Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
IBM Enterprise PKCS#11 (EP11) Firmware identifier '2b638e8e' (4768)
BSI-DSZ-CC-1094-2019
StoneGate Firewall v5.2.5
CSEC2011001
name IBM Enterprise PKCS#11 (EP11) Firmware identifier '2b638e8e' (4768) StoneGate Firewall v5.2.5
category Other Devices and Systems Boundary Protection Devices and Systems
scheme DE SE
not_valid_after 02.08.2024 01.09.2019
not_valid_before 02.08.2019 24.01.2012
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094c_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CCRA%20Certificate%20StoneGate%205.2.5.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CCRA%20Certification%20Report%20StoneGate.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CCRA%20StoneGate525_ST.pdf
manufacturer IBM Corporation Stonesoft Corporation
manufacturer_web https://www.ibm.com https://www.stonesoft.com/
security_level EAL4 ALC_FLR.1, EAL4+
dgst 1f2b1fe6f29f21b7 ae5e85a0f50e2ef0
heuristics/cert_id BSI-DSZ-CC-1094-2019 CSEC2011001
heuristics/cert_lab BSI []
heuristics/extracted_sars {} ADV_ARC.1, ATE_COV.2, ASE_TSS.1, AGD_OPE.1, ATE_DPT.1, ADV_IMP.1, ALC_DVS.1, ASE_REQ.2, ALC_TAT.1, AGD_PRE.1, ASE_CCL.1, ATE_IND.2, ALC_CMS.4, ASE_ECD.1, ADV_TDS.3, ALC_DEL.1, ASE_OBJ.2, AVA_VAN.3, ALC_FLR.1, ADV_FSP.4, ASE_INT.1, ASE_SPD.1, ATE_FUN.1, ALC_CMC.4, ALC_LCD.1
heuristics/extracted_versions 4768, 11 5.2.5
heuristics/report_references/directly_referencing BSI-DSZ-CC-1002-2018 {}
heuristics/report_references/indirectly_referencing BSI-DSZ-CC-1002-2018 {}
pdf_data/cert_filename 1094c_pdf.pdf CCRA Certificate StoneGate 5.2.5.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1094-2019: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
  • EAL:
    • EAL4: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.1: 1
pdf_data/cert_keywords/eval_facility
  • atsec:
    • atsec: 1
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
  • PKCS:
    • PKCS#11: 1
pdf_data/cert_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20190826112423+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, IBM Enterprise PKCS#11 (EP11) Firmware identifier 2b638e8e"
  • /ModDate: D:20190906121520+02'00'
  • /Producer: LibreOffice 6.1
  • /Subject: Urkunde, Zertifikat
  • /Title: Certification Report BSI-DSZ-CC-1094-2019
  • pdf_file_size_bytes: 368630
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20120124131428+01'00'
  • /ModDate: D:20230313141311+01'00'
  • pdf_file_size_bytes: 1252285
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename 1094a_pdf.pdf CCRA Certification Report StoneGate.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4
    • cc_version: Product specific Security Target Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1094-2019
    • cert_item: IBM Enterprise PKCS#11 (EP11) Firmware identifier '2b638e8e' (4768
    • cert_lab: BSI
    • developer: IBM Research & Development Germany
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • DE:
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1002-2018: 2
    • BSI-DSZ-CC-1094-2019: 14
  • NL:
    • CC-1002-2018: 1
  • SE:
    • CSEC2011001: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 5
  • EAL:
    • EAL4: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR.1: 2
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.ADMINTRUSTED: 1
    • A.ADMIN_ACCESS: 1
    • A.MEDIAT_SUPPORT: 1
    • A.TIME: 1
    • A.USER_AUTH: 1
  • T:
    • T.AUDIT_UNDETECTED: 1
    • T.MEDIAT: 1
    • T.NODE_FAILURE: 1
    • T.SELPRO: 1
pdf_data/report_keywords/eval_facility
  • atsec:
    • atsec: 3
  • atsec:
    • atsec: 1
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 3
  • DES:
    • 3DES:
      • TDES: 3
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 4
    • ECDSA:
      • ECDSA: 5
  • FF:
    • DSA:
      • DSA: 4
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-2: 1
      • SHA-224: 1
      • SHA-256: 4
      • SHA-384: 1
      • SHA-512: 1
      • SHA256: 4
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 2
  • TLS:
    • SSL:
      • SSL: 1
  • VPN:
    • VPN: 6
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 1
  • TRNG:
    • TRNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 3
  • ECB:
    • ECB: 2
pdf_data/report_keywords/ecc_curve
  • NIST:
    • secp256k1: 2
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 2
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 20: 2
    • AIS 32: 1
    • AIS 38: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 186-4: 9
    • FIPS 197: 1
    • FIPS 46-3: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-90A: 1
  • PKCS:
    • PKCS#1: 1
    • PKCS#11: 14
  • RFC:
    • RFC 3447: 1
    • RFC 5639: 3
  • X509:
    • X.509: 1
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • BOE) for documentation files, Version 1, 2017-07-14, IBM (confidential document) Configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential: 1
    • Notes for the configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential document) Hardware configuration list for IBM 4765 and 4767 EP11 HSMs, Version 1.0, 2017- 08-31, IBM: 1
    • Report, Version 2, 2019-07-10, Final Evaluation Technical Report, atsec information security GmbH (confidential document) [8] Configuration lists for the TOE: Configuration list of static content measured by SHA256: 1
    • Version 1.0, 2016- 12-12, IBM (confidential document) EP11 configuration list BOE, Version 1, 2019-03-27, IBM (confidential document) EP11 configuration: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /Ansvarigt Område/enhet: CSEC
  • /Author: Jerry Johansson
  • /C-datum: 2008
  • /CSECID:
  • /Company: ORGNAME
  • /CreationDate: D:20120123183309+01'00'
  • /Creator: Acrobat PDFMaker 10.1 för Word
  • /Current Version: 7.0
  • /DDocBinder: Scheme (CB)
  • /DDocCabinet: QMS
  • /DDocID: 2005-03-05-64D6-T9YR
  • /DDocLastModDate: 2006-03-16 10:56:39
  • /DDocLibrary: https://haddock.fmv.se/domdoc/CSECLib.nsf
  • /DDocRevision: 3,7
  • /DDocTitle: 035 CB General Document - Template
  • /Datum, skapat: -
  • /Deluppdragsbenämning:
  • /Document responsible: Certification Manager
  • /Dokument Status: Aktiv
  • /Dokumentansvarig: Jerry Johansson
  • /Dokumentansvarigs enhet: KC Ledsyst
  • /Dokumentbeteckning:
  • /Dokumentdatum: 2012-01-24
  • /Dokumenttitel: Certification Report StoneGate FW/VPN 5.2.5
  • /Dokumenttyp: CB
  • /FMV_beteckning: 11FMV3127-87:1
  • /Fastställarens roll: Head of CSEC
  • /Fastställt av: Dag Ströman
  • /Fastställt av1: Dag Ströman
  • /Format:
  • /Giltigt från: -
  • /Infoklass: HEMLIG/
  • /Information Management:
  • /Informationsklass:
  • /Keywords:
  • /Klassificeringsnr: 25 550
  • /MallVersion: 7.0
  • /ModDate: D:20120126091448+01'00'
  • /Paragraf:
  • /Platina: 1
  • /Producer: Adobe PDF Library 10.0
  • /Referens ID:
  • /Sekr. gäller tom.: -
  • /SourceModified: D:20120123173245
  • /Stämpel: 0
  • /Subject: 11FMV3127-87:1
  • /Title: Certification Report StoneGate FW/VPN 5.2.5
  • /Uncontrolled: 0.000000
  • /Uppdragsbenämning:
  • /Utgåva: 1.0
  • /_dlc_DocId:
  • /_dlc_DocIdItemGuid: 302905eb-20f8-4118-b864-a57035b1bd0f
  • /_dlc_DocIdUrl: http://sharepoint.fmv.se/projekt/CSEC/_layouts/DocIdRedir.aspx?ID=FMVID-291-15, FMVID-291-15
  • pdf_file_size_bytes: 137695
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 15
pdf_data/st_filename 1094b_pdf.pdf CCRA StoneGate525_ST.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0045-2009: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL4: 3
  • EAL:
    • EAL4: 3
    • EAL4 augmented: 1
pdf_data/st_keywords/cc_sar
  • ALC:
    • ALC_FLR.1: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 1
    • FAU_GEN.1: 9
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_SEL.1: 6
    • FAU_SEL.1.1: 1
    • FAU_STG: 16
    • FAU_STG.1: 8
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.4: 2
  • FCS:
    • FCS_COP: 1
  • FDP:
    • FDP_ACC.1: 2
    • FDP_IFC.1: 10
    • FDP_IFC.1.1: 1
    • FDP_IFF.1: 8
    • FDP_IFF.1.1: 3
    • FDP_IFF.1.2: 4
    • FDP_IFF.1.3: 3
    • FDP_IFF.1.4: 1
    • FDP_IFF.1.5: 4
  • FIA:
    • FIA_UID.1: 1
  • FMT:
    • FMT_MSA.1: 8
    • FMT_MSA.1.1: 1
    • FMT_MSA.2: 6
    • FMT_MSA.2.1: 1
    • FMT_MSA.3: 7
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD.1: 9
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 9
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 9
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 8
    • FPT_FLS.1.1: 1
    • FPT_STM.1: 1
  • FRU:
    • FRU_FLT.2: 6
    • FRU_FLT.2.1: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMINTRUSTED: 2
    • A.ADMIN_ACCESS: 2
    • A.AUDITMAN: 2
    • A.AUDIT_SUPPORT: 2
    • A.MEDIAT_SUPPORT: 2
    • A.OPERATING_ENVIRONMENT: 2
    • A.TIME: 3
    • A.USER_AUTH: 2
  • O:
    • O.AUDIT: 8
    • O.HIGHAVAILABILITY: 5
    • O.MEDIAT: 6
    • O.NETADDRHIDE: 5
    • O.SECFUN: 9
  • OE:
    • OE.ADMINTRUSTED: 2
    • OE.ADMIN_ACCESS: 3
    • OE.AUDITMAN: 3
    • OE.AUDIT_SUPPORT: 3
    • OE.MEDIAT_SUPPORT: 4
    • OE.OPERATING_ENVIRONMENT: 2
    • OE.TIME: 4
    • OE.USER_AUTH: 3
  • T:
    • T.AUDIT_UNDETECTD: 1
    • T.AUDIT_UNDETECTED: 4
    • T.MEDIAT: 5
    • T.MEDIATE: 1
    • T.NODE_FAILURE: 2
    • T.SELPRO: 3
pdf_data/st_keywords/vendor
  • STMicroelectronics:
    • STM: 4
  • Microsoft:
    • Microsoft: 1
pdf_data/st_keywords/eval_facility
  • atsec:
    • atsec: 38
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 13
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 8
  • constructions:
    • MAC:
      • CMAC: 2
      • HMAC: 7
  • miscellaneous:
    • SEED:
      • SEED: 1
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • 3DES: 2
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 5
    • ECDSA:
      • ECDSA: 8
    • ECIES:
      • ECIES: 1
  • FF:
    • DH:
      • DH: 4
      • Diffie-Hellman: 2
    • DSA:
      • DSA: 12
  • RSA:
    • RSA 2048: 1
pdf_data/st_keywords/hash_function
  • RIPEMD:
    • RIPEMD-160: 1
  • SHA:
    • SHA1:
      • SHA-1: 7
    • SHA2:
      • SHA-224: 5
      • SHA-256: 14
      • SHA-384: 4
      • SHA-512: 4
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
    • Key agreement: 1
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 10
  • KEX:
    • Key Exchange: 1
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
  • IKE:
    • IKE: 1
  • IPsec:
    • IPsec: 2
  • SSH:
    • SSH: 3
  • TLS:
    • SSL:
      • SSL: 3
    • TLS:
      • TLS: 1
  • VPN:
    • VPN: 8
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 2
  • RNG:
    • RNG: 19
  • TRNG:
    • TRNG: 5
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • ECB:
    • ECB: 4
  • CBC:
    • CBC: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-192: 8
    • P-224: 8
    • P-256: 8
    • P-384: 8
    • P-521: 8
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • malfunction: 2
  • SCA:
    • side-channel: 1
  • FI:
    • malfunction: 3
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 31: 1
  • FIPS:
    • FIPS 140-2: 3
    • FIPS 180-4: 1
    • FIPS 186-4: 1
    • FIPS 197: 4
  • ISO:
    • ISO/IEC 18031:2011: 1
  • PKCS:
    • PKCS 11: 1
    • PKCS#11: 158
    • PKCS1: 14
    • PKCS11: 1
    • PKCS12: 1
  • RFC:
    • RFC 3394: 1
    • RFC 3447: 12
    • RFC 5649: 1
    • RFC 8017: 1
  • X509:
    • X.509: 6
  • RFC:
    • RFC 1631: 1
    • RFC 2616: 2
    • RFC 821: 1
    • RFC 959: 3
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • of Security Functions: Administrators access the firewall engine through the Management Server (out of scope) which provides the interface for managing the security policy and authentication attributes, the: 1
    • out of scope: 1
pdf_data/st_metadata
  • /Author: Visegrady, Tamas <tvi (at) zurich.ibm.com>
  • /CreationDate: D:20190320220000+01'00'
  • /Creator: IBM Research --- Zurich and IBM Boeblingen/Poughkeepsie
  • /Keywords: IBM 4768 (hw. 00LV498PLH (3)); PCIeCC; XCP, Enterprise PKCS11 (EP11)
  • /ModDate: D:20190320220000+01'00'
  • /PTEX.Fullbanner: This is pdfTeX, Version 3.14159265-2.6-1.40.19 (TeX Live 2018/TeX Live for SUSE Linux) kpathsea version 6.3.0
  • /Producer: pdfTeX
  • /Subject: Security Policy [rev. 288]
  • /Title: IBM Enterprise PKCS11(on 4768) Security Target (EAL 4 )
  • /Trapped: /False
  • pdf_file_size_bytes: 841608
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 53
  • /Author: Rasma
  • /CreationDate: D:20111010103230Z
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20120126091508+01'00'
  • /Producer: AFPL Ghostscript 8.54
  • /Title: Microsoft Word - StoneGate-ST.doc
  • pdf_file_size_bytes: 258994
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 33
state/cert/convert_garbage False True
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different