Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
TNOR Guard v. 1.1.3
SERTIT-120
Digital Tachograph EFAS-4.10 V05.00
BSI-DSZ-CC-1117-2019
name TNOR Guard v. 1.1.3 Digital Tachograph EFAS-4.10 V05.00
category Boundary Protection Devices and Systems Other Devices and Systems
scheme NO DE
status active archived
not_valid_after 12.05.2027 25.09.2024
not_valid_before 12.05.2022 25.09.2019
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20C%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1117c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20CR%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1117a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1117b_pdf.pdf
manufacturer Thales Norway AS intellic GmbH
manufacturer_web https://www.thales.no/ https://www.intellic.eu
security_level EAL4+, AVA_VAN.4, ALC_FLR.3 EAL4+, ATE_DPT.2, AVA_VAN.5
dgst 03972af324dcd07f 9bdc769a307beb62
heuristics/cert_id SERTIT-120 BSI-DSZ-CC-1117-2019
heuristics/cert_lab [] BSI
heuristics/extracted_sars ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, ALC_FLR.3, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, AVA_VAN.4, ASE_CCL.1 ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ALC_FLR.1, ALC_TAT.1, ASE_TSS.1, ASE_SPD.1, ATE_DPT.2, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1
heuristics/extracted_versions 1.1.3 4.10, 05.00
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-1055-2018
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-0727-2011, BSI-DSZ-CC-1055-2018, BSI-DSZ-CC-0891-2015, BSI-DSZ-CC-0980-2017, BSI-DSZ-CC-0782-2012, BSI-DSZ-CC-0891-V3-2018, BSI-DSZ-CC-0606-2010, BSI-DSZ-CC-0726-2012, BSI-DSZ-CC-0891-V2-2016
heuristics/scheme_data
  • category: Boundary Protection Devices and Systems
  • certification_date: 12.05.2022
  • developer: Thales Norway AS
  • enhanced:
    • category: Boundary Protection Devices and Systems
    • cert_id: SERTIT-120
    • certification_date: 12.05.2022
    • description: TNOR Guard is a technology that provides controlled information flow between networks with different system and application security policies. The TNOR Guard (TOE) is part of the XOmail product family for messaging and information exchange in mission-critical military and civilian networks. The Guard implements high-assurance information flow control for the trusted exchange of information across security domain boundaries. This product is also described in this report as the Target of Evaluation (TOE). The main security feature of the TOE is to mediate a one-way or bidirectional flow between two security domains. The TOE inspects every information object that is requested sent between the security domains, and makes an automated release decision according to configured policy. The TOE covers the following four Guard products: STANAG 4406 Ed 2 Message Guard For connectivity towards the NATO standard Military Message Handling System (MMHS), SMTP Message Guard (E-mail) For connectivity towards standard e-mail systems such as Microsoft Exchange. Supports RFC 6477 for Military Message Handling attributes within the SMTP domain, Chat (XMPP) Guard Instant Messaging service between security domains. XML/SOAP Guard Exchange of XML/SOAP data between security domains.
    • developer: Thales Norway AS
    • documents: frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/1311036-1656573547/SERTIT/Sertifikater/2022/120/SERTIT-120%20C%20v1.0.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/1310630-1654589563/SERTIT/Sertifikater/2022/120/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/1310627-1654589561/SERTIT/Sertifikater/2022/120/SERTIT-120%20CR%20v1.0.pdf'})]})
    • evaluation_facility: System Sikkerhet AS
    • expiration_date: 12.05.2027
    • level: EAL 4, ALC_FLR.3, AVA_VAN.4
    • mutual_recognition: CCRA, SOG-IS
    • product: TNOR Guard version 1.1.3
    • sponsor: Forsvarsmateriell IKT-kapasiteter
  • product: TNOR Guard
  • url: https://sertit.no/certified-products/tnor-guard-article2842-1919.html
heuristics/protection_profiles {} 40651f75a5887085
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0094b_pdf.pdf
pdf_data/cert_filename SERTIT-120 C v1.0.pdf 1117c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • NO:
    • SERTIT-120: 2
  • DE:
    • BSI-DSZ-CC-1117-2019: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0094-2017: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 2
    • EAL 4 augmented: 1
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
  • ALC:
    • ALC_FLR: 1
  • ATE:
    • ATE_DPT.2: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/vendor
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /Author: helgerudt
  • /CreationDate: D:20220629133919+02'00'
  • /Creator: Hewlett-Packard MFP
  • /ModDate: D:20220629142649+02'00'
  • /Producer: PixEdit AS, PixEdit Version 8.7.4.6
  • /Subject: 201676 201334 VEDLEGG01
  • pdf_file_size_bytes: 1289183
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20191017115054+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, "
  • /ModDate: D:20191017122955+02'00'
  • /Producer: LibreOffice 6.2
  • /Subject: Certificate Digital Tachograph EFAS-4.10 V05.00
  • /Title: Certificate BSI-DSZ-CC-1117-2019
  • pdf_file_size_bytes: 294127
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename SERTIT-120 CR v1.0.pdf 1117a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ATE_DPT.2 und AVA_VAN.5
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1117-2019
    • cert_item: Digital Tachograph EFAS-4.10 V05.00
    • cert_lab: BSI
    • developer: Intellic GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 9 May 2017, BSI-CC-PP-0094-2017
pdf_data/report_keywords/cc_cert_id
  • NO:
    • SERTIT-120: 22
  • DE:
    • BSI-DSZ-CC-1055-2018: 3
    • BSI-DSZ-CC-1117-2019: 14
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP- 0094-2017: 1
    • BSI-CC-PP-0094-2017: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 27
    • EAL 4 augmented: 24
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 5
    • EAL 4 augmented: 3
    • EAL 5: 4
    • EAL 5+: 1
    • EAL 6: 1
    • EAL6: 1
    • EAL6 augmented: 1
    • EAL6+: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 26
    • ALC_LCD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.4: 27
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR: 3
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ATE:
    • ATE_DPT.2: 4
  • AVA:
    • AVA_VAN.5: 4
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • Thales:
    • Thales: 12
  • Infineon:
    • Infineon: 1
    • Infineon Technologies AG: 1
pdf_data/report_keywords/eval_facility
  • SRC:
    • SRC Security Research & Consulting: 2
  • TUV:
    • TÜV Informationstechnik: 1
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • CMAC: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 2
  • PKE:
    • PKE: 1
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
pdf_data/report_keywords/cipher_mode
  • ECB:
    • ECB: 1
pdf_data/report_keywords/ecc_curve
  • NIST:
    • P-110: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 6
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-004: 1
  • ISO:
    • ISO/IEC 15408: 8
    • ISO/IEC 17025: 2
    • ISO/IEC 18045: 2
  • RFC:
    • RFC 6477: 1
  • BSI:
    • AIS 20: 1
    • AIS 25: 2
    • AIS 26: 2
    • AIS 31: 1
    • AIS 32: 1
    • AIS 34: 2
    • AIS 35: 1
    • AIS 36: 3
    • AIS 38: 1
    • AIS 40: 1
    • AIS 46: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 08.2019, intellic Germany GmbH [7] Evaluation Technical Report, Version 1.1, 20.09.2019, SRC GmbH, (confidential document) [8] Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 9 May 2017, BSI-CC-PP- 0094-2017 [9: 1
    • COMP) - M7892 G12 and D11- BSI-DSZ-CC-0891-V3, TÜV Informationstechnik GmbH, Version 1, 2017-11-29 (confidential document) 21 / 25 Certification Report BSI-DSZ-CC-1117-2019 C. Excerpts from the Criteria For the meaning: 1
    • Version 04, Approved, 02.09.2019 file name: 1250-111-SEC-DE04_APPR_Konfigurationsliste.docx (confidential document) [12] Bedienungsanleitung Smart Tachograph EFAS-4.10, INTELLIC, Version 01, 2019, file name: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /CreationDate: D:20220518100037+02'00'
  • /ModDate: D:20220518100037+02'00'
  • pdf_file_size_bytes: 529073
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 22
pdf_data/st_filename TNOR Guards 739_20726_aaaa_sc_ed10-4-public.pdf 1117b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1117: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP- 0094-2017: 3
    • BSI-CC-PP-0094: 1
    • BSI-CC-PP-0094-: 1
    • BSI-CC-PP-0094-2017: 8
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 8
    • EAL4 augmented: 5
  • EAL:
    • EAL 6: 2
    • EAL 6 augmented: 2
    • EAL4: 16
    • EAL4 augmented: 6
    • EAL6: 1
    • EAL6 augmented: 1
    • EAL6+: 1
pdf_data/st_keywords/cc_sar
  • ALC:
    • ALC_FLR.3: 6
  • ASE:
    • ASE_CCL: 2
    • ASE_ECD: 2
    • ASE_INT: 2
    • ASE_OBJ: 2
    • ASE_REQ: 2
    • ASE_SPD: 2
    • ASE_TSS: 2
  • AVA:
    • AVA_VAN.4: 6
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 3
    • ADV_FSP.4: 2
    • ADV_IMP.1: 2
    • ADV_TDS.3: 3
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR.1: 2
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 9
    • ATE_FUN.1: 2
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 8
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_ARP: 2
    • FAU_ARP.1: 9
    • FAU_GEN: 2
    • FAU_GEN.1: 13
    • FAU_GEN.2: 8
    • FAU_GEN.2.1: 1
    • FAU_SAA: 1
    • FAU_SAA.1: 10
    • FAU_SAR: 1
    • FAU_SAR.1: 11
    • FAU_SAR.2: 8
    • FAU_STG: 1
    • FAU_STG.1: 12
    • FAU_STG.3: 9
    • FAU_STG.4: 9
  • FCO:
    • FCO_NRO: 1
    • FCO_NRO.1: 10
  • FCS:
    • FCS_CKM.1: 2
    • FCS_CKM.4: 1
    • FCS_COP: 1
    • FCS_COP.1: 10
    • FCS_NRO.1: 1
  • FDP:
    • FDP_ACC: 1
    • FDP_ACC.1: 9
    • FDP_ACC.2: 10
    • FDP_ACF: 1
    • FDP_ACF.1: 12
    • FDP_ETC: 1
    • FDP_ETC.2: 13
    • FDP_IFC: 19
    • FDP_IFC.1: 14
    • FDP_IFC.2: 11
    • FDP_IFF: 19
    • FDP_IFF.1: 16
    • FDP_IFF.2: 16
    • FDP_IFF.2.2: 1
    • FDP_ITC: 1
    • FDP_ITC.1: 2
    • FDP_ITC.2: 15
    • FDP_RIP: 1
    • FDP_RIP.1: 1
    • FDP_RIP.2: 10
    • FDP_UIT: 1
    • FDP_UIT.1: 9
  • FIA:
    • FIA_ATD: 1
    • FIA_ATD.1: 9
    • FIA_UID: 1
    • FIA_UID.1: 7
    • FIA_UID.2: 13
  • FMT:
    • FMT_MOF: 19
    • FMT_MOF.1: 5
    • FMT_MSA: 1
    • FMT_MSA.1: 10
    • FMT_MSA.3: 15
    • FMT_MTD: 2
    • FMT_MTD.1: 12
    • FMT_MTD.3: 8
    • FMT_MTS: 1
    • FMT_REV: 1
    • FMT_REV.1: 9
    • FMT_SMF: 1
    • FMT_SMF.1: 15
    • FMT_SMR: 1
    • FMT_SMR.1: 9
    • FMT_SMR.2: 16
    • FMT_TST.1: 1
  • FPT:
    • FPT_FLS: 1
    • FPT_FLS.1: 11
    • FPT_RCV: 1
    • FPT_RCV.4: 10
    • FPT_STM.1: 2
    • FPT_TDC: 1
    • FPT_TDC.1: 11
    • FPT_TST: 1
    • FPT_TST.1: 12
  • FRU:
    • FRU_PRS: 1
    • FRU_PRS.1: 10
  • FTP:
    • FTP_ITC.1: 4
    • FTP_TRP: 1
    • FTP_TRP.1: 15
    • FTP_TRP.2: 2
  • FAU:
    • FAU_GEN.1: 23
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_SAR.1: 7
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAS.1: 1
    • FAU_STG.1: 15
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.3: 1
    • FAU_STG.4: 8
    • FAU_STG.4.1: 1
  • FCO:
    • FCO_NRO.1: 9
    • FCO_NRO.1.1: 1
    • FCO_NRO.1.2: 1
    • FCO_NRO.1.3: 1
  • FCS:
    • FCS_CKM: 21
    • FCS_CKM.1: 53
    • FCS_CKM.1.1: 2
    • FCS_CKM.2: 20
    • FCS_CKM.2.1: 2
    • FCS_CKM.4: 46
    • FCS_CKM.4.1: 2
    • FCS_COP: 29
    • FCS_COP.1: 79
    • FCS_COP.1.1: 6
    • FCS_RNG: 4
    • FCS_RNG.1: 29
    • FCS_RNG.1.1: 4
    • FCS_RNG.1.2: 4
  • FDP:
    • FDP_ACC: 12
    • FDP_ACC.1: 82
    • FDP_ACC.1.1: 5
    • FDP_ACF: 11
    • FDP_ACF.1: 67
    • FDP_ACF.1.1: 10
    • FDP_ACF.1.2: 5
    • FDP_ACF.1.3: 5
    • FDP_ACF.1.4: 5
    • FDP_ETC.2: 12
    • FDP_ETC.2.1: 1
    • FDP_ETC.2.2: 1
    • FDP_ETC.2.3: 1
    • FDP_ETC.2.4: 1
    • FDP_IFC.1: 15
    • FDP_ITC: 12
    • FDP_ITC.1: 35
    • FDP_ITC.1.1: 1
    • FDP_ITC.1.2: 1
    • FDP_ITC.1.3: 1
    • FDP_ITC.2: 49
    • FDP_ITC.2.1: 1
    • FDP_ITC.2.2: 1
    • FDP_ITC.2.3: 1
    • FDP_ITC.2.4: 1
    • FDP_ITC.2.5: 1
    • FDP_ITT.1: 10
    • FDP_ITT.1.1: 1
    • FDP_MSA.3: 4
    • FDP_RIP: 1
    • FDP_RIP.1: 17
    • FDP_RIP.1.1: 1
    • FDP_SDI.1: 3
    • FDP_SDI.2: 20
    • FDP_SDI.2.1: 2
    • FDP_SDI.2.2: 2
  • FIA:
    • FIA_AFL.1: 24
    • FIA_AFL.1.1: 5
    • FIA_AFL.1.2: 4
    • FIA_API.1: 1
    • FIA_ATD.1: 15
    • FIA_ATD.1.1: 2
    • FIA_SOS.2: 1
    • FIA_UAU.1: 22
    • FIA_UAU.1.1: 2
    • FIA_UAU.1.2: 2
    • FIA_UAU.2: 10
    • FIA_UAU.2.1: 1
    • FIA_UAU.3: 8
    • FIA_UAU.3.1: 1
    • FIA_UAU.3.2: 1
    • FIA_UAU.5: 7
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6: 10
    • FIA_UAU.6.1: 1
    • FIA_UID.1: 11
    • FIA_UID.2: 18
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_LIM: 2
    • FMT_LIM.1: 3
    • FMT_LIM.2: 1
    • FMT_MOF.1: 29
    • FMT_MOF.1.1: 5
    • FMT_MSA.1: 29
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 52
    • FMT_MSA.3.1: 5
    • FMT_MSA.3.2: 5
    • FMT_MTD.1: 11
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 31
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 45
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 14
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 1
    • FPT_PHP.2: 9
    • FPT_PHP.2.1: 1
    • FPT_PHP.2.2: 1
    • FPT_PHP.2.3: 2
    • FPT_PHP.3: 12
    • FPT_PHP.3.1: 1
    • FPT_STM.1: 15
    • FPT_STM.1.1: 1
    • FPT_TDC: 8
    • FPT_TDC.1: 24
    • FPT_TDC.1.1: 2
    • FPT_TDC.1.2: 2
    • FPT_TST.1: 12
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FRU:
    • FRU_FLT.2: 3
  • FTP:
    • FTP_ITC.1: 27
    • FTP_ITC.1.1: 3
    • FTP_ITC.1.2: 3
    • FTP_ITC.1.3: 3
    • FTP_TRP.1: 5
pdf_data/st_keywords/cc_claims
  • A:
    • A..Z: 1
    • A.APPROVED_CRYPTO: 3
    • A.APPROVED_PKI: 2
    • A.CORRECT_CONFIGURATION: 3
    • A.NETWORK_PROTECTED: 2
    • A.PHYSICAL_ACCESS_MANAGED: 3
    • A.TRUSTED_AND_TRAINED_ADMIN: 2
    • A.TRUSTED_LABELLER: 3
  • O:
    • O.ACCESS: 8
    • O.AUDIT: 13
    • O.CMD_ACL: 10
    • O.CONFIGURATION_CHANGE: 5
    • O.CONTROLLED_INFORMATION: 1
    • O.CONTROLLED_INFORMATION_FLOW: 5
    • O.CORRECT_TSF_OPERATION: 6
    • O.INTERNAL_LEAST_PRIVILEG: 1
    • O.INTERNAL_LEAST_PRIVILEGE: 9
    • O.LABEL_MAPPING: 8
    • O.MAC: 5
    • O.MGMT_MODE: 6
    • O.MINIMAL_PROXY: 10
    • O.OBJECT_INTEGRITY: 9
    • O.RESIDUAL_INFORMATION: 7
    • O.RESOURCE_SHARING: 7
    • O.SECURE_STATE: 8
    • O.SUBJECT_ISOLATION: 12
    • O.TRANSITION: 5
    • O.TSF_INTEGRITY: 9
    • O.VALID_LABEL: 6
  • OE:
    • OE.APPROVED_CRYPTO: 7
    • OE.APPROVED_PKI: 7
    • OE.BORDER_PROTECTION: 12
    • OE.CONFIGURATION: 8
    • OE.CONTENT_INSPECTION_S: 1
    • OE.CONTENT_INSPECTION_SE: 2
    • OE.CONTENT_INSPECTION_SERVICE: 6
    • OE.DIRECTORY_SERVICE: 6
    • OE.MINIMAL_POSTURE: 10
    • OE.NETWORK: 10
    • OE.PHYSICAL_ACCESS_MANA: 2
    • OE.PHYSICAL_ACCESS_MANAG: 1
    • OE.PHYSICAL_ACCESS_MANAGED: 6
    • OE.PLATFORM: 10
    • OE.TIME_SOURCE: 6
    • OE.TRUSTED_AND_TRAINED_: 1
    • OE.TRUSTED_AND_TRAINED_A: 1
    • OE.TRUSTED_AND_TRAINED_ADMIN: 8
    • OE.TRUSTED_AND_TRAINED_ADMINS: 1
    • OE.TRUSTED_LABELLER: 7
  • T:
    • T.ADMIN_MASQUERADE: 4
    • T.AUDIT_COMPROMISE: 2
    • T.COVERT_CHANNEL: 2
    • T.DOS: 4
    • T.INFORMATION_LEAK: 2
    • T.INSECURE_STATE: 4
    • T.MALWARE_INJECTION: 2
    • T.METADATA_LEAK: 4
    • T.NETWORK_ATTACK: 2
    • T.OBJECT_TAMPERING: 4
    • T.RECONNAISSANCE: 4
    • T.RESIDUAL_DATA: 2
    • T.TSF_COMPROMISE: 3
    • T.UNATTENDED_ADMIN_SESSION: 2
    • T.UNAUTHORIZED_ACCESS: 4
    • T.UNNOTICED_ATTACK: 2
  • O:
    • O.AES: 2
    • O.RND: 2
    • O.SHA: 2
    • O.TDES: 2
  • OE:
    • OE.EOL: 4
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • Thales:
    • Thales: 80
pdf_data/st_keywords/eval_facility
  • SRC:
    • SRC Security Research & Consulting: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 57
      • AES-: 1
      • AES-128: 8
      • AES-192: 4
      • AES-256: 4
  • DES:
    • 3DES:
      • TDES: 7
      • Triple-DES: 3
    • DES:
      • DES: 4
  • constructions:
    • MAC:
      • CMAC: 11
      • KMAC: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 18
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 6
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 11
    • SHA2:
      • SHA-2: 4
      • SHA-256: 15
      • SHA-384: 9
      • SHA-512: 9
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 22
  • PKE:
    • PKE: 1
  • MAC:
    • MAC: 6
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 3
pdf_data/st_keywords/randomness
  • PRNG:
    • PRNG: 1
  • RNG:
    • RND: 2
    • RNG: 13
  • TRNG:
    • TRNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 14
  • ECB:
    • ECB: 1
  • GCM:
    • GCM: 1
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP256r1: 1
    • brainpoolP384r1: 1
    • brainpoolP512r1: 1
  • NIST:
    • NIST P-256: 1
    • NIST P-384: 1
    • NIST P-521: 1
    • P-256: 1
    • P-384: 1
    • P-521: 1
    • secp256r1: 1
    • secp384r1: 1
    • secp521r1: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • physical tampering: 8
  • SCA:
    • Leak-Inherent: 2
  • other:
    • JIL: 4
    • reverse engineering: 1
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS PUB 180-4: 2
  • ISO:
    • ISO/IEC 15408: 6
  • PKCS:
    • PKCS #11: 2
    • PKCS#11: 4
    • PKCS11: 2
  • RFC:
    • RFC 5321: 1
    • RFC 5322: 1
    • RFC 6120: 1
    • RFC 6121: 1
    • RFC 6477: 1
    • RFC 7622: 2
    • RFC3507: 2
    • RFC5905: 1
    • RFC6120: 2
    • RFC6121: 1
  • X509:
    • X.509: 1
  • BSI:
    • AIS36: 3
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 180-1: 3
    • FIPS 180-4: 6
    • FIPS 186-4: 5
    • FIPS 197: 6
    • FIPS PUB 180-4: 1
    • FIPS PUB 197: 1
    • FIPS PUB 46-3: 2
  • ISO:
    • ISO/IEC 7816-2: 1
    • ISO/IEC 7816-3: 1
    • ISO/IEC 7816-4: 1
    • ISO/IEC 7816-6: 1
    • ISO/IEC 7816-8: 1
    • ISO/IEC 9797-1: 1
  • PKCS:
    • PKCS#1: 5
  • RFC:
    • RFC 5480: 1
    • RFC 5639: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 22 RSA Generated by ERCA; inserted in VU by VU manufacturer at the end of the manufacturing phase Out of scope of this ST Not applicable VU non- volatile memory Card.PK (conditional, possibly multiple) Card: 1
    • 25 ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope of this ST Not applicable VU non-volatile memory (conditional; only present if existing at time of: 1
    • 25 ECC Generated by MSCA ; obtained by VU in MSCA_Card certificate during mutual authentication Out of scope of this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA_VU- EGF.PK: 1
    • 25. ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope of this ST Not applicable VU non-volatile memory EUR.PK (previous) The previous public key of ERCA: 1
    • 25. ECC Generated by MSCA ; obtained by VU in MSCA_VU-EGF certificate during coupling to an EGF Out of scope of this ST Not applicable VU non-volatile memory (conditional, possibly multiple) Table 23 -: 1
    • C as part of the EUR.Link.C; obtained by VU during mutual authentication towards such card or EGF Out of scope of this ST Not applicable VU general non- volatile memory (conditional; only if the VU has: 1
    • Out of scope: 28
    • SW update credentials AES Derived by the VU from the SeedVu at the end of the manufacturing phase Out of scope for this ST Made unavailable when the VU has reached end of life VU SC non- volatile memory: 2
    • VU personalization AES Generated by the VU manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable. VU SC non- volatile memory K_Depers Key for de- personalizat ion VU: 1
    • by card or card manufacturer; obtained by VU in card certificate during mutual authentication Out of scope of this ST Not applicable VU non-volatile memory(conditional, possibly multiple) EGF_MA.PK EGF: 1
    • by card or card- Manufacturer; obtained by VU in card certificate during mutual authentication Out of scope of this ST Not applicable VU non- volatile memory MS.PK (conditional, possibly multiple) Public key: 1
    • data stored in the MC flash memory. AES Generated by the VU at the end of the manufacturing phase Out of scope for this ST Not applicable. VU SC non- volatile memory Table 26: Manufacturer specific keys and: 1
    • downloaded data files RSA Generated by VU manufacturer at the end of the manufacturing phase Out of scope of this ST. Made unavailable when the VU has reached end of life VU non- volatile memory EUR.PK: 1
    • downloaded logging data. AES Generated by the VU manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable. VU SC non- volatile memory K_ErrorLog_ MC ErrorLog: Key for MC data: 1
    • downloaded logging data. ECC Generated by the VU manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable. VU SC non- volatile memory K_ErrorLog_E nc ErrorLog: Key for download: 1
    • during SW update AES Generated by the VU manufacturer before distribution of a SW update package Out of scope for this ST Made unavailable at the end of the SW update process VU SC non- volatile memory: 2
    • foreign) MSCA; obtained by VU in MS certificate presented by a card during mutual authentication Out of scope of this ST Not applicable VU non- volatile memory Table 20 - First-generation asymmetric keys: 1
    • key generations). However, a VU will retrieve only one of these keys during the pairing process. Out of scope of this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only: 1
    • obtained by VU in EGF certificate during mutual authentication as part of the coupling process Out of scope of this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA_Card.PK: 1
    • of the SW update compatibility header AES Generated by the VU manufacturer once for a product line Out of scope for this ST Made unavailable when the VU has reached end of life VU SC non- volatile memory: 1
    • personalization request AES Derived by the VU from the SeedVu at the end of the manufacturing phase Out of scope for this ST Not applicable. VU SC non- volatile memory KCOMP SW Update: Key for MAC of compatibilit: 1
    • phase. Note: as explained in [5] Annex 1C, Appendix 11, section 12.2, a VU contains only one KM-VU. Out of scope of this ST Made unavailable when the VU has reached end of life VU non- volatile memory KM-WC: 1
    • received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope of this ST Made unavailable when the VU has reached end of life VU non- volatile memory K_VUDSRC: 1
    • received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope of this ST Made unavailable when the VU has reached end of life VU non- volatile memory Table 24 -: 1
    • stored in the MC memory. AES Generated by the VU manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable. VU MC non- volatile memory K_DataSe_M AC Data storage: Key VU specific: 1
    • under KM) at the end of the manufacturing phase; obtained and decrypted by VU during pairing Out of scope of this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only: 1
    • used by the VU to ensure AES Generated by the VU at the end of the manufacturing Out of scope for this ST Not applicable. VU SC non- Security Target EFAS-4.10 document number version author: 1
pdf_data/st_metadata
  • /Author: Radical
  • /CreationDate: D:20220510093219+02'00'
  • /Creator: Microsoft® Word 2016
  • /ModDate: D:20220510093219+02'00'
  • /Producer: Microsoft® Word 2016
  • /Title: System/Subsystem Specification
  • pdf_file_size_bytes: 3028038
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 78
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different