NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option

CSV information ?

Status archived
Valid from 18.05.2018
Valid until 18.05.2023
Scheme 🇩🇪 DE
Manufacturer NXP Semiconductors Germany GmbH Business Line Identification
Category ICs, Smart Cards and Smart Card-Related Devices and Systems
Security level ALC_DVS.2, EAL4+
Maintenance updates Reassessment - NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option (07.01.2019) Certification report

Heuristics summary ?

Certificate ID: BSI-DSZ-CC-1023-2018

Certificate ?

Extracted keywords

Vendor
NXP, NXP Semiconductors

Security level
EAL 4, EAL 2, EAL 4 augmented
Security Assurance Requirements (SAR)
ALC_DVS.2, ALC_FLR
Protection profiles
BSI-CC-PP-0055-2009
Certificates
BSI-DSZ-CC-1023-2018

Standards
ISO/IEC 15408, ISO/IEC 18045, ICAO
Technical reports
BSI TR-03110

File metadata

Title Certification Report BSI-DSZ-CC-1023-2018
Subject NXP eDoc Suite - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option
Keywords "Common Criteria, Certification, Zertifizierung, TR-03110, BAC, MRED, MRTD, PP-0055"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20180523092821+02'00'
Modification date D:20180523113916+02'00'
Pages 1
Creator Writer
Producer LibreOffice 5.2

Certification report ?

Extracted keywords

Symmetric Algorithms
AES, DES, TDES, CMAC
Asymmetric Algorithms
Diffie-Hellman, DSA
Hash functions
SHA-1
Schemes
MAC, Key Exchange
Protocols
PACE
Randomness
RNG
Block cipher modes
CBC

Operating System name
JCOP 3
Vendor
NXP, NXP Semiconductors

Security level
EAL 4, EAL 2, EAL 1, EAL 2+, EAL 5+, EAL 6, EAL5+, EAL 4 augmented
Claims
OE.APPLET, OE.VERIFICATION, OE.CODE-EVIDENCE, OE.APPS-PROVIDE, OE.VERIFICATION-AUTHORITY, OE.KEY-CHANGE, OE.SECURITY-DOMAINS, OE.USE_DIAG, OE.USE_KEYS, OE.PROCESS_SEC_IC
Security Assurance Requirements (SAR)
ADV_FSP, AGD_OPE, AGD_PRE, ALC_DVS.2, ALC_FLR, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_LCD.1, ALC_TAT.1, ALC_COMP.1, ATE_FUN, ATE_IND, AVA_VAN
Security Functional Requirements (SFR)
FCS_COP, FCS_CKM.1, FCS_COP.1.1, FCS_RND.1, FIA_UAU.4
Protection profiles
BSI-CC-PP-0055-2009, BSI-CC-PP-0055-
Certificates
BSI-DSZ-CC-1023-2018, BSI-DSZ-CC-1022-2018, BSI-DSZ-CC-1023, BSI-DSZ-CC-0973-V2-2016, CC-98209-CR2, NSCIB-CC-67206-CR2, NSCIB-CC-98209-CR2
Evaluation facilities
Brightsight, TÃœV Informationstechnik, TÃœViT
Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, based on BSI TR-03110 for Official Use with BAC option, Security Target, cv cryptovision GmbH (confidential document) [7] Evaluation Technical Report BSI-DSZ-CC-1023, Version 2, 16 March 2018, ETR Summary – NXP eDoc, for Official Use with BAC option, TÜV Informationstechnik GmbH – Evaluation Body for IT Security (confidential document) [8] Machine Readable Travel Document with "ICAO Application" Basic Access Control, Version 1.10, based on BSI TR-03110 for Official Use with BAC option, Security Target Lite, cv cryptovision GmbH (confidential document) [10] Configuration list for the TOE, Revision 13027, 22 Februar 2018, File 2018-02-, xlsx, cv cryptovision GmbH (confidential document) [11] Guidance Document for the TOE: NXP eDoc Suite v3.0 – cryptovision ePasslet Suite – Java Card, Composition NXP JCOP 3 SECID P60 CS (OSB) – EAL5+, version 3.0, 04 December 2017, Brightsight B.V. (confidential document) [16] Certification Report Crypto Library V3.1.x on P6022y VB, Certificate number CC-17- 67206, V3.1.x on P6022y VB EAL6+/5+, Reference 17-RPT-421, version 3.0, 24 October 2017, Brightsight B.V. (confidential document) [18] Certification report BSI-DSZ-CC-0973-V2-2016 for NXP Secure Smart Card Controller P6022y VB, Report for Composite Evaluation P6022y VB, version 1, 25 August 2016, TÜV Informationstechnik GmbH (confidential document) [20] Guidance Document for the platform: JCOP 3 SECID P60 CS User Guidance and Administration, SAC) Functional Specification ADV_FSP. Version 3.0.5, 29 September 2017, cv cryptovision GmbH (confidential document) 23 / 28 Certification Report BSI-DSZ-CC-1023-2018 C. Excerpts from the Criteria For the meaning

Side-channel analysis
JIL
Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, based on BSI TR-03110 for Official Use with BAC option, Security Target, cv cryptovision GmbH (confidential document) [7] Evaluation Technical Report BSI-DSZ-CC-1023, Version 2, 16 March 2018, ETR Summary – NXP eDoc, for Official Use with BAC option, TÜV Informationstechnik GmbH – Evaluation Body for IT Security (confidential document) [8] Machine Readable Travel Document with "ICAO Application" Basic Access Control, Version 1.10, based on BSI TR-03110 for Official Use with BAC option, Security Target Lite, cv cryptovision GmbH (confidential document) [10] Configuration list for the TOE, Revision 13027, 22 Februar 2018, File 2018-02-, xlsx, cv cryptovision GmbH (confidential document) [11] Guidance Document for the TOE: NXP eDoc Suite v3.0 – cryptovision ePasslet Suite – Java Card, Composition NXP JCOP 3 SECID P60 CS (OSB) – EAL5+, version 3.0, 04 December 2017, Brightsight B.V. (confidential document) [16] Certification Report Crypto Library V3.1.x on P6022y VB, Certificate number CC-17- 67206, V3.1.x on P6022y VB EAL6+/5+, Reference 17-RPT-421, version 3.0, 24 October 2017, Brightsight B.V. (confidential document) [18] Certification report BSI-DSZ-CC-0973-V2-2016 for NXP Secure Smart Card Controller P6022y VB, Report for Composite Evaluation P6022y VB, version 1, 25 August 2016, TÜV Informationstechnik GmbH (confidential document) [20] Guidance Document for the platform: JCOP 3 SECID P60 CS User Guidance and Administration, SAC) Functional Specification ADV_FSP. Version 3.0.5, 29 September 2017, cv cryptovision GmbH (confidential document) 23 / 28 Certification Report BSI-DSZ-CC-1023-2018 C. Excerpts from the Criteria For the meaning

Standards
FIPS46-3, FIPS197, FIPS180-4, AIS 34, AIS 36, AIS 20, AIS36, AIS35, AIS 35, AIS 26, AIS 32, AIS 46, AIS20, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, ICAO
Technical reports
BSI TR-03110, BSI 7148

File metadata

Title Certification Report BSI-DSZ-CC-1023-2018
Subject NXP eDoc Suite - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option
Keywords "Common Criteria, Certification, Zertifizierung, TR-03110, BAC, MRED, MRTD, PP-0055"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20180523092802+02'00'
Modification date D:20190109074654+01'00'
Pages 28
Creator Writer
Producer LibreOffice 5.2

Frontpage

Certificate ID BSI-DSZ-CC-1023-2018
Certified item NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option
Certification lab BSI
Developer NXP Semiconductors Germany GmbH

References

Outgoing
  • BSI-DSZ-CC-1022-2018 - archived - NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine Readable Travel Document with "ICAO Application", Extended Access Control with PACE
  • BSI-DSZ-CC-0973-V2-2016 - archived - NXP Secure Smart Card Controller P6022y VB including IC Dedicated Software --- The certificate comprises four major configurations with two different EAL levels. For details see the ST. P6022P/X VB: EAL6 augmented by ALC_FLR.1, ASE_TSS.2 P6022M/D/J VB: EAL 5 augmented by AVA_VAN.5, ALC_DVS.2, ASE_TSS.2

Security target ?

Extracted keywords

Symmetric Algorithms
AES, AES-, DES, Triple-DES, TDES, TripleDES, 3DES, Lucifer, KMAC, CMAC
Asymmetric Algorithms
ECC
Hash functions
SHA-1, SHA-256, SHA-224, MD5, RIPEMD-160
Schemes
MAC, Key exchange
Protocols
PACE
Randomness
RNG, RND
Block cipher modes
CBC, CCM

Operating System name
JCOP 3
IC data groups
EF.DG1, EF.DG2, EF.DG3, EF.DG4, EF.DG5, EF.DG16, EF.DG13, EF.DG14, EF.DG15, EF.COM, EF.SOD
Vendor
NXP, NXP Semiconductors

Security level
EAL 4+, EAL 5+, EAL4, EAL4 augmented
Claims
T.CONFID-APPLI-DATA, T.CONFID-JCS-CODE, T.CONFID-JCS-DATA, T.INTEG-APPLI-CODE, T.INTEG-APPLI-DATA, T.INTEG-JCS-CODE, T.INTEG-JCS-DATA, T.SID, T.EXE-CODE, T.NATIVE, T.RESOURCES, T.UNAUTHORIZED_CARD_MNGT, T.COM_EXPLOIT, T.LIFE_CYCLE, T.OBJ-DELETION, T.PHYSICAL, T.OS_OPERATE, T.RND, T.CONFIG, A.APPLET, A.VERIFICATION, A.USE_DIAG, A.USE_KEYS, A.PPROCESS-SEC-IC, A.APPS-PROVIDER, A.VERIFICATION-AUTHORITY, OT.IDENTIFICATION, OT.RND, OT.SID, OT.FIREWALL, OT.GLOBAL_ARRAYS_CONFID, OT.GLOBAL_ARRAYS_INTEG, OT.NATIVE, OT.OPERATE, OT.REALLOCATION, OT.RESOURCES, OT.ALARM, OT.CIPHER, OT.KEY-MNGT, OT.PIN-MNGT, OT.TRANSACTION, OT.OBJ-DELETION, OT.APPLI-AUTH, OT.DOMAIN-RIGHTS, OT.COMM_AUTH, OT.COMM_INTEGRITY, OT.COMM_CONFIDENTIALITY, OT.EXT-MEM, OT.CARD-MANAGEMENT, OT.SCP, OT.SEC_BOX_FW, OT.CONFIG-LIMIT, OE.APPLET, OE.VERIFICATION, OE.CODE-EVIDENCE, OE.APPS-PROVIDER, OE.VERIFICATION-AUTHORITY, OE.KEY-CHANGE, OE.SECURITY-DOMAINS, OE.USE_DIAG, OE.USE_KEYS, OE.PROCESS_SEC_IC, OE.MRTD_
Security Assurance Requirements (SAR)
ADV_ARC.1, ALC_DVS.2, ALC_DVS
Security Functional Requirements (SFR)
FAU_SAS, FAU_ARP.1, FAU_SAS.1, FAU_GEN, FAU_SAS.1.1, FCO_NRO.2, FCS_RND, FCS_CKM.1, FCS_CKM.2, FCS_CKM.3, FCS_CKM.4, FCS_COP.1, FCS_COP.1.1, FCS_COP, FCS_RNG.1, FCS_RND.1, FCS_RND.1.1, FCS_LIM, FCS_CKM.1.1, FCS_CKM.4.1, FCS_CKM, FDP_ACC.2, FDP_ACF.1, FDP_IFC.1, FDP_IFF.1, FDP_RIP.1, FDP_ROL.1, FDP_SDI.2, FDP_UIT.1, FDP_ITC.2, FDP_ACC.1, FDP_IFC.2, FDP_ACF, FDP_ITC.1, FDP_ACC.1.1, FDP_ACF.1.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_UCT.1, FDP_UCT.1.1, FDP_UIT.1.1, FDP_UIT.1.2, FDP_ITC, FDP_ACC, FDP_UCT, FDP_UIT, FIA_ATD.1, FIA_UID.2, FIA_USB.1, FIA_UID.1, FIA_UAU.1, FIA_UAU.4, FIA_AFL.1, FIA_SOS.2, FIA_UAU.5.2, FIA_UAU.6, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.4.1, FIA_UAU.5, FIA_UAU.5.1, FIA_UAU.6.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UAU, FIA_UID, FIA_AFL, FMT_LIM, FMT_MSA.1, FMT_MSA.2, FMT_MSA.3, FMT_SMF.1, FMT_SMR.1, FMT_MTD.1, FMT_MTD.3, FMT_LIM.1, FMT_LIM.2, FMT_LIM.1.1, FMT_LIM.2.1, FMT_MTD, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMR, FMT_SMF, FPR_UNO.1, FPT_FLS.1, FPT_PHP.3, FPT_TDC.1, FPT_RCV.3, FPT_TST.1, FPT_FLS.1.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_PHP.3.1, FPT_RVM.1, FPT_SEP.1, FPT_FLS, FTP_ITC.1, FTP_TRP.1
Protection profiles
BSI-CC-PP0055, BSI-PP-0002-2001, BSI-CC-PP-0084-, BSI-CC-PP-0055-2009, BSI-PP-0056, BSI-CC-PP-0056-
Certificates
BSI-DSZ-CC-1023, BSI-DSZ-CC-0973-2016, BSI-DSZ-CC-0973-V2-2016, NSCIB-CC-98209-CR2, NSCIB-CC-15-67206-CR
Certification process
out of scope, Out of scope, chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall, internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out of scope (internal Java Card Fire- wall, No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No correspondence Out of scope (internal Java Card Fire- wall, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall, chapter 7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm, managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No correspondence. Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ROL.1[FIREWALL] No correspondence. Out of scope (internal Java Card Fire- wall, chapter 7.1.1.4 in platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FPT_FLS.1[Installer] No correspondence Out of scope (internal Java Card func- tionality, ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ACF.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality, chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality, chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, MIFARE functionality or a banking application in ROM; please note that this functionality is out of scope of the TOE’s security functionality claimed by this security target. The correctness of the chip, platform ST) Firewall Policy (chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_ACF.1[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_IFC.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out, internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1[OBJECTS] No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No, Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface, 7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No, Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The Java Card platform, of 81 Platform SFR Correspondence in this ST References/Remarks FDP_RIP.1[ABORT] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[bArray] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[TRANSIENT] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[FIREWALL] No, vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 7.1.1.4, platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2[AID] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -, of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MTD.1[JCRE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional, which addresses security aspects outside the runtime. FMT_SMR.1[Installer] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[Installer] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3[Installer] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional, manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. RMIG Security Functional, that owns the deleted objects by invoking a specific API method. FDP_RIP.1[ODEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ODEL] FPT_FLS.1 The, verified, or that has been modified after bytecode verification. FDP_UIT.1[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_ITC.2[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_ACC.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FCO_NRO.2[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence, 19 of 81 Platform SFR Correspondence in this ST References/Remarks FIA_UAU.4[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence, group includes requirements for managing the external memory. FDP_ACC.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements, numbers with a defined quality metric that can be used directly. FIA_AFL.1[PIN] No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FPT_EMSEC.1 FPT_EMSEC.1, Functional Requirements (chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -, 81 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Configuration Security, Requirements (chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 4: Assessment of the, but no corresponding objectives for the TOE of this ST. No contradictions. OT.SID No correspondence Out of scope. No contradiction to this ST. OT.FIREWALL No correspondence Out of scope. No contradiction to this, OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No, to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST. OT.OPERATE No correspondence Out of scope. No contradiction to this, Platform Objective Correspondence in this ST References/Remarks OT.REALLOCATION No correspondence Out of scope. No contradiction to this ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this, OT.ALARM No correspondence Out of scope. No contradiction to this ST. OT.CIPHER No correspondence Indirectly relevant for the correct, corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this, OT.TRANSACTION No correspondence Out of scope. No contradiction to this ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to, ST. OT.APPLI-AUTH No correspondence Out of scope. No contradiction to this ST. OT.DOMAIN-RIGHTS No correspondence Out of scope. No contradiction to, ST. OT.COMM_AUTH No correspondence Out of scope. No contradiction to this ST. OT.COMM_INTEGRITY No correspondence Out of scope. No contradiction to, ST. OT.COMM_CONFIDENTIALITY No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this, OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-, The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to, ST. OT.CONFIG-LIMIT No correspondence Out of scope. No contradiction to this ST. Table 5: Assessment of the platform objectives. NXP eDoc Suite v3.0, Platform Threat Correspondence in this ST References/Remarks T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to, T.Information_Leakage No contradiction to this ST. T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No, REFINED] T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to, ST. T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST, SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this, T.NATIVE No correspondence Out of scope. No contradiction to this ST. T.RESOURCES No correspondence Out of scope. No contradiction to this, T.UNAUTHORIZED_CARD_MNGT No correspondence Out of scope. No contradiction to this ST. T.COM_EXPLOIT No correspondence Out of scope. No contradiction to, ST. T.LIFE_CYCLE No correspondence Out of scope. No contradiction to this ST. T.OBJ-DELETION No correspondence Out of scope. No contradiction to, of 81 Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.RND No correspondence Out of scope. No contradiction to this ST. T, No correspondence Out of scope. No contradiction to this ST. Table 6: Threats of the platform ST. 2.3.5 Assessment of Platform

Side-channel analysis
physical probing, DPA, SPA, timing attacks, Physical Tampering, physical tampering, Physical tampering, Malfunction, malfunction, fault injection, reverse engineering
Certification process
out of scope, Out of scope, chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall, internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out of scope (internal Java Card Fire- wall, No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No correspondence Out of scope (internal Java Card Fire- wall, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall, chapter 7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm, managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No correspondence. Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ROL.1[FIREWALL] No correspondence. Out of scope (internal Java Card Fire- wall, chapter 7.1.1.4 in platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FPT_FLS.1[Installer] No correspondence Out of scope (internal Java Card func- tionality, ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ACF.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality, chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality, chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality, MIFARE functionality or a banking application in ROM; please note that this functionality is out of scope of the TOE’s security functionality claimed by this security target. The correctness of the chip, platform ST) Firewall Policy (chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_ACF.1[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_IFC.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out, internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1[OBJECTS] No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No, Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface, 7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No, Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The Java Card platform, of 81 Platform SFR Correspondence in this ST References/Remarks FDP_RIP.1[ABORT] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[bArray] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[TRANSIENT] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[FIREWALL] No, vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 7.1.1.4, platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2[AID] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -, of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MTD.1[JCRE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional, which addresses security aspects outside the runtime. FMT_SMR.1[Installer] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[Installer] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3[Installer] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional, manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ADEL] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. RMIG Security Functional, that owns the deleted objects by invoking a specific API method. FDP_RIP.1[ODEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ODEL] FPT_FLS.1 The, verified, or that has been modified after bytecode verification. FDP_UIT.1[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_ITC.2[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_ACC.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FCO_NRO.2[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence, 19 of 81 Platform SFR Correspondence in this ST References/Remarks FIA_UAU.4[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence, group includes requirements for managing the external memory. FDP_ACC.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[EXT-MEM] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements, numbers with a defined quality metric that can be used directly. FIA_AFL.1[PIN] No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FPT_EMSEC.1 FPT_EMSEC.1, Functional Requirements (chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SecureBox] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -, 81 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Configuration Security, Requirements (chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[CONFIG-SERVICE] No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 4: Assessment of the, but no corresponding objectives for the TOE of this ST. No contradictions. OT.SID No correspondence Out of scope. No contradiction to this ST. OT.FIREWALL No correspondence Out of scope. No contradiction to this, OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No, to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST. OT.OPERATE No correspondence Out of scope. No contradiction to this, Platform Objective Correspondence in this ST References/Remarks OT.REALLOCATION No correspondence Out of scope. No contradiction to this ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this, OT.ALARM No correspondence Out of scope. No contradiction to this ST. OT.CIPHER No correspondence Indirectly relevant for the correct, corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this, OT.TRANSACTION No correspondence Out of scope. No contradiction to this ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to, ST. OT.APPLI-AUTH No correspondence Out of scope. No contradiction to this ST. OT.DOMAIN-RIGHTS No correspondence Out of scope. No contradiction to, ST. OT.COMM_AUTH No correspondence Out of scope. No contradiction to this ST. OT.COMM_INTEGRITY No correspondence Out of scope. No contradiction to, ST. OT.COMM_CONFIDENTIALITY No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this, OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-, The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to, ST. OT.CONFIG-LIMIT No correspondence Out of scope. No contradiction to this ST. Table 5: Assessment of the platform objectives. NXP eDoc Suite v3.0, Platform Threat Correspondence in this ST References/Remarks T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to, T.Information_Leakage No contradiction to this ST. T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No, REFINED] T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to, ST. T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST, SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this, T.NATIVE No correspondence Out of scope. No contradiction to this ST. T.RESOURCES No correspondence Out of scope. No contradiction to this, T.UNAUTHORIZED_CARD_MNGT No correspondence Out of scope. No contradiction to this ST. T.COM_EXPLOIT No correspondence Out of scope. No contradiction to, ST. T.LIFE_CYCLE No correspondence Out of scope. No contradiction to this ST. T.OBJ-DELETION No correspondence Out of scope. No contradiction to, of 81 Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.RND No correspondence Out of scope. No contradiction to this ST. T, No correspondence Out of scope. No contradiction to this ST. Table 6: Threats of the platform ST. 2.3.5 Assessment of Platform

Standards
FIPS 46-3, FIPS 180-412, FIPS46-3, FIPS 197, FIPS197, FIPS 180-2, FIPS 180-4, FIPS PUB 46-3, FIPS180-2, FIPS180-4, PKCS#15, AIS20, AIS 20, AIS31, RFC3369, ISO/IEC 7816-2, ISO/IEC 7816-4, ICAO, X.509, CCMB-2012-09-001, CCMB-2012-09-002, CCMB-2012-09-003, CCMB-2012-09-004
Technical reports
BSI TR-03110

File metadata

Title cv act ePasslet/MRTD-BAC Security Target
Subject deutsch
Keywords Security Target, ePasslet Suite, ICAO LDS, BAC
Author bdrisch
Creation date D:20180222105939+01'00'
Modification date D:20180222105939+01'00'
Pages 81
Creator Microsoft® Word 2013
Producer Microsoft® Word 2013

References

Outgoing
  • BSI-DSZ-CC-0973-V2-2016 - archived - NXP Secure Smart Card Controller P6022y VB including IC Dedicated Software --- The certificate comprises four major configurations with two different EAL levels. For details see the ST. P6022P/X VB: EAL6 augmented by ALC_FLR.1, ASE_TSS.2 P6022M/D/J VB: EAL 5 augmented by AVA_VAN.5, ALC_DVS.2, ASE_TSS.2
  • BSI-DSZ-CC-0973-2016 - archived - NXP Secure Smart Card Controller P6022y VB including IC Dedicated Software --- The certificate comprises four major configurations with two different EAL levels. For details see the ST. P6022P/X VB: EAL6 augmented by ALC_FLR.1, ASE_TSS.2 P6022M/D/J VB: EAL 5 augmented by AVA_VAN.5, ALC_DVS.2, ASE_TSS.2

Heuristics ?

Certificate ID: BSI-DSZ-CC-1023-2018

Extracted SARs

ALC_LCD.1, ALC_CMS.4, ALC_CMC.4, ALC_DEL.1, ALC_COMP.1, ALC_TAT.1, ADV_ARC.1, ALC_DVS.2

References ?

Updates ?

  • 23.07.2024 The certificate was first processed.
    New certificate

    A new Common Criteria certificate with the product name NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option was processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "ICs, Smart Cards and Smart Card-Related Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1023c_pdf.pdf",
  "dgst": "e4001ed7d2f56e9d",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1023-2018",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_COMP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "3.0"
      ]
    },
    "indirect_transitive_cves": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1022-2018",
          "BSI-DSZ-CC-0973-V2-2016"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1022-2018",
          "BSI-DSZ-CC-0973-2016",
          "BSI-DSZ-CC-0973-V2-2016"
        ]
      }
    },
    "scheme_data": null,
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0973-2016",
          "BSI-DSZ-CC-0973-V2-2016"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0973-2016",
          "BSI-DSZ-CC-0973-V2-2016"
        ]
      }
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2019-01-07",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1023ra01a_pdf.pdf",
        "maintenance_st_link": null,
        "maintenance_title": "Reassessment - NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option"
      }
    ]
  },
  "manufacturer": "NXP Semiconductors Germany GmbH Business Line Identification",
  "manufacturer_web": "https://www.nxp.com",
  "name": "NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option",
  "not_valid_after": "2023-05-18",
  "not_valid_before": "2018-05-18",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "1023c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1023-2018": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0055-2009": 1
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_DVS.2": 1,
          "ALC_FLR": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 1,
          "EAL 4 augmented": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ICAO": {
          "ICAO": 1
        },
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI TR-03110": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 1,
          "NXP Semiconductors": 1
        }
      },
      "vulnerability": {}
    },
    "cert_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20180523092821+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, TR-03110, BAC, MRED, MRTD, PP-0055\"",
      "/ModDate": "D:20180523113916+02\u002700\u0027",
      "/Producer": "LibreOffice 5.2",
      "/Subject": "NXP eDoc Suite - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option",
      "/Title": "Certification Report BSI-DSZ-CC-1023-2018",
      "pdf_file_size_bytes": 356019,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 1
    },
    "report_filename": "1023a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cc_security_level": "Common Criteria Part 3 conformant EAL 4 augmented by ALC_DVS.2",
        "cc_version": "PP conformant Common Criteria Part 2 extended",
        "cert_id": "BSI-DSZ-CC-1023-2018",
        "cert_item": "NXP eDoc Suite v3.0 - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option",
        "cert_lab": "BSI",
        "developer": "NXP Semiconductors Germany GmbH",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        ],
        "ref_protection_profiles": "Machine Readable Travel Document with \"ICAO Application\" Basic Access Control, Version 1.10, 25 March 2009, BSI-CC-PP-0055-2009"
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          },
          "DSA": {
            "DSA": 1
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0973-V2-2016": 2,
          "BSI-DSZ-CC-1022-2018": 3,
          "BSI-DSZ-CC-1023": 1,
          "BSI-DSZ-CC-1023-2018": 18
        },
        "NL": {
          "CC-98209-CR2": 1,
          "NSCIB-CC-67206-CR2": 2,
          "NSCIB-CC-98209-CR2": 1
        }
      },
      "cc_claims": {
        "OE": {
          "OE.APPLET": 1,
          "OE.APPS-PROVIDE": 1,
          "OE.CODE-EVIDENCE": 1,
          "OE.KEY-CHANGE": 1,
          "OE.PROCESS_SEC_IC": 1,
          "OE.SECURITY-DOMAINS": 1,
          "OE.USE_DIAG": 1,
          "OE.USE_KEYS": 1,
          "OE.VERIFICATION": 1,
          "OE.VERIFICATION-AUTHORITY": 1
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0055-": 1,
          "BSI-CC-PP-0055-2009": 3
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_FSP": 1
        },
        "AGD": {
          "AGD_OPE": 1,
          "AGD_PRE": 1
        },
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_CMS.4": 1,
          "ALC_COMP.1": 1,
          "ALC_DEL.1": 1,
          "ALC_DVS.2": 5,
          "ALC_FLR": 3,
          "ALC_LCD.1": 1,
          "ALC_TAT.1": 1
        },
        "ATE": {
          "ATE_FUN": 1,
          "ATE_IND": 1
        },
        "AVA": {
          "AVA_VAN": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 2,
          "EAL 2+": 1,
          "EAL 4": 5,
          "EAL 4 augmented": 3,
          "EAL 5+": 1,
          "EAL 6": 1,
          "EAL5+": 1
        }
      },
      "cc_sfr": {
        "FCS": {
          "FCS_CKM.1": 1,
          "FCS_COP": 2,
          "FCS_COP.1.1": 1,
          "FCS_RND.1": 1
        },
        "FIA": {
          "FIA_UAU.4": 2
        }
      },
      "certification_process": {
        "ConfidentialDocument": {
          "Composition NXP JCOP 3 SECID P60 CS (OSB) \u2013 EAL5+, version 3.0, 04 December 2017, Brightsight B.V. (confidential document) [16] Certification Report Crypto Library V3.1.x on P6022y VB, Certificate number CC-17- 67206": 1,
          "Report for Composite Evaluation P6022y VB, version 1, 25 August 2016, T\u00dcV Informationstechnik GmbH (confidential document) [20] Guidance Document for the platform: JCOP 3 SECID P60 CS User Guidance and Administration": 1,
          "SAC) Functional Specification ADV_FSP. Version 3.0.5, 29 September 2017, cv cryptovision GmbH (confidential document) 23 / 28 Certification Report BSI-DSZ-CC-1023-2018 C. Excerpts from the Criteria For the meaning": 1,
          "V3.1.x on P6022y VB EAL6+/5+, Reference 17-RPT-421, version 3.0, 24 October 2017, Brightsight B.V. (confidential document) [18] Certification report BSI-DSZ-CC-0973-V2-2016 for NXP Secure Smart Card Controller P6022y VB": 1,
          "based on BSI TR-03110 for Official Use with BAC option, Security Target Lite, cv cryptovision GmbH (confidential document) [10] Configuration list for the TOE, Revision 13027, 22 Februar 2018, File 2018-02-": 1,
          "based on BSI TR-03110 for Official Use with BAC option, Security Target, cv cryptovision GmbH (confidential document) [7] Evaluation Technical Report BSI-DSZ-CC-1023, Version 2, 16 March 2018, ETR Summary \u2013 NXP eDoc": 1,
          "being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1,
          "for Official Use with BAC option, T\u00dcV Informationstechnik GmbH \u2013 Evaluation Body for IT Security (confidential document) [8] Machine Readable Travel Document with \"ICAO Application\" Basic Access Control, Version 1.10": 1,
          "xlsx, cv cryptovision GmbH (confidential document) [11] Guidance Document for the TOE: NXP eDoc Suite v3.0 \u2013 cryptovision ePasslet Suite \u2013 Java Card": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 1
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key Exchange": 1
        },
        "MAC": {
          "MAC": 4
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "BrightSight": {
          "Brightsight": 2
        },
        "TUV": {
          "T\u00dcV Informationstechnik": 4,
          "T\u00dcViT": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "JCOP": {
          "JCOP 3": 8
        }
      },
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 2
        }
      },
      "side_channel_analysis": {
        "other": {
          "JIL": 3
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 26": 1,
          "AIS 32": 1,
          "AIS 34": 2,
          "AIS 35": 2,
          "AIS 36": 2,
          "AIS 46": 1,
          "AIS20": 1,
          "AIS35": 1,
          "AIS36": 1
        },
        "FIPS": {
          "FIPS180-4": 1,
          "FIPS197": 3,
          "FIPS46-3": 3
        },
        "ICAO": {
          "ICAO": 9
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 10
          }
        },
        "DES": {
          "3DES": {
            "TDES": 2
          },
          "DES": {
            "DES": 5
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 3
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1,
          "BSI TR-03110": 12
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 34,
          "NXP Semiconductors": 4
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20180523092802+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, TR-03110, BAC, MRED, MRTD, PP-0055\"",
      "/ModDate": "D:20190109074654+01\u002700\u0027",
      "/Producer": "LibreOffice 5.2",
      "/Subject": "NXP eDoc Suite - cryptovision ePasslet Suite - Java Card applet configuration providing Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use with BAC option",
      "/Title": "Certification Report BSI-DSZ-CC-1023-2018",
      "pdf_file_size_bytes": 819269,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://www.bsi.bund.de/AIS",
          "https://www.bsi.bund.de/zertifizierungsreporte",
          "https://www.bsi.bund.de/zertifizierung",
          "https://www.bsi.bund.de/",
          "http://www.commoncriteriaportal.org/cc/",
          "http://www.commoncriteriaportal.org/",
          "http://www.sogisportal.eu/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 28
    },
    "st_filename": "1023b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0973-2016": 1,
          "BSI-DSZ-CC-0973-V2-2016": 1,
          "BSI-DSZ-CC-1023": 1
        },
        "NL": {
          "NSCIB-CC-15-67206-CR": 2,
          "NSCIB-CC-98209-CR2": 2
        }
      },
      "cc_claims": {
        "A": {
          "A.APPLET": 1,
          "A.APPS-PROVIDER": 1,
          "A.PPROCESS-SEC-IC": 3,
          "A.USE_DIAG": 1,
          "A.USE_KEYS": 1,
          "A.VERIFICATION": 1,
          "A.VERIFICATION-AUTHORITY": 1
        },
        "OE": {
          "OE.APPLET": 1,
          "OE.APPS-PROVIDER": 1,
          "OE.CODE-EVIDENCE": 1,
          "OE.KEY-CHANGE": 1,
          "OE.MRTD_": 2,
          "OE.PROCESS_SEC_IC": 2,
          "OE.SECURITY-DOMAINS": 1,
          "OE.USE_DIAG": 1,
          "OE.USE_KEYS": 1,
          "OE.VERIFICATION": 1,
          "OE.VERIFICATION-AUTHORITY": 1
        },
        "OT": {
          "OT.ALARM": 1,
          "OT.APPLI-AUTH": 1,
          "OT.CARD-MANAGEMENT": 1,
          "OT.CIPHER": 1,
          "OT.COMM_AUTH": 1,
          "OT.COMM_CONFIDENTIALITY": 1,
          "OT.COMM_INTEGRITY": 1,
          "OT.CONFIG-LIMIT": 1,
          "OT.DOMAIN-RIGHTS": 1,
          "OT.EXT-MEM": 1,
          "OT.FIREWALL": 1,
          "OT.GLOBAL_ARRAYS_CONFID": 1,
          "OT.GLOBAL_ARRAYS_INTEG": 1,
          "OT.IDENTIFICATION": 1,
          "OT.KEY-MNGT": 1,
          "OT.NATIVE": 1,
          "OT.OBJ-DELETION": 1,
          "OT.OPERATE": 1,
          "OT.PIN-MNGT": 1,
          "OT.REALLOCATION": 1,
          "OT.RESOURCES": 1,
          "OT.RND": 1,
          "OT.SCP": 3,
          "OT.SEC_BOX_FW": 1,
          "OT.SID": 1,
          "OT.TRANSACTION": 1
        },
        "T": {
          "T.COM_EXPLOIT": 1,
          "T.CONFID-APPLI-DATA": 1,
          "T.CONFID-JCS-CODE": 1,
          "T.CONFID-JCS-DATA": 1,
          "T.CONFIG": 1,
          "T.EXE-CODE": 2,
          "T.INTEG-APPLI-CODE": 2,
          "T.INTEG-APPLI-DATA": 2,
          "T.INTEG-JCS-CODE": 1,
          "T.INTEG-JCS-DATA": 1,
          "T.LIFE_CYCLE": 1,
          "T.NATIVE": 1,
          "T.OBJ-DELETION": 1,
          "T.OS_OPERATE": 1,
          "T.PHYSICAL": 1,
          "T.RESOURCES": 1,
          "T.RND": 1,
          "T.SID": 2,
          "T.UNAUTHORIZED_CARD_MNGT": 1
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0055-2009": 1,
          "BSI-CC-PP-0056-": 1,
          "BSI-CC-PP-0084-": 1,
          "BSI-CC-PP0055": 3,
          "BSI-PP-0002-2001": 1,
          "BSI-PP-0056": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 2
        },
        "ALC": {
          "ALC_DVS": 1,
          "ALC_DVS.2": 5
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 4+": 1,
          "EAL 5+": 2,
          "EAL4": 8,
          "EAL4 augmented": 2
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP.1": 1,
          "FAU_GEN": 1,
          "FAU_SAS": 7,
          "FAU_SAS.1": 14,
          "FAU_SAS.1.1": 2
        },
        "FCO": {
          "FCO_NRO.2": 1
        },
        "FCS": {
          "FCS_CKM": 3,
          "FCS_CKM.1": 28,
          "FCS_CKM.1.1": 2,
          "FCS_CKM.2": 3,
          "FCS_CKM.3": 1,
          "FCS_CKM.4": 22,
          "FCS_CKM.4.1": 4,
          "FCS_COP": 49,
          "FCS_COP.1": 25,
          "FCS_COP.1.1": 18,
          "FCS_LIM": 1,
          "FCS_RND": 7,
          "FCS_RND.1": 15,
          "FCS_RND.1.1": 3,
          "FCS_RNG.1": 2
        },
        "FDP": {
          "FDP_ACC": 2,
          "FDP_ACC.1": 21,
          "FDP_ACC.1.1": 3,
          "FDP_ACC.2": 3,
          "FDP_ACF": 3,
          "FDP_ACF.1": 17,
          "FDP_ACF.1.1": 3,
          "FDP_ACF.1.2": 4,
          "FDP_ACF.1.3": 3,
          "FDP_ACF.1.4": 4,
          "FDP_IFC.1": 5,
          "FDP_IFC.2": 1,
          "FDP_IFF.1": 2,
          "FDP_ITC": 2,
          "FDP_ITC.1": 10,
          "FDP_ITC.2": 11,
          "FDP_RIP.1": 8,
          "FDP_ROL.1": 2,
          "FDP_SDI.2": 1,
          "FDP_UCT": 2,
          "FDP_UCT.1": 11,
          "FDP_UCT.1.1": 3,
          "FDP_UIT": 3,
          "FDP_UIT.1": 10,
          "FDP_UIT.1.1": 3,
          "FDP_UIT.1.2": 2
        },
        "FIA": {
          "FIA_AFL": 1,
          "FIA_AFL.1": 9,
          "FIA_AFL.1.1": 2,
          "FIA_AFL.1.2": 2,
          "FIA_ATD.1": 1,
          "FIA_SOS.2": 1,
          "FIA_UAU": 6,
          "FIA_UAU.1": 12,
          "FIA_UAU.1.1": 2,
          "FIA_UAU.1.2": 2,
          "FIA_UAU.4": 16,
          "FIA_UAU.4.1": 2,
          "FIA_UAU.5": 9,
          "FIA_UAU.5.1": 4,
          "FIA_UAU.5.2": 6,
          "FIA_UAU.6": 12,
          "FIA_UAU.6.1": 2,
          "FIA_UID": 1,
          "FIA_UID.1": 14,
          "FIA_UID.1.1": 2,
          "FIA_UID.1.2": 1,
          "FIA_UID.2": 1,
          "FIA_USB.1": 1
        },
        "FMT": {
          "FMT_LIM": 12,
          "FMT_LIM.1": 25,
          "FMT_LIM.1.1": 6,
          "FMT_LIM.2": 22,
          "FMT_LIM.2.1": 7,
          "FMT_MSA.1": 9,
          "FMT_MSA.2": 1,
          "FMT_MSA.3": 11,
          "FMT_MTD": 25,
          "FMT_MTD.1": 15,
          "FMT_MTD.3": 1,
          "FMT_SMF": 1,
          "FMT_SMF.1": 28,
          "FMT_SMF.1.1": 2,
          "FMT_SMR": 3,
          "FMT_SMR.1": 26,
          "FMT_SMR.1.1": 4,
          "FMT_SMR.1.2": 4
        },
        "FPR": {
          "FPR_UNO.1": 1
        },
        "FPT": {
          "FPT_FLS": 1,
          "FPT_FLS.1": 19,
          "FPT_FLS.1.1": 3,
          "FPT_PHP.3": 15,
          "FPT_PHP.3.1": 2,
          "FPT_RCV.3": 1,
          "FPT_RVM.1": 1,
          "FPT_SEP.1": 1,
          "FPT_TDC.1": 1,
          "FPT_TST.1": 11,
          "FPT_TST.1.1": 2,
          "FPT_TST.1.2": 2,
          "FPT_TST.1.3": 2
        },
        "FTP": {
          "FTP_ITC.1": 6,
          "FTP_TRP.1": 5
        }
      },
      "certification_process": {
        "OutOfScope": {
          " No contradiction to this ST. FDP_ACF.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FDP_ROL.1[FIREWALL] No correspondence. Out of scope (internal Java Card Fire- wall": 1,
          " No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_MSA.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No correspondence Out of scope (internal Java Card Fire- wall": 1,
          " No contradiction to this ST. FMT_MSA.3[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FPT_FLS.1[Installer] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "19 of 81 Platform SFR Correspondence in this ST References/Remarks FIA_UAU.4[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence": 1,
          "7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No": 1,
          "81 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Configuration Security": 1,
          "ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "Functional Requirements (chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SecureBox] No": 1,
          "MIFARE functionality or a banking application in ROM; please note that this functionality is out of scope of the TOE\u2019s security functionality claimed by this security target. The correctness of the chip": 1,
          "No correspondence Out of scope. No contradiction to this ST. Table 6: Threats of the platform ST. 2.3.5 Assessment of Platform": 1,
          "OT.ALARM No correspondence Out of scope. No contradiction to this ST. OT.CIPHER No correspondence Indirectly relevant for the correct": 1,
          "OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-": 1,
          "OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No": 1,
          "OT.TRANSACTION No correspondence Out of scope. No contradiction to this ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to": 1,
          "Out of scope": 121,
          "Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 2,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[TRANSIENT] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[bArray] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[FIREWALL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[EXT-MEM] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SecureBox] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[EXT-MEM] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SecureBox] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[EXT-MEM] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[CONFIG-SERVICE] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ADEL] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3[Installer] No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. RMIG Security Functional": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 4: Assessment of the": 1,
          "Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The Java Card platform": 1,
          "Platform Objective Correspondence in this ST References/Remarks OT.REALLOCATION No correspondence Out of scope. No contradiction to this ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this": 1,
          "Platform Threat Correspondence in this ST References/Remarks T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to": 1,
          "REFINED] T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to": 1,
          "Requirements (chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[CONFIG-SERVICE] No": 1,
          "SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this": 1,
          "ST. OT.APPLI-AUTH No correspondence Out of scope. No contradiction to this ST. OT.DOMAIN-RIGHTS No correspondence Out of scope. No contradiction to": 1,
          "ST. OT.COMM_AUTH No correspondence Out of scope. No contradiction to this ST. OT.COMM_INTEGRITY No correspondence Out of scope. No contradiction to": 1,
          "ST. OT.COMM_CONFIDENTIALITY No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this": 1,
          "ST. OT.CONFIG-LIMIT No correspondence Out of scope. No contradiction to this ST. Table 5: Assessment of the platform objectives. NXP eDoc Suite v3.0": 1,
          "ST. T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST": 1,
          "ST. T.LIFE_CYCLE No correspondence Out of scope. No contradiction to this ST. T.OBJ-DELETION No correspondence Out of scope. No contradiction to": 1,
          "T.Information_Leakage No contradiction to this ST. T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No": 1,
          "T.NATIVE No correspondence Out of scope. No contradiction to this ST. T.RESOURCES No correspondence Out of scope. No contradiction to this": 1,
          "T.UNAUTHORIZED_CARD_MNGT No correspondence Out of scope. No contradiction to this ST. T.COM_EXPLOIT No correspondence Out of scope. No contradiction to": 1,
          "The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to": 1,
          "but no corresponding objectives for the TOE of this ST. No contradictions. OT.SID No correspondence Out of scope. No contradiction to this ST. OT.FIREWALL No correspondence Out of scope. No contradiction to this": 1,
          "chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "chapter 7.1.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm": 1,
          "chapter 7.1.1.4 in platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "chapter 7.1.8.1 in platform ST) FDP_ACC.2[SecureBox] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "chapter 7.1.9 in platform ST) FDP_ACC.1[CONFIG-SERVICE] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this": 1,
          "group includes requirements for managing the external memory. FDP_ACC.1[EXT-MEM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[EXT-MEM] No": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2[FIREWALL-JCVM] No": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FCO_NRO.2[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_ACC.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[SD] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2[SC] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_ITC.2[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[KEYS] No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UAU.1[SC] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1[AID] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. NXP eDoc Suite v3.0 -": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SC] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[ADEL] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SC] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3[SD] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SC] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1[SD] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[ADEL] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1[SD] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[CCM] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1[SC] No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine": 1,
          "internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1[OBJECTS] No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1[JCRE] No correspondence Out": 1,
          "managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP": 1,
          "manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2[ADEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1[ADEL] No": 1,
          "numbers with a defined quality metric that can be used directly. FIA_AFL.1[PIN] No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FPT_EMSEC.1 FPT_EMSEC.1": 1,
          "of 81 Platform SFR Correspondence in this ST References/Remarks FDP_RIP.1[ABORT] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1[APDU] No": 1,
          "of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3[JCVM] No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of": 1,
          "of 81 Platform SFR Correspondence in this ST References/Remarks FMT_MTD.1[JCRE] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3[JCRE] No": 1,
          "of 81 Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.RND No correspondence Out of scope. No contradiction to this ST. T": 1,
          "of the TOE. No contradic- tion to this ST. FDP_ACF.1[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "of the TOE. No contradic- tion to this ST. FDP_IFC.1[JCVM] No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1[JCVM] No correspondence Out": 1,
          "of the TOE. No contradic- tion to this ST. FMT_MSA.3[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "out of scope": 1,
          "platform ST) FIA_ATD.1[AID] No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2[AID] No correspondence": 1,
          "platform ST) Firewall Policy (chapter 7.1.1.1 in platform ST) FDP_ACC.2[FIREWALL] No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "that owns the deleted objects by invoking a specific API method. FDP_RIP.1[ODEL] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[ODEL] FPT_FLS.1 The": 1,
          "to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST. OT.OPERATE No correspondence Out of scope. No contradiction to this": 1,
          "verified, or that has been modified after bytecode verification. FDP_UIT.1[CCM] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1[CCM] No correspondence": 1,
          "vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 7.1.1.4": 1,
          "which addresses security aspects outside the runtime. FMT_SMR.1[Installer] No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1[Installer] No": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 7
        },
        "CCM": {
          "CCM": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 1
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key exchange": 1
        },
        "MAC": {
          "MAC": 9
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "RIPEMD": {
          "RIPEMD-160": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 6
          },
          "SHA2": {
            "SHA-224": 1,
            "SHA-256": 2
          }
        }
      },
      "ic_data_group": {
        "EF": {
          "EF.COM": 12,
          "EF.DG1": 32,
          "EF.DG13": 3,
          "EF.DG14": 3,
          "EF.DG15": 1,
          "EF.DG16": 32,
          "EF.DG2": 9,
          "EF.DG3": 9,
          "EF.DG4": 8,
          "EF.DG5": 8,
          "EF.SOD": 13
        }
      },
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "JCOP": {
          "JCOP 3": 10
        }
      },
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RND": 3,
          "RNG": 8
        }
      },
      "side_channel_analysis": {
        "FI": {
          "Malfunction": 3,
          "Physical Tampering": 5,
          "Physical tampering": 1,
          "fault injection": 1,
          "malfunction": 8,
          "physical tampering": 1
        },
        "SCA": {
          "DPA": 2,
          "SPA": 1,
          "physical probing": 5,
          "timing attacks": 1
        },
        "other": {
          "reverse engineering": 1
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 20": 3,
          "AIS20": 5,
          "AIS31": 3
        },
        "CC": {
          "CCMB-2012-09-001": 1,
          "CCMB-2012-09-002": 1,
          "CCMB-2012-09-003": 1,
          "CCMB-2012-09-004": 2
        },
        "FIPS": {
          "FIPS 180-2": 1,
          "FIPS 180-4": 1,
          "FIPS 180-412": 1,
          "FIPS 197": 4,
          "FIPS 46-3": 5,
          "FIPS PUB 46-3": 1,
          "FIPS180-2": 1,
          "FIPS180-4": 1,
          "FIPS197": 2,
          "FIPS46-3": 2
        },
        "ICAO": {
          "ICAO": 14
        },
        "ISO": {
          "ISO/IEC 7816-2": 1,
          "ISO/IEC 7816-4": 1
        },
        "PKCS": {
          "PKCS#15": 1
        },
        "RFC": {
          "RFC3369": 1
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 23,
            "AES-": 1
          }
        },
        "DES": {
          "3DES": {
            "3DES": 2,
            "TDES": 2,
            "Triple-DES": 15,
            "TripleDES": 2
          },
          "DES": {
            "DES": 6
          },
          "Lucifer": {
            "Lucifer": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 5,
            "KMAC": 1
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03110": 3
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 30,
          "NXP Semiconductors": 1
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "bdrisch",
      "/CreationDate": "D:20180222105939+01\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2013",
      "/Keywords": "Security Target, ePasslet Suite, ICAO LDS, BAC",
      "/ModDate": "D:20180222105939+01\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2013",
      "/Subject": "deutsch",
      "/Title": "cv act ePasslet/MRTD-BAC Security Target",
      "pdf_file_size_bytes": 1942376,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "file:///C:/tzeggel/Desktop/glossar.htm%23aes"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 81
    }
  },
  "protection_profiles": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
        "pp_eal": null,
        "pp_ids": null,
        "pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0055b.pdf",
        "pp_name": "Protection Profile for Machine Readable Travel Document with \u0027ICAO Application\u0027, Basic Acce..."
      }
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/files/epfiles/1023a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_DVS.2",
      "EAL4+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/files/epfiles/1023b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "b3d264cd5a11ac6e127e14b410ab952442a1837e32dd09c2e168df913fd175bb",
      "txt_hash": "354120a7fcd1d6d967e23e6a03e324df6972342710a7e228186932c8ab1db009"
    },
    "report": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "3acfb259663d04c4c2aecba94785e70be7dc3bc9d9071acba69209308d300a8d",
      "txt_hash": "e8b9d4be095688b9c3a37a8168c9526bf56996721bef40fe8a0bd1203574484b"
    },
    "st": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "21afd28d97849621a8196d50f830587afc1e4ebecbd72e47e36287dbb5e5a9ff",
      "txt_hash": "7bddf5cd0fd7f243651444f70f764f9863ebdf0a764ff44829f820eed19845a9"
    }
  },
  "status": "archived"
}