Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Cisco Embedded Services Router 5921 (ESR5921) running IOS version 15.9M
CCEVS-VR-11275-2022
Infineon smart card IC (Security Controller) IFX_CCI_000011h, 00001Bh, 00001Eh, 000025h, design step G12 with optional libraries CCL V02.00.0005, RSA2048/4096 V2.07.003, EC V2.07.003, Toolbox V2.07.003, HSL V2.01.6198, SCL V2.04.002 and with specific IC dedicated software
BSI-DSZ-CC-1025-2018
name Cisco Embedded Services Router 5921 (ESR5921) running IOS version 15.9M Infineon smart card IC (Security Controller) IFX_CCI_000011h, 00001Bh, 00001Eh, 000025h, design step G12 with optional libraries CCL V02.00.0005, RSA2048/4096 V2.07.003, EC V2.07.003, Toolbox V2.07.003, HSL V2.01.6198, SCL V2.04.002 and with specific IC dedicated software
category Network and Network-Related Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme US DE
not_valid_after 05.08.2024 10.09.2023
not_valid_before 05.08.2022 10.09.2018
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11275-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1025c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11275-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1025a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11275-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1025b_pdf.pdf
manufacturer Cisco Systems, Inc. Infineon Technologies AG
manufacturer_web https://www.cisco.com https://www.infineon.com/
security_level {} ALC_FLR.1, EAL6+
dgst 03c816c2039d1270 f1edac1b03b47a24
heuristics/cert_id CCEVS-VR-11275-2022 BSI-DSZ-CC-1025-2018
heuristics/cert_lab US BSI
heuristics/extracted_sars ALC_CMS.1, ASE_CCL.1, ASE_INT.1, ADV_FSP.1, AGD_PRE.1, AVA_VAN.1, ASE_ECD.1, ASE_SPD.1, ASE_OBJ.1, ATE_IND.1, ASE_REQ.1, ASE_TSS.1, ALC_CMC.1, AGD_OPE.1 ADV_IMP.2, AVA_VAN.5, ADV_ARC.1, ADV_FSP.5, ALC_CMC.5, ASE_TSS.1, ADV_TDS.5, AGD_OPE.1, ATE_DPT.3, ATE_COV.3, ASE_REQ.2, ADV_SPM.1, ATE_FUN.2, ADV_CMC.5, ALC_DVS.2, AGD_PRE.1, ASE_CCL.1, ATE_IND.2, ASE_ECD.1, ADV_INT.3, ALC_DEL.1, ASE_OBJ.2, ALC_FLR.1, ASE_INT.1, ALC_TAT.3, ASE_SPD.1, ALC_CMS.5, ALC_LCD.1
heuristics/extracted_versions 15.9 2.04.002, 2.07.003, 2.01.6198, 02.00.0005
heuristics/report_references/directly_referenced_by {} BSI-DSZ-CC-1025-V2-2019
heuristics/report_references/indirectly_referenced_by {} BSI-DSZ-CC-1025-V6-2024, BSI-DSZ-CC-1025-V3-2020, BSI-DSZ-CC-1025-V2-2019, BSI-DSZ-CC-1025-V4-2021, BSI-DSZ-CC-1025-V5-2023
heuristics/protection_profiles 89f2a255423f4a20 cf0f01bcd7be3e9c
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0084b_pdf.pdf
pdf_data/cert_filename st_vid11275-ci.pdf 1025c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11275-2022: 1
  • DE:
    • BSI-DSZ-CC-1025-2018: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-2014: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 5: 1
    • EAL 6: 1
    • EAL 6 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.1: 1
pdf_data/cert_keywords/vendor
  • Cisco:
    • Cisco: 1
    • Cisco Systems, Inc: 1
  • Infineon:
    • Infineon: 1
    • Infineon Technologies AG: 1
pdf_data/cert_keywords/eval_facility
  • Acumen:
    • Acumen Security: 1
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20220812132757-04'00'
  • /ModDate: D:20220812132757-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 181020
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20180927090415+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, SmartCard, EAL, Security Controller, Infineon"
  • /ModDate: D:20180927092157+02'00'
  • /Producer: LibreOffice 5.2
  • /Subject: Infineon smart card IC (Security Controller) IFX_CCI_000011h, 00001Bh, 00001Eh, 000025h, design step G12 with optional libraries CCL V02.00.0005, RSA2048/4096 V2.07.003, EC V2.07.003, Toolbox V2.07.003, HSL V2.01.6198, SCL V2.04.002 and with specific IC dedicated software
  • /Title: Certification Report BSI-DSZ-CC-1025-2018
  • pdf_file_size_bytes: 367795
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid11275-vr.pdf 1025a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • US:
    • cert_id: CCEVS-VR-11275-2022
    • cert_item: for the Cisco Embedded Services Router 5921 (ESR5921) running IOS version 15.9M
    • cert_lab: US NIAP
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 6 augmented by ALC_FLR.1
    • cc_version: PP conformant plus product specific extensions Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1025-2018
    • cert_item: Infineon smart card IC (Security Controller) IFX_CCI_000011h, 00001Bh, 00001Eh, 000025h, design step G12 with optional libraries CCL V02.00.0005, RSA2048/4096 V2.07.003, EC V2.07.003, Toolbox V2.07.003, HSL V2.01.6198, SCL V2.04.002 and with specific IC dedicated software
    • cert_lab: BSI
    • developer: Infineon Technologies AG
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Security IC Platform Protection Profile with Augmentation Packages Version 1.0, 13 January 2014, BSI-CC-PP-0084-2014
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-11275-2022: 1
  • DE:
    • BSI-DSZ-CC-1025-2018: 22
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-: 1
    • BSI-CC-PP-0084-2014: 3
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 5
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 1
    • EAL 5: 4
    • EAL 6: 4
    • EAL 6 augmented: 3
    • EAL5+: 1
    • EAL6: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_CMC.5: 1
    • ALC_CMS.5: 1
    • ALC_DEL.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 3
    • ALC_FLR.1: 5
    • ALC_LCD.1: 1
    • ALC_TAT.3: 1
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 2
    • FCS_CKM.2: 1
    • FCS_COP: 3
    • FCS_RBG_EXT.1: 1
  • FCS:
    • FCS_RNG: 1
pdf_data/report_keywords/vendor
  • Cisco:
    • Cisco: 35
    • Cisco Systems, Inc: 2
  • GD:
    • G&D: 2
    • Giesecke & Devrient: 1
  • Infineon:
    • Infineon: 10
    • Infineon Technologies: 1
    • Infineon Technologies AG: 21
pdf_data/report_keywords/eval_facility
  • Acumen:
    • Acumen Security: 4
  • TUV:
    • TÜV Informationstechnik: 5
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 3
  • constructions:
    • MAC:
      • HMAC: 1
  • AES_competition:
    • AES:
      • AES: 11
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 3
      • Triple-DES: 1
    • DES:
      • DES: 2
  • constructions:
    • MAC:
      • CBC-MAC: 2
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 2
  • ECC:
    • ECC:
      • ECC: 3
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 3
  • RSA:
    • RSA2048: 1
    • RSA4096: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-256: 1
      • SHA-512: 2
pdf_data/report_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • KEX:
    • Key Exchange: 1
    • Key exchange: 3
  • KA:
    • Key Agreement: 2
  • MAC:
    • MAC: 1
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 2
    • IKEv1: 1
    • IKEv2: 1
  • IPsec:
    • IPsec: 21
  • SSH:
    • SSH: 8
    • SSHv2: 4
  • VPN:
    • VPN: 18
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
  • GCM:
    • GCM: 1
  • CBC:
    • CBC: 2
  • CFB:
    • CFB: 2
  • CTR:
    • CTR: 2
  • ECB:
    • ECB: 2
pdf_data/report_keywords/side_channel_analysis
  • SCA:
    • physical probing: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 186-4: 2
  • ISO:
    • ISO/IEC 18031:2011: 1
  • NIST:
    • SP 800-90: 1
  • PKCS:
    • PKCS#1: 1
  • RFC:
    • RFC 5280: 1
  • X509:
    • X.509: 1
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 20: 1
    • AIS 23: 1
    • AIS 25: 1
    • AIS 26: 1
    • AIS 31: 2
    • AIS 32: 1
    • AIS 34: 2
    • AIS 35: 2
    • AIS 36: 3
    • AIS 37: 1
    • AIS 38: 1
    • AIS 41: 1
    • AIS 46: 1
    • AIS31: 5
  • FIPS:
    • FIPS PUB 186-4: 1
    • FIPS186-4: 4
    • FIPS197: 2
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 25: 2
  • PKCS:
    • PKCS #1: 1
    • PKCS1: 2
  • RFC:
    • RFC 5639: 1
    • RFC5639: 2
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • IFX_CCI_000011h IFX_CCI_00001Bh IFX_CCI_00001Eh IFX_CCI_000025h G12”, Infineon Technologies AG (confidential document) [7] Evaluation Technical Report Summary for BSI-DSZ-CC-1025-2018, Version 3, 2018-07-30: 1
    • Standards Compliance Verification”, Version 4, 2018-06-19, TÜV Informationstechnik GmbH (confidential document) [21] Configuration list for the TOE, Version 0.4, 2018-02-12, “Life Cycle Support IFX_CCI_11h: 1
    • TECHNICAL REPORT SUMMARY (ETR SUMMARY)”, TÜV Informationstechnik GmbH, (confidential document) [8] Security IC Platform Protection Profile with Augmentation Packages Version 1.0, 13 January: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
    • optional Software Libraries and Flash Loader according Package 1 and Package 2” (confidential document), Infineon Technologies AG 29 / 34 Certification Report BSI-DSZ-CC-1025-2018 [22] ARMv7-M: 1
    • “EVALUATION TECHNICAL REPORT FOR COMPOSITE EVALUATION (ETR COMP)”, TÜV Informationstechnik (confidential document) [11] 32-bit Security Controller – V07 Security Guidelines, v1.00-1813, 2018-04-27, Infineon: 1
  • OutOfScope:
    • n/a 1976 – 4096 (note: TOE supports larger and smaller key sizes, which are generally out of scope of evaluation in BSI scheme) Yes Table 4: TOE cryptographic functionality – RSA Key Gen For the: 1
    • Modulus length = 1976 – 4096 (note: TOE supports larger and smaller key sizes, which are generally out of scope of evaluation in BSI scheme) yes ECDSA signature generation [X962], [IEEE_P1363], [ISO_14888-3] Key: 1
    • note: TOE supports larger and smaller key sizes, which are generally out of scope of evaluation in BSI scheme: 2
    • out of scope: 2
pdf_data/report_metadata
  • /Author: ppatin
  • /CreationDate: D:20220812131602-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220812131602-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 315764
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 26
pdf_data/st_filename st_vid11275-st.pdf 1025b_pdf.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-2014: 4
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 6: 1
    • EAL 6 augmented: 1
    • EAL6: 131
    • EAL6 augmented: 128
    • EAL6+: 128
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 3
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 4
  • ADV:
    • ADV_ARC.1: 1
    • ADV_CMC.5: 1
    • ADV_FSP: 1
    • ADV_FSP.4: 4
    • ADV_FSP.5: 3
    • ADV_IMP: 1
    • ADV_IMP.1: 2
    • ADV_IMP.2: 2
    • ADV_INT.3: 1
    • ADV_SPM: 2
    • ADV_SPM.1: 6
    • ADV_TDS.5: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.4: 3
    • ALC_CMC.5: 2
    • ALC_CMS: 2
    • ALC_CMS.4: 2
    • ALC_CMS.5: 3
    • ALC_DEL: 2
    • ALC_DEL.1: 1
    • ALC_DVS: 3
    • ALC_DVS.1: 2
    • ALC_DVS.2: 4
    • ALC_FLR.1: 11
    • ALC_LCD.1: 1
    • ALC_TAT.3: 1
  • ASE:
    • ASE_CCL: 9
    • ASE_CCL.1: 1
    • ASE_ECD: 4
    • ASE_ECD.1: 1
    • ASE_INT: 19
    • ASE_INT.1: 1
    • ASE_OBJ: 9
    • ASE_OBJ.2: 1
    • ASE_REQ: 45
    • ASE_REQ.2: 1
    • ASE_SPD: 8
    • ASE_SPD.1: 1
    • ASE_TSS: 16
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.2: 3
    • ATE_COV.3: 4
    • ATE_DPT.3: 1
    • ATE_FUN.2: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 7
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG: 1
    • FAU_STG_EXT.1: 5
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 4
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 8
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 6
    • FCS_CKM.4.1: 1
    • FCS_COP: 27
    • FCS_COP.1: 4
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT.1: 6
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHS_EXT.1: 6
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.2.3: 1
  • FIA:
    • FIA_AFL.1: 10
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 5
    • FIA_PMG_EXT.1.1: 1
    • FIA_PSK_EXT.1: 3
    • FIA_PSK_EXT.1.1: 1
    • FIA_PSK_EXT.1.2: 1
    • FIA_PSK_EXT.1.3: 1
    • FIA_PSK_EXT.1.4: 1
    • FIA_UAU.1: 1
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT.2: 5
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 7
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 18
    • FMT_MTD: 11
    • FMT_MTD.1: 1
    • FMT_SMF: 4
    • FMT_SMF.1: 8
    • FMT_SMF.1.1: 1
    • FMT_SMR.2: 5
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 4
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_FLS: 4
    • FPT_FLS.1: 1
    • FPT_SKP_EXT: 2
    • FPT_SKP_EXT.1: 3
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT.1: 6
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 4
    • FPT_TST_EXT.1: 3
    • FPT_TST_EXT.1.1: 1
    • FPT_TST_EXT.3: 2
    • FPT_TST_EXT.3.1: 1
    • FPT_TST_EXT.3.2: 1
    • FPT_TUD_EXT.1: 5
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL.3: 7
    • FTA_SSL.4: 5
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 6
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 7
  • FTP:
    • FTP_ITC: 4
    • FTP_ITC.1: 12
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 4
  • FAU:
    • FAU_SAS: 3
    • FAU_SAS.1: 12
    • FAU_SAS.1.1: 1
  • FCS:
    • FCS_CKM: 76
    • FCS_CKM.1: 32
    • FCS_CKM.2: 6
    • FCS_CKM.4: 31
    • FCS_COP: 114
    • FCS_COP.1: 25
    • FCS_RNG: 47
    • FCS_RNG.1: 16
  • FDP:
    • FDP_ACC: 17
    • FDP_ACC.1: 27
    • FDP_ACC.1.1: 1
    • FDP_ACF: 17
    • FDP_ACF.1: 23
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_AFC: 1
    • FDP_IFC.1: 16
    • FDP_ITC.1: 26
    • FDP_ITC.2: 26
    • FDP_ITT.1: 14
    • FDP_PHP.3: 1
    • FDP_SDC: 2
    • FDP_SDC.1: 12
    • FDP_SDC.1.1: 1
    • FDP_SDI.1: 1
    • FDP_SDI.2: 13
    • FDP_SDI.2.1: 1
    • FDP_SDI.2.2: 1
    • FDP_UCT.1: 16
    • FDP_UCT.1.1: 1
    • FDP_UIT.1: 16
    • FDP_UIT.1.1: 1
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_API: 3
    • FIA_API.1: 13
    • FIA_API.1.1: 1
    • FIA_SOS.2: 2
    • FIA_SOS.2.1: 1
    • FIA_SOS.2.2: 1
  • FMT:
    • FMT_ACF: 1
    • FMT_LIM: 29
    • FMT_LIM.1: 12
    • FMT_LIM.2: 11
    • FMT_MSA.1: 17
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 20
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 15
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 6
  • FPT:
    • FPT_FLS.1: 20
    • FPT_ITC.1: 2
    • FPT_ITT.1: 15
    • FPT_PHP.3: 17
    • FPT_TST: 5
    • FPT_TST.1: 11
    • FPT_TST.2: 31
    • FPT_TST.2.1: 1
  • FRU:
    • FRU_FLT.2: 9
  • FTP:
    • FTP_ITC.1: 21
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 4
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.CONNECTIONS: 1
    • A.LIMITED_F: 1
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 2
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
    • A.VS_CORRECT_CONFIGURATION: 1
    • A.VS_ISOLATON: 1
    • A.VS_REGULAR_UPDATES: 1
    • A.VS_TRUSTED_ADMINISTRATOR: 1
  • O:
    • O.ADDRESS_FILTERING: 1
    • O.AUTHENTICATION: 1
    • O.CRYPTOGRAPHIC_FUNCTIONS: 1
    • O.FAIL_SECURE: 1
    • O.PORT_FILTERING: 1
    • O.SYSTEM_MONITORING: 1
    • O.TOE_ADMINISTRATION: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.CONNECTIONS: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
    • OE.VM_CONFIGURATION: 1
  • T:
    • T.DATA_INTEGRITY: 1
    • T.NETWORK_ACCESS: 1
    • T.NETWORK_DISCLOSURE: 1
    • T.NETWORK_MISUSE: 1
    • T.PASSWORD_CRACKING: 1
    • T.REPLAY_ATTACK: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • O:
    • O.AES: 4
    • O.RND: 4
    • O.TDES: 4
  • T:
    • T.RND: 1
pdf_data/st_keywords/vendor
  • Cisco:
    • Cisco: 55
    • Cisco Systems, Inc: 82
  • Infineon:
    • Infineon: 15
    • Infineon Technologies: 21
    • Infineon Technologies AG: 31
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 20
      • AES-: 2
  • DES:
    • 3DES:
      • 3DES: 1
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 7
      • HMAC-SHA-256: 2
      • HMAC-SHA-512: 2
  • AES_competition:
    • AES:
      • AES: 50
      • AES-128: 3
  • DES:
    • 3DES:
      • TDEA: 3
      • TDES: 26
      • Triple-DES: 4
      • TripleDES: 2
    • DES:
      • DES: 29
  • constructions:
    • MAC:
      • CBC-MAC: 8
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 4
    • ECDSA:
      • ECDSA: 16
  • FF:
    • DH:
      • DH: 16
      • Diffie-Hellman: 8
  • ECC:
    • ECC:
      • ECC: 15
    • ECDH:
      • ECDH: 6
    • ECDSA:
      • ECDSA: 19
  • FF:
    • DH:
      • Diffie-Hellman: 9
    • DSA:
      • DSA: 1
  • RSA:
    • RSA2048: 6
    • RSA4096: 6
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 7
      • SHA1: 1
    • SHA2:
      • SHA-256: 3
      • SHA-384: 3
      • SHA-512: 5
      • SHA512: 1
  • MD:
    • MD5:
      • MD5: 11
  • SHA:
    • SHA1:
      • SHA1: 11
    • SHA2:
      • SHA256: 11
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
  • KEX:
    • Key Exchange: 3
    • Key exchange: 3
  • MAC:
    • MAC: 6
  • KA:
    • Key Agreement: 2
    • Key agreement: 2
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 40
    • IKEv1: 17
    • IKEv2: 16
  • IPsec:
    • IPsec: 79
  • SSH:
    • SSH: 44
    • SSHv2: 16
  • TLS:
    • DTLS:
      • DTLS: 1
    • TLS:
      • TLS: 3
  • VPN:
    • VPN: 53
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 7
  • RNG:
    • RBG: 3
  • PRNG:
    • PRNG: 1
  • RNG:
    • RND: 5
    • RNG: 25
  • TRNG:
    • TRNG: 3
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • GCM:
    • GCM: 4
  • CBC:
    • CBC: 14
  • CFB:
    • CFB: 6
  • CTR:
    • CTR: 8
  • ECB:
    • ECB: 16
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 12
    • P-384: 12
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 7
    • Malfunction: 12
    • fault injection: 2
    • malfunction: 1
  • SCA:
    • DPA: 7
    • Leak-Inherent: 12
    • Physical Probing: 2
    • SPA: 6
    • Side-channel: 1
    • Timing Attack: 1
    • physical probing: 1
    • side channel: 11
  • other:
    • reverse engineering: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-02102: 1
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 2
    • FIPS 186-4: 2
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-3: 2
    • FIPS PUB 186-3: 2
    • FIPS PUB 186-4: 11
    • FIPS PUB 198-1: 1
  • ISO:
    • ISO/IEC 14888-3: 2
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 2
  • NIST:
    • NIST SP 800-56A: 2
    • NIST SP 800-57: 1
    • NIST SP 800-90A: 1
    • SP 800-90: 2
  • PKCS:
    • PKCS #1: 1
    • PKCS#1: 1
    • PKCS12: 1
  • RFC:
    • RFC 2460: 2
    • RFC 2986: 1
    • RFC 3447: 1
    • RFC 3526: 4
    • RFC 3602: 4
    • RFC 4106: 3
    • RFC 4109: 1
    • RFC 4253: 1
    • RFC 4301: 2
    • RFC 4303: 2
    • RFC 4868: 2
    • RFC 4945: 1
    • RFC 5077: 1
    • RFC 5114: 2
    • RFC 5280: 4
    • RFC 5282: 1
    • RFC 5759: 1
    • RFC 5996: 2
    • RFC 768: 2
    • RFC 791: 2
    • RFC 7919: 1
    • RFC 793: 2
    • RFC-7919: 1
    • RFC7919: 1
  • X509:
    • X.509: 11
  • BSI:
    • AIS20: 1
    • AIS31: 13
    • AIS32: 8
  • CC:
    • CCMB-2017-04-001: 2
    • CCMB-2017-04-002: 2
    • CCMB-2017-04-003: 2
  • FIPS:
    • FIPS 140-2: 1
    • FIPS 197: 4
    • FIPS PUB 140-2: 1
  • ISO:
    • ISO/IEC 11770-3: 1
    • ISO/IEC 14443-4: 3
    • ISO/IEC 14888-3: 6
    • ISO/IEC 15946-1: 1
    • ISO/IEC 7816-3: 1
    • ISO/IEC 9797-1: 2
    • ISO/IEC 9798-2: 1
  • NIST:
    • SP 800-108: 1
    • SP 800-38A: 11
    • SP 800-67: 5
  • PKCS:
    • PKCS #1: 2
    • PKCS#1: 8
  • RFC:
    • RFC 5639: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • SFRs related to the TOE authentication are regarded as not applicable, due to the fact that it is out of scope of the intended use-case and the authentication functionality is no longer available. End of note: 1
    • certification. The user operating system and further applications implemented on the TOE are also out of scope of this certification. To summarize, if used with the PCD software the certification view equals to: 1
    • is enabled to communicate via the selected interfaces. The surrounding environment is in both cases out of scope. Note 1: The cryptographic libraries RSA, EC and Toolbox are delivery options. Therefore the TOE: 1
    • out of scope: 3
pdf_data/st_metadata
  • /Author: Cisco CC TME
  • /Category:
  • /Comments:
  • /Company: Cisco Systems, Inc.
  • /ComplianceAssetId:
  • /ContentTypeId: 0x010100A0E6A6B1D362064DAD5978D308B22AA4
  • /CreationDate: D:20220804180212+01'00'
  • /Creator: Acrobat PDFMaker 22 for Word
  • /FIPS_cert: TBD
  • /Keywords:
  • /Manager:
  • /ModDate: D:20220804153136-04'00'
  • /Models: Cisco 1234, Cisco 4567
  • /NDPP_Version: 1.1
  • /PP: U.S. Government Protection Profile for Security Requirements for Network Devices
  • /PP_2: Network Device Protection Profile Extended Package Stateful Traffic Filter Firewall
  • /Producer: Adobe PDF Library 22.1.201
  • /SourceModified:
  • /Subject:
  • /TFFW_Version: 1.0
  • /TOE: TOE Name
  • /TOE_Software_Version: x.y.z
  • /TOE_short: TOE_Short_Name
  • /Title:
  • /VPNEP: Network Device Protection Profile Extended Package VPN Gateway
  • /VPNEP_Version: 1.1
  • /WLAN_version: 1.0
  • /_Date: Month Day Year
  • /_ExtendedDescription:
  • /_Version: .01
  • pdf_file_size_bytes: 1281094
  • pdf_hyperlinks: http://www.cisco.com/go/trademarks, https://www.cisco.com/c/en/us/support/index.html, https://software.cisco.com/download/home
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 79
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different