| name |
SonicWALL SonicOS Enhanced v5.9.0 on NSA Series and TZ Series Appliances |
uCosminexus Application Server 07-00 |
| category |
Boundary Protection Devices and Systems |
Access Control Devices and Systems |
| scheme |
CA |
JP |
| status |
archived |
archived |
| not_valid_after |
02.07.2019 |
07.10.2013 |
| not_valid_before |
05.02.2014 |
22.03.2007 |
| cert_link |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-224%20cert%20v1.1e.doc |
|
| report_link |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-224%20CR%20v1.1e.pdf |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/c0086_ecvr.pdf |
| st_link |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-224%20ST%20v2.5.pdf |
|
| manufacturer |
SonicWALL, Inc |
Hitachi, Ltd. |
| manufacturer_web |
https://www.sonicwall.com/ |
https://www.hitachi.com/ |
| security_level |
{} |
EAL2+, ALC_FLR.1 |
| dgst |
39b571b9fbff67dd |
3a2713aa094e7f64 |
| heuristics/cert_id |
383-4-224 |
JISEC-CC-CRP-C0086 |
| heuristics/cert_lab |
CANADA |
[] |
| heuristics/cpe_matches |
cpe:2.3:o:sonicwall:sonicos:5.9.0.7:*:*:*:*:*:*:*, cpe:2.3:o:sonicwall:sonicos:5.9.0.0:*:*:*:*:*:*:* |
{} |
| heuristics/verified_cpe_matches |
{} |
{} |
| heuristics/related_cves |
CVE-2019-7479, CVE-2019-12259, CVE-2020-5140, CVE-2019-12255, CVE-2020-5143, CVE-2020-5135, CVE-2021-3450, CVE-2019-7475, CVE-2020-5142, CVE-2019-12257, CVE-2019-7474, CVE-2020-5139, CVE-2019-12261, CVE-2020-5138, CVE-2019-12260, CVE-2020-5134, CVE-2019-12263, CVE-2020-5137, CVE-2019-7477, CVE-2020-5130, CVE-2020-5141, CVE-2019-12256, CVE-2018-9867, CVE-2019-12258, CVE-2019-7487, CVE-2020-5136, CVE-2019-12265 |
{} |
| heuristics/direct_transitive_cves |
{} |
{} |
| heuristics/indirect_transitive_cves |
{} |
{} |
| heuristics/extracted_sars |
ADV_FSP.2, ASE_CCL.1, AGD_PRE.1, ATE_FUN.1, ATE_COV.1, ALC_FLR.2, ASE_SPD.1, ALC_CMC.1, AGD_OPE.1, ATE_IND.1, ASE_INT.1, ASE_ECD.1, ASE_OBJ.1, ALC_CMS.1, ASE_TSS.1, AVA_VAN.1, ASE_REQ.2, ADV_TDS.1 |
ALC_FLR.1 |
| heuristics/extracted_versions |
5.9.0 |
00, 07 |
| heuristics/prev_certificates |
{} |
{} |
| heuristics/next_certificates |
{} |
{} |
| heuristics/report_references/directly_referenced_by |
{} |
{} |
| heuristics/report_references/directly_referencing |
{} |
{} |
| heuristics/report_references/indirectly_referenced_by |
{} |
{} |
| heuristics/report_references/indirectly_referencing |
{} |
{} |
| heuristics/scheme_data |
|
- cert_id: JISEC-CC-CRP-C0234
- certification_date: 01.08.2009
- claim: EAL2+ ALC_FLR.1
- enhanced:
- assurance_level: EAL2 Augmented with ALC_FLR.1
- cc_version: 3.1
- description: PRODUCT DESCRIPTION Description of TOE TOE is a Web application server software product that is a J2EE(TM) (Java(TM) 2 Platform, Enterprise Edition)-compliant. TOE provides runtime and management environments. The product, that includes TOE, is mainly consist of Web container and EJB(TM) container that is Java 2 Platform, Enterprise Edition 1.4 compatible platform. And it also includes various software to execute and manage J2EE-compliant Java applications. It improves availability and reliability of the business application system, and provides several functions in order to manage business application system efficiently. TOE security functionality Security functions provided by TOE are as follows: - User identification and authentication This function uses user ID and password for user identification and authentication. - Access control This function provides access control for both Web and EJB container objects by using authenticated user information. - Security management This function manages information of user identification and authentication, access control information, and access control permitted to an application.
- evaluation_facility: Mizuho Information & Research Institute, Inc. Center for Evaluation of Information Security
- product: uCosminexus Application Server
- product_type: Application Server
- toe_version: 08-00
- vendor: Hitachi, Ltd.
- expiration_date: 01.08.2014
- supplier: Hitachi, Ltd.
- toe_japan_link: https://www.ipa.go.jp/en/security/jisec/software/certified-cert/c0234_it9250.html
- toe_japan_name: uCosminexus Application Server 08-00
- toe_overseas_link: None
- toe_overseas_name: -----
|
| heuristics/st_references/directly_referenced_by |
{} |
{} |
| heuristics/st_references/directly_referencing |
{} |
{} |
| heuristics/st_references/indirectly_referenced_by |
{} |
{} |
| heuristics/st_references/indirectly_referencing |
{} |
{} |
| heuristics/protection_profiles |
ac9abe3d5c5a31f0 |
{} |
| maintenance_updates |
|
|
| protection_profiles |
|
|
| protection_profile_links |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_nd_v1.1.pdf |
{} |
| pdf_data/cert_filename |
383-4-224 cert v1.1e.doc |
|
| pdf_data/cert_frontpage |
|
|
| pdf_data/cert_keywords/cc_cert_id |
|
|
| pdf_data/cert_keywords/cc_protection_profile_id |
|
|
| pdf_data/cert_keywords/cc_security_level |
|
|
| pdf_data/cert_keywords/cc_sar |
|
|
| pdf_data/cert_keywords/cc_sfr |
|
|
| pdf_data/cert_keywords/cc_claims |
|
|
| pdf_data/cert_keywords/vendor |
|
|
| pdf_data/cert_keywords/eval_facility |
|
|
| pdf_data/cert_keywords/symmetric_crypto |
|
|
| pdf_data/cert_keywords/asymmetric_crypto |
|
|
| pdf_data/cert_keywords/pq_crypto |
|
|
| pdf_data/cert_keywords/hash_function |
|
|
| pdf_data/cert_keywords/crypto_scheme |
|
|
| pdf_data/cert_keywords/crypto_protocol |
|
|
| pdf_data/cert_keywords/randomness |
|
|
| pdf_data/cert_keywords/cipher_mode |
|
|
| pdf_data/cert_keywords/ecc_curve |
|
|
| pdf_data/cert_keywords/crypto_engine |
|
|
| pdf_data/cert_keywords/tls_cipher_suite |
|
|
| pdf_data/cert_keywords/crypto_library |
|
|
| pdf_data/cert_keywords/vulnerability |
|
|
| pdf_data/cert_keywords/side_channel_analysis |
|
|
| pdf_data/cert_keywords/technical_report_id |
|
|
| pdf_data/cert_keywords/device_model |
|
|
| pdf_data/cert_keywords/tee_name |
|
|
| pdf_data/cert_keywords/os_name |
|
|
| pdf_data/cert_keywords/cplc_data |
|
|
| pdf_data/cert_keywords/ic_data_group |
|
|
| pdf_data/cert_keywords/standard_id |
|
|
| pdf_data/cert_keywords/javacard_version |
|
|
| pdf_data/cert_keywords/javacard_api_const |
|
|
| pdf_data/cert_keywords/javacard_packages |
|
|
| pdf_data/cert_keywords/certification_process |
|
|
| pdf_data/cert_metadata |
|
|
| pdf_data/report_filename |
383-4-224 CR v1.1e.pdf |
c0086_ecvr.pdf |
| pdf_data/report_frontpage |
- CA:
- cert_id: 383-4-224-CR
- cert_lab: CANADA
|
|
| pdf_data/report_keywords/cc_cert_id |
|
- JP:
- Certification No. C0086: 1
|
| pdf_data/report_keywords/cc_protection_profile_id |
|
|
| pdf_data/report_keywords/cc_security_level |
|
|
| pdf_data/report_keywords/cc_sar |
|
|
| pdf_data/report_keywords/cc_sfr |
- FAU:
- FCS:
- FCS_CKM_EXT.4: 1
- FCS_RBG_EXT.1: 1
- FCS_TLS_EXT.1: 1
- FIA:
- FIA_PMG_EXT.1: 1
- FIA_UAU_EXT.2: 1
- FIA_UIA_EXT.1: 1
- FPT:
- FPT_APW_EXT.1: 1
- FPT_SKP_EXT.1: 1
- FPT_TST_EXT.1: 1
- FPT_TUD_EXT.1: 1
- FTA:
|
|
| pdf_data/report_keywords/cc_claims |
|
|
| pdf_data/report_keywords/vendor |
|
|
| pdf_data/report_keywords/eval_facility |
|
|
| pdf_data/report_keywords/symmetric_crypto |
- AES_competition:
- constructions:
|
|
| pdf_data/report_keywords/asymmetric_crypto |
|
|
| pdf_data/report_keywords/pq_crypto |
|
|
| pdf_data/report_keywords/hash_function |
|
|
| pdf_data/report_keywords/crypto_scheme |
|
|
| pdf_data/report_keywords/crypto_protocol |
|
|
| pdf_data/report_keywords/randomness |
|
|
| pdf_data/report_keywords/cipher_mode |
|
|
| pdf_data/report_keywords/ecc_curve |
|
|
| pdf_data/report_keywords/crypto_engine |
|
|
| pdf_data/report_keywords/tls_cipher_suite |
|
|
| pdf_data/report_keywords/crypto_library |
|
|
| pdf_data/report_keywords/vulnerability |
|
|
| pdf_data/report_keywords/side_channel_analysis |
|
|
| pdf_data/report_keywords/technical_report_id |
|
|
| pdf_data/report_keywords/device_model |
|
|
| pdf_data/report_keywords/tee_name |
|
|
| pdf_data/report_keywords/os_name |
|
|
| pdf_data/report_keywords/cplc_data |
|
|
| pdf_data/report_keywords/ic_data_group |
|
|
| pdf_data/report_keywords/standard_id |
- FIPS:
- FIPS 140-2: 1
- FIPS 180-3: 1
- FIPS 186-3: 1
- FIPS 197: 1
- FIPS 198: 1
- ISO:
|
|
| pdf_data/report_keywords/javacard_version |
|
|
| pdf_data/report_keywords/javacard_api_const |
|
|
| pdf_data/report_keywords/javacard_packages |
|
|
| pdf_data/report_keywords/certification_process |
|
|
| pdf_data/report_metadata |
- /Author: krshann
- /CCEF: EWA-Canada
- /CR date: 2 July 2014
- /CR version: 1.1
- /Certificate date: 5 February 2014
- /Company: CSEC-CSTC
- /CreationDate: D:20140702143223-04'00'
- /Creator: Acrobat PDFMaker 9.0 for Word
- /Developer name: Dell SonicWALL, Inc.
- /Document number: 383-4-224-CR
- /ETR title, version, date: Evaluation Technical Report for SonicOS Enhanced v5.9.0 on NSA Series and TZ Series Applances
- /Evaluation completion date: 28 November 2013
- /ModDate: D:20140702143225-04'00'
- /Producer: Adobe PDF Library 9.0
- /ST Title: SonicWall SonicOS Enhanced v5.9.0 on NSA Series and TZ Series Appliances Security Target
- /ST date: 27 June 2014
- /ST version: 2.5
- /SourceModified: D:20140702183059
- /Sponsor: Dell SonicWALL, Inc.
- /TOE Version: 5.9.0
- /TOE name and version: SonicWALL SonicOS Enhanced v5.9.0 on NSA Series and TZ Series Appliances
- /TOE short name: SonicOS 5.9.0
- /Title: EAL 2 Evaluation of <TOE name and version>
- pdf_file_size_bytes: 106675
- pdf_hyperlinks: {}
- pdf_is_encrypted: False
- pdf_number_of_pages: 15
|
- /CreationDate: D:20070323205213+09'00'
- /ModDate: D:20070323205213+09'00'
- /Producer: Acrobat Distiller 6.0 (Windows)
- /Title: untitled
- pdf_file_size_bytes: 13111
- pdf_hyperlinks: {}
- pdf_is_encrypted: False
- pdf_number_of_pages: 1
|
| pdf_data/st_filename |
383-4-224 ST v2.5.pdf |
|
| pdf_data/st_frontpage |
|
|
| pdf_data/st_keywords/cc_cert_id |
|
|
| pdf_data/st_keywords/cc_protection_profile_id |
|
|
| pdf_data/st_keywords/cc_security_level |
|
|
| pdf_data/st_keywords/cc_sar |
- ADV:
- ADV_FSP.2: 4
- ADV_TDS.1: 4
- AGD:
- AGD_OPE.1: 1
- AGD_PRE.1: 1
- ALC:
- ALC_CMC.1: 1
- ALC_CMS.1: 1
- ALC_FLR.2: 4
- ASE:
- ASE_CCL.1: 1
- ASE_ECD.1: 1
- ASE_INT.1: 1
- ASE_OBJ.1: 1
- ASE_REQ.1: 1
- ASE_REQ.2: 2
- ASE_SPD.1: 4
- ASE_TSS.1: 1
- ATE:
- ATE_COV.1: 4
- ATE_FUN.1: 4
- ATE_IND.1: 1
- AVA:
|
|
| pdf_data/st_keywords/cc_sfr |
- FAU:
- FAU_GEN: 11
- FAU_GEN.1: 11
- FAU_GEN.1.1: 1
- FAU_GEN.1.2: 1
- FAU_GEN.2: 7
- FAU_GEN.2.1: 1
- FAU_STG: 1
- FAU_STG.1: 1
- FAU_STG_EXT: 2
- FAU_STG_EXT.1: 13
- FAU_STG_EXT.1.1: 2
- FCS:
- FCS_CKM: 1
- FCS_CKM.1: 17
- FCS_CKM.1.1: 1
- FCS_CKM.4: 15
- FCS_CKM_EXT: 2
- FCS_CKM_EXT.4: 18
- FCS_CKM_EXT.4.1: 2
- FCS_COP.1: 58
- FCS_COP.1.1: 4
- FCS_RBG_EXT.1: 13
- FCS_RBG_EXT.1.1: 2
- FCS_RBG_EXT.1.2: 2
- FCS_TLS_EXT.1: 17
- FCS_TLS_EXT.1.1: 2
- FDP:
- FDP_ITC.1: 1
- FDP_ITC.2: 1
- FDP_RIP.2: 7
- FDP_RIP.2.1: 1
- FIA:
- FIA_PMG_EXT: 2
- FIA_PMG_EXT.1: 14
- FIA_PMG_EXT.1.1: 2
- FIA_SOS: 1
- FIA_UAU: 2
- FIA_UAU.1: 9
- FIA_UAU.5: 1
- FIA_UAU.7: 7
- FIA_UAU.7.1: 1
- FIA_UAU_EXT: 1
- FIA_UAU_EXT.2: 14
- FIA_UAU_EXT.2.1: 2
- FIA_UIA_EXT: 2
- FIA_UIA_EXT.1: 18
- FIA_UIA_EXT.1.1: 2
- FIA_UIA_EXT.1.2: 2
- FIA_UID: 1
- FIA_UID.1: 9
- FMT:
- FMT_MTD.1: 9
- FMT_MTD.1.1: 1
- FMT_SMF.1: 8
- FMT_SMF.1.1: 1
- FMT_SMR.1: 5
- FMT_SMR.2: 7
- FMT_SMR.2.1: 1
- FMT_SMR.2.2: 1
- FMT_SMR.2.3: 1
- FPT:
- FPT_APT_EXT.1.2: 1
- FPT_APW_EXT.1: 12
- FPT_APW_EXT.1.1: 2
- FPT_APW_EXT.1.2: 1
- FPT_ITT.1: 7
- FPT_ITT.1.1: 1
- FPT_SKP_EXT.1: 12
- FPT_SKP_EXT.1.1: 2
- FPT_STM.1: 9
- FPT_STM.1.1: 1
- FPT_TST: 1
- FPT_TST.1: 1
- FPT_TST_EXT: 1
- FPT_TST_EXT.1: 13
- FPT_TST_EXT.1.1: 2
- FPT_TUD_EXT.1: 9
- FPT_TUD_EXT.1.1: 2
- FPT_TUD_EXT.1.2: 2
- FPT_TUD_EXT.1.3: 2
- FTA:
- FTA_SSL.3: 7
- FTA_SSL.3.1: 1
- FTA_SSL.4: 7
- FTA_SSL.4.1: 1
- FTA_SSL_EXT: 1
- FTA_SSL_EXT.1: 14
- FTA_SSL_EXT.1.1: 2
- FTA_TAB.1: 9
- FTA_TAB.1.1: 1
- FTP:
- FTP_ITC.1: 10
- FTP_ITC.1.1: 1
- FTP_ITC.1.2: 1
- FTP_ITC.1.3: 1
- FTP_TRP.1: 7
- FTP_TRP.1.1: 1
- FTP_TRP.1.2: 1
- FTP_TRP.1.3: 1
|
|
| pdf_data/st_keywords/cc_claims |
- A:
- A.NO_GENERAL_PURPOSE: 1
- A.PHYSICAL: 1
- A.TRUSTED_ADMIN: 1
- O:
- O.DISPLAY_BANNER: 2
- O.PROTECTED_COMMUNICATI: 2
- O.RESIDUAL_INFORMATION_C: 2
- O.SESSION_LOCK: 2
- O.SYSTEM_MONITORING: 2
- O.TOE_ADMINISTRATION: 2
- O.TSF_SELF_TEST: 2
- O.VERIFIABLE_UPDATES: 2
- OE:
- OE.NO_GENERAL_PURPOSE: 1
- OE.PHYSICAL: 1
- OE.TRUSTED_ADMIN: 1
- T:
- T.ADMIN_ERROR: 1
- T.TSF_FAILURE: 1
- T.UNAUTHORIZED_ACCESS: 1
- T.UNAUTHORIZED_UPDATE: 1
- T.UNDETECTED_ACTIONS: 1
- T.USER_DATA_REUSE: 1
|
|
| pdf_data/st_keywords/vendor |
|
|
| pdf_data/st_keywords/eval_facility |
|
|
| pdf_data/st_keywords/symmetric_crypto |
- AES_competition:
- constructions:
|
|
| pdf_data/st_keywords/asymmetric_crypto |
|
|
| pdf_data/st_keywords/pq_crypto |
|
|
| pdf_data/st_keywords/hash_function |
|
|
| pdf_data/st_keywords/crypto_scheme |
|
|
| pdf_data/st_keywords/crypto_protocol |
- IKE:
- IKE: 15
- IKEv1: 9
- IKEv2: 2
- IPsec:
- SSH:
- TLS:
- SSL:
- TLS:
- TLS: 26
- TLS 1.0: 2
- TLS 1.1: 1
- TLS 1.2: 1
- VPN:
|
|
| pdf_data/st_keywords/randomness |
|
|
| pdf_data/st_keywords/cipher_mode |
|
|
| pdf_data/st_keywords/ecc_curve |
|
|
| pdf_data/st_keywords/crypto_engine |
|
|
| pdf_data/st_keywords/tls_cipher_suite |
- TLS:
- TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 3
- TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 1
- TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 1
- TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 1
- TLS_RSA_WITH_AES_128_CBC_SHA: 3
- TLS_RSA_WITH_AES_128_CBC_SHA256: 1
- TLS_RSA_WITH_AES_256_CBC_SHA: 1
|
|
| pdf_data/st_keywords/crypto_library |
|
|
| pdf_data/st_keywords/vulnerability |
|
|
| pdf_data/st_keywords/side_channel_analysis |
|
|
| pdf_data/st_keywords/technical_report_id |
|
|
| pdf_data/st_keywords/device_model |
|
|
| pdf_data/st_keywords/tee_name |
|
|
| pdf_data/st_keywords/os_name |
|
|
| pdf_data/st_keywords/cplc_data |
|
|
| pdf_data/st_keywords/ic_data_group |
|
|
| pdf_data/st_keywords/standard_id |
- FIPS:
- FIPS 140-2: 4
- FIPS 201: 1
- FIPS PUB 186-2: 1
- FIPS PUB 186-3: 2
- FIPS PUB 197: 2
- FIPS1: 1
- NIST:
- NIST SP 800-38A: 2
- NIST SP 800-56B: 1
- NIST SP 800-90: 1
- RFC:
- RFC 2246: 2
- RFC 2818: 2
- RFC 3602: 2
- RFC 4106: 1
- RFC 4109: 1
- RFC 4303: 2
- RFC 4346: 1
- RFC 4868: 2
- RFC 5246: 1
- RFC8: 1
|
|
| pdf_data/st_keywords/javacard_version |
|
|
| pdf_data/st_keywords/javacard_api_const |
|
|
| pdf_data/st_keywords/javacard_packages |
|
|
| pdf_data/st_keywords/certification_process |
|
|
| pdf_data/st_metadata |
- /Author: File/Properties/Summary/Author
- /CreationDate: D:20140627091517-04'00'
- /Creator: Microsoft® Office Word 2007
- /ModDate: D:20140627091517-04'00'
- /Producer: Microsoft® Office Word 2007
- /Subject: SonicOS Enhanced v5.9.0 on NSA Series and TZ Series Appliances
- /Title: Security Target
- pdf_file_size_bytes: 1553739
- pdf_hyperlinks: http://en.wikipedia.org/wiki/Thermal_noise, mailto:[email protected], http://en.wikipedia.org/wiki/Random_number, http://www.all-acronyms.com/DRBG/Deterministic_Random_Bit_Generator/1273417, http://en.wikipedia.org/wiki/Transducer, http://en.wikipedia.org/wiki/Analog_to_digital_converter, http://en.wikipedia.org/wiki/Amplifier, https://www.mysonicwall.com/, http://en.wikipedia.org/wiki/Quantum, http://www.corsec.com/, http://en.wikipedia.org/wiki/Photoelectric_effect, http://www.sonicwall.com/
- pdf_is_encrypted: False
- pdf_number_of_pages: 71
|
|
| state/cert/convert_garbage |
None |
None |
| state/cert/convert_ok |
False |
False |
| state/cert/download_ok |
True |
False |
| state/cert/extract_ok |
False |
False |
| state/cert/pdf_hash |
Different |
Different |
| state/cert/txt_hash |
Equal |
Equal |
| state/report/convert_garbage |
None |
None |
| state/report/convert_ok |
True |
True |
| state/report/download_ok |
True |
True |
| state/report/extract_ok |
True |
True |
| state/report/pdf_hash |
Different |
Different |
| state/report/txt_hash |
Different |
Different |
| state/st/convert_garbage |
None |
None |
| state/st/convert_ok |
True |
False |
| state/st/download_ok |
True |
False |
| state/st/extract_ok |
True |
False |
| state/st/pdf_hash |
Different |
Different |
| state/st/txt_hash |
Different |
Different |