Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Voice Stream Interceptor (VSI)
SERTIT-072
V3Pro2004 and AhnLab Policy Center 3.0
KECS-ISIS-0073-2007
name Voice Stream Interceptor (VSI) V3Pro2004 and AhnLab Policy Center 3.0
scheme NO KR
not_valid_after 21.06.2022 01.06.2019
not_valid_before 21.06.2017 17.09.2007
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CR%20SERTIT-072_1.PDF https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISIS-73-EN.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SV000073-Voice-Stream-Interceptor-Security-Target-Lite.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISIS-73-ST-EN.pdf
manufacturer Saab Danmark AS AhnLab, Inc.
manufacturer_web https://saabgroup.com https://www.ahnlab.com/
security_level EAL5+, ALC_FLR.3 EAL4
dgst 28228ddc7cba794e a8f7a4c49c242ddc
heuristics/cert_id SERTIT-072 KECS-ISIS-0073-2007
heuristics/extracted_sars ATE_COV.2, ADV_TDS.4, ALC_FLR.3, AVA_VAN.4, ALC_TAT.2 AVA_VLA.2, AGD_ADM.1, ATE_FUN.1, ALC_DVS.1, ADV_IMP.1, ADV_HLD.2, ALC_TAT.1, ATE_COV.2, ADV_FSP.2, ALC_LCD.1, AVA_SOF.1, ATE_DPT.1, ADV_SPM.1, AVA_MSU.2, ADV_RCR.1, ADV_LLD.1, AGD_USR.1, ATE_IND.2
heuristics/extracted_versions - 3.0
heuristics/scheme_data
  • category: Other Devices and Systems
  • certification_date: 21.06.2017
  • developer: SAAB Danmark A/S
  • enhanced:
    • category: Other Devices and Systems
    • cert_id: SERTIT-072
    • certification_date: 21.06.2017
    • description: Saab Voice Stream Interceptor (VSI) is a software security product providing secure domain separation between voice with different classification level. VSI has very few requirements to the underlying platform and can be installed on a Common Criteria approved Linux Operating System with IPsec tunnel and Trusted Platform Module (TPM). VSI supports standardized Voice over IP (VoIP) communication and is used for VoIP clients. The VoIP client user application is completely separated from VSI and does not require being trusted for the secure separation of classified voice. The separation between the VoIP client user application and VSI gives the possibility to change or upgrade the user application and still maintain a secure domain separation of classified voice by an unchanged VSI. From an users point of view the VoIP client containing VSI can both be used for classified (RED) and lower classified or non-classified (BLACK) voice communication. In this way, a conversation can start as non-classified and during the conversation be switched to a classified conversation. Operational modes on radio based communication are supported in this way. It is also possible to listen to both BLACK and RED voice at the same time. VSI also controls the suppression of RED incoming voice stream to the VoIP client, such that while sending BLACK voice the possible pickup and cross talk via the speaker to the microphone is eliminated. During authorized configuration the suppression functionality can either be enabled or disabled depending on the required operational procedure. Saab provides the Secure Tacticall VoIP client, where VSI has been integrated into a user friendly end product and can be used in a secure RED/BLACK system solution.
    • developer: SAAB Danmark A/S
    • documents: frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/135133-1607953045/SERTIT/Sertifikater/2017/72/C%20SERTIT-072.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/135136-1607953047/SERTIT/Sertifikater/2017/72/SV000073-Voice-Stream-Interceptor-Security-Target-Lite.pdf'}), frozendict({'href': 'https://sertit.no/getfile.php/137492-1633083420/SERTIT/Sertifikater/2017/72/SV000073-Voice-Stream-Interceptor-Security-Target-Lite-2.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/135139-1607953051/SERTIT/Sertifikater/2017/72/CR%20SERTIT-072_1.PDF'})], 'maintenance': [frozendict({'href': 'https://sertit.no/getfile.php/137486-1633083312/SERTIT/Sertifikater/2017/72/SERTIT-072%20MR%20v%201.0.pdf'})]})
    • evaluation_facility: NTT Com Security (Norway) AS
    • level: EAL 5
    • mutual_recognition: CCRA, SOG-IS
    • product: Stock no. SV000071, Version 1
    • sponsor: Norwegian Defence Logistics Organization Naval System
  • product: Voice Stream Interceptor
  • url: https://sertit.no/certified-products/product-archive/voice-stream-interceptor
maintenance_updates
pdf_data/report_filename CR SERTIT-072_1.PDF ISIS-73-EN.pdf
pdf_data/report_keywords/cc_cert_id
  • NO:
    • SERTIT-072: 6
  • KR:
    • KECS-ISIS-0073-2007: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 2 augmented: 1
    • EAL 4: 1
    • EAL 5: 28
    • EAL 5 augmented: 26
    • EAL1: 1
    • EAL5: 1
    • EAL7: 1
  • EAL:
    • EAL4: 3
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_TDS.4: 1
  • ALC:
    • ALC_FLR: 3
    • ALC_FLR.3: 25
    • ALC_TAT.2: 1
  • ATE:
    • ATE_COV.2: 1
  • AVA:
    • AVA_VAN.4: 2
  • ATE:
    • ATE_COV: 1
    • ATE_DPT: 1
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 1
  • FDP:
    • FDP_IFC.1: 1
  • FMT:
    • FMT_MSA.1: 1
    • FMT_MSA.3: 1
    • FMT_SMR.1: 1
  • FPT:
    • FPT_FLS.1: 1
    • FPT_STM.1: 1
    • FPT_TST.1: 1
  • FTP:
    • FTP_TRP.1: 1
pdf_data/report_keywords/cc_claims
  • O:
    • O.BLACK_VOICE_STREAM: 1
    • O.STREAM_SETUP: 1
  • OE:
    • OE.PREVENT_ACCESS: 2
    • OE.TRUSTED_RELEASE: 1
  • A:
    • A.AVCONFILICT: 1
    • A.CERT: 1
    • A.GUARD: 1
    • A.INTERNALENTITY: 1
    • A.NO_EVIL: 1
    • A.PHYSICAL: 1
    • A.SAFEITENTITY: 1
    • A.TIMESTAMP: 1
  • O:
    • O.ADMIN_ROLE: 1
    • O.ALARM: 1
    • O.AUDIT: 1
    • O.INA: 1
    • O.MANAGE: 1
    • O.SECURE_UPDATE: 1
    • O.SELF_PROTECTION: 1
    • O.STRENGTHENOS: 1
    • O.TSFDATA_PROTECT: 1
    • O.VIRUS: 1
  • OE:
    • OE.AUDIT_SEARCH: 1
    • OE.AUDIT_STORAGE: 1
    • OE.AVCONFLICT: 1
    • OE.CERT: 1
    • OE.DOM_SEPARATION: 1
    • OE.GUARD: 1
    • OE.INTERNALENTITY: 1
    • OE.NO_BYPASS: 1
    • OE.NO_EVIL: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFO: 1
    • OE.SAFEITENTITY: 1
    • OE.TIMESTAMP: 1
    • OE.TOE_ACCESS: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 4
pdf_data/report_keywords/eval_facility
  • KISA:
    • KISA: 3
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA256: 2
pdf_data/report_keywords/crypto_protocol
  • VPN:
    • VPN: 6
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2012-09-004: 1
  • ISO:
    • ISO/IEC 15408: 8
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • If the administrator does not set the V3 security lock with Policy Agent in passive mode, it is out of scope of the evaluation because it is not enterprise environment, the TOE operating environment: 1
    • out of scope: 1
pdf_data/report_metadata
  • /Author: holthj-NSM-PC0709,44FD1973A6,CZC41336S0,CZC41336S0
  • /CreationDate: D:20170816091149+02'00'
  • /Creator: PixEdit Version 8.0.6.4, SN 357-92834-02, Nasjonal sikkerhetsmyndighet,(6A3791DF44),www.pixedit.com
  • /ModDate: D:20170816091149+02'00'
  • /Producer: Techsoft PixEdit Version 8.0.6.4, SN 357-92834-02, Nasjonal sikkerhetsmyndighet
  • /Subject: 385678 340600 VEDLEGG01
  • pdf_file_size_bytes: 7954615
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 24
  • /Author: KYH
  • /CreationDate: D:20071203103449+09'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20071203103449+09'00'
  • /Producer: Acrobat Distiller 7.0.5 (Windows)
  • /Title: ISIS-73-EN.hwp
  • pdf_file_size_bytes: 330437
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 26
pdf_data/st_filename SV000073-Voice-Stream-Interceptor-Security-Target-Lite.pdf ISIS-73-ST-EN.pdf
pdf_data/st_keywords/cc_cert_id
  • NO:
    • SERTIT-072: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 5: 1
    • EAL5: 1
  • EAL:
    • EAL4: 6
pdf_data/st_keywords/cc_sar
  • ALC:
    • ALC_FLR.3: 1
  • ACM:
    • ACM_AUT.1: 2
    • ACM_CAP.4: 2
    • ACM_SCP.2: 3
  • ADO:
    • ADO_DEL.2: 2
    • ADO_IGS.1: 2
  • ADV:
    • ADV_FSP.2: 2
    • ADV_HLD.2: 2
    • ADV_IMP.1: 2
    • ADV_LLD.1: 2
    • ADV_RCR.1: 2
    • ADV_SPM.1: 2
  • AGD:
    • AGD_ADM.1: 3
    • AGD_USR.1: 2
  • ALC:
    • ALC_DVS.1: 2
    • ALC_LCD.1: 2
    • ALC_TAT.1: 2
  • ATE:
    • ATE_COV.2: 2
    • ATE_DPT.1: 3
    • ATE_FUN.1: 2
    • ATE_IND.2: 3
  • AVA:
    • AVA_MSU.2: 4
    • AVA_SOF.1: 2
    • AVA_VLA.2: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
  • FDP:
    • FDP_IFC: 2
    • FDP_IFC.1: 20
    • FDP_IFC.1.1: 3
    • FDP_IFF: 2
    • FDP_IFF.1: 22
    • FDP_IFF.1.1: 3
    • FDP_IFF.1.2: 3
    • FDP_IFF.1.3: 3
    • FDP_IFF.1.4: 3
    • FDP_IFF.1.5: 3
    • FDP_ITC.1: 1
  • FMT:
    • FMT_MSA: 2
    • FMT_MSA.1: 4
    • FMT_MSA.3: 12
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMR.1: 4
  • FPT:
    • FPT_FLS: 2
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_STM.1: 4
    • FPT_TST: 2
    • FPT_TST.1: 5
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FTP:
    • FTP_TRP: 2
    • FTP_TRP.1: 6
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_APR.1: 2
    • FAU_ARP.1: 10
    • FAU_ARP.1.1: 1
    • FAU_GEN.1: 17
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 9
    • FAU_GEN.2.1: 1
    • FAU_SAA.1: 13
    • FAU_SAA.1.1: 1
    • FAU_SAA.1.2: 1
    • FAU_SAR.1: 20
    • FAU_SAR.1.1: 2
    • FAU_SAR.1.2: 2
    • FAU_SAR.2: 12
    • FAU_SAR.2.1: 1
    • FAU_SAR.3: 13
    • FAU_SAR.3.1: 2
    • FAU_SSA.1: 1
    • FAU_STG.1: 6
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.3: 1
    • FAU_STG.4: 11
    • FAU_STG.4.1: 1
  • FDP:
    • FDP_ACF: 4
    • FDP_IFC: 4
  • FIA:
    • FIA_AFL.1: 10
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_SOS.1: 10
    • FIA_SOS.1.1: 1
    • FIA_UAU.1: 6
    • FIA_UAU.2: 16
    • FIA_UAU.2.1: 2
    • FIA_UAU.6: 14
    • FIA_UAU.6.1: 2
    • FIA_UID.1: 8
    • FIA_UID.2: 18
    • FIA_UID.2.1: 2
  • FMT:
    • FMT_MOF.1: 27
    • FMT_MOF.1.1: 1
    • FMT_MTD.1: 32
    • FMT_MTD.1.1: 1
    • FMT_MTD.2: 12
    • FMT_MTD.2.1: 1
    • FMT_MTD.2.2: 1
    • FMT_SMF.1: 31
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 27
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_AMT.1: 10
    • FPT_AMT.1.1: 1
    • FPT_ITI.1: 10
    • FPT_ITI.1.1: 1
    • FPT_ITI.1.2: 1
    • FPT_ITT.1: 16
    • FPT_ITT.1.1: 2
    • FPT_SSL.3: 1
    • FPT_STM.1: 7
    • FPT_STM.1.1: 1
    • FPT_TST.1: 13
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FTA:
    • FTA_SSL.1: 5
    • FTA_SSL.1.1: 1
    • FTA_SSL.1.2: 1
    • FTA_SSL.3: 15
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 14
    • FTA_SSL.4.1: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.SECURE_IP: 4
    • A.SECURE_LOCATION: 3
    • A.SECURE_OS: 5
    • A.TRUSTED_VPN: 4
  • O:
    • O.BLACK_VOICE_STREAM: 9
    • O.RED_VOICE_STREAM: 6
    • O.STREAM_SETUP: 6
  • OE:
    • OE.ACOUSTIC_FEEDBACK: 3
    • OE.ENVIRONMENTAL: 4
    • OE.EVALUATED_OS: 7
    • OE.INSTRUCTED_ADMIN: 9
    • OE.INSTRUCTED_USERS: 7
    • OE.LOG_ACCESS: 4
    • OE.PREVENT_ACCESS: 7
    • OE.READ_LOG: 4
    • OE.SECURE_IP: 4
    • OE.SECURE_LOCATION: 6
    • OE.TRUSTED_REGISTRAR: 3
    • OE.TRUSTED_RELEASE: 8
  • OT:
    • OT.LOG: 8
    • OT.ROBUST: 6
    • OT.SANITY_CHECK: 10
    • OT.SELECTOR: 10
    • OT.SEND: 8
    • OT.SUBSTITUTION: 9
    • OT.SUPPRESS: 7
  • SA:
    • SA.VOICE_STREAM_CLASSIFICATION: 4
  • T:
    • T.CORRUPT_FORMAT: 3
    • T.CORRUPT_STREAM: 3
    • T.NETWORK_INTEGRITY: 3
    • T.SETUP: 4
    • T.TERMINAL_INTEGRITY: 4
    • T.WRONG_LABEL: 4
  • A:
    • A.AVCONFLICT: 3
    • A.CERT: 3
    • A.GUARD: 3
    • A.INTERNALENTITY: 3
    • A.NO_EVIL: 3
    • A.PHISICAL: 2
    • A.SAFEITENTITY: 3
    • A.TIMESTAMP: 3
  • O:
    • O.ADMIN_ROLE: 5
    • O.ALARM: 6
    • O.AUDIT: 10
    • O.AUIDT: 2
    • O.INA: 16
    • O.MANAGE: 14
    • O.SECURE_UPDATE: 6
    • O.SELF_PROTECTION: 5
    • O.STRENGTHENOS: 5
    • O.TSFDATA_PROTECT: 8
    • O.VIRUS: 10
  • OE:
    • OE.AUDIT_SEARCH: 5
    • OE.AUDIT_STORAGE: 7
    • OE.AVCONFLICT: 3
    • OE.CERT: 3
    • OE.DOM_SEPARATION: 5
    • OE.GAURD: 1
    • OE.GUARD: 2
    • OE.INTERNALENTITY: 3
    • OE.NO_BYPASS: 5
    • OE.NO_EVIL: 3
    • OE.PHISICAL: 2
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFO: 2
    • OE.SAFEITENTITY: 4
    • OE.TIMESTAMP: 7
    • OE.TOE_ACCESS: 13
  • T:
    • T.AUDIT_COMPROMISE: 8
    • T.DOWN_INTERFERENCE: 3
    • T.MASQUERADE: 5
    • T.RESIDUAL_DATA: 3
    • T.TRANS_DESTORY: 3
    • T.TSF_COMPROMISE: 9
    • T.UNATTEND_SESS: 5
    • T.UNIDENTIFIED_ACTIONS: 5
    • T.VIRUS: 4
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 21
pdf_data/st_keywords/symmetric_crypto
  • miscellaneous:
    • SEED:
      • SEED: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 2
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 2
  • VPN:
    • VPN: 14
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 3
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 98 APC uses SMS for notification on the situation that authorized administrator is set. This is out of scope because additional contract with a mobile service provider is necessary for this function. APC: 1
    • 99 APC creates reports with pre-defined formats and audit records. This function is out of scope since it is independent with generating and storing audit records. AhnLab, Korea 24/109 APC: 1
    • files for support of V3+ Neo. Since the operating system of the TOE is Windows XP, This is out of scope. 91 The following functions are out of scope for policy server. Hierarchical Domain Management : 1
    • out of scope: 6
    • system in case that the system has been registered on the APC. 101 The following functions are out of scope for policy agent. User Information Input 102 An additional feature for the Policy Agent user: 1
    • updates itself by the policy server’s command. 2.2.3 Out of Coverage 88 The following functions are out of scope of V3 Run as a Update Server 89 Without APC, V3 runs as an update server for the other V3s. V3 +: 1
pdf_data/st_metadata
  • /Author: Arne Stig Peters
  • /CreationDate: D:20170815121252+02'00'
  • /Creator: Microsoft® Word 2010
  • /ModDate: D:20170815121252+02'00'
  • /Producer: Microsoft® Word 2010
  • pdf_file_size_bytes: 1265855
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 34
  • /Author: KYH
  • /CreationDate: D:20071203103747+09'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /ModDate: D:20071203103747+09'00'
  • /Producer: Acrobat Distiller 7.0.5 (Windows)
  • /Title: Microsoft Word - ISIS-73-ST_EN.doc
  • pdf_file_size_bytes: 796288
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 109
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different