Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' ((4767) and 'e41c1444' (4765)
BSI-DSZ-CC-1002-2018
Cisco Secure Firewall Threat Defense (FTD) 7.4 with Secure Firewall Management Center (FMC) 7.4 and Secure Client 5.1
NSCIB-CC-2400046-01-CR
name IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' ((4767) and 'e41c1444' (4765) Cisco Secure Firewall Threat Defense (FTD) 7.4 with Secure Firewall Management Center (FMC) 7.4 and Secure Client 5.1
category Other Devices and Systems Network and Network-Related Devices and Systems
scheme DE NL
status archived active
not_valid_after 26.03.2023 23.03.2030
not_valid_before 26.03.2018 23.03.2025
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002c_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400046-01-Cert.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400046-01-CR.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400046-01-ST_v1.1.pdf
manufacturer IBM Corporation Cisco Systems, Inc.
manufacturer_web https://www.ibm.com https://www.cisco.com
security_level EAL4 ALC_FLR.3, EAL4+
dgst 4db9ed66ccab7fd5 42ccb0e00337906a
heuristics/cert_id BSI-DSZ-CC-1002-2018 NSCIB-CC-2400046-01-CR
heuristics/cert_lab BSI
heuristics/cpe_matches {} cpe:2.3:a:cisco:secure_firewall_management_center:7.4.1.1:*:*:*:*:*:*:*, cpe:2.3:a:cisco:secure_firewall_management_center:7.4.2:*:*:*:*:*:*:*, cpe:2.3:a:cisco:secure_firewall_management_center:7.4.0:*:*:*:*:*:*:*, cpe:2.3:a:cisco:secure_client:5.1.1.42:*:*:*:*:*:*:*, cpe:2.3:a:cisco:secure_firewall_management_center:7.4.1:*:*:*:*:*:*:*
heuristics/related_cves {} CVE-2024-20298, CVE-2024-20340, CVE-2024-20472, CVE-2024-20364, CVE-2024-20471, CVE-2024-20424, CVE-2024-20474, CVE-2024-20269, CVE-2024-20273, CVE-2024-20473, CVE-2024-20300
heuristics/extracted_sars {} ATE_DPT.1, ALC_TAT.1, ALC_FLR.3, ADV_ARC.1, ATE_IND.2, ALC_CMC.4, ATE_COV.2, AGD_PRE.1, AVA_VAN.3, ALC_CMS.4, ADV_IMP.1, ADV_FSP.4, ALC_DEL.1, ALC_DVS.1, ADV_TDS.3, ALC_LCD.1, AGD_OPE.1, ATE_FUN.1
heuristics/extracted_versions 4765, 4767, 11 7.4, 5.1
heuristics/report_references/directly_referenced_by BSI-DSZ-CC-1094-2019 {}
heuristics/report_references/indirectly_referenced_by BSI-DSZ-CC-1094-2019 {}
heuristics/scheme_data
pdf_data/cert_filename 1002c_pdf.pdf NSCIB-CC-2400046-01-Cert.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1002-2018: 1
  • NL:
    • NSCIB-2400046-01: 1
    • NSCIB-CC-2400046-01: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
  • EAL:
    • EAL2: 1
    • EAL4: 2
    • EAL4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.3: 2
pdf_data/cert_keywords/vendor
  • Cisco:
    • Cisco: 1
    • Cisco Systems, Inc: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • SGS:
    • SGS: 1
    • SGS Brightsight: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
  • PKCS:
    • PKCS#11: 1
  • ISO:
    • ISO/IEC 15408-1: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 18045:2008: 1
pdf_data/cert_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20180423082623+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, IBM, PKCS#11 FW IDs 'dada00eb' (4767) and 'e41c1444' (4765)"
  • /ModDate: D:20180423142404+02'00'
  • /Producer: LibreOffice 5.2
  • /Subject: Zertifikat, Certificate, Urkunde
  • /Title: Certification Report BSI-DSZ-CC-1002-2018
  • pdf_file_size_bytes: 922473
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Microsoft Office User
  • /CreationDate: D:20250328161845+00'00'
  • /Creator: Microsoft® Word 2021
  • /ModDate: D:20250328161845+00'00'
  • /Producer: Microsoft® Word 2021
  • /Title: NSCIB Certificate
  • pdf_file_size_bytes: 87096
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename 1002a_pdf.pdf NSCIB-CC-2400046-01-CR.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4
    • cc_version: Product specific Security Target Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1002-2018
    • cert_item: IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' (4767) and 'e41c1444' (4765
    • cert_lab: BSI
    • developer: IBM Research & Development Germany
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • NL:
  • DE:
  • NL:
    • cert_id: NSCIB-CC-2400046-01-CR
    • cert_item: Cisco Secure Firewall Threat Defense (FTD) 7.4 with Secure Firewall Management Center (FMC) 7.4 and Secure Client 5.1
    • cert_lab: SGS Brightsight B.V.
    • developer: Cisco Systems, Inc
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1002-2018: 15
  • NL:
    • NSCIB-2400046-01: 1
    • NSCIB-CC-2400046-01-CR: 11
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 5
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 2
    • EAL4 augmented: 1
    • EAL4+: 2
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
  • ALC:
    • ALC_FLR.3: 2
pdf_data/report_keywords/vendor
  • Cisco:
    • Cisco: 24
    • Cisco Systems, Inc: 3
pdf_data/report_keywords/eval_facility
  • atsec:
    • atsec: 3
  • BrightSight:
    • Brightsight: 2
  • SGS:
    • SGS: 2
    • SGS Brightsight: 2
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 3
  • DES:
    • 3DES:
      • TDES: 3
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 3
    • ECDSA:
      • ECDSA: 4
  • FF:
    • DSA:
      • DSA: 4
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-2: 1
      • SHA-224: 1
      • SHA-256: 6
      • SHA-384: 1
      • SHA-512: 1
      • SHA256: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 1
pdf_data/report_keywords/crypto_protocol
  • VPN:
    • VPN: 5
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 1
  • TRNG:
    • TRNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 3
  • ECB:
    • ECB: 2
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 20: 2
    • AIS 23: 1
    • AIS 32: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 186-3: 1
    • FIPS 186-4: 8
    • FIPS 197: 1
    • FIPS 46-3: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-90A: 1
  • PKCS:
    • PKCS#1: 1
    • PKCS#11: 15
  • RFC:
    • RFC 3447: 1
    • RFC 5639: 3
  • X509:
    • X.509: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • EP11 configuration list (BOE) for documentation files, Version 1, 2017-07-14, IBM (confidential document) Hardware configuration list for IBM 4765 and 4767 EP11 HSMs, Version 1.0, 2017- 08-31, IBM: 1
    • Report, Version 5, 2018-03-12, Final Evaluation Technical Report, atsec information security GmbH (confidential document) [8] Configuration lists for the TOE: Configuration list of static content measured by SHA256: 1
    • Version 1.0, 2016- 12-12, IBM (confidential document) EP11 configuration list BOE, Version 1, 2017-07-14, IBM (confidential document) 7 specifically •: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
  • OutOfScope:
    • following proprietary or non-standard algorithms, protocols and implementations: <none>, which are out of scope as there are no security claims relating to these. Page: 10/11 of report number: 1
    • out of scope: 1
pdf_data/report_metadata
pdf_data/st_filename 1002b_pdf.pdf NSCIB-CC-2400046-01-ST_v1.1.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0045-2009: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL4: 3
  • EAL:
    • EAL4: 3
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 2
    • ADV_FSP.4: 2
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.4: 2
    • ALC_CMS.4: 2
    • ALC_DEL.1: 2
    • ALC_DVS.1: 2
    • ALC_FLR.3: 6
    • ALC_LCD.1: 1
    • ALC_TAT.1: 2
  • ATE:
    • ATE_COV.2: 2
    • ATE_DPT.1: 2
    • ATE_FUN.1: 2
    • ATE_IND.2: 2
  • AVA:
    • AVA_VAN.3: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 15
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 9
    • FAU_GEN.2.1: 1
    • FAU_SAR.1: 9
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_STG.1: 10
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG.4: 8
    • FAU_STG.4.1: 1
  • FDP:
    • FDP_ACC.1: 3
    • FDP_IFC.1: 32
    • FDP_IFC.1.1: 3
    • FDP_IFF.1: 35
    • FDP_IFF.1.1: 3
    • FDP_IFF.1.2: 3
    • FDP_IFF.1.3: 3
    • FDP_IFF.1.4: 3
    • FDP_IFF.1.5: 3
  • FIA:
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_SOS.1: 8
    • FIA_SOS.1.1: 1
    • FIA_UAU.1: 10
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.5: 7
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.7: 8
    • FIA_UAU.7.1: 1
    • FIA_UID.1: 2
    • FIA_UID.2: 10
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MOF.1: 8
    • FMT_MOF.1.1: 1
    • FMT_MSA.1: 19
    • FMT_MSA.1.1: 3
    • FMT_MSA.3: 13
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 13
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 16
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITT.1: 8
    • FPT_ITT.1.1: 1
    • FPT_STM.1: 10
    • FPT_STM.1.1: 1
  • FTA:
    • FTA_SSL.3: 8
    • FTA_SSL.3.1: 1
    • FTA_TAB.1: 8
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC.1: 8
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 8
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.NOEVIL: 4
    • A.PHYSEC: 2
    • A.PROTENV: 2
    • A.PROTRA: 4
    • A.REMACC: 4
    • A.SINGEN: 2
  • O:
    • O.ACCOUNTABLE: 6
    • O.ADMINISTRATION: 8
    • O.AUDIT: 8
    • O.BANNER: 4
    • O.IDAUTH: 9
    • O.LIMEXT: 4
    • O.MEDIATE: 7
    • O.MONITORING: 8
    • O.PROCOM: 8
    • O.SECFUN: 13
    • O.SECSTA: 12
    • O.SELPRO: 7
    • O.SESSION_LOCK: 4
    • O.VPN: 11
  • OE:
    • OE.NOEVIL: 3
    • OE.PHYSEC: 3
    • OE.PROTENV: 3
    • OE.PROTRA: 3
    • OE.REMACC: 3
    • OE.SINGEN: 3
  • T:
    • T.ASPOOF: 2
    • T.AUDACC: 4
    • T.AUDFUL: 4
    • T.AUNAUTHORIZED_DEVICE: 3
    • T.MEDIAT: 3
    • T.NOAUTH: 7
    • T.PROCOM: 2
    • T.SELPRO: 3
    • T.UNAUTHORIZED_AD: 1
    • T.UNAUTHORIZED_ADMIN: 3
    • T.UNAUTHORIZED_ADMINISTRATOR: 2
    • T.UNAUTHORIZED_DE: 1
    • T.UNAUTHORIZED_DEVICE: 1
    • T.UNDETECTED: 3
    • T.VPN: 2
pdf_data/st_keywords/vendor
  • STMicroelectronics:
    • STM: 4
  • Cisco:
    • Cisco: 61
    • Cisco Systems, Inc: 4
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 13
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 8
  • constructions:
    • MAC:
      • CMAC: 2
      • HMAC: 7
  • miscellaneous:
    • SEED:
      • SEED: 1
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • DES:
      • DES: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 5
    • ECDSA:
      • ECDSA: 7
    • ECIES:
      • ECIES: 1
  • FF:
    • DH:
      • DH: 4
      • Diffie-Hellman: 2
    • DSA:
      • DSA: 12
  • RSA:
    • RSA 2048: 1
  • ECC:
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 2
    • DSA:
      • DSA: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 6
    • SHA2:
      • SHA-224: 5
      • SHA-256: 14
      • SHA-384: 4
      • SHA-512: 4
  • SHA:
    • SHA2:
      • SHA-512: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
    • Key agreement: 1
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 10
  • KEX:
    • Key Exchange: 2
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
  • IKE:
    • IKE: 4
    • IKEv1: 1
    • IKEv2: 14
  • IPsec:
    • IPsec: 44
  • SSH:
    • SSH: 17
    • SSHv1: 1
    • SSHv2: 5
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 43
      • TLSv1.2: 3
  • VPN:
    • VPN: 158
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 2
  • RNG:
    • RNG: 19
  • TRNG:
    • TRNG: 5
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • ECB:
    • ECB: 4
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-192: 8
    • P-224: 8
    • P-256: 8
    • P-384: 8
    • P-521: 8
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • malfunction: 2
  • SCA:
    • side-channel: 1
  • SCA:
    • SPA: 2
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 31: 1
  • FIPS:
    • FIPS 140-2: 3
    • FIPS 180-4: 1
    • FIPS 186-4: 1
    • FIPS 197: 4
  • ISO:
    • ISO/IEC 18031:2011: 1
  • PKCS:
    • PKCS 11: 1
    • PKCS#11: 153
    • PKCS1: 5
    • PKCS11: 1
    • PKCS12: 1
  • RFC:
    • RFC 3394: 1
    • RFC 3447: 11
    • RFC 5649: 1
  • X509:
    • X.509: 6
  • CC:
    • CCMB-2017-04-004: 1
  • RFC:
    • RFC 2460: 2
    • RFC 4443: 1
    • RFC 768: 2
    • RFC 791: 2
    • RFC 792: 1
    • RFC 793: 2
  • X509:
    • X.509: 1
pdf_data/st_metadata
  • /Author: Visegrady, Tamas <tvi (at) zurich.ibm.com>
  • /CreationDate: D:20170830165958+02'00'
  • /Creator: IBM Research --- Zurich and IBM Boeblingen/Poughkeepsie
  • /Keywords: IBM 4767 (hw. 00LV498 (2)); PCIeCC; XCP, Enterprise PKCS11 (EP11)
  • /ModDate: D:20170830165958+02'00'
  • /PTEX.Fullbanner: This is pdfTeX, Version 3.14159265-2.6-1.40.18 (TeX Live 2017/TeX Live for SUSE Linux) kpathsea version 6.2.3
  • /Producer: pdfTeX
  • /Subject: Security Policy [rev. 273]
  • /Title: IBM Enterprise PKCS11(on 4767) Security Target (EAL 4 )
  • /Trapped: /False
  • pdf_file_size_bytes: 840064
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 52
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different