Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
genuscreen 4.0
BSI-DSZ-CC-0823-2014
TCOS Smart Meter Security Module Version 1.0 Release 1/P60C144PVA
BSI-DSZ-CC-0957-V2-2016
name genuscreen 4.0 TCOS Smart Meter Security Module Version 1.0 Release 1/P60C144PVA
category Boundary Protection Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
status archived active
not_valid_after 30.10.2019 18.11.2026
not_valid_before 29.10.2014 18.11.2016
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0823a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0957V2a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0823b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0957V2b_pdf.pdf
manufacturer GeNUA mbH T-Systems International GMBH
manufacturer_web https://www.genua.de/ https://www.t-systems.de/
security_level ASE_TSS.2, AVA_VAN.4, ALC_FLR.2, EAL4+ EAL4+, AVA_VAN.5
dgst 4577a1ed977931d9 6c674f76d69001ee
heuristics/cert_id BSI-DSZ-CC-0823-2014 BSI-DSZ-CC-0957-V2-2016
heuristics/extracted_sars ASE_INT.1, ALC_CMC.4, ASE_ECD.1, APE_ECD.1, ADV_IMP.1, ATE_COV.2, ALC_TAT.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, APE_REQ.2, ADV_ARC.1, ASE_OBJ.2, APE_CCL.1, ADV_TDS.3, ATE_DPT.1, ALC_FLR.2, ASE_TSS.2, ASE_REQ.2, ALC_DVS.1, ADV_INT.3, APE_INT.1, APE_SPD.1, ADV_FSP.4, ATE_IND.2, APE_OBJ.2, AVA_VAN.4, ADV_TAT.1, ASE_CCL.1, ADV_SPM.1 ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, APE_ECD.1, ATE_COV.2, ALC_FLR.1, ALC_TAT.1, ASE_SPD.1, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_IND.3, ATE_FUN.1, APE_REQ.2, ADV_ARC.1, ASE_OBJ.2, APE_CCL.1, ADV_TDS.3, ATE_DPT.1, ASE_TSS.2, ASE_REQ.2, ALC_DVS.1, ADV_INT.3, APE_INT.1, APE_SPD.1, ADV_FSP.4, APE_OBJ.2, ASE_CCL.1, ADV_SPM.1
heuristics/extracted_versions 4.0 1.0
heuristics/report_references/directly_referenced_by BSI-DSZ-CC-0966-2015 BSI-DSZ-CC-0918-V6-2024, BSI-DSZ-CC-0831, BSI-DSZ-CC-0919-V3-2023, BSI-DSZ-CC-0831-V3-2021, BSI-DSZ-CC-0918-V5-2023, BSI-DSZ-CC-0831-V2-2020, BSI-DSZ-CC-0919-V2-2021, BSI-DSZ-CC-0831-V8-2024, BSI-DSZ-CC-0831-V7-2023, BSI-DSZ-CC-0831-V4-2021, BSI-DSZ-CC-0831-V6-2023, BSI-DSZ-CC-0918-V4-2022, BSI-DSZ-CC-1035-2017, BSI-DSZ-CC-0831-V9-2024, BSI-DSZ-CC-0831-V5-2022
heuristics/report_references/directly_referencing BSI-DSZ-CC-0565-2009 BSI-DSZ-CC-0957-2015, BSI-DSZ-CC-0978-2016
heuristics/report_references/indirectly_referenced_by BSI-DSZ-CC-0966-2015 BSI-DSZ-CC-0918-V6-2024, BSI-DSZ-CC-0831, BSI-DSZ-CC-0919-V3-2023, BSI-DSZ-CC-0831-V3-2021, BSI-DSZ-CC-0831-V2-2020, BSI-DSZ-CC-0919-V2-2021, BSI-DSZ-CC-0831-V8-2024, BSI-DSZ-CC-0831-V5-2022, BSI-DSZ-CC-0831-V7-2023, BSI-DSZ-CC-0831-V4-2021, BSI-DSZ-CC-0831-V6-2023, BSI-DSZ-CC-0918-V4-2022, BSI-DSZ-CC-0918-V7-2025, BSI-DSZ-CC-1035-2017, BSI-DSZ-CC-0831-V9-2024, BSI-DSZ-CC-0918-V5-2023
heuristics/report_references/indirectly_referencing BSI-DSZ-CC-0382-2007, BSI-DSZ-CC-0565-2009 BSI-DSZ-CC-0845-2012, BSI-DSZ-CC-0978-2016, BSI-DSZ-CC-0845-V2-2013, BSI-DSZ-CC-0666-2012, BSI-DSZ-CC-0957-2015
heuristics/scheme_data
  • category: Intelligent measuring systems
  • cert_id: BSI-DSZ-CC-0957-V2-2016
  • certification_date: 18.11.2016
  • enhanced:
    • applicant: Deutsche Telekom Security GmbH Untere Industriestraße 20 57250 Netphen
    • assurance_level: EAL4+,AVA_VAN.5
    • certification_date: 18.11.2016
    • description: The Target of Evaluation (TOE) is the product TCOS Smart Meter Security Module Version 1.0 Release 1/P60C144PVA developed by T-Systems International GmbH. The TOE is a Smart Meter Security Module according to the Technical Guideline BSI TR-03109-2, Version 1.1 intended to be used by a Smart Meter Gateway in a Smart Metering System. The TOE serves as cryptographic service provider for the Smart Meter Gateway and supports the Smart Meter Gateway for its specific cryptographic needs. These cryptographic services cover the following issues: Digital Signature Generation, Digital Signature Verification, Key Agreement for TLS, Key Agreement for Content Data Encryption, Key Pair Generation, Random Number Generation, Component Authentication via the PACE Protocol with Negotiation of Session Keys, Secure Messaging, and Secure Storage of Key Material and further data relevant for the Gateway.
    • entries: [frozendict({'id': 'BSI-DSZ-CC-0957-V2-2016-RA-01 (Ausstellungsdatum / Certification Date 27.09.2021)', 'description': 'Re-Assessment'}), frozendict({'id': 'BSI-DSZ-CC-0957-V2-2016 (Ausstellungsdatum / Certification Date 18.11.2016, gültig bis / valid until 17.11.2026)', 'description': 'TCOS Smart Meter Security Module Version 1.0 Release 2/P60C144PVE'}), frozendict({'id': 'BSI-DSZ-CC-0957-2015 (Ausstellungsdatum / Certification Date 09.02.2015, gültig bis / valid until 09.02.2025)', 'description': 'Security Target'})]
    • evaluation_facility: SRC Security Research & Consulting GmbH
    • expiration_date: 17.11.2026
    • product: TCOS Smart Meter Security Module Version 1.0 Release 2/P60C144PVE
    • protection_profile: Protection Profile for the Security Module of a Smart Meter Gateway (Security Module PP) - Schutzprofil für das Sicherheitsmodul der Kommunikationseinheit eines intelligenten Messsystems für Stoff- und Energiemengen Version 1.03, 11 December 2014, BSI-CC-PP-0077-V2-2015
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte09/0957V2a_pdf.pdf?__blob=publicationFile&v=1
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte09/0957V2b_pdf.pdf?__blob=publicationFile&v=1
  • product: TCOS Smart Meter Security Module Version 1.0 Release 2/P60C144PVE
  • subcategory: Security module for an Smart Metering Gateway
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Smartmeter_Sicherheitsmodule/0957_0957V2_0957V2RA1.html
  • vendor: Deutsche Telekom Security GmbH
heuristics/st_references/directly_referenced_by {} BSI-DSZ-CC-0918-V6-2024, BSI-DSZ-CC-0919-V3-2023, BSI-DSZ-CC-0822-V6-2024, BSI-DSZ-CC-0918-2020, BSI-DSZ-CC-0918-V2-2021, BSI-DSZ-CC-0822-V4-2023, BSI-DSZ-CC-0918-V3-2022, BSI-DSZ-CC-0822-V5-2023, BSI-DSZ-CC-0918-V4-2022, BSI-DSZ-CC-0918-V7-2025, BSI-DSZ-CC-0919-V2-2021, BSI-DSZ-CC-0918-V5-2023
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-0978-2016
heuristics/st_references/indirectly_referenced_by {} BSI-DSZ-CC-0918-V6-2024, BSI-DSZ-CC-0919-V3-2023, BSI-DSZ-CC-0822-V6-2024, BSI-DSZ-CC-0918-2020, BSI-DSZ-CC-0918-V2-2021, BSI-DSZ-CC-0822-V4-2023, BSI-DSZ-CC-0918-V3-2022, BSI-DSZ-CC-0822-V5-2023, BSI-DSZ-CC-0918-V4-2022, BSI-DSZ-CC-0918-V7-2025, BSI-DSZ-CC-0919-V2-2021, BSI-DSZ-CC-0918-V5-2023
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-0978-2016
heuristics/protection_profiles {} 15eda6dafddbf8ca
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0077V2b_pdf.pdf
pdf_data/report_filename 0823a_pdf.pdf 0957V2a_pdf.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ALC_FLR.2, ASE_TSS.2, AVA_VAN.4 SOGIS Recognition Agreement for components up to EAL 4
    • cc_version: Product specific Security Target Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-0823-2014
    • cert_item: genuscreen 4.0
    • cert_lab: BSI
    • developer: genua mbh
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by AVA_VAN.5
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-0957-V2-2016
    • cert_item: TCOS Smart Meter Security Module Version 1.0 Release 2/P60C144PVE
    • cert_lab: BSI
    • developer: T-Systems International GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Protection Profile for the Security Module of a Smart Meter Gateway (Security Module PP) - Schutzprofil für das Sicherheitsmodul der Kommunikationseinheit eines intelligenten Messsystems für Stoff- und Energiemengen Version 1.03, 11 December 2014, BSI-CC-PP-0077-V2-2015
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0565-2009: 3
    • BSI-DSZ-CC-0823: 1
    • BSI-DSZ-CC-0823-2014: 18
  • DE:
    • BSI-DSZ-CC-0957-2015: 3
    • BSI-DSZ-CC-0957-V2-2016: 24
    • BSI-DSZ-CC-0978: 2
    • BSI-DSZ-CC-0978-2016: 5
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0077-V2-2015: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 7
    • EAL 2: 4
    • EAL 3: 4
    • EAL 4: 17
    • EAL 4 augmented: 3
    • EAL 5: 9
    • EAL 5+: 1
    • EAL 6: 4
    • EAL 7: 4
  • ITSEC:
    • ITSEC Evaluation: 1
  • EAL:
    • EAL 1: 7
    • EAL 2: 4
    • EAL 3: 4
    • EAL 4: 13
    • EAL 4 augmented: 3
    • EAL 5: 10
    • EAL 5+: 1
    • EAL 6: 4
    • EAL 7: 4
  • ITSEC:
    • ITSEC Evaluation: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 1
    • ALC_CMC.3: 1
    • ALC_CMC.4: 1
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 1
    • ALC_CMS.3: 1
    • ALC_CMS.4: 1
    • ALC_CMS.5: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS: 1
    • ALC_DVS.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 3
    • ALC_FLR.1: 1
    • ALC_FLR.2: 6
    • ALC_FLR.3: 1
    • ALC_LCD.1: 1
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 1
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 1
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.1: 1
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 7
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_FUN.2: 1
    • ATE_IND: 1
    • ATE_IND.1: 1
    • ATE_IND.2: 1
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 7
    • AVA_VAN.5: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 1
    • ALC_CMC.3: 1
    • ALC_CMC.4: 2
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 1
    • ALC_CMS.3: 1
    • ALC_CMS.4: 2
    • ALC_CMS.5: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 2
    • ALC_DVS: 1
    • ALC_DVS.1: 2
    • ALC_DVS.2: 1
    • ALC_FLR: 3
    • ALC_FLR.1: 1
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
    • ALC_LCD.1: 2
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 2
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 1
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.1: 1
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_FUN.2: 1
    • ATE_IND: 1
    • ATE_IND.1: 1
    • ATE_IND.2: 1
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 1
    • AVA_VAN.5: 6
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 4
    • FCS_COP: 6
    • FCS_RNG.1: 1
  • FIA:
    • FIA_UAU.4: 1
    • FIA_UAU.5: 1
    • FIA_UID.1: 1
  • FTP:
    • FTP_ITC.1: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.ADMIN: 3
    • A.HANET: 3
    • A.INIT: 3
    • A.NOEVIL: 3
    • A.PHYSEC: 4
    • A.RANDOM: 4
    • A.SINGEN: 3
    • A.TIMESTMP: 2
  • OE:
    • OE.ADMIN: 1
    • OE.HANET: 1
    • OE.INIT: 1
    • OE.NOEVIL: 1
    • OE.PHYSEC: 1
    • OE.RANDOM: 1
    • OE.SINGEN: 1
    • OE.TIMESTMP: 1
pdf_data/report_keywords/vendor
  • NXP:
    • NXP: 11
    • NXP Semiconductors: 4
pdf_data/report_keywords/eval_facility
  • secuvera:
    • secuvera: 3
  • SRC:
    • SRC Security Research & Consulting: 3
  • TSystems:
    • T-Systems International: 13
  • TUV:
    • TÜV Informationstechnik: 1
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • constructions:
    • MAC:
      • HMAC: 1
  • AES_competition:
    • AES:
      • AES: 6
  • constructions:
    • MAC:
      • CMAC: 3
pdf_data/report_keywords/asymmetric_crypto
  • FF:
    • DH:
      • DH: 1
  • ECC:
    • ECC:
      • ECC: 3
    • ECDSA:
      • ECDSA: 6
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 2
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA1: 2
    • SHA2:
      • SHA256: 2
      • SHA512: 2
pdf_data/report_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 1
  • KA:
    • KA: 1
    • Key Agreement: 8
  • MAC:
    • MAC: 3
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 2
  • IPsec:
    • IPsec: 10
  • SSH:
    • SSH: 15
  • VPN:
    • VPN: 6
  • PACE:
    • PACE: 7
  • TLS:
    • TLS:
      • TLS: 6
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
  • RNG:
    • RNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
  • CBC:
    • CBC: 3
pdf_data/report_keywords/crypto_engine
  • SmartMX:
    • SmartMX2: 2
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • fault injection: 2
    • malfunction: 1
  • SCA:
    • side channel: 2
  • other:
    • JIL: 2
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7138: 2
    • BSI 7148: 1
    • BSI TR-02102: 1
  • BSI:
    • BSI 7148: 1
    • BSI TR-03109-2: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 32: 1
    • AIS 34: 1
    • AIS 38: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • BSI:
    • AIS 1: 1
    • AIS 20: 3
    • AIS 25: 1
    • AIS 26: 3
    • AIS 31: 1
    • AIS 32: 1
    • AIS 34: 2
    • AIS 36: 5
    • AIS 46: 1
  • FIPS:
    • FIPS 180-2: 2
    • FIPS 186: 5
    • FIPS 197: 2
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • RFC:
    • RFC 5639: 5
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Evaluation Technical Report BSI-DSZ-CC-0823 for genuscreen 4.0 from genua mbH of secuvera GmbH (confidential document) [8] Guidance documentation for the TOE, genucenter Installations- und Konfigurationshandbuch: 1
  • OutOfScope:
    • The genucenter must be operated on real hardware. Running the genucenter in a virtual machine is out of scope for this TOE. The Security Target [6] is the basis for this certification. It is not based on a: 1
    • or Mobile Clients, L2TP VPN, LDAP Authentication, Dynamic Routing, and virtual genucenter are out of scope of the evaluated configuration. In general, all information contained in the Security Target [6: 1
    • out of scope: 2
  • ConfidentialDocument:
    • 1.0 Release 2/P60C144PVE, Version 1.2, 27 October 2016, SRC Security Research & Consulting GmbH (confidential document) 9 specifically • AIS 1, Version 13, Durchführung der Ortsbesichtigung in der Entwicklungsumgebung: 1
    • Version 1.0 Release 2/P60C144PVE, Version 1.3, 25 October 2016, T-Systems International GmbH (confidential document) [10] Guidance Documentation BSI-DSZ-CC-0957-V2-2016, Operational Guidance for users and: 1
    • Y/B/X)/yVE, BSI-DSZ-CC-0978, Version 2, 17 December 2015, TÜV Informationstechnik GmbH (confidential document) [14] Product Data Sheet, SmartMX2 family P60x080/144 VA/VE, Secure high performance smart card: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
pdf_data/st_filename 0823b_pdf.pdf 0957V2b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0978: 1
    • BSI-DSZ-CC-0978-2016: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0035-2007: 1
    • BSI-CC-PP-0073-2014: 1
    • BSI-CC-PP-0077-V2-2015: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 3
    • EAL4 augmented: 1
  • EAL:
    • EAL 4: 5
    • EAL 6: 1
    • EAL 6 augmented: 1
    • EAL 6+: 1
    • EAL4: 4
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 4
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 2
    • ADV_FSP.4: 2
    • ADV_IMP: 1
    • ADV_IMP.1: 3
    • ADV_INT: 2
    • ADV_SPM: 2
    • ADV_TAT.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 2
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 3
    • AGD_PRE: 1
    • AGD_PRE.1: 3
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.4: 1
    • ALC_CMS: 1
    • ALC_CMS.4: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS: 1
    • ALC_DVS.1: 2
    • ALC_FLR: 1
    • ALC_FLR.2: 3
    • ALC_LCD: 1
    • ALC_LCD.1: 2
    • ALC_TAT: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 3
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.2: 1
    • ASE_REQ: 1
    • ASE_REQ.1: 2
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.2: 4
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 2
    • ATE_FUN: 1
    • ATE_FUN.1: 4
    • ATE_IND: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.4: 4
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 3
    • ADV_TDS: 2
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 3
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 3
    • ALC_DVS.1: 1
    • ALC_FLR.1: 2
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_TSS.2: 2
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
  • AVA:
    • AVA_VAN.5: 10
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 20
    • FAU_GEN.1: 5
    • FAU_GEN.2: 1
    • FAU_SAR: 12
    • FAU_SAR.1: 3
    • FAU_SAR.3: 1
  • FCS:
    • FCS_CKM: 143
    • FCS_CKM.1: 29
    • FCS_CKM.4: 31
    • FCS_COP: 100
    • FCS_COP.1: 29
  • FDP:
    • FDP_IFC: 53
    • FDP_IFC.1: 33
    • FDP_IFF: 43
    • FDP_IFF.1: 37
    • FDP_ITT: 32
    • FDP_ITT.1: 4
  • FIA:
    • FIA_ATD: 6
    • FIA_ATD.1: 1
    • FIA_SOS: 6
    • FIA_SOS.1: 1
    • FIA_UAU: 12
    • FIA_UAU.2: 1
    • FIA_UAU.6: 1
    • FIA_UID: 6
    • FIA_UID.1: 3
    • FIA_UID.2: 2
  • FMT:
    • FMT_IFC.2: 2
    • FMT_MOF: 6
    • FMT_MOF.1: 1
    • FMT_MSA: 166
    • FMT_MSA.1: 26
    • FMT_MSA.2: 4
    • FMT_MSA.3: 18
    • FMT_SMF: 49
    • FMT_SMF.1: 22
    • FMT_SMR: 8
    • FMT_SMR.1: 26
  • FPT:
    • FPT_ITT: 8
    • FPT_ITT.1: 3
    • FPT_STM.1: 3
    • FPT_TEE: 8
    • FPT_TEE.1: 2
    • FPT_TRC: 6
    • FPT_TRC.1: 1
    • FPT_TRC.1.1: 1
    • FPT_TRC.1.2: 1
  • FTP:
    • FTP_STM.1: 1
  • FAU:
    • FAU_SAS.1: 1
  • FCS:
    • FCS_CKM: 51
    • FCS_CKM.1: 16
    • FCS_CKM.2: 8
    • FCS_CKM.4: 45
    • FCS_CKM.4.1: 1
    • FCS_COP: 59
    • FCS_COP.1: 15
    • FCS_RNG: 6
    • FCS_RNG.1: 20
    • FCS_RNG.1.1: 2
    • FCS_RNG.1.2: 2
  • FDP:
    • FDP_ACC.1: 13
    • FDP_ACC.2: 17
    • FDP_ACC.2.1: 1
    • FDP_ACC.2.2: 1
    • FDP_ACF: 2
    • FDP_ACF.1: 9
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_ETC.1: 7
    • FDP_ETC.1.1: 1
    • FDP_ETC.1.2: 1
    • FDP_IFC: 1
    • FDP_IFC.1: 8
    • FDP_ITC: 8
    • FDP_ITC.1: 20
    • FDP_ITC.1.1: 1
    • FDP_ITC.1.2: 1
    • FDP_ITC.1.3: 1
    • FDP_ITC.2: 14
    • FDP_ITT.1: 1
    • FDP_RIP: 1
    • FDP_RIP.1: 7
    • FDP_RIP.1.1: 1
    • FDP_SDI: 1
    • FDP_SDI.1: 1
    • FDP_SDI.2: 8
    • FDP_SDI.2.1: 1
    • FDP_SDI.2.2: 1
    • FDP_UCT.1: 8
    • FDP_UIT: 1
    • FDP_UIT.1: 7
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_ATD.1: 10
    • FIA_ATD.1.1: 1
    • FIA_SOS: 1
    • FIA_SOS.1: 3
    • FIA_SOS.1.1: 1
    • FIA_UAU: 18
    • FIA_UAU.1: 5
    • FIA_UAU.4: 6
    • FIA_UAU.4.1: 1
    • FIA_UAU.5: 6
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UID: 1
    • FIA_UID.1: 14
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
    • FIA_USB: 1
    • FIA_USB.1: 6
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_LIM: 6
    • FMT_LIM.1: 25
    • FMT_LIM.1.1: 2
    • FMT_LIM.2: 23
    • FMT_LIM.2.1: 2
    • FMT_MSA.1: 2
    • FMT_MSA.3: 6
    • FMT_SMF.1: 10
    • FMT_SMF.1.1: 1
    • FMT_SMR: 1
    • FMT_SMR.1: 6
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_EMS: 6
    • FPT_EMS.1: 15
    • FPT_EMS.1.1: 2
    • FPT_EMS.1.2: 2
    • FPT_FLS: 1
    • FPT_FLS.1: 11
    • FPT_FLS.1.1: 1
    • FPT_ITT.1: 1
    • FPT_PHP: 1
    • FPT_PHP.3: 10
    • FPT_PHP.3.1: 1
    • FPT_TST: 1
    • FPT_TST.1: 7
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FRU:
    • FRU_FLT.2: 1
  • FTP:
    • FTP_ICT.1: 4
    • FTP_ITC: 1
    • FTP_ITC.1: 10
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 4
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN: 4
    • A.HANET: 5
    • A.INIT: 4
    • A.NOEVIL: 4
    • A.PHYSEC: 4
    • A.RANDOM: 4
    • A.SINGEN: 5
    • A.TIMESTMP: 4
  • O:
    • O.AUDREC: 5
    • O.AUTH: 12
    • O.AVAIL: 5
    • O.CONFID: 13
    • O.INTEG: 9
    • O.MEDIAT: 4
    • O.NOREPLAY: 13
    • O.RS: 11
  • OE:
    • OE.ADMIN: 2
    • OE.HANET: 5
    • OE.INIT: 7
    • OE.NOEVIL: 3
    • OE.PHYSEC: 4
    • OE.RANDOM: 3
    • OE.SINGEN: 4
    • OE.TIMESTMP: 5
  • T:
    • T.MEDIAT: 4
    • T.MMODIFY: 4
    • T.MODIFY: 4
    • T.MSNIFF: 4
    • T.NOAUTH: 4
    • T.SELPRO: 4
    • T.SNIFF: 4
  • O:
    • O.FW_HW: 1
    • O.HW_AES: 4
    • O.MEM_ACCESS: 3
    • O.PACE: 5
    • O.RND: 3
    • O.SFR_ACCESS: 3
  • OE:
    • OE.PACE: 1
  • OSP:
    • OSP.SM: 1
  • T:
    • T.RND: 1
pdf_data/st_keywords/vendor
  • NXP:
    • NXP: 2
    • NXP Semiconductors: 1
pdf_data/st_keywords/eval_facility
  • TSystems:
    • T-Systems International: 79
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 18
  • constructions:
    • MAC:
      • HMAC: 3
  • AES_competition:
    • AES:
      • AES: 16
  • DES:
    • 3DES:
      • TDES: 3
      • Triple-DES: 2
    • DES:
      • DES: 4
  • constructions:
    • MAC:
      • CMAC: 4
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 2
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 4
  • ECC:
    • ECC:
      • ECC: 11
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 19
  • FF:
    • DH:
      • DH: 13
      • Diffie-Hellman: 5
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA1: 1
    • SHA2:
      • SHA-256: 1
      • SHA256: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
  • KEX:
    • Key Exchange: 4
  • KA:
    • Key Agreement: 17
  • MAC:
    • MAC: 2
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 90
    • IKEv1: 3
  • IPsec:
    • IPsec: 34
  • SSH:
    • SSH: 136
  • VPN:
    • VPN: 17
  • PACE:
    • PACE: 66
  • TLS:
    • TLS:
      • TLS: 28
pdf_data/st_keywords/randomness
  • RNG:
    • RND: 4
    • RNG: 8
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • CTR:
    • CTR: 7
  • CBC:
    • CBC: 4
pdf_data/st_keywords/ecc_curve
  • NIST:
    • secp256r1: 1
  • Brainpool:
    • brainpoolP256r1: 2
    • brainpoolP384r1: 2
    • brainpoolP512r1: 2
  • NIST:
    • NIST P-256: 1
    • NIST P-384: 1
    • P-256: 11
    • P-384: 15
    • secp256r1: 1
    • secp384r1: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 1
    • Malfunction: 12
    • Physical tampering: 1
    • fault injection: 1
    • malfunction: 3
    • physical tampering: 5
  • SCA:
    • DPA: 2
    • Leak-Inherent: 4
    • Physical Probing: 2
    • SPA: 2
    • physical probing: 2
    • side channel: 1
    • side channels: 1
    • side-channels: 1
    • timing attacks: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-03109: 1
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS20: 4
    • AIS31: 4
  • FIPS:
    • FIPS180-4: 2
  • PKCS:
    • PKCS #1: 7
    • PKCS#1: 6
  • RFC:
    • RFC2104: 7
    • RFC2409: 9
    • RFC2460: 2
    • RFC2617: 1
    • RFC2965: 1
    • RFC3502: 1
    • RFC3526: 5
    • RFC3602: 1
    • RFC4253: 6
    • RFC4301: 1
    • RFC4344: 1
    • RFC4418: 7
    • RFC4432: 1
    • RFC5656: 7
  • BSI:
    • AIS 36: 1
    • AIS36: 3
  • CC:
    • CCMB-2012-09-001: 1
    • CCMB-2012-09-002: 1
    • CCMB-2012-09-003: 2
    • CCMB-2012-09-004: 2
  • FIPS:
    • FIPS PUB 186-4: 1
    • FIPS186: 10
    • FIPS197: 3
  • ISO:
    • ISO/IEC 7810:2003: 1
  • RFC:
    • RFC 5639: 1
    • RFC5639: 11
  • X509:
    • X.509: 2
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 1.4.8.7 Dynamic Routing The dynamic routing feature which uses OSPF only works with IPv4 and is out of scope for this TOE. 1.4.8.8 No virtual genucenter The genucenter must be operated on real hardware: 1
    • out of scope: 4
    • the genucenter in a virtual machine is out of scope for this TOE. 1.4.9 Physical Scope The physical scope of TOE consists only of software and: 1
    • to perform cryptographic operations for IPsec operations. However, usage of the cryptocard is out of scope for this TOE. 1.4.8.2 No USB update The management system genucenter can write configuration: 1
    • when the USB stick is plug into the firewall component. However, usage of the USB update is out of scope for this TOE. 1.4.8.3 No FTP and SIP Relays The product allows the configuration of FTP and SIP: 1
  • OutOfScope:
    • entities. 72 As these external entities only indirectly interact with the TOE, these entities are out of scope for this ST. 73 During its pre-operational phases the TOE interacts with the Integrator and the: 1
    • out of scope: 1
pdf_data/st_metadata
  • /Author: Roland Meister
  • /CreationDate: D:20141023133113+02'00'
  • /Creator: Writer
  • /Keywords: CC 3.1
  • /Producer: LibreOffice 4.1
  • /Subject: Common Criteria
  • /Title: genucreen 4.0 Security Target
  • pdf_file_size_bytes: 657632
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 72
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different