Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
XOmail 22.2.0
SERTIT-125
SUSE Linux Enterprise Micro 5.3
BSI-DSZ-CC-1214-2025
name XOmail 22.2.0 SUSE Linux Enterprise Micro 5.3
category Other Devices and Systems Operating Systems
scheme NO DE
not_valid_after 20.06.2028 23.01.2030
not_valid_before 20.06.2023 24.01.2025
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certificate%20SERTIT-125-C%20XOmail%20(signert).pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1214c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-125%20CR%201.1.docx.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1214a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/739_20802_aaaa_sc_ed4-public.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1214b_pdf.pdf
manufacturer Thales Norway AS SUSE LLC
manufacturer_web https://www.thales.no/ https://www.suse.com
security_level EAL4, ALC_FLR.3 ADV_FSP.1, ASE_INT.1, AGD_PRE.1, ALC_CMC.1, ASE_ECD.1, ASE_OBJ.2, ALC_CMS.1, ASE_TSS.1, ASE_SPD.1, ASE_REQ.2, AGD_OPE.1, AVA_VAN.1, ALC_TSU_EXT.1, ATE_IND.1, ASE_CCL.1
dgst 1bf08be89810ab71 389fe2beff7b8953
heuristics/cert_id SERTIT-125 BSI-DSZ-CC-1214-2025
heuristics/cert_lab [] BSI
heuristics/cpe_matches {} cpe:2.3:o:suse:suse_linux:5.3:*:*:*:*:*:*:*, cpe:2.3:o:suse:linux_enterprise_micro:5.3:*:*:*:*:-:*:*
heuristics/related_cves {} CVE-2005-3148, CVE-2000-0361, CVE-2005-0206, CVE-2000-0229, CVE-2000-0218, CVE-2005-3146, CVE-1999-0434, CVE-1999-0405, CVE-1999-0746, CVE-2005-0639, CVE-2007-0460, CVE-2007-4074, CVE-2008-3949, CVE-2007-6167, CVE-2004-1491, CVE-2005-3147, CVE-2000-0438, CVE-2004-1191, CVE-1999-0462, CVE-2004-1184, CVE-2005-1043, CVE-2007-4393, CVE-2005-0638
heuristics/extracted_sars ALC_FLR.3, ADV_ARC.1, AGD_OPE.1, ATE_COV.2, AGD_PRE.1, ALC_DEL.1, ADV_TDS.3, AVA_VAN.3, ASE_SPD.1, ALC_LCD.1, ASE_OBJ.2, ASE_REQ.2, ATE_FUN.1, ASE_TSS.1, ALC_CMS.4, ALC_DVS.1, ATE_IND.2, ALC_CMC.4, ASE_CCL.1, ATE_DPT.1, ASE_ECD.1, ADV_IMP.1, ASE_INT.1, ALC_TAT.1, ADV_FSP.4 ASE_TSS.1, ADV_FSP.1, ASE_ECD.1, AGD_PRE.1, ASE_INT.1, ASE_REQ.2, ASE_SPD.1, AVA_VAN.1, ASE_CCL.1, ASE_OBJ.2, ALC_TSU_EXT.1, ALC_CMS.1, AGD_OPE.1, ATE_IND.1, ALC_CMC.1
heuristics/extracted_versions 22.2.0 5.3
heuristics/scheme_data
  • category: Messaging system
  • certification_date: 20.06.2023
  • developer: Thales Norway AS
  • enhanced:
    • category: Messaging system
    • cert_id: SERTIT-125
    • certification_date: 20.06.2023
    • description: The XOmail Server software (TOE) enforces controlled message and information flow according to military requirements with integrated multi-level security and mandatory access control. The TOE provides priority handling for messaging, ensuring flash message traffic is delivered with minimal delay even with heavy traffic or congestion. The TOE preserves message security through consistent interpretation of security labels across all supported messaging protocols, and supports use of digital signatures to ensure message integrity. The TOE ensures all users are authenticated, and provides user management functions such as automated logout, lockout, and verification. The TOE provides fine grained access control for messaging operations and administrative commands, with complete accountability of all operations. The XOmail Server is themain building block of the XOmail product family. The XOmail Server provides secure message handling, transfer, storage, and administration functionality. The TOE can be deployed in different product configurations. Multiple configurations may be deployed to a single instance of the TOE.
    • developer: Thales Norway AS
    • documents: frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/1313152-1691150778/SERTIT/Sertifikater/2023/125/SERTIT-125C_unsign.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/1313155-1691150781/SERTIT/Sertifikater/2023/125/739_20802_aaaa_sc_ed4-public.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/1313296-1692360133/SERTIT/Sertifikater/2023/125/SERTIT-125%20CR%201.1.pdf'})]})
    • evaluation_facility: Norconsult AS
    • expiration_date: 20.06.2028
    • level: EAL 4, ALC_FLR.3
    • mutual_recognition: CCRA, SOG-IS
    • product: XOmail 22.2.0
    • sponsor: FMA Forsvarsmateriell
  • product: XOmail 22.2.0
  • url: https://sertit.no/certified-products/xomail-22-2-0-article3102-1919.html
heuristics/protection_profiles {} e34797b67a3163c5, ed9c9d74c3710878
maintenance_updates
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_OS_V4.2.1.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pkg_ssh_v1.0.pdf
pdf_data/cert_filename Certificate SERTIT-125-C XOmail (signert).pdf 1214c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • NO:
    • SERTIT-125: 2
  • DE:
    • BSI-DSZ-CC-1214-2025: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL4: 1
    • EAL4 augmented: 1
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.3: 1
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_FLR: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
pdf_data/cert_keywords/vendor
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • Norconsult:
    • Norconsult AS: 1
pdf_data/cert_keywords/crypto_protocol
  • SSH:
    • SSH: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /Author: westumm
  • /CreationDate: D:20230710100001+02'00
  • /ModDate: D:20230710100237+02'00'
  • /Producer: PixEdit AS, PixEdit Version 8.7.5.29
  • pdf_file_size_bytes: 1250360
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Federal Office for Information Security
  • /Keywords: "Common Criteria, Certification, Zertifizierung, Operating System Protection Profile, Linux-based, General Purpose Operating System, SUSE LLC, BSI-DSZ-CC-1214-2025"
  • /Subject: Common Criteria, Certification, Zertifizierung, Operating System Protection Profile, Linux-based, General Purpose Operating System, SUSE LLC, BSI-DSZ-CC-1214-2025
  • /Title: Certificate BSI-DSZ-CC-1214-2025
  • pdf_file_size_bytes: 338083
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename SERTIT-125 CR 1.1.docx.pdf 1214a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cc_security_level: Common Criteria Part 3 extended ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ALC_TSU_EXT.1, ATE_IND.1, AVA_VAN.1 valid until: 23 January 2030 SOGIS Recognition Agreement for components up to EAL 4
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1214-2025
    • cert_item: SUSE Linux Enterprise Micro 5.3
    • cert_lab: BSI
    • developer: SUSE LLC
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Protection Profile for General Purpose Operating Systems Version 4.2.1, 22 April 2019, CCEVS-VR-PP- 0047, NIAP, Functional Package for Secure Shell (SSH), Version 1.0, 13 May 2021, CCEVS-VR-PP-0075, NIAP
pdf_data/report_keywords/cc_cert_id
  • NO:
    • SERTIT-125: 21
  • DE:
    • BSI-DSZ-CC-1214-2025: 17
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 25
    • EAL 4 augmented: 23
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 3
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 25
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 1
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
    • ALC_FLR: 3
    • ALC_TSU_EXT.1: 3
  • ASE:
    • ASE_CCL.1: 2
    • ASE_ECD.1: 2
    • ASE_INT.1: 2
    • ASE_OBJ.2: 2
    • ASE_REQ.2: 2
    • ASE_SPD.1: 2
    • ASE_TSS.1: 2
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_RBG_EXT.1: 2
  • FTP:
    • FTP_ITC_EXT.1: 2
pdf_data/report_keywords/cc_claims
  • OE:
    • OE.PLATFORM: 1
    • OE.PROPER_ADMIN: 1
    • OE.PROPER_USER: 1
pdf_data/report_keywords/vendor
  • Thales:
    • Thales: 2
pdf_data/report_keywords/eval_facility
  • Norconsult:
    • Norconsult AS: 3
  • atsec:
    • atsec: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 11
      • AES-: 1
  • constructions:
    • MAC:
      • HMAC: 9
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 3
    • ECDSA:
      • ECDSA: 9
  • FF:
    • DH:
      • DH: 6
      • Diffie-Hellman: 3
    • DSA:
      • DSA: 1
pdf_data/report_keywords/hash_function
  • PBKDF:
    • PBKDF2: 2
  • SHA:
    • SHA2:
      • SHA-2: 7
      • SHA-256: 2
      • SHA-384: 1
      • SHA-512: 2
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 1
  • KA:
    • Key Agreement: 1
    • Key agreement: 1
  • KEX:
    • KEX: 1
    • Key Exchange: 3
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 1
    • IKEv2: 3
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 22
    • SSHv2: 2
  • TLS:
    • TLS:
      • TLS: 10
      • TLS v1.2: 2
      • TLSv1.2: 1
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 3
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CTR:
    • CTR: 1
  • GCM:
    • GCM: 8
  • XTS:
    • XTS: 2
pdf_data/report_keywords/ecc_curve
  • NIST:
    • NIST P-256: 2
    • NIST P-521: 1
    • P-256: 8
    • P-384: 10
    • P-521: 9
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • SCA:
    • side-channel: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-004: 1
  • ISO:
    • ISO/IEC 15408: 8
    • ISO/IEC 17025: 2
  • X509:
    • X.509: 2
  • BSI:
    • AIS 20: 2
    • AIS 32: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 186-5: 5
    • FIPS180-4: 9
    • FIPS186-5: 5
    • FIPS186-58: 1
    • FIPS197: 3
    • FIPS198-1: 4
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • PKCS:
    • PKCS#1: 1
  • RFC:
    • RFC 4253: 1
    • RFC 5246: 1
    • RFC2104: 3
    • RFC2898: 2
    • RFC3447: 1
    • RFC4251: 3
    • RFC4252: 4
    • RFC4253: 9
    • RFC4306: 2
    • RFC4419: 2
    • RFC4868: 2
    • RFC5246: 6
    • RFC5288: 2
    • RFC5647: 2
    • RFC5656: 3
    • RFC5903: 3
    • RFC5996: 2
    • RFC6668: 2
    • RFC7919: 2
    • RFC8017: 2
    • RFC8268: 4
    • RFC8332: 2
  • X509:
    • X.509: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Report, Version 4, 2025-01-08, Final Evaluation Technical Report, atsec information security GmbH, (confidential document) [8] Protection Profile for General Purpose Operating Systems Version 4.2.1, 22 April 2019: 1
    • and SUSE LLC [11] Configuration list for the TOE, 2025-01-08, Master Configuration List, SUSE LLC (confidential document) 7 specifically • AIS 20, Version 3, Funktionalitätsklassen und Evaluationsmethodologie für: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /Author: Hole, Øystein
  • /CreationDate: D:20230630102655+02'00'
  • /Creator: Microsoft® Word 2019
  • /Keywords: ugradert
  • /ModDate: D:20230630102655+02'00'
  • /Producer: Microsoft® Word 2019
  • /Title: tittel
  • pdf_file_size_bytes: 324404
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 21
pdf_data/st_filename 739_20802_aaaa_sc_ed4-public.pdf 1214b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1214: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 8
    • EAL4 augmented: 5
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 3
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR.3: 8
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL: 2
    • ASE_CCL.1: 1
    • ASE_ECD: 2
    • ASE_ECD.1: 1
    • ASE_INT: 2
    • ASE_INT.1: 1
    • ASE_OBJ: 2
    • ASE_OBJ.2: 1
    • ASE_REQ: 2
    • ASE_REQ.2: 1
    • ASE_SPD: 2
    • ASE_SPD.1: 1
    • ASE_TSS: 2
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 1
  • ALC:
    • ALC_TSU_EXT: 5
    • ALC_TSU_EXT.1: 4
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_ARP.1: 8
    • FAU_ARP.1.1: 1
    • FAU_GEN.1: 10
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 8
    • FAU_GEN.2.1: 1
    • FAU_SAA.1: 7
    • FAU_SAA.1.1: 1
    • FAU_SAA.1.2: 1
    • FAU_SAR.1: 7
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 7
    • FAU_SAR.2.1: 1
    • FAU_STG.1: 7
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.3: 7
    • FAU_STG.3.1: 1
    • FAU_STG.4: 7
    • FAU_STG.4.1: 1
  • FCO:
    • FCO_NRO.1: 4
    • FCO_NRO.1.1: 1
    • FCO_NRO.1.3: 1
    • FCO_NRR.1: 5
    • FCO_NRR.1.1: 1
    • FCO_NRR.1.2: 1
    • FCO_NRR.1.3: 1
  • FCS:
    • FCS_COP.1: 5
    • FCS_COP.1.1: 1
    • FCS_NRO.1.2: 1
  • FDP:
    • FDP_ACC.1: 2
    • FDP_ACC.2: 8
    • FDP_ACC.2.1: 1
    • FDP_ACC.2.2: 1
    • FDP_ACF.1: 9
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_ETC.2: 9
    • FDP_ETC.2.1: 1
    • FDP_ETC.2.2: 1
    • FDP_ETC.2.3: 1
    • FDP_ETC.2.4: 1
    • FDP_IFC.1: 4
    • FDP_IFC.2: 8
    • FDP_IFC.2.1: 1
    • FDP_IFC.2.2: 1
    • FDP_IFF.2: 9
    • FDP_IFF.2.1: 1
    • FDP_IFF.2.2: 2
    • FDP_IFF.2.3: 1
    • FDP_IFF.2.4: 1
    • FDP_IFF.2.5: 1
    • FDP_IFF.2.6: 1
    • FDP_IFF.2.7: 1
    • FDP_ITC.2: 9
    • FDP_ITC.2.1: 1
    • FDP_ITC.2.2: 1
    • FDP_ITC.2.3: 1
    • FDP_ITC.2.4: 1
    • FDP_ITC.2.5: 1
    • FDP_RIP.2: 8
    • FDP_RIP.2.1: 1
    • FDP_UIT.1: 7
    • FDP_UIT.1.1: 1
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD.1: 10
    • FIA_ATD.1.1: 1
    • FIA_UAU.2: 11
    • FIA_UAU.2.1: 1
    • FIA_UAU.5: 8
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6: 10
    • FIA_UAU.6.1: 1
    • FIA_UID.1: 3
    • FIA_UID.2: 13
    • FIA_UID.2.1: 1
    • FIA_USB.1: 12
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_MSA.1: 9
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 11
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD: 1
    • FMT_MTD.1: 7
    • FMT_MTD.1.1: 1
    • FMT_MTS: 1
    • FMT_SMF.1: 9
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 11
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_AMT.1: 2
    • FPT_FLS.1: 8
    • FPT_FLS.1.1: 1
    • FPT_RCV.1: 7
    • FPT_RCV.1.1: 1
    • FPT_RCV.2: 10
    • FPT_RCV.2.1: 1
    • FPT_RCV.2.2: 1
    • FPT_RCV.4: 8
    • FPT_RCV.4.1: 1
    • FPT_STM.1: 2
    • FPT_TDC.1: 13
    • FPT_TDC.1.1: 1
    • FPT_TDC.1.2: 1
    • FPT_TST.1: 9
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FRU:
    • FRU_FLT.2: 7
    • FRU_FLT.2.1: 1
    • FRU_PRS.1: 9
    • FRU_PRS.1.1: 1
    • FRU_PRS.1.2: 1
  • FTA:
    • FTA_SSL.3: 7
    • FTA_SSL.3.1: 1
    • FTA_TSE.1: 11
    • FTA_TSE.1.1: 1
  • FTP:
    • FTP_ITC.1: 3
    • FTP_TRP.1: 2
  • FAU:
    • FAU_GEN: 1
    • FAU_GEN.1: 8
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
  • FCS:
    • FCS_CKM: 2
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 9
    • FCS_CKM.2.1: 1
    • FCS_CKM_EXT: 1
    • FCS_CKM_EXT.4: 9
    • FCS_CKM_EXT.4.1: 2
    • FCS_CKM_EXT.4.2: 1
    • FCS_COP.1: 49
    • FCS_COP.1.1: 4
    • FCS_RBG_EXT: 2
    • FCS_RBG_EXT.1: 10
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_RNG.1: 2
    • FCS_SSHC_EXT: 1
    • FCS_SSHC_EXT.1: 8
    • FCS_SSHS_EXT: 1
    • FCS_SSHS_EXT.1: 9
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSH_EXT: 1
    • FCS_SSH_EXT.1: 14
    • FCS_SSH_EXT.1.1: 1
    • FCS_SSH_EXT.1.2: 1
    • FCS_SSH_EXT.1.3: 1
    • FCS_SSH_EXT.1.4: 1
    • FCS_SSH_EXT.1.5: 1
    • FCS_SSH_EXT.1.6: 1
    • FCS_SSH_EXT.1.7: 1
    • FCS_SSH_EXT.1.8: 1
    • FCS_STO_EXT: 1
    • FCS_STO_EXT.1: 8
    • FCS_STO_EXT.1.1: 1
    • FCS_TLSC_EXT: 5
    • FCS_TLSC_EXT.1: 12
    • FCS_TLSC_EXT.2: 9
    • FCS_TLSC_EXT.4: 9
  • FDP:
    • FDP_ACF_EXT: 1
    • FDP_ACF_EXT.1: 8
    • FDP_ACF_EXT.1.1: 1
  • FIA:
    • FIA_AFL: 1
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_UAU: 1
    • FIA_UAU.5: 8
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
  • FMT:
    • FMT_MOF_EXT: 2
    • FMT_MOF_EXT.1: 8
    • FMT_SMF_EXT: 1
    • FMT_SMF_EXT.1: 9
    • FMT_SMF_EXT.1.1: 2
  • FPT:
    • FPT_ACF_EXT: 1
    • FPT_ACF_EXT.1: 8
    • FPT_ACF_EXT.1.1: 1
    • FPT_ACF_EXT.1.2: 1
    • FPT_ASLR_EXT: 2
    • FPT_ASLR_EXT.1: 8
    • FPT_SBOP_EXT: 1
    • FPT_SBOP_EXT.1: 9
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 8
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 3
    • FPT_TUD_EXT.1: 9
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.2: 8
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 1
  • FTA:
    • FTA_TAB: 1
    • FTA_TAB.1: 8
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC_EXT: 3
    • FTP_ITC_EXT.1: 8
    • FTP_ITC_EXT.1.1: 1
    • FTP_TRP: 1
    • FTP_TRP.1: 8
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADM_TRAINING: 4
    • A.ARCHIVE_DB: 2
    • A.AUDIT_REVIEW: 4
    • A.CONFIDENCE: 2
    • A.INVALIDATE: 4
    • A.NETWORK: 2
    • A.NOTIFY: 4
    • A.OS: 3
    • A.PHYSICAL: 2
    • A.PHYSICAL_LOC: 4
    • A.TIME_SOURCE: 2
    • A.USR_TRAINING: 4
  • O:
    • O.ACCESS_HIST: 14
    • O.AUDIT: 11
    • O.AUTO_LOGOUT: 11
    • O.CMD_ACL: 5
    • O.CMD_LOG: 16
    • O.DAC: 8
    • O.FLASH: 10
    • O.ID_AUTH: 9
    • O.LABELLING: 11
    • O.LOCK: 6
    • O.MAC: 12
    • O.MAC_INTEGRITY: 8
    • O.MANAGE: 8
    • O.MESSAGING: 6
    • O.MSG_INTEGRITY: 10
    • O.RECOVER: 10
    • O.REUSE: 10
    • O.ROLES: 11
    • O.ROLE_MNG: 6
    • O.SCHEDULING: 8
    • O.SELF_TEST: 7
  • OE:
    • OE.ACCOUNTABLE: 10
    • OE.AUDIT: 11
    • OE.ID_AUTH: 6
    • OE.NETWORK: 16
    • OE.PKI: 7
    • OE.PLATFORM: 7
    • OE.TIME_SOURCE: 6
    • OE.TRAF_SEPARATION: 9
  • A:
    • A.PLATFORM: 4
    • A.PROPER_ADMIN: 4
    • A.PROPER_USER: 4
  • O:
    • O.ACCOUNTABILITY: 7
    • O.INTEGRITY: 18
    • O.MANAGEMENT: 9
    • O.PROTECTED_COMMS: 22
    • O.PROTECTED_STORAGE: 8
  • OE:
    • OE.PLATFORM: 3
    • OE.PROPER_ADMIN: 2
    • OE.PROPER_USER: 3
  • T:
    • T.LIMITED_PHYSICAL_ACCESS: 3
    • T.LOCAL_ATTACK: 2
    • T.NETWORK_ATTACK: 10
    • T.NETWORK_EAVESDROP: 4
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 4
  • Thales:
    • Thales: 105
  • Microsoft:
    • Microsoft: 2
pdf_data/st_keywords/eval_facility
  • atsec:
    • atsec: 9
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
      • AES-256: 1
  • constructions:
    • MAC:
      • CBC-MAC: 1
      • HMAC: 4
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 3
    • ECDH:
      • ECDH: 2
      • ECDHE: 2
    • ECDSA:
      • ECDSA: 8
  • FF:
    • DH:
      • DH: 1
      • DHE: 1
      • Diffie-Hellman: 5
    • DSA:
      • DSA: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-2: 1
  • PBKDF:
    • PBKDF: 2
    • PBKDF2: 1
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-256: 6
      • SHA-384: 6
      • SHA-512: 6
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 72
  • KA:
    • Key Agreement: 1
  • MAC:
    • MAC: 3
pdf_data/st_keywords/crypto_protocol
  • PGP:
    • PGP: 1
  • SSH:
    • SSH: 99
    • SSHv2: 3
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 65
      • TLS 1.2: 3
      • TLS v1.2: 1
      • TLSv1.0: 1
      • TLSv1.1: 1
      • TLSv1.2: 3
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 5
    • PRNG: 1
  • RNG:
    • RBG: 2
    • RNG: 4
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 3
  • GCM:
    • GCM: 2
  • XTS:
    • XTS: 2
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 14
    • P-384: 16
    • P-521: 16
    • secp256r1: 2
    • secp384r1: 2
    • secp521r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA256: 2
    • TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 2
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 12
  • libgcrypt:
    • libgcrypt: 3
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 180-4: 2
  • ISO:
    • ISO/IEC 15408: 6
  • RFC:
    • RFC 5321: 1
    • RFC 6477: 3
  • X509:
    • X.509: 3
  • FIPS:
    • FIPS 140-2: 1
    • FIPS PUB 186-4: 6
  • NIST:
    • NIST SP 800-38A: 4
    • NIST SP 800-38D: 2
    • NIST SP 800-38E: 2
    • NIST SP 800-56A: 1
    • NIST SP 800-57: 1
  • PKCS:
    • PKCS #7: 1
  • RFC:
    • RFC 4251: 1
    • RFC 4252: 6
    • RFC 4253: 7
    • RFC 5246: 11
    • RFC 5280: 3
    • RFC 5288: 4
    • RFC 5289: 12
    • RFC 5647: 2
    • RFC 5656: 10
    • RFC 6066: 1
    • RFC 6125: 2
    • RFC 6668: 2
    • RFC 8268: 2
    • RFC 8332: 6
    • RFC 8603: 1
    • RFC4252: 4
    • RFC4253: 4
    • RFC5280: 1
    • RFC5288: 1
    • RFC5289: 1
    • RFC5656: 2
    • RFC6066: 1
    • RFC7919: 1
    • RFC8603: 1
  • X509:
    • X.509: 14
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • The OS relies upon a trustworthy computing platform for its execution. This underlying platform is out of scope of this PP. A.PROPER_USER PP Origin: OSPP The user of the OS is not willfully negligent or hostile: 1
    • out of scope: 1
pdf_data/st_metadata
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different