Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Microsoft SQL Server 2014 Database Engine Enterprise Edition x64
BSI-DSZ-CC-0929-2015
Citrix XenApp 7.6 Platinum Edition
CRP282
name Microsoft SQL Server 2014 Database Engine Enterprise Edition x64 Citrix XenApp 7.6 Platinum Edition
category Databases Access Control Devices and Systems
scheme DE UK
not_valid_after 15.12.2020 19.03.2020
not_valid_before 15.12.2015 19.03.2015
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0929a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CRP282%20v1.0%20Final%20(NWA).pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0929b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/XenApp7-STv1-0.pdf
manufacturer Microsoft Corporation Citrix Systems, Inc.
manufacturer_web https://www.microsoft.com https://www.citrix.com
security_level EAL4+, ALC_FLR.2 EAL2+, ALC_FLR.2
dgst 45998fa7693b3f24 e08ca8a23de835ba
heuristics/cert_id BSI-DSZ-CC-0929-2015 CRP282
heuristics/cert_lab BSI []
heuristics/cpe_matches {} cpe:2.3:a:citrix:xenapp:7.6:*:*:*:*:*:*:*
heuristics/related_cves {} CVE-2016-4810
heuristics/direct_transitive_cves {} CVE-2014-4700, CVE-2016-6493, CVE-2016-4810
heuristics/indirect_transitive_cves {} CVE-2014-4700, CVE-2016-6493, CVE-2016-4810
heuristics/extracted_sars ADV_TDS.3, AVA_VAN.3, ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMC.5, ASE_INT.1, APE_ECD.1, ASE_REQ.2, ATE_DPT.4, ADV_IMP.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, APE_OBJ.2, ALC_TAT.3, ADV_FSP.4, ALC_DVS.2, ALC_FLR.2, ASE_SPD.1, APE_INT.1, ATE_COV.2, ADV_INT.3, ALC_LCD.2, ASE_TSS.2, APE_CCL.1, AGD_OPE.1, ALC_CMS.4, APE_SPD.1, ALC_DEL.1, ADV_ARC.1, ADV_SPM.1, APE_REQ.2 ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ALC_FLR.2, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1
heuristics/extracted_versions 2014 7.6
heuristics/report_references/directly_referenced_by {} CRP281
heuristics/report_references/directly_referencing {} CRP257, CRP281
heuristics/report_references/indirectly_referenced_by {} CRP282, CRP281
heuristics/report_references/indirectly_referencing {} CRP282, CRP257, CRP281, CRP256, CRP271, CRP241
heuristics/protection_profiles 61018742063aaca9 {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_dbms_v1.3.pdf {}
pdf_data/report_filename 0929a_pdf.pdf CRP282 v1.0 Final (NWA).pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ALC_FLR.2 SOGIS Recognition Agreement
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-0929-2015
    • cert_item: Microsoft SQL Server 2014 Database Engine Enterprise Edition x64 (English) 12.0.4100.1
    • cert_lab: BSI
    • developer: Microsoft Corporation
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: U.S. Government Protection Profile for Database Management Systems, Version 1.3, 24 December 2010
  • DE:
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0929: 1
    • BSI-DSZ-CC-0929-2015: 19
  • UK:
    • CRP257: 3
    • CRP281: 3
    • CRP282: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 7
    • EAL 2: 4
    • EAL 3: 4
    • EAL 4: 11
    • EAL 4 augmented: 3
    • EAL 5: 6
    • EAL 6: 3
    • EAL 7: 4
    • EAL4+: 1
  • ITSEC:
    • ITSEC Evaluation: 1
  • EAL:
    • EAL1: 1
    • EAL2: 5
    • EAL2 augmented: 1
    • EAL7: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 1
    • ALC_CMC.3: 1
    • ALC_CMC.4: 1
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 1
    • ALC_CMS.3: 1
    • ALC_CMS.4: 1
    • ALC_CMS.5: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS: 1
    • ALC_DVS.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 3
    • ALC_FLR.1: 1
    • ALC_FLR.2: 5
    • ALC_FLR.3: 1
    • ALC_LCD.1: 1
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 1
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 1
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.1: 1
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_FUN.2: 1
    • ATE_IND: 1
    • ATE_IND.1: 1
    • ATE_IND.2: 1
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 1
    • AVA_VAN.5: 1
  • ALC:
    • ALC_FLR.2: 5
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 25
    • Microsoft Corporation: 8
  • Microsoft:
    • Microsoft: 27
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 2
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 11
  • MD:
    • MD5:
      • MD5: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
pdf_data/report_keywords/tee_name
  • IBM:
    • SE: 2
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 32: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • CC:
    • CCMB-2012-09-001: 1
    • CCMB-2012-09-002: 1
    • CCMB-2012-09-003: 1
    • CCMB-2012-09-004: 1
  • ISO:
    • ISO/IEC 17065:2012: 2
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Microsoft SQL Server 2014 Database Engine Enterprise Edition x64 (English) 12.0.4100.1, (confidential document) [8] U.S. Government Protection Profile for Database Management Systems; Version 1.3; 24 December: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
pdf_data/st_filename 0929b_pdf.pdf XenApp7-STv1-0.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0929: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 2
    • EAL 4 augmented: 1
    • EAL2: 1
    • EAL4: 1
    • EAL4 augmented: 1
    • EAL4+: 60
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 2
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 2
    • ADV_FSP.4: 1
    • ADV_TDS.3: 2
  • AGD:
    • AGD_ADD: 3
    • AGD_OPE.1: 4
    • AGD_PRE: 1
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 6
  • ATE:
    • ATE_COV.2: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 5
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 5
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 12
    • FAU_GEN.1: 2
    • FAU_GEN.2: 1
    • FAU_SAR.1: 5
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 4
    • FAU_SAR.2.1: 1
    • FAU_SAR.3: 6
    • FAU_SAR.3.1: 1
    • FAU_SEL: 9
    • FAU_SEL.1: 1
    • FAU_STG: 3
    • FAU_STG.1: 2
    • FAU_STG.3: 1
    • FAU_STG.4: 1
    • FAU_STG_EXP: 2
    • FAU_STG_EXP.5: 14
    • FAU_STG_EXP.5.1: 2
  • FDP:
    • FDP_ACC.1: 11
    • FDP_ACC.1.1: 1
    • FDP_ACF: 9
    • FDP_ACF.1: 5
    • FDP_IFC.1: 1
    • FDP_RIP.1: 7
    • FDP_RIP.1.1: 1
  • FIA:
    • FIA_ATD.1: 11
    • FIA_ATD.1.1: 2
    • FIA_UAU.2: 7
    • FIA_UAU.2.1: 1
    • FIA_UAU.5: 7
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UID.1: 11
    • FIA_UID.2: 11
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MOF.1: 7
    • FMT_MOF.1.1: 1
    • FMT_MSA.1: 8
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 4
    • FMT_MSA.3.2: 1
    • FMT_MTD.1: 8
    • FMT_MTD.1.1: 1
    • FMT_REV.1: 18
    • FMT_REV.1.1: 2
    • FMT_REV.1.2: 2
    • FMT_SMF.1: 8
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 14
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITT.1: 1
    • FPT_STM.1: 1
    • FPT_TRC.1.1: 1
    • FPT_TRC.1.2: 1
  • FTA:
    • FTA_MCS.1: 7
    • FTA_MCS.1.1: 1
    • FTA_MCS.1.2: 1
    • FTA_TSE.1: 7
    • FTA_TSE.1.1: 1
  • FCO:
    • FCO_SCO: 41
    • FCO_SCO.1: 21
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 21
    • FCS_ECA.1: 10
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 36
    • FDP_ACC.1: 8
    • FDP_ACF: 34
    • FDP_ACF.1: 15
    • FDP_IFC.1: 2
  • FIA:
    • FIA_ATD: 10
    • FIA_ATD.1: 1
    • FIA_UAU: 8
    • FIA_UAU.2: 1
    • FIA_UID: 10
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 10
    • FMT_MOF.1: 1
    • FMT_MSA: 61
    • FMT_MSA.1: 5
    • FMT_MSA.3: 9
    • FMT_SMF: 20
    • FMT_SMF.1: 5
    • FMT_SMR: 22
    • FMT_SMR.1: 8
pdf_data/st_keywords/cc_claims
  • A:
    • A.NO_EVIL: 3
    • A.NO_GENERAL_PURPOSE: 3
    • A.PHYSICAL: 3
  • O:
    • O.ACCESS_HISTORY: 5
    • O.ADMIN_GUIDANCE: 6
    • O.ADMIN_ROLE: 5
    • O.AUDIT_: 1
    • O.AUDIT_GENERATION: 3
    • O.CONFIGURATION_I: 1
    • O.CONFIGURATION_IDE: 2
    • O.CONFIGURATION_IDENTI: 2
    • O.CONFIGURATION_IDENTIFICATI: 1
    • O.CONFIGURATION_IDENTIFICATION: 1
    • O.DOCUMENTED_: 1
    • O.DOCUMENTED_DES: 1
    • O.DOCUMENTED_DESIG: 1
    • O.DOCUMENTED_DESIGN: 4
    • O.INTERNAL_TOE_DO: 1
    • O.INTERNAL_TOE_DOM: 1
    • O.INTERNAL_TOE_DOMAIN: 1
    • O.INTERNAL_TOE_DOMAINS: 1
    • O.MANAGE: 7
    • O.MEDIATE: 4
    • O.PARTIAL_FUNCTION: 1
    • O.PARTIAL_FUNCTIONA: 2
    • O.PARTIAL_FUNCTIONAL_T: 2
    • O.PARTIAL_FUNCTIONAL_TEST: 2
    • O.PARTIAL_SELF_PR: 1
    • O.PARTIAL_SELF_PROT: 1
    • O.PARTIAL_SELF_PROTECT: 1
    • O.PARTIAL_SELF_PROTECTION: 1
    • O.RESIDUAL_INFORM: 1
    • O.RESIDUAL_INFORMAT: 2
    • O.RESIDUAL_INFORMATION: 4
    • O.TOE_ACCESS: 6
    • O.VULNERABILITY_: 1
    • O.VULNERABILITY_ANA: 3
    • O.VULNERABILITY_ANALYSI: 3
    • O.VULNERABILITY_ANALYSIS: 2
  • OE:
    • OE.NO_EVIL: 4
    • OE.NO_GENERAL_: 2
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.PHYSICAL: 4
  • T:
    • T.ACCIDENTAL_ADMIN_: 1
    • T.ACCIDENTAL_ADMIN_ERROR: 2
    • T.MASQUERADE: 3
    • T.POOR_DESIGN: 3
    • T.POOR_IMPLEMENTATION: 3
    • T.POOR_TEST: 3
    • T.RESIDUAL_DATA: 3
    • T.TSF_COMPROMISE: 3
    • T.UNAUTHORIZED_ACCESS: 3
    • T.UNIDENTIFIED_ACTIONS: 3
  • OE:
    • OE.TLS: 7
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 11
    • Microsoft Corporation: 2
  • Microsoft:
    • Microsoft: 42
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 6
  • constructions:
    • MAC:
      • HMAC: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 22
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_AES_128_CBC_SHA: 5
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 3
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2012-09-001: 1
    • CCMB-2012-09-002: 1
    • CCMB-2012-09-003: 1
    • CCMB-2012-09-004: 1
  • FIPS:
    • FIPS 140: 2
    • FIPS 140-2: 10
    • FIPS PUB 140-2: 1
    • FIPS140-2: 10
  • RFC:
    • RFC 2246: 5
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 19 1.4.3 Summary of items out of scope of the TOE : 2
    • XenApp integrate, as detailed in section 1.2.3. Also out of scope of the TOE are the following Citrix components which are included in XenDesktop Platinum Edition: 1
    • out of scope: 4
    • shown shaded are components of the TOE. Figure 4: Logical boundaries 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components with which XenDesktop: 1
pdf_data/st_metadata
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different