED_COMMS": 3,
          "O.TOE_ACCESS": 5
        },
        "OE": {
          "OE.AUDIT_PROTECTION": 2,
          "OE.DATA_SOURCES": 1,
          "OE.DEPLOY": 2,
          "OE.MANAGE": 2,
          "OE.PHYSICAL": 3,
          "OE.TIME": 3,
          "OE.TRUSTED_ADMIN": 2,
          "OE.USER": 2
        },
        "T": {
          "T.INADVERTENT_ACTIVITY": 3,
          "T.MALICIOUS_ACTIVITY": 3,
          "T.MISUSE": 2,
          "T.TSF_COMPROMISE": 3,
          "T.UNACCOUNTABLE_USERS": 2,
          "T.UNPROTECTED_PRIVACY_DATA": 2
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 1,
          "ADV_ARC.1": 10,
          "ADV_FSP": 1,
          "ADV_FSP.2": 11,
          "ADV_TDS": 1,
          "ADV_TDS.1": 11
        },
        "AGD": {
          "AGD_OPE": 1,
          "AGD_OPE.1": 10,
          "AGD_PRE": 1,
          "AGD_PRE.1": 6
        },
        "ALC": {
          "ALC_CMC": 1,
          "ALC_CMC.2": 8,
          "ALC_CMS.2": 7,
          "ALC_DEL": 1,
          "ALC_DEL.1": 5,
          "ALC_FLR": 1,
          "ALC_FLR.1": 14,
          "ALC_FRL.1": 2
        },
        "ASE": {
          "ASE_CCL.1": 15,
          "ASE_ECD.1": 11,
          "ASE_INT.1": 13,
          "ASE_OBJ.2": 11,
          "ASE_REQ.2": 14,
          "ASE_SPD.1": 8,
          "ASE_TSS.1": 6
        },
        "ATE": {
          "ATE_COV": 1,
          "ATE_COV.1": 4,
          "ATE_FUN": 1,
          "ATE_FUN.1": 8,
          "ATE_IND": 1,
          "ATE_IND.2": 7
        },
        "AVA": {
          "AVA_VAN.2": 8
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 5,
          "EAL 2 augmented": 5,
          "EAL2": 4,
          "EAL2 augmented": 1
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 8,
          "FAU_GEN.1": 9,
          "FAU_GEN.1.1": 1,
          "FAU_GEN.1.2": 1,
          "FAU_GEN.2": 4,
          "FAU_GEN.2.1": 1,
          "FAU_SAR": 4,
          "FAU_SAR.1": 15,
          "FAU_SAR.1.1": 2,
          "FAU_SAR.1.2": 2,
          "FAU_SAR.2": 4,
          "FAU_SAR.2.1": 1,
          "FAU_STG": 3,
          "FAU_STG.1": 4,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1
        },
        "FCS": {
          "FCS_CKM": 1,
          "FCS_CKM.1": 1,
          "FCS_COP.1": 2,
          "FCS_COP.1.1": 1,
          "FCS_SSH": 2,
          "FCS_SSH_EXT": 3,
          "FCS_SSH_EXT.1": 8,
          "FCS_SSH_EXT.1.1": 2,
          "FCS_SSH_EXT.1.2": 2,
          "FCS_SSH_EXT.1.3": 2,
          "FCS_SSH_EXT.1.4": 2,
          "FCS_SSH_EXT.1.5": 2,
          "FCS_SSH_EXT.1.6": 2,
          "FCS_TLS": 2,
          "FCS_TLS_EXT": 3,
          "FCS_TLS_EXT.1": 11,
          "FCS_TLS_EXT.1.1": 2
        },
        "FIA": {
          "FIA_AFL": 3,
          "FIA_AFL.1": 5,
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_ATD": 3,
          "FIA_ATD.1": 3,
          "FIA_ATD.1.1": 1,
          "FIA_UAU": 7,
          "FIA_UAU.1": 8,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5": 4,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 1,
          "FIA_UID": 3,
          "FIA_UID.1": 9,
          "FIA_UID.1.1": 1,
          "FIA_UID.1.2": 1
        },
        "FMT": {
          "FMT_MOF.1": 27,
          "FMT_MOF.1.1": 3,
          "FMT_MTD": 3,
          "FMT_MTD.1": 5,
          "FMT_MTD.1.1": 1,
          "FMT_SMF": 3,
          "FMT_SMF.1": 9,
          "FMT_SMF.1.1": 1,
          "FMT_SMR": 3,
          "FMT_SMR.1": 7,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_ITT": 3,
          "FPT_ITT.1": 4,
          "FPT_ITT.1.1": 1,
          "FPT_STM.1": 2
        },
        "FTA": {
          "FTA_SSL": 6,
          "FTA_SSL.3": 6,
          "FTA_SSL.3.1": 1,
          "FTA_SSL.4": 6,
          "FTA_SSL.4.1": 1,
          "FTA_TAB": 3,
          "FTA_TAB.1": 4,
          "FTA_TAB.1.1": 1
        },
        "FTP": {
          "FTP_TRP": 5,
          "FTP_TRP.1": 5,
          "FTP_TRP.1.1": 1,
          "FTP_TRP.1.2": 1,
          "FTP_TRP.1.3": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 45
        },
        "TLS": {
          "TLS": {
            "TLS": 48,
            "TLS 1.0": 1,
            "TLS 1.1": 1,
            "TLS 1.2": 3
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 1,
            "SHA256": 2,
            "SHA384": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 5
        },
        "RFC": {
          "RFC 4252": 2,
          "RFC 5246": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES-": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Cisco": {
          "Cisco": 1
        },
        "Microsoft": {
          "Microsoft": 5
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/CreationDate": "D:20220623023133Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220623023133Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "Microsoft Word - RSA Netwitness v11.6_v1.0-Final.docx",
      "pdf_file_size_bytes": 1315844,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 69
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C125-CR-v1.pdf",
  "scheme": "MY",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_FLR.1",
      "EAL2+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/RSA%20Netwitness%20v11.6_v1.0-Final.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "766e3efcb7e1185b53cc3f502a501549d3d760c3c51c7bdef52f62048f7a2674",
      "txt_hash": "f88cf70e7c06be5bb9dee7d9d79da05a40676829c7ad68a526de45b43bbd7c3c"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "10c8c7542c1876874ed462bd32246a0ec19e7a797dad6ec2d1cf32f41408ec89",
      "txt_hash": "bfc00acf8033b395423d44400f5ec2c0f8beb54991f17e0fac827f9d9b67193f"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "4f6e5839cb5b1af27958297d01a5b65c902724796814a89e505adfddf824d131",
      "txt_hash": "82039999a9f1e384f30e0b3564c8abe54fa1b2f02a659f76d3131fc93aa37d66"
    }
  },
  "status": "active"
}