Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
XOmail 22.2.0
SERTIT-125
Junos OS 20.3R3 for NFX350
CCEVS-VR-11236-2022
name XOmail 22.2.0 Junos OS 20.3R3 for NFX350
category Other Devices and Systems Network and Network-Related Devices and Systems
scheme NO US
status active archived
not_valid_after 20.06.2028 20.06.2024
not_valid_before 20.06.2023 20.06.2022
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certificate%20SERTIT-125-C%20XOmail%20(signert).pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11236-ci.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-125%20CR%201.1.docx.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11236-vr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/739_20802_aaaa_sc_ed4-public.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11236-st.pdf
manufacturer Thales Norway AS HPE Juniper Networking
manufacturer_web https://www.thales.no/ https://www.juniper.net/
security_level ALC_FLR.3, EAL4 {}
dgst 1bf08be89810ab71 eaaa430e291515fd
heuristics/cert_id SERTIT-125 CCEVS-VR-11236-2022
heuristics/cert_lab [] US
heuristics/extracted_sars ADV_TDS.3, AVA_VAN.3, ALC_FLR.3, ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ASE_INT.1, ALC_CMC.4, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ATE_DPT.1, ASE_ECD.1, ADV_IMP.1, ALC_LCD.1, ASE_SPD.1, ATE_COV.2, ALC_DVS.1, ALC_TAT.1, AGD_OPE.1, ALC_CMS.4, ALC_DEL.1, ASE_TSS.1, ADV_FSP.4, ADV_ARC.1 ASE_CCL.1, AGD_PRE.1, ALC_CMC.1, ASE_SPD.1, AGD_OPE.1, ATE_IND.1, ASE_INT.1, ASE_ECD.1, ASE_OBJ.1, ASE_REQ.1, ALC_CMS.1, ASE_TSS.1, AVA_VAN.1, ADV_FSP.1
heuristics/extracted_versions 22.2.0 20.3
heuristics/scheme_data
  • category: Messaging system
  • certification_date: 20.06.2023
  • developer: Thales Norway AS
  • enhanced:
    • category: Messaging system
    • cert_id: SERTIT-125
    • certification_date: 20.06.2023
    • description: The XOmail Server software (TOE) enforces controlled message and information flow according to military requirements with integrated multi-level security and mandatory access control. The TOE provides priority handling for messaging, ensuring flash message traffic is delivered with minimal delay even with heavy traffic or congestion. The TOE preserves message security through consistent interpretation of security labels across all supported messaging protocols, and supports use of digital signatures to ensure message integrity. The TOE ensures all users are authenticated, and provides user management functions such as automated logout, lockout, and verification. The TOE provides fine grained access control for messaging operations and administrative commands, with complete accountability of all operations. The XOmail Server is themain building block of the XOmail product family. The XOmail Server provides secure message handling, transfer, storage, and administration functionality. The TOE can be deployed in different product configurations. Multiple configurations may be deployed to a single instance of the TOE.
    • developer: Thales Norway AS
    • documents: frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/1313152-1691150778/SERTIT/Sertifikater/2023/125/SERTIT-125C_unsign.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/1313155-1691150781/SERTIT/Sertifikater/2023/125/739_20802_aaaa_sc_ed4-public.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/1313296-1692360133/SERTIT/Sertifikater/2023/125/SERTIT-125%20CR%201.1.pdf'})]})
    • evaluation_facility: Norconsult AS
    • expiration_date: 20.06.2028
    • level: EAL 4, ALC_FLR.3
    • mutual_recognition: CCRA, SOG-IS
    • product: XOmail 22.2.0
    • sponsor: FMA Forsvarsmateriell
  • product: XOmail 22.2.0
  • url: https://sertit.no/certified-products/xomail-22-2-0-article3102-1919.html
  • api_url: https://www.niap-ccevs.org/api/project/product/pcl_products/11236/
  • categories: ['Network Device']
  • category: Network Device
  • certification_date: 20.06.2022
  • evaluation_facility: Acumen Security
  • expiration_date: 20.06.2024
  • id: CCEVS-VR-VID11236
  • product: Junos OS 20.3R3 for NFX350
  • scheme: US
  • url: https://www.niap-ccevs.org/products/11236
  • vendor: HPE Juniper Networking
heuristics/protection_profiles {} bde3d7587cf42e78, 89f2a255423f4a20, 6448a1802bb874d8
maintenance_updates
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/MOD_IPS_v1.0.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/MOD_CPP_FW_v1.4e.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf
pdf_data/cert_filename Certificate SERTIT-125-C XOmail (signert).pdf st_vid11236-ci.pdf
pdf_data/cert_keywords/cc_cert_id
  • NO:
    • SERTIT-125: 2
  • US:
    • CCEVS-VR-VID11236-2022: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL4: 1
    • EAL4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.3: 1
pdf_data/cert_keywords/vendor
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • Norconsult:
    • Norconsult AS: 1
  • Acumen:
    • Acumen Security: 1
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_metadata
  • /Author: westumm
  • /CreationDate: D:20230710100001+02'00
  • /ModDate: D:20230710100237+02'00'
  • /Producer: PixEdit AS, PixEdit Version 8.7.5.29
  • pdf_file_size_bytes: 1250360
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20220621171132-04'00'
  • /ModDate: D:20220621171132-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 181491
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename SERTIT-125 CR 1.1.docx.pdf st_vid11236-vr.pdf
pdf_data/report_frontpage
  • US:
  • US:
    • cert_id: CCEVS-VR-11236-2022
    • cert_item: for the Junos OS 20.3R3 for NFX350
    • cert_lab: US NIAP
pdf_data/report_keywords/cc_cert_id
  • NO:
    • SERTIT-125: 21
  • US:
    • CCEVS-VR-11236-2022: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 25
    • EAL 4 augmented: 23
  • EAL:
    • EAL 1: 5
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 25
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.CONNECTIONS: 2
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
  • T:
    • T.DATA: 1
    • T.MALICIOUS: 1
    • T.NETWORK_ACCESS: 4
    • T.NETWORK_DISCLOSURE: 3
    • T.NETWORK_DOS: 1
    • T.NETWORK_MISUSE: 3
    • T.PASSWORD_CRACKING: 1
    • T.REPLAY_ATTACK: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
pdf_data/report_keywords/vendor
  • Thales:
    • Thales: 2
pdf_data/report_keywords/eval_facility
  • Norconsult:
    • Norconsult AS: 3
  • Acumen:
    • Acumen Security: 4
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 1
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 3
  • SSH:
    • SSH: 7
    • SSHv2: 2
  • TLS:
    • SSL:
      • SSL: 2
  • VPN:
    • VPN: 24
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-004: 1
  • ISO:
    • ISO/IEC 15408: 8
    • ISO/IEC 17025: 2
  • X509:
    • X.509: 2
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • out of scope: 1
    • over SSH and IPsec). Telnet, File Transfer Protocol (FTP), and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules that provide the underlying cryptographic services: 1
pdf_data/report_metadata
  • /Author: Hole, Øystein
  • /CreationDate: D:20230630102655+02'00'
  • /Creator: Microsoft® Word 2019
  • /Keywords: ugradert
  • /ModDate: D:20230630102655+02'00'
  • /Producer: Microsoft® Word 2019
  • /Title: tittel
  • pdf_file_size_bytes: 324404
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 21
  • /Author: ppatin
  • /CreationDate: D:20220621165535-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220621165535-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 471423
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 36
pdf_data/st_filename 739_20802_aaaa_sc_ed4-public.pdf st_vid11236-st.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 8
    • EAL4 augmented: 5
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 3
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR.3: 8
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL: 2
    • ASE_CCL.1: 1
    • ASE_ECD: 2
    • ASE_ECD.1: 1
    • ASE_INT: 2
    • ASE_INT.1: 1
    • ASE_OBJ: 2
    • ASE_OBJ.2: 1
    • ASE_REQ: 2
    • ASE_REQ.2: 1
    • ASE_SPD: 2
    • ASE_SPD.1: 1
    • ASE_TSS: 2
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 1
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 2
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_ARP.1: 8
    • FAU_ARP.1.1: 1
    • FAU_GEN.1: 10
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 8
    • FAU_GEN.2.1: 1
    • FAU_SAA.1: 7
    • FAU_SAA.1.1: 1
    • FAU_SAA.1.2: 1
    • FAU_SAR.1: 7
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 7
    • FAU_SAR.2.1: 1
    • FAU_STG.1: 7
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.3: 7
    • FAU_STG.3.1: 1
    • FAU_STG.4: 7
    • FAU_STG.4.1: 1
  • FCO:
    • FCO_NRO.1: 4
    • FCO_NRO.1.1: 1
    • FCO_NRO.1.3: 1
    • FCO_NRR.1: 5
    • FCO_NRR.1.1: 1
    • FCO_NRR.1.2: 1
    • FCO_NRR.1.3: 1
  • FCS:
    • FCS_COP.1: 5
    • FCS_COP.1.1: 1
    • FCS_NRO.1.2: 1
  • FDP:
    • FDP_ACC.1: 2
    • FDP_ACC.2: 8
    • FDP_ACC.2.1: 1
    • FDP_ACC.2.2: 1
    • FDP_ACF.1: 9
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_ETC.2: 9
    • FDP_ETC.2.1: 1
    • FDP_ETC.2.2: 1
    • FDP_ETC.2.3: 1
    • FDP_ETC.2.4: 1
    • FDP_IFC.1: 4
    • FDP_IFC.2: 8
    • FDP_IFC.2.1: 1
    • FDP_IFC.2.2: 1
    • FDP_IFF.2: 9
    • FDP_IFF.2.1: 1
    • FDP_IFF.2.2: 2
    • FDP_IFF.2.3: 1
    • FDP_IFF.2.4: 1
    • FDP_IFF.2.5: 1
    • FDP_IFF.2.6: 1
    • FDP_IFF.2.7: 1
    • FDP_ITC.2: 9
    • FDP_ITC.2.1: 1
    • FDP_ITC.2.2: 1
    • FDP_ITC.2.3: 1
    • FDP_ITC.2.4: 1
    • FDP_ITC.2.5: 1
    • FDP_RIP.2: 8
    • FDP_RIP.2.1: 1
    • FDP_UIT.1: 7
    • FDP_UIT.1.1: 1
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD.1: 10
    • FIA_ATD.1.1: 1
    • FIA_UAU.2: 11
    • FIA_UAU.2.1: 1
    • FIA_UAU.5: 8
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6: 10
    • FIA_UAU.6.1: 1
    • FIA_UID.1: 3
    • FIA_UID.2: 13
    • FIA_UID.2.1: 1
    • FIA_USB.1: 12
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_MSA.1: 9
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 11
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD: 1
    • FMT_MTD.1: 7
    • FMT_MTD.1.1: 1
    • FMT_MTS: 1
    • FMT_SMF.1: 9
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 11
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_AMT.1: 2
    • FPT_FLS.1: 8
    • FPT_FLS.1.1: 1
    • FPT_RCV.1: 7
    • FPT_RCV.1.1: 1
    • FPT_RCV.2: 10
    • FPT_RCV.2.1: 1
    • FPT_RCV.2.2: 1
    • FPT_RCV.4: 8
    • FPT_RCV.4.1: 1
    • FPT_STM.1: 2
    • FPT_TDC.1: 13
    • FPT_TDC.1.1: 1
    • FPT_TDC.1.2: 1
    • FPT_TST.1: 9
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FRU:
    • FRU_FLT.2: 7
    • FRU_FLT.2.1: 1
    • FRU_PRS.1: 9
    • FRU_PRS.1.1: 1
    • FRU_PRS.1.2: 1
  • FTA:
    • FTA_SSL.3: 7
    • FTA_SSL.3.1: 1
    • FTA_TSE.1: 11
    • FTA_TSE.1.1: 1
  • FTP:
    • FTP_ITC.1: 3
    • FTP_TRP.1: 2
  • FAU:
    • FAU_GEN: 4
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 1
    • FAU_GEN_EXT.1: 1
    • FAU_STG_EXT.1: 4
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 5
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 4
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 4
    • FCS_CKM.4.1: 1
    • FCS_COP: 18
    • FCS_COP.1: 4
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT.1: 4
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT: 1
    • FCS_SSHS_EXT.1: 4
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSS_EXT: 2
  • FDP:
    • FDP_RIP.2: 4
    • FDP_RIP.2.1: 1
  • FIA:
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 4
    • FIA_PMG_EXT.1.1: 1
    • FIA_PSK_EXT.1: 3
    • FIA_PSK_EXT.1.1: 2
    • FIA_PSK_EXT.1.2: 1
    • FIA_PSK_EXT.1.3: 1
    • FIA_PSK_EXT.1.4: 1
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 2
    • FIA_UAU_EXT.1: 1
    • FIA_UAU_EXT.2: 3
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 4
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 12
    • FMT_MOF.1: 3
    • FMT_MTD: 8
    • FMT_MTD.1: 2
    • FMT_SMF: 11
    • FMT_SMF.1: 5
    • FMT_SMR.2: 4
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 3
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_FLS: 4
    • FPT_FLS.1: 1
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT.1: 5
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT.1: 4
    • FPT_TST_EXT.1.1: 1
    • FPT_TST_EXT.3: 4
    • FPT_TST_EXT.3.1: 1
    • FPT_TST_EXT.3.2: 1
    • FPT_TUD_EXT.1: 4
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL.3: 4
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 4
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 5
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_APW_EXT.1: 1
    • FTP_ITC: 3
    • FTP_ITC.1: 10
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 3
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADM_TRAINING: 4
    • A.ARCHIVE_DB: 2
    • A.AUDIT_REVIEW: 4
    • A.CONFIDENCE: 2
    • A.INVALIDATE: 4
    • A.NETWORK: 2
    • A.NOTIFY: 4
    • A.OS: 3
    • A.PHYSICAL: 2
    • A.PHYSICAL_LOC: 4
    • A.TIME_SOURCE: 2
    • A.USR_TRAINING: 4
  • O:
    • O.ACCESS_HIST: 14
    • O.AUDIT: 11
    • O.AUTO_LOGOUT: 11
    • O.CMD_ACL: 5
    • O.CMD_LOG: 16
    • O.DAC: 8
    • O.FLASH: 10
    • O.ID_AUTH: 9
    • O.LABELLING: 11
    • O.LOCK: 6
    • O.MAC: 12
    • O.MAC_INTEGRITY: 8
    • O.MANAGE: 8
    • O.MESSAGING: 6
    • O.MSG_INTEGRITY: 10
    • O.RECOVER: 10
    • O.REUSE: 10
    • O.ROLES: 11
    • O.ROLE_MNG: 6
    • O.SCHEDULING: 8
    • O.SELF_TEST: 7
  • OE:
    • OE.ACCOUNTABLE: 10
    • OE.AUDIT: 11
    • OE.ID_AUTH: 6
    • OE.NETWORK: 16
    • OE.PKI: 7
    • OE.PLATFORM: 7
    • OE.TIME_SOURCE: 6
    • OE.TRAF_SEPARATION: 9
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.CONNECTIONS: 2
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
  • O:
    • O.ADDRESS_FILTERING: 1
    • O.AUTHENTICATION: 1
    • O.CRYPTOGRAPHIC_FUNCTIONS: 1
    • O.FAIL_SECURE: 1
    • O.IPS_ANALYZE: 1
    • O.IPS_REACT: 1
    • O.PORT_FILTERING: 1
    • O.RESIDUAL_INFORMATION: 1
    • O.STATEFUL_TRAFFIC_FILTERING: 1
    • O.SYSTEM_MONITORING: 2
    • O.TOE_ADMINISTRATION: 2
    • O.TRUSTED_COMMUNICATIONS: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.CONNECTIONS: 2
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMN: 1
    • OE.UPDATES: 1
  • T:
    • T.DATA: 1
    • T.MALICIOUS: 1
    • T.NETWORK_ACCESS: 4
    • T.NETWORK_DISCLOSURE: 3
    • T.NETWORK_DOS: 1
    • T.NETWORK_MISUSE: 3
    • T.PASSWORD_CRACKING: 1
    • T.REPLAY_ATTACK: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 4
  • Thales:
    • Thales: 105
pdf_data/st_keywords/eval_facility
  • Acumen:
    • Acumen Security: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 25
      • AES-: 5
  • constructions:
    • MAC:
      • HMAC: 11
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 5
    • ECDH:
      • ECDH: 3
    • ECDSA:
      • ECDSA: 20
  • FF:
    • DH:
      • DH: 15
      • Diffie-Hellman: 5
  • RSA:
    • RSA 2048: 5
    • RSA 4096: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-2: 1
  • SHA:
    • SHA1:
      • SHA-1: 4
      • SHA1: 3
    • SHA2:
      • SHA-256: 13
      • SHA-384: 4
      • SHA-512: 4
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 72
  • AEAD:
    • AEAD: 2
  • KA:
    • Key Agreement: 1
  • KEX:
    • Key Exchange: 2
    • Key exchange: 1
  • MAC:
    • MAC: 4
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 34
    • IKEv1: 25
    • IKEv2: 25
  • IPsec:
    • IPsec: 37
  • SSH:
    • SSH: 105
    • SSHv2: 15
  • TLS:
    • DTLS:
      • DTLS: 2
    • SSL:
      • SSL: 5
    • TLS:
      • TLS: 5
  • VPN:
    • VPN: 64
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 13
  • RNG:
    • RBG: 2
    • RNG: 2
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 12
  • CTR:
    • CTR: 4
  • GCM:
    • GCM: 7
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 30
    • P-384: 28
    • P-521: 16
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 8
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 1
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
  • IBM:
    • SSC: 2
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 180-4: 2
  • ISO:
    • ISO/IEC 15408: 6
  • RFC:
    • RFC 5321: 1
    • RFC 6477: 3
  • X509:
    • X.509: 3
  • FIPS:
    • FIPS 180-4: 6
    • FIPS 186-4: 5
    • FIPS 197: 5
    • FIPS 198-1: 5
    • FIPS PUB 186-4: 8
  • ISO:
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 2
    • ISO/IEC 9796-2: 1
  • NIST:
    • NIST SP 800-56A: 1
    • SP 800-38A: 2
    • SP 800-38D: 2
    • SP 800-56A: 2
    • SP 800-90A: 2
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 2409: 3
    • RFC 2460: 3
    • RFC 2463: 1
    • RFC 2986: 2
    • RFC 3513: 2
    • RFC 3526: 4
    • RFC 3602: 4
    • RFC 4106: 2
    • RFC 4109: 3
    • RFC 4251: 1
    • RFC 4253: 2
    • RFC 4301: 2
    • RFC 4303: 1
    • RFC 4306: 3
    • RFC 4443: 1
    • RFC 4868: 6
    • RFC 4945: 2
    • RFC 5077: 1
    • RFC 5114: 2
    • RFC 5280: 5
    • RFC 5282: 1
    • RFC 5656: 1
    • RFC 5735: 2
    • RFC 5759: 1
    • RFC 5996: 1
    • RFC 768: 3
    • RFC 791: 3
    • RFC 792: 2
    • RFC 793: 3
    • RFC 959: 1
    • RFC3526: 1
  • X509:
    • X.509: 8
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • out of scope: 1
    • over SSH and IPsec). Telnet, File Transfer Protocol (FTP), and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules that provide the underlying cryptographic services: 1
pdf_data/st_metadata
  • /Author: Shaina Rae
  • /CreationDate: D:20220621165300-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220621165300-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 1203654
  • pdf_hyperlinks: https://www.juniper.net/documentation/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 89
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different