Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
TNOR Guard v. 1.1.3
SERTIT-120
Logiciel Mistral Gateway IPSec version 9.0.7.2
ANSSI-CC-2021/32
name TNOR Guard v. 1.1.3 Logiciel Mistral Gateway IPSec version 9.0.7.2
category Boundary Protection Devices and Systems Network and Network-Related Devices and Systems
scheme NO FR
not_valid_after 12.05.2027 28.06.2026
not_valid_before 12.05.2022 28.06.2021
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20C%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/certificat-2021_32.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20CR%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-cc-2021_32fr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-cible-cc-2021_32en.pdf
manufacturer Thales Norway AS Thalès Communications
manufacturer_web https://www.thales.no/ https://www.thalescomminc.com/
security_level EAL4+, AVA_VAN.4, ALC_FLR.3 EAL3+, AVA_VAN.3, ALC_FLR.3
dgst 03972af324dcd07f 7bd6afa58e49bd4d
heuristics/cert_id SERTIT-120 ANSSI-CC-2021/32
heuristics/extracted_sars ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, ALC_FLR.3, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, AVA_VAN.4, ASE_CCL.1 ASE_INT.1, ALC_CMC.3, ALC_CMS.3, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, ALC_FLR.3, AGD_OPE.1, AVA_VAN.3, AGD_PRE.1, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1
heuristics/extracted_versions 1.1.3 9.0.7.2
heuristics/scheme_data
  • category: Boundary Protection Devices and Systems
  • certification_date: 12.05.2022
  • developer: Thales Norway AS
  • enhanced:
    • category: Boundary Protection Devices and Systems
    • cert_id: SERTIT-120
    • certification_date: 12.05.2022
    • description: TNOR Guard is a technology that provides controlled information flow between networks with different system and application security policies. The TNOR Guard (TOE) is part of the XOmail product family for messaging and information exchange in mission-critical military and civilian networks. The Guard implements high-assurance information flow control for the trusted exchange of information across security domain boundaries. This product is also described in this report as the Target of Evaluation (TOE). The main security feature of the TOE is to mediate a one-way or bidirectional flow between two security domains. The TOE inspects every information object that is requested sent between the security domains, and makes an automated release decision according to configured policy. The TOE covers the following four Guard products: STANAG 4406 Ed 2 Message Guard For connectivity towards the NATO standard Military Message Handling System (MMHS), SMTP Message Guard (E-mail) For connectivity towards standard e-mail systems such as Microsoft Exchange. Supports RFC 6477 for Military Message Handling attributes within the SMTP domain, Chat (XMPP) Guard Instant Messaging service between security domains. XML/SOAP Guard Exchange of XML/SOAP data between security domains.
    • developer: Thales Norway AS
    • documents: frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/1311036-1656573547/SERTIT/Sertifikater/2022/120/SERTIT-120%20C%20v1.0.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/1310630-1654589563/SERTIT/Sertifikater/2022/120/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/1310627-1654589561/SERTIT/Sertifikater/2022/120/SERTIT-120%20CR%20v1.0.pdf'})]})
    • evaluation_facility: System Sikkerhet AS
    • expiration_date: 12.05.2027
    • level: EAL 4, ALC_FLR.3, AVA_VAN.4
    • mutual_recognition: CCRA, SOG-IS
    • product: TNOR Guard version 1.1.3
    • sponsor: Forsvarsmateriell IKT-kapasiteter
  • product: TNOR Guard
  • url: https://sertit.no/certified-products/tnor-guard-article2842-1919.html
pdf_data/cert_filename SERTIT-120 C v1.0.pdf certificat-2021_32.pdf
pdf_data/cert_keywords/cc_cert_id
  • NO:
    • SERTIT-120: 2
  • FR:
    • ANSSI-CC-2021/32: 2
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 2
    • EAL 4 augmented: 1
  • EAL:
    • EAL 3: 1
    • EAL2: 1
    • EAL3: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
  • ALC:
    • ALC_FLR.3: 3
  • AVA:
    • AVA_VAN.3: 1
pdf_data/cert_keywords/vendor
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • OPPIDA:
    • OPPIDA: 2
pdf_data/cert_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
pdf_data/cert_metadata
  • /Author: helgerudt
  • /CreationDate: D:20220629133919+02'00'
  • /Creator: Hewlett-Packard MFP
  • /ModDate: D:20220629142649+02'00'
  • /Producer: PixEdit AS, PixEdit Version 8.7.4.6
  • /Subject: 201676 201334 VEDLEGG01
  • pdf_file_size_bytes: 1289183
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author:
  • /CreationDate: D:20210720171317+02'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20210720171317+02'00'
  • /Producer: Acrobat Distiller 11.0 (Windows)
  • /Title:
  • pdf_file_size_bytes: 299643
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 2
pdf_data/report_filename SERTIT-120 CR v1.0.pdf anssi-cc-2021_32fr.pdf
pdf_data/report_frontpage
  • FR:
  • FR:
pdf_data/report_keywords/cc_cert_id
  • NO:
    • SERTIT-120: 22
  • FR:
    • ANSSI-CC-2021/32: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 27
    • EAL 4 augmented: 24
  • EAL:
    • EAL 1: 1
    • EAL 3: 3
    • EAL 5: 1
    • EAL 7: 1
    • EAL2: 3
    • EAL3: 2
    • EAL4: 1
  • ITSEC:
    • ITSEC E3 Elémentaire: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 26
    • ALC_LCD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.4: 27
  • ADV:
    • ADV_ARC: 1
    • ADV_FSP: 1
    • ADV_IMP: 1
    • ADV_INT: 1
    • ADV_SPM: 1
    • ADV_TDS: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMS: 1
    • ALC_DEL: 1
    • ALC_DVS: 1
    • ALC_FLR: 2
    • ALC_FLR.3: 3
    • ALC_LCD: 1
    • ALC_TAT: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 1
    • ATE_DPT: 1
    • ATE_FUN: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.3: 2
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • Thales:
    • Thales: 12
pdf_data/report_keywords/eval_facility
  • OPPIDA:
    • OPPIDA: 1
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • DES:
      • DES: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 2
  • PKE:
    • PKE: 1
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 1
pdf_data/report_keywords/ecc_curve
  • NIST:
    • P-110: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-004: 1
  • ISO:
    • ISO/IEC 15408: 8
    • ISO/IEC 17025: 2
    • ISO/IEC 18045: 2
  • RFC:
    • RFC 6477: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
pdf_data/report_metadata
  • /CreationDate: D:20220518100037+02'00'
  • /ModDate: D:20220518100037+02'00'
  • pdf_file_size_bytes: 529073
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 22
  • /Author:
  • /CreationDate: D:20210720171215+02'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20210720171215+02'00'
  • /Producer: Acrobat Distiller 11.0 (Windows)
  • /Title:
  • pdf_file_size_bytes: 188301
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 13
pdf_data/st_filename TNOR Guards 739_20726_aaaa_sc_ed10-4-public.pdf anssi-cible-cc-2021_32en.pdf
pdf_data/st_keywords/cc_cert_id
  • NL:
    • CC-01: 1
    • CC-02: 2
    • CC-03: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 8
    • EAL4 augmented: 5
  • EAL:
    • EAL3: 4
    • EAL3 augmented: 1
    • EAL3+: 4
pdf_data/st_keywords/cc_sar
  • ALC:
    • ALC_FLR.3: 6
  • ASE:
    • ASE_CCL: 2
    • ASE_ECD: 2
    • ASE_INT: 2
    • ASE_OBJ: 2
    • ASE_REQ: 2
    • ASE_SPD: 2
    • ASE_TSS: 2
  • AVA:
    • AVA_VAN.4: 6
  • ADV:
    • ADV_ARC.1: 6
    • ADV_FSP.1: 3
    • ADV_FSP.2: 2
    • ADV_FSP.3: 9
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.1: 2
    • ADV_TDS.2: 3
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 10
    • AGD_PRE.1: 4
  • ALC:
    • ALC_CMC.3: 2
    • ALC_CMS.1: 1
    • ALC_CMS.3: 2
    • ALC_DEL.1: 2
    • ALC_DVS.1: 3
    • ALC_FLR.3: 6
    • ALC_LCD.1: 4
  • ASE:
    • ASE_CCL.1: 2
    • ASE_ECD.1: 5
    • ASE_INT.1: 5
    • ASE_OBJ.2: 3
    • ASE_REQ.1: 2
    • ASE_REQ.2: 2
    • ASE_SPD.1: 4
    • ASE_TSS.1: 2
  • ATE:
    • ATE_COV.1: 2
    • ATE_COV.2: 4
    • ATE_DPT.1: 3
    • ATE_FUN.1: 6
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 7
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_ARP: 2
    • FAU_ARP.1: 9
    • FAU_GEN: 2
    • FAU_GEN.1: 13
    • FAU_GEN.2: 8
    • FAU_GEN.2.1: 1
    • FAU_SAA: 1
    • FAU_SAA.1: 10
    • FAU_SAR: 1
    • FAU_SAR.1: 11
    • FAU_SAR.2: 8
    • FAU_STG: 1
    • FAU_STG.1: 12
    • FAU_STG.3: 9
    • FAU_STG.4: 9
  • FCO:
    • FCO_NRO: 1
    • FCO_NRO.1: 10
  • FCS:
    • FCS_CKM.1: 2
    • FCS_CKM.4: 1
    • FCS_COP: 1
    • FCS_COP.1: 10
    • FCS_NRO.1: 1
  • FDP:
    • FDP_ACC: 1
    • FDP_ACC.1: 9
    • FDP_ACC.2: 10
    • FDP_ACF: 1
    • FDP_ACF.1: 12
    • FDP_ETC: 1
    • FDP_ETC.2: 13
    • FDP_IFC: 19
    • FDP_IFC.1: 14
    • FDP_IFC.2: 11
    • FDP_IFF: 19
    • FDP_IFF.1: 16
    • FDP_IFF.2: 16
    • FDP_IFF.2.2: 1
    • FDP_ITC: 1
    • FDP_ITC.1: 2
    • FDP_ITC.2: 15
    • FDP_RIP: 1
    • FDP_RIP.1: 1
    • FDP_RIP.2: 10
    • FDP_UIT: 1
    • FDP_UIT.1: 9
  • FIA:
    • FIA_ATD: 1
    • FIA_ATD.1: 9
    • FIA_UID: 1
    • FIA_UID.1: 7
    • FIA_UID.2: 13
  • FMT:
    • FMT_MOF: 19
    • FMT_MOF.1: 5
    • FMT_MSA: 1
    • FMT_MSA.1: 10
    • FMT_MSA.3: 15
    • FMT_MTD: 2
    • FMT_MTD.1: 12
    • FMT_MTD.3: 8
    • FMT_MTS: 1
    • FMT_REV: 1
    • FMT_REV.1: 9
    • FMT_SMF: 1
    • FMT_SMF.1: 15
    • FMT_SMR: 1
    • FMT_SMR.1: 9
    • FMT_SMR.2: 16
    • FMT_TST.1: 1
  • FPT:
    • FPT_FLS: 1
    • FPT_FLS.1: 11
    • FPT_RCV: 1
    • FPT_RCV.4: 10
    • FPT_STM.1: 2
    • FPT_TDC: 1
    • FPT_TDC.1: 11
    • FPT_TST: 1
    • FPT_TST.1: 12
  • FRU:
    • FRU_PRS: 1
    • FRU_PRS.1: 10
  • FTP:
    • FTP_ITC.1: 4
    • FTP_TRP: 1
    • FTP_TRP.1: 15
    • FTP_TRP.2: 2
  • FAU:
    • FAU_GEN: 16
    • FAU_GEN.1: 16
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG: 6
    • FAU_STG.1: 1
    • FAU_STG.3: 1
    • FAU_STG_EXT: 13
    • FAU_STG_EXT.1: 13
    • FAU_STG_EXT.1.1: 2
    • FAU_STG_EXT.1.2: 2
    • FAU_STG_EXT.1.3: 4
    • FAU_STG_EXT.2: 2
    • FAU_STG_EXT.4: 3
  • FCO:
    • FCO_CPC_EXT: 2
    • FCO_CPC_EXT.1: 12
    • FCO_CPC_EXT.1.1: 3
    • FCO_CPC_EXT.1.2: 3
    • FCO_CPC_EXT.1.3: 3
  • FCS:
    • FCS_CKM: 2
    • FCS_CKM.1: 48
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 13
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 23
    • FCS_CKM.4.1: 1
    • FCS_CKM_EXT: 13
    • FCS_CKM_EXT.5: 17
    • FCS_CKM_EXT.5.1: 1
    • FCS_CKM_EXT.5.2: 1
    • FCS_CKM_EXT.5.3: 1
    • FCS_COP: 101
    • FCS_COP.1: 18
    • FCS_RBG_EXT: 2
    • FCS_RBG_EXT.1: 21
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 2
    • FCS_TLSC_EXT: 4
    • FCS_TLSC_EXT.1: 1
    • FCS_TLSC_EXT.2: 10
    • FCS_TLSC_EXT.2.1: 2
    • FCS_TLSC_EXT.2.2: 2
    • FCS_TLSC_EXT.2.3: 2
    • FCS_TLSC_EXT.2.4: 2
    • FCS_TLSC_EXT.2.5: 2
    • FCS_TLSS_EXT: 4
    • FCS_TLSS_EXT.2: 6
    • FCS_TLSS_EXT.2.1: 2
    • FCS_TLSS_EXT.2.2: 2
    • FCS_TLSS_EXT.2.3: 2
    • FCS_TLSS_EXT.2.4: 2
    • FCS_TLSS_EXT.2.5: 2
    • FCS_TLSS_EXT.2.6: 2
  • FDP:
    • FDP_ACC.1: 5
    • FDP_ETC: 2
    • FDP_ETC.2: 8
    • FDP_IFC: 19
    • FDP_IFC.1: 9
    • FDP_IFF: 16
    • FDP_IFF.1: 14
    • FDP_ITC: 13
    • FDP_ITC.1: 16
    • FDP_ITC.2: 26
    • FDP_RIP.2: 5
    • FDP_RIP.2.1: 1
    • FDP_UCT.1: 8
    • FDP_UCT.1.1: 1
    • FDP_UIT.1: 10
    • FDP_UIT.1.1: 1
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 2
    • FIA_PMG_EXT.1: 9
    • FIA_PMG_EXT.1.1: 2
    • FIA_UAU.1: 2
    • FIA_UAU.6: 6
    • FIA_UAU.6.1: 1
    • FIA_UAU.7: 7
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 2
    • FIA_UAU_EXT.2: 10
    • FIA_UAU_EXT.2.1: 2
    • FIA_UIA: 1
    • FIA_UIA_EXT: 4
    • FIA_UIA_EXT.1: 14
    • FIA_UIA_EXT.1.1: 2
    • FIA_UIA_EXT.1.2: 2
    • FIA_UID.1: 5
    • FIA_UID.2: 8
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MOF: 10
    • FMT_MOF.1: 2
    • FMT_MSA.1: 1
    • FMT_MSA.3: 14
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD.1: 8
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 12
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 4
    • FMT_SMR.2: 7
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 2
    • FPT_APW_EXT.1: 10
    • FPT_APW_EXT.1.1: 2
    • FPT_APW_EXT.1.2: 2
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_PTD: 1
    • FPT_RCV.1: 5
    • FPT_RCV.1.1: 1
    • FPT_RCV.2: 5
    • FPT_RCV.2.1: 1
    • FPT_RCV.2.2: 1
    • FPT_SDP_EXT: 3
    • FPT_SDP_EXT.2: 10
    • FPT_SDP_EXT.2.1: 2
    • FPT_SDP_EXT.2.2: 2
    • FPT_SKP_EXT: 2
    • FPT_SKP_EXT.1: 9
    • FPT_SKP_EXT.1.1: 3
    • FPT_STM: 2
    • FPT_STM.1: 1
    • FPT_STM_EXT: 2
    • FPT_STM_EXT.1: 15
    • FPT_STM_EXT.1.1: 2
    • FPT_STM_EXT.1.2: 2
    • FPT_TDC: 11
    • FPT_TDC.1: 7
    • FPT_TST_EXT: 2
    • FPT_TST_EXT.1: 9
    • FPT_TST_EXT.1.1: 2
    • FPT_TUD_EXT: 2
    • FPT_TUD_EXT.1: 10
    • FPT_TUD_EXT.1.1: 2
    • FPT_TUD_EXT.1.2: 2
    • FPT_TUD_EXT.1.3: 2
  • FTA:
    • FTA_SSL: 1
    • FTA_SSL.3: 6
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 6
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 3
    • FTA_SSL_EXT.1: 11
    • FTA_SSL_EXT.1.1: 2
    • FTA_TAB.1: 9
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 1
    • FTP_ITC.1: 19
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 10
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A..Z: 1
    • A.APPROVED_CRYPTO: 3
    • A.APPROVED_PKI: 2
    • A.CORRECT_CONFIGURATION: 3
    • A.NETWORK_PROTECTED: 2
    • A.PHYSICAL_ACCESS_MANAGED: 3
    • A.TRUSTED_AND_TRAINED_ADMIN: 2
    • A.TRUSTED_LABELLER: 3
  • O:
    • O.ACCESS: 8
    • O.AUDIT: 13
    • O.CMD_ACL: 10
    • O.CONFIGURATION_CHANGE: 5
    • O.CONTROLLED_INFORMATION: 1
    • O.CONTROLLED_INFORMATION_FLOW: 5
    • O.CORRECT_TSF_OPERATION: 6
    • O.INTERNAL_LEAST_PRIVILEG: 1
    • O.INTERNAL_LEAST_PRIVILEGE: 9
    • O.LABEL_MAPPING: 8
    • O.MAC: 5
    • O.MGMT_MODE: 6
    • O.MINIMAL_PROXY: 10
    • O.OBJECT_INTEGRITY: 9
    • O.RESIDUAL_INFORMATION: 7
    • O.RESOURCE_SHARING: 7
    • O.SECURE_STATE: 8
    • O.SUBJECT_ISOLATION: 12
    • O.TRANSITION: 5
    • O.TSF_INTEGRITY: 9
    • O.VALID_LABEL: 6
  • OE:
    • OE.APPROVED_CRYPTO: 7
    • OE.APPROVED_PKI: 7
    • OE.BORDER_PROTECTION: 12
    • OE.CONFIGURATION: 8
    • OE.CONTENT_INSPECTION_S: 1
    • OE.CONTENT_INSPECTION_SE: 2
    • OE.CONTENT_INSPECTION_SERVICE: 6
    • OE.DIRECTORY_SERVICE: 6
    • OE.MINIMAL_POSTURE: 10
    • OE.NETWORK: 10
    • OE.PHYSICAL_ACCESS_MANA: 2
    • OE.PHYSICAL_ACCESS_MANAG: 1
    • OE.PHYSICAL_ACCESS_MANAGED: 6
    • OE.PLATFORM: 10
    • OE.TIME_SOURCE: 6
    • OE.TRUSTED_AND_TRAINED_: 1
    • OE.TRUSTED_AND_TRAINED_A: 1
    • OE.TRUSTED_AND_TRAINED_ADMIN: 8
    • OE.TRUSTED_AND_TRAINED_ADMINS: 1
    • OE.TRUSTED_LABELLER: 7
  • T:
    • T.ADMIN_MASQUERADE: 4
    • T.AUDIT_COMPROMISE: 2
    • T.COVERT_CHANNEL: 2
    • T.DOS: 4
    • T.INFORMATION_LEAK: 2
    • T.INSECURE_STATE: 4
    • T.MALWARE_INJECTION: 2
    • T.METADATA_LEAK: 4
    • T.NETWORK_ATTACK: 2
    • T.OBJECT_TAMPERING: 4
    • T.RECONNAISSANCE: 4
    • T.RESIDUAL_DATA: 2
    • T.TSF_COMPROMISE: 3
    • T.UNATTENDED_ADMIN_SESSION: 2
    • T.UNAUTHORIZED_ACCESS: 4
    • T.UNNOTICED_ATTACK: 2
  • A:
    • A.ACCESS_CONTROL_MANAGEMENT_DE: 1
    • A.ACCESS_CONTROL_MANAGEMENT_DEVICES: 1
    • A.ADMINISTRATION_NETWORK: 1
    • A.ADMIN_CREDENTIALS_SECURE: 2
    • A.ALARM: 2
    • A.AUDIT: 2
    • A.DATA_TRANSPORTATION: 2
    • A.LIMITED_FUNCTIONALITY: 2
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.NO_TRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_ENV_MANAGEMENT_DEVIC: 1
    • A.PHYSICAL_ENV_MANAGEMENT_DEVICES: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.POLICIES_CONTINUITY: 1
    • A.REGULAR_UPDATES: 2
    • A.SECURED_MANAGEMENT_DEVICES: 1
    • A.SS_MMC_TO_TOE: 1
    • A.TOE_ERASURE: 1
    • A.TRUSTED_ADMINISTRATOR: 1
  • O:
    • O.AUDIT: 14
    • O.AUDIT_PROTECTION: 5
    • O.AUTHENTICATION_FAILURE: 9
    • O.BOOT_CONTROL: 5
    • O.CERTIFICATE_INJECTION: 4
    • O.CRYPTO_PERIOD: 8
    • O.CRYPTO_REGULATION: 7
    • O.DATA_ERASURE: 8
    • O.DISPLAY_BANNER: 6
    • O.LOCAL_DATA_PROTECTION: 14
    • O.MANAGEMENT: 7
    • O.POL_DEFAULT: 12
    • O.POL_FILTERING: 8
    • O.PROTECTED_COMMUNICATI: 1
    • O.PROTECTED_COMMUNICATION: 2
    • O.PROTECTED_COMMUNICATIONS: 12
    • O.RESIDUAL_INFORMATION_C: 1
    • O.RESIDUAL_INFORMATION_CLEAR: 4
    • O.ROLES: 10
    • O.SELF_TEST: 11
    • O.SESSION_LOCK: 4
    • O.SOFTWARE_UPDATES: 8
    • O.SUPERVISION: 6
    • O.SUPERVISION_IMPACT: 8
    • O.TIME_BASE: 4
    • O.VIEW_RULES: 11
  • OE:
    • OE.ACCESS_CONTROL_MANA: 1
    • OE.ACCESS_CONTROL_MANAGEMENT_D: 1
    • OE.ACCESS_CONTROL_MANAGEMENT_DEVICE: 2
    • OE.ACCESS_CONTROL_MANAGEMENT_DEVICES: 2
    • OE.ADMIN_CREDENTIALS_SEC: 1
    • OE.ADMIN_CREDENTIALS_SECURE: 3
    • OE.ALARM: 3
    • OE.AUDIT: 2
    • OE.AUDIT_RECORD: 3
    • OE.DATA_TRANSPORTATION: 4
    • OE.LMGT_CONNECTION: 5
    • OE.NO_GENERAL_PURPOSE: 2
    • OE.NO_THRU_TRAFFIC_PROTECTION: 2
    • OE.PHYSICAL: 2
    • OE.PHYSICAL_ENV_MANAGEM: 1
    • OE.PHYSICAL_ENV_MANAGEMENT_DEVIC: 1
    • OE.PHYSICAL_ENV_MANAGEMENT_DEVICES: 3
    • OE.POLICIES_CONTINUITY: 2
    • OE.SECURED_MANAGEMENT_: 1
    • OE.SECURED_MANAGEMENT_DEVICES: 4
    • OE.SS_MMC_TO_TOE: 5
    • OE.TIME_TOE: 3
    • OE.TOE_ERASURE: 5
    • OE.TOE_INTEGRITY: 7
    • OE.TOE_PRODUCTION: 3
    • OE.TRUSTED_ADMIN: 3
    • OE.UPDATES: 4
  • T:
    • T.MISUSE: 5
    • T.PASSWORD_CRACKING: 5
    • T.RESIDUAL_DATA: 5
    • T.SECURITY_FUNCTIONALITY: 2
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 3
    • T.SECURITY_FUNCTIONALITY_FAILURE: 3
    • T.TIME_BASE: 3
    • T.TOE_CAPTURE: 5
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 3
    • T.UNDETECTED_ACTIVITY: 5
    • T.UNTRUSTED_COMMUNICATI: 2
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 3
    • T.UPDATE_COMPROMISE: 5
    • T.USER_DATA_REUSE: 3
    • T.WEAK_AUTHENTICATION_EN: 2
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 3
    • T.WEAK_CRYPTOGRAPHY: 3
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • Thales:
    • Thales: 80
  • Thales:
    • Thales: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 18
  • constructions:
    • MAC:
      • HMAC: 3
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 7
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 7
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 1
      • SHA-384: 1
      • SHA256: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 22
  • PKE:
    • PKE: 1
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 3
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 3
  • IKE:
    • IKE: 23
    • IKEv1: 5
    • IKEv2: 21
  • IPsec:
    • IPsec: 15
  • SSH:
    • SSH: 2
  • TLS:
    • DTLS:
      • DTLS: 1
    • SSL:
      • SSL: 4
      • SSL 2.0: 1
      • SSL 3.0: 2
      • SSL2.0: 1
    • TLS:
      • TLS: 53
      • TLS 1.0: 2
      • TLS 1.1: 4
      • TLS 1.2: 5
  • VPN:
    • VPN: 50
pdf_data/st_keywords/randomness
  • RNG:
    • RBG: 2
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 3
  • CTR:
    • CTR: 2
  • GCM:
    • GCM: 3
  • XTS:
    • XTS: 2
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 1
    • curve P-256: 1
    • secp256r1: 8
    • secp384r1: 2
    • secp521r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS PUB 180-4: 2
  • ISO:
    • ISO/IEC 15408: 6
  • PKCS:
    • PKCS #11: 2
    • PKCS#11: 4
    • PKCS11: 2
  • RFC:
    • RFC 5321: 1
    • RFC 5322: 1
    • RFC 6120: 1
    • RFC 6121: 1
    • RFC 6477: 1
    • RFC 7622: 2
    • RFC3507: 2
    • RFC5905: 1
    • RFC6120: 2
    • RFC6121: 1
  • X509:
    • X.509: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 1
  • ISO:
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 1
    • ISO/IEC 9797-: 2
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 2986: 2
    • RFC 4106: 2
    • RFC 4109: 1
    • RFC 4301: 2
    • RFC 4303: 2
    • RFC 4304: 1
    • RFC 4346: 2
    • RFC 4868: 3
    • RFC 4945: 2
    • RFC 5246: 4
    • RFC 5280: 5
    • RFC 5282: 2
    • RFC 5759: 2
    • RFC 6125: 2
    • RFC 6960: 1
    • RFC 7296: 3
    • RFC5289: 2
  • X509:
    • X.509: 12
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Out of scope: 1
    • System Remote Admin Interface VS9 Management Center Monitoring tools TPM Target of evaluation Out of scope of evaluation SECURITY TARGET FOR MISTRAL VS9.0 GATEWAY SOFTWARE (CDS) MISTRAL VS9.0 GATEWAY: 1
    • of the Mistral system are considered as part of the operational environment. Hardware equipment is out of scope of the Target of Evaluation described in this Security Target. Following enabling elements, the: 1
    • out of scope: 1
pdf_data/st_metadata
  • /Author: Radical
  • /CreationDate: D:20220510093219+02'00'
  • /Creator: Microsoft® Word 2016
  • /ModDate: D:20220510093219+02'00'
  • /Producer: Microsoft® Word 2016
  • /Title: System/Subsystem Specification
  • pdf_file_size_bytes: 3028038
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 78
  • /Author: T0159776
  • /CreationDate: D:20210607172705+02'00'
  • /Creator: PDFCreator Free 4.2.0
  • /Keywords:
  • /ModDate: D:20210607172705+02'00'
  • /Producer: GPL Ghostscript 9.52
  • /Subject:
  • /Title: CDS_Mistral IPVS9.0_63535113-306_-Llite
  • pdf_file_size_bytes: 981294
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 119
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different