Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Fortinet Fortiweb 5.6
383-4-425
MultiApp V5.1 (version 5.1) ( 2023/31)
ANSSI-CC-2023/31
name Fortinet Fortiweb 5.6 MultiApp V5.1 (version 5.1) ( 2023/31)
category Network and Network-Related Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme CA FR
status archived active
not_valid_after 05.12.2022 28.09.2028
not_valid_before 05.12.2017 28.08.2023
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-425%20CT%20v1.0e.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certificat-CC-2023_31fr.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-425%20CR%20v1.0e.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ANSSI-CC-2023_31fr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-425%20ST%20v1.10.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ANSSI-cible-2023_31en.pdf
manufacturer Fortinet, Inc. THALES DIS FRANCE SA
manufacturer_web https://www.fortinet.com/ https://www.thalesgroup.com/en/europe/france
security_level {} EAL6+, ALC_FLR.2
dgst 2f43218020fc327c bdeb2f50840bb113
heuristics/cert_id 383-4-425 ANSSI-CC-2023/31
heuristics/cpe_matches cpe:2.3:a:fortinet:fortiweb:5.6.1:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiweb:5.6.0:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiweb:5.6.2:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2017-7736, CVE-2019-16157, CVE-2021-22122, CVE-2017-3129, CVE-2017-7737, CVE-2020-29019, CVE-2023-25602, CVE-2019-5590, CVE-2021-36182, CVE-2021-42756, CVE-2020-29015, CVE-2021-36193, CVE-2021-42757, CVE-2020-29016, CVE-2021-42761, CVE-2021-36179, CVE-2020-6646, CVE-2017-14191 {}
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ASE_INT.1, ALC_DVS.2, ADV_TDS.5, ASE_ECD.1, ASE_SPD.1, ALC_CMS.5, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, ALC_TAT.3, ATE_FUN.2, ADV_FSP.5, AGD_OPE.1, AGD_PRE.1, ATE_DPT.3, ADV_ARC.1, ASE_OBJ.2, ADV_IMP.2, ALC_CMC.5, ALC_FLR.2, ASE_TSS.2, ASE_REQ.2, ADV_INT.3, ATE_IND.2, ASE_CCL.1, ATE_COV.3, ADV_SPM.1
heuristics/extracted_versions 5.6 5.1
heuristics/report_references/directly_referenced_by {} ANSSI-CC-2023/45, ANSSI-CC-2023/35, ANSSI-CC-2023/42, ANSSI-CC-2023/34, ANSSI-CC-2023/36, ANSSI-CC-2025/05
heuristics/report_references/directly_referencing {} ANSSI-CC-2023/01
heuristics/report_references/indirectly_referenced_by {} ANSSI-CC-2023/45, ANSSI-CC-2023/35, ANSSI-CC-2023/42, ANSSI-CC-2023/34, ANSSI-CC-2023/36, ANSSI-CC-2025/05
heuristics/report_references/indirectly_referencing {} ANSSI-CC-2023/01
heuristics/st_references/directly_referencing {} ANSSI-CC-2023/01
heuristics/st_references/indirectly_referencing {} ANSSI-CC-2023/01
heuristics/protection_profiles c7cf611c6bb1e4b0 94167fd161e87d71
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0099b_pdf.pdf
pdf_data/cert_filename 383-4-425 CT v1.0e.pdf Certificat-CC-2023_31fr.pdf
pdf_data/cert_keywords/cc_cert_id
  • CA:
    • 383-4-425: 1
  • FR:
    • ANSSI-CC-2023/31: 2
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0099-V2-2020: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL6: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 1
pdf_data/cert_keywords/eval_facility
  • EWA:
    • EWA-Canada: 1
  • CEA-LETI:
    • CEA-LETI: 2
pdf_data/cert_metadata
  • /Author: Clark, Cory P.
  • /Company: CSEC
  • /CreationDate: D:20171214084924-05'00'
  • /Creator: Acrobat PDFMaker 11 for Word
  • /ModDate: D:20171214084926-05'00'
  • /Producer: Adobe PDF Library 11.0
  • /SourceModified: D:20171206151714
  • pdf_file_size_bytes: 203992
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20230829152627+02'00'
  • /Creator: Acrobat PDFMaker 23 pour Word
  • /Keywords:
  • /ModDate: D:20230829152916+02'00'
  • /Producer: Adobe PDF Library 23.1.175
  • pdf_file_size_bytes: 156728
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 2
pdf_data/report_filename 383-4-425 CR v1.0e.pdf ANSSI-CC-2023_31fr.pdf
pdf_data/report_frontpage
  • FR:
  • CA:
  • FR:
  • CA:
pdf_data/report_keywords/cc_cert_id
  • CA:
    • 383-4-425: 1
  • FR:
    • ANSSI-CC-2023/01: 2
    • ANSSI-CC-2023/31: 2
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0099-V2-2020: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 6: 1
    • EAL2: 2
    • EAL7: 1
  • ITSEC:
    • ITSEC E6 Elevé: 1
pdf_data/report_keywords/cc_sar
  • AGD:
    • AGD_OPE: 5
    • AGD_PRE: 2
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 2
  • AVA:
    • AVA_VAN: 1
pdf_data/report_keywords/vendor
  • Gemalto:
    • Gemalto: 1
pdf_data/report_keywords/eval_facility
  • EWA:
    • EWA-Canada: 1
  • CEA-LETI:
    • CEA - LETI: 1
  • CESTI:
    • CESTI: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • constructions:
    • MAC:
      • HMAC: 1
  • DES:
    • DES:
      • DES: 1
pdf_data/report_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 1
  • PACE:
    • PACE: 1
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
pdf_data/report_keywords/cplc_data
  • ICFab:
    • IC Fabricator: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 180-3: 1
    • FIPS 186-4: 1
    • FIPS 197: 1
    • FIPS 198: 1
  • ISO:
    • ISO/IEC 17025:2005: 1
  • NIST:
    • SP 800-56A: 2
    • SP 800-90A: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
pdf_data/report_keywords/javacard_version
  • JavaCard:
    • Java Card 3.1: 3
pdf_data/report_metadata
  • /Author: Clark, Cory P.
  • /Comments: V1.0
  • /Company: CSEC
  • /CreationDate: D:20171214084859-05'00'
  • /Creator: Acrobat PDFMaker 11 for Word
  • /ModDate: D:20171214084903-05'00'
  • /Producer: Adobe PDF Library 11.0
  • /SourceModified: D:20171214134846
  • /Title: 383-4-XXX CR v0.1
  • pdf_file_size_bytes: 250668
  • pdf_hyperlinks: mailto:[email protected]
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 17
pdf_data/st_filename 383-4-425 ST v1.10.pdf ANSSI-cible-2023_31en.pdf
pdf_data/st_keywords/cc_cert_id
  • FR:
    • ANSSI-CC-2023/01: 1
  • NL:
    • CC-1: 2
    • CC-2: 3
    • CC-3: 4
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP- 0084-2014: 1
    • BSI-CC-PP-0068-V2-2011-MA-01: 1
    • BSI-CC-PP-0084-2014: 1
    • BSI-CC-PP-0099-V2-2020: 1
    • BSI-PP-0055-2009: 1
    • BSI-PP-0056-V2-MA-2012: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 6+: 1
    • EAL6: 34
    • EAL6 augmented: 1
    • EAL6+: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 5
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 8
    • ADV_FSP.1: 1
    • ADV_FSP.2: 2
    • ADV_FSP.4: 2
    • ADV_FSP.5: 6
    • ADV_IMP.1: 3
    • ADV_IMP.2: 4
    • ADV_INT.3: 2
    • ADV_SPM.1: 9
    • ADV_TDS.1: 2
    • ADV_TDS.3: 3
    • ADV_TDS.4: 1
    • ADV_TDS.5: 6
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 7
    • AGD_PRE: 1
    • AGD_PRE.1: 6
  • ALC:
    • ALC_CMC.5: 4
    • ALC_CMS.5: 1
    • ALC_DEL.1: 2
    • ALC_DVS.2: 4
    • ALC_FLR.2: 7
    • ALC_LCD.1: 4
    • ALC_TAT.1: 2
    • ALC_TAT.3: 4
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV.1: 2
    • ATE_COV.2: 1
    • ATE_COV.3: 2
    • ATE_DPT.1: 1
    • ATE_DPT.3: 2
    • ATE_FUN.1: 3
    • ATE_FUN.2: 4
    • ATE_IND.2: 2
  • AVA:
    • AVA_VAN.5: 2
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 13
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 4
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG_EXT: 3
    • FAU_STG_EXT.1: 9
    • FAU_STG_EXT.1.1: 2
    • FAU_STG_EXT.1.2: 2
    • FAU_STG_EXT.1.3: 2
    • FAU_STG_EXT.2: 2
    • FAU_STG_EXT.3: 6
    • FAU_STG_EXT.3.1: 2
  • FCS:
    • FCS_CKM.1: 15
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 5
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 8
    • FCS_CKM.4.1: 1
    • FCS_COP.1: 38
    • FCS_COP.1.1: 4
    • FCS_COP.3: 1
    • FCS_RBG_EXT: 3
    • FCS_RBG_EXT.1: 11
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 2
    • FCS_TLSC_EXT: 3
    • FCS_TLSC_EXT.1: 4
    • FCS_TLSC_EXT.2: 10
    • FCS_TLSC_EXT.2.1: 2
    • FCS_TLSC_EXT.2.2: 2
    • FCS_TLSC_EXT.2.3: 2
    • FCS_TLSC_EXT.2.4: 2
    • FCS_TLSC_EXT.2.5: 2
    • FCS_TLSS_EXT: 2
    • FCS_TLSS_EXT.1: 10
    • FCS_TLSS_EXT.1.1: 2
    • FCS_TLSS_EXT.1.2: 2
    • FCS_TLSS_EXT.1.3: 2
    • FCS_TLSS_EXT.2: 4
    • FCS_TLS_EXT.1: 1
  • FDP:
    • FDP_ITC.1: 6
    • FDP_ITC.2: 6
    • FDP_RIP.2: 1
  • FIA:
    • FIA_PMG_EXT: 3
    • FIA_PMG_EXT.1: 9
    • FIA_PMG_EXT.1.1: 2
    • FIA_UAU.1: 2
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 3
    • FIA_UAU_EXT.1: 1
    • FIA_UAU_EXT.2: 11
    • FIA_UAU_EXT.2.1: 2
    • FIA_UIA_EXT: 3
    • FIA_UIA_EXT.1: 9
    • FIA_UIA_EXT.1.1: 2
    • FIA_UIA_EXT.1.2: 2
    • FIA_UID.1: 2
    • FIA_UID_EXT.1: 1
  • FMT:
    • FMT_MOF.1: 18
    • FMT_MOF.1.1: 4
    • FMT_MTD: 2
    • FMT_MTD.1: 6
    • FMT_MTD.1.1: 2
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 3
    • FMT_SMR.2: 6
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 2
    • FPT_APW_EXT.1: 9
    • FPT_APW_EXT.1.1: 2
    • FPT_APW_EXT.1.2: 2
    • FPT_PTD: 1
    • FPT_SKP_EXT: 3
    • FPT_SKP_EXT.1: 9
    • FPT_SKP_EXT.1.1: 2
    • FPT_STM.1: 6
    • FPT_STM.1.1: 1
    • FPT_TST_EXT: 2
    • FPT_TST_EXT.1: 12
    • FPT_TST_EXT.1.1: 3
    • FPT_TST_EXT.2: 2
    • FPT_TUD_EXT: 3
    • FPT_TUD_EXT.1: 9
    • FPT_TUD_EXT.1.1: 2
    • FPT_TUD_EXT.1.2: 2
    • FPT_TUD_EXT.1.3: 2
    • FPT_TUD_EXT.2: 2
  • FTA:
    • FTA_SSL.3: 4
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 3
    • FTA_SSL_EXT.1: 9
    • FTA_SSL_EXT.1.1: 2
    • FTA_SSL_EXT.3: 1
    • FTA_SSL_EXT.4: 1
    • FTA_TAB.1: 9
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 1
    • FTP_ITC.1: 7
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 4
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_ARP.1: 15
    • FAU_ARP.1.1: 1
    • FAU_SAA.1: 2
    • FAU_SAS.1: 2
  • FCO:
    • FCO_NRO: 5
    • FCO_NRO.2: 3
  • FCS:
    • FCS_CKM: 47
    • FCS_CKM.1: 29
    • FCS_CKM.1.1: 3
    • FCS_CKM.2: 10
    • FCS_CKM.2.1: 1
    • FCS_CKM.3: 5
    • FCS_CKM.3.1: 1
    • FCS_CKM.4: 29
    • FCS_CKM.4.1: 2
    • FCS_CMK.4: 1
    • FCS_COP: 48
    • FCS_COP.1: 24
    • FCS_COP.1.1: 5
    • FCS_RNG: 19
    • FCS_RNG.1: 11
    • FCS_RNG.1.1: 3
    • FCS_RNG.1.2: 3
  • FDP:
    • FDP_ACC: 48
    • FDP_ACC.1: 19
    • FDP_ACC.2: 6
    • FDP_ACF: 43
    • FDP_ACF.1: 24
    • FDP_IFC: 25
    • FDP_IFC.1: 14
    • FDP_IFC.2: 2
    • FDP_IFF: 15
    • FDP_IFF.1: 14
    • FDP_ITC: 13
    • FDP_ITC.1: 15
    • FDP_ITC.2: 20
    • FDP_ITT.1: 2
    • FDP_RIP: 96
    • FDP_RIP.1: 11
    • FDP_RIP.1.1: 1
    • FDP_ROL: 13
    • FDP_ROL.1: 5
    • FDP_SDC.1: 2
    • FDP_SDI: 8
    • FDP_SDI.2: 4
    • FDP_UCT.1: 2
    • FDP_UIT: 6
    • FDP_UIT.1: 4
  • FIA:
    • FIA_AFL: 23
    • FIA_AFL.1.1: 2
    • FIA_AFL.1.2: 2
    • FIA_API.1: 2
    • FIA_ATD: 12
    • FIA_ATD.1: 3
    • FIA_UAU: 64
    • FIA_UAU.1: 6
    • FIA_UAU.1.1: 2
    • FIA_UAU.1.2: 2
    • FIA_UAU.4: 1
    • FIA_UAU.4.1: 1
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6.1: 1
    • FIA_UID: 38
    • FIA_UID.1: 19
    • FIA_UID.1.1: 2
    • FIA_UID.1.2: 2
    • FIA_UID.2: 1
    • FIA_USB: 6
    • FIA_USB.1: 3
  • FMT:
    • FMT_LIM: 38
    • FMT_LIM.1: 18
    • FMT_LIM.1.1: 2
    • FMT_LIM.2: 17
    • FMT_LIM.2.1: 2
    • FMT_MSA: 102
    • FMT_MSA.1: 15
    • FMT_MSA.2: 2
    • FMT_MSA.3: 22
    • FMT_MTD: 53
    • FMT_MTD.1: 13
    • FMT_MTD.3: 1
    • FMT_SMF: 75
    • FMT_SMF.1: 29
    • FMT_SMF.1.1: 2
    • FMT_SMR: 85
    • FMT_SMR.1: 35
    • FMT_SMR.1.1: 2
    • FMT_SMR.1.2: 2
  • FPR:
    • FPR_UNO: 5
    • FPR_UNO.1: 8
    • FPR_UNO.1.1: 1
  • FPT:
    • FPT_EMS: 4
    • FPT_EMS.1: 14
    • FPT_EMS.1.1: 3
    • FPT_EMS.1.2: 3
    • FPT_FLS: 48
    • FPT_FLS.1: 16
    • FPT_FLS.1.1: 2
    • FPT_ITT: 6
    • FPT_ITT.1: 2
    • FPT_PHP: 7
    • FPT_PHP.3: 17
    • FPT_PHP.3.1: 1
    • FPT_RCV: 13
    • FPT_RCV.3: 4
    • FPT_RCV.4: 1
    • FPT_TDC.1: 7
    • FPT_TDC.1.1: 1
    • FPT_TDC.1.2: 1
    • FPT_TST: 8
    • FPT_TST.1: 14
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FRU:
    • FRU_FLT.2: 2
  • FTP:
    • FTP_ITC: 17
    • FTP_ITC.1: 7
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 5
    • FTP_TRP.1: 7
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN: 1
    • A.LIMITED: 1
    • A.NO_THRU: 1
    • A.PHYSICAL: 1
    • A.REGULAR: 1
    • A.TRUSTED: 1
  • OE:
    • OE.ADMIN: 1
    • OE.NO: 1
    • OE.NO_THRU: 1
    • OE.PHYSICAL: 1
    • OE.TRUSTED: 1
    • OE.UPDATES: 1
  • T:
    • T.PASSWORD: 1
    • T.SECURITY: 2
    • T.UNAUTHORIZED: 1
    • T.UNDETECTED: 1
    • T.UNTRUSTED: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK: 2
  • A:
    • A.CAP_FILE: 4
    • A.DELETION: 4
    • A.OS-UPDATE-EVIDENCE: 3
    • A.SECURE_ACODE_MANAGEMENT: 3
    • A.VERIFICATION: 3
  • D:
    • D.API_DATA: 3
    • D.APP_CODE: 6
    • D.APP_C_DATA: 3
    • D.APP_I_DATA: 5
    • D.APP_KEYS: 1
    • D.CRYPTO: 5
    • D.JCS_CODE: 6
    • D.JCS_DATA: 8
    • D.OS-: 1
    • D.OS-UPDATE-CODE-ID: 3
    • D.OS-UPDATE_ADDITIONALCODE: 5
    • D.OS-UPDATE_DEC-KEY: 2
    • D.OS-UPDATE_SGNVER-KEY: 2
    • D.PIN: 4
    • D.SEC_DATA: 7
  • O:
    • O.ALARM: 15
    • O.APPLET: 28
    • O.ARRAY_VIEWS_CONFID: 7
    • O.ARRAY_VIEWS_INTEG: 3
    • O.CARD-MANAGEMENT: 20
    • O.CIPHER: 11
    • O.CODE_CAP_FILE: 23
    • O.CONFID-OS-UPDATE: 4
    • O.DELETION: 4
    • O.FIREWALL: 12
    • O.GLOBAL_ARRAYS_CONFID: 9
    • O.GLOBAL_ARRAYS_INTEG: 5
    • O.INSTALL: 7
    • O.JAVAOBJECT: 68
    • O.KEY-MNGT: 6
    • O.LOAD: 11
    • O.NATIVE: 11
    • O.OBJ-DELETION: 4
    • O.OBJ_DELETION: 4
    • O.OPERATE: 15
    • O.PIN-MNGT: 6
    • O.PIN_MNGT: 4
    • O.REALLOCATION: 5
    • O.RESOURCES: 9
    • O.RND: 1
    • O.RNG: 10
    • O.SCP: 33
    • O.SECURE_AC_ACTIVATION: 5
    • O.SECURE_LOAD_ACODE: 9
    • O.SID: 13
    • O.TOE_IDENTIFICATION: 7
    • O.TRANSACTION: 6
  • OE:
    • OE.CAP_FILE: 5
    • OE.CODE-EVIDENCE: 11
    • OE.OS-UPDATE-ENCRYPTION: 6
    • OE.OS-UPDATE-EVIDENCE: 3
    • OE.SECURE_ACODE_MANAGEMENT: 3
    • OE.VERIFICATION: 25
  • OP:
    • OP.ARRAY_AASTORE: 3
    • OP.ARRAY_ACCESS: 7
    • OP.ARRAY_LENGTH: 3
    • OP.ARRAY_T_ALOAD: 3
    • OP.ARRAY_T_ASTORE: 3
    • OP.CREATE: 11
    • OP.DELETE_APPLET: 6
    • OP.DELETE_CAP_FILE: 4
    • OP.DELETE_CAP_FILE_APPLET: 4
    • OP.INSTANCE_FIELD: 6
    • OP.INVK_INTERFACE: 10
    • OP.INVK_VIRTUAL: 8
    • OP.JAVA: 8
    • OP.PUT: 8
    • OP.PUTFIELD: 1
    • OP.PUTSTATIC: 1
    • OP.THROW: 7
    • OP.TYPE_ACCESS: 7
  • OSP:
    • OSP.ADDITIONAL_CODE_ENCRYPTION: 3
    • OSP.ADDITIONAL_CODE_SIGNING: 3
    • OSP.ATOMIC_ACTIVATION: 3
    • OSP.RNG: 3
    • OSP.TOE_IDENTIFICATION: 3
    • OSP.VERIFICATION: 3
  • OT:
    • OT.X: 1
  • R:
    • R.JAVA: 13
  • T:
    • T.CONFID-APPLI-DATA: 3
    • T.CONFID-JCS-CODE: 3
    • T.CONFID-JCS-DATA: 3
    • T.CONFID-OS-UPDATE_LOAD: 3
    • T.DELETION: 3
    • T.EXE-CODE: 6
    • T.FAKE-SGNVER-KEY: 3
    • T.INSTALL: 3
    • T.INTEG-APPLI-CODE: 6
    • T.INTEG-APPLI-DATA: 6
    • T.INTEG-JCS-CODE: 3
    • T.INTEG-JCS-DATA: 3
    • T.INTEG-OS-UPDATE_LOAD: 3
    • T.NATIVE: 3
    • T.OBJ-DELETION: 3
    • T.PHYSICAL: 3
    • T.RESOURCES: 3
    • T.SID: 6
    • T.UNAUTHORIZED_TOE_CODE_UPDATE: 3
    • T.WRONG-UPDATE-STATE: 3
pdf_data/st_keywords/vendor
  • Gemalto:
    • Gemalto: 1
  • Thales:
    • Thales: 46
pdf_data/st_keywords/eval_facility
  • EWA:
    • EWA-Canada: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 19
      • AES-128: 1
      • AES-256: 1
  • DES:
    • 3DES:
      • Triple-DES: 8
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 23
      • HMAC-SHA-256: 3
  • AES_competition:
    • AES:
      • AES: 28
      • AES-256: 2
  • DES:
    • 3DES:
      • 3DES: 2
      • TDEA: 1
      • TDES: 12
      • Triple-DES: 3
    • DES:
      • DES: 20
  • constructions:
    • MAC:
      • CMAC: 3
      • HMAC: 3
      • KMAC: 3
pdf_data/st_keywords/asymmetric_crypto
  • FF:
    • DH:
      • DH: 3
      • Diffie-Hellman: 4
  • ECC:
    • ECC:
      • ECC: 12
    • ECDH:
      • ECDH: 8
    • ECDSA:
      • ECDSA: 4
  • FF:
    • DH:
      • DH: 14
      • Diffie-Hellman: 5
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 19
    • SHA2:
      • SHA-256: 24
      • SHA256: 12
  • SHA:
    • SHA1:
      • SHA-1: 4
      • SHA1: 2
    • SHA2:
      • SHA-224: 1
      • SHA-256: 2
      • SHA-384: 1
      • SHA-512: 2
      • SHA2: 1
      • SHA224: 1
    • SHA3:
      • SHA3: 2
      • SHA3-384: 1
      • SHA3-512: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • MAC:
    • MAC: 3
  • KA:
    • Key Agreement: 6
    • Key agreement: 2
  • MAC:
    • MAC: 14
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 2
  • TLS:
    • SSL:
      • SSL: 1
      • SSL 1.0: 1
      • SSL 2.0: 2
      • SSL 3.0: 2
    • TLS:
      • TLS: 76
      • TLS 1.0: 2
      • TLS 1.1: 6
      • TLS 1.2: 7
  • PACE:
    • PACE: 155
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 10
  • RNG:
    • RBG: 3
  • TRNG:
    • TRNG: 1
  • PRNG:
    • PRNG: 1
  • RNG:
    • RND: 1
    • RNG: 43
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 20
  • CBC:
    • CBC: 3
  • ECB:
    • ECB: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • secp256r1: 1
    • secp384r1: 1
    • secp521r1: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 5
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 5
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 2
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_RSA_WITH_AES_128_CBC_SHA: 5
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_RSA_WITH_AES_256_CBC_SHA: 5
    • TLS_RSA_WITH_AES_256_CBC_SHA256: 1
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 6
    • Physical Tampering: 3
    • fault induction: 2
    • malfunction: 9
    • physical tampering: 1
  • SCA:
    • DPA: 2
    • Leak-Inherent: 3
    • SPA: 1
    • physical probing: 7
    • timing attacks: 1
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 2
pdf_data/st_keywords/cplc_data
  • ICFab:
    • IC Fabricator: 1
  • ICType:
    • IC Type: 1
pdf_data/st_keywords/ic_data_group
  • EF:
    • EF.DG1: 4
    • EF.DG16: 4
    • EF.DG3: 1
    • EF.DG4: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2012-09-001: 1
    • CCMB-2012-09-002: 1
    • CCMB-2012-09-003: 1
  • FIPS:
    • FIPS PUB 186-4: 3
  • ISO:
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 1
  • NIST:
    • NIST SP 800-56B: 2
    • NIST SP 800-90: 1
    • SP 800-56B: 3
    • SP 800-90A: 1
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 2560: 1
    • RFC 2818: 3
    • RFC 2986: 2
    • RFC 3268: 16
    • RFC 4346: 4
    • RFC 4492: 8
    • RFC 5246: 20
    • RFC 5280: 7
    • RFC 5289: 12
    • RFC 5759: 1
    • RFC 6125: 2
  • X509:
    • X.509: 16
  • BSI:
    • AIS20: 1
    • AIS31: 6
    • BSI-AIS31: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 197: 1
    • FIPS180-4: 2
    • FIPS197: 5
    • FIPS202: 2
  • ICAO:
    • ICAO: 3
  • NIST:
    • SP 800-67: 1
  • PKCS:
    • PKCS#1: 7
    • PKCS#5: 5
  • SCP:
    • SCP01: 4
    • SCP02: 4
    • SCP03: 5
pdf_data/st_keywords/javacard_version
  • JavaCard:
    • Java Card 3.1: 8
pdf_data/st_keywords/javacard_api_const
  • misc:
    • TYPE_ACCESS: 7
pdf_data/st_keywords/javacard_packages
  • com:
    • com.gemalto.belpic: 1
    • com.gemalto.javacard.eid: 1
    • com.gemalto.javacard.fido.ctap: 1
    • com.gemalto.javacard.iasclassic: 1
    • com.gemalto.javacard.mspnp: 1
    • com.gemalto.javacardx.gdp: 1
    • com.gemalto.moc.client: 1
    • com.gemalto.moc.server: 1
    • com.gemalto.mpcos: 1
    • com.gemalto.puredi: 1
    • com.gemalto.tacho: 1
  • java:
    • java.lang: 1
  • javacard:
    • javacard.eid: 1
    • javacard.fido.ctap: 1
    • javacard.framework: 3
    • javacard.iasclassic: 1
    • javacard.mspnp: 1
  • javacardx:
    • javacardx.gdp: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • The DELETE and INSTALL APDU commands are out of scope of this SPM: 1
    • 1, are out of the scope of the SPM as they are linked to the applet loading or deletion that is out of scope of the SPM boundaries limited to VM opcodes The SFR FMT_MTD.3/JCRE is out of scope of the SPM: 1
    • Context, the Selected Applet Context, and the Active Applets Note: the Selected Applet context is out of scope of the VM functionalities. It is a process that occurs prior to VM start The initial setting of: 1
    • a timeout policy that prevent them from being blocked should a card fails to answer. That point is out of scope of this Security Target, though. Finally, the objectives O.SCP.RECOVERY and O.SCP.SUPPORT are: 1
    • and deletion; see #.DELETION and #.INSTALL). The DELETE and INSTALL APDU commands are out of scope of this SPM. The list of registred applets’ AIDs is proven to be not modified during the execution: 1
    • as a null reference. Such a mechanism is implementation-dependent. The deletion of applets is out of scope of this SPM scope. In the case of an array type, fields are components of the array ([JVM], §2.14: 1
    • because AID registry is created during loading phase, which is also out of scope of the SPM (Hypothesis 2 of the SPM document [MAV51_SPM]). MultiApp V5.1: JCS Security Target ST: 1
    • is also out of scope (Hypothesis 4 of the SPM document [MAV51_SPM]).. 3) S.CAP_FILE performing OP.ARRAY_AASTORE of the: 1
    • out of scope: 9
    • the active context is not the same as the Selected Applet Context. Application note: This rule is out of scope of the SPM modelisation because CLEAR_ON_DESELECT objects can be created exclusively in the API: 1
pdf_data/st_metadata
  • /Author: Teresa MacArthur
  • /Client Full Name: Fortinet Inc.
  • /Client Short Name: Fortinet
  • /Comments: CC V3.1 Security Target Template Version 1_0
  • /Company: EWA-Canada
  • /CreationDate: D:20171128143512-05'00'
  • /Creator: Acrobat PDFMaker 10.1 for Word
  • /Document Number: 1877-000-D102
  • /ModDate: D:20171128143523-05'00'
  • /Producer: Adobe PDF Library 10.0
  • /Product_Name: FortiWeb 5.6
  • /ST_Date: 28 November 2017
  • /ST_Version: 1.10
  • /SourceModified: D:20171128193030
  • /Title: Security Target
  • pdf_file_size_bytes: 600277
  • pdf_hyperlinks: https://support.fortinet.com/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 69
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different