Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' ((4767) and 'e41c1444' (4765)
BSI-DSZ-CC-1002-2018
Check Point VPN-1/FireWall-1© NG on Nokia IPSO
CRP193
name IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' ((4767) and 'e41c1444' (4765) Check Point VPN-1/FireWall-1© NG on Nokia IPSO
category Other Devices and Systems Boundary Protection Devices and Systems
scheme DE UK
not_valid_after 26.03.2023 05.03.2013
not_valid_before 26.03.2018 01.09.2003
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CRP193.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1002b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/LFA_T193v1-8.pdf
manufacturer IBM Corporation Nokia Corporation
manufacturer_web https://www.ibm.com https://www.nokia.com/
dgst 4db9ed66ccab7fd5 d065eb9ccbe2c14c
heuristics/cert_id BSI-DSZ-CC-1002-2018 CRP193
heuristics/cert_lab BSI []
heuristics/extracted_sars {} ALC_DVS.1, ATE_FUN.1, ALC_TAT.1, ATE_IND.2, ALC_LCD.1, ADV_RCR.1, ADV_SPM.1, ADV_FSP.2, ATE_COV.2, ADV_HLD.2, ADV_IMP.1, ATE_DPT.1, ADV_LLD.1, AGD_ADM.1, AVA_VLA.2, AVA_SOF.1, AVA_MSU.2, AGD_USR.1
heuristics/extracted_versions 11, 4767, 4765 1
heuristics/report_references/directly_referenced_by BSI-DSZ-CC-1094-2019 {}
heuristics/report_references/indirectly_referenced_by BSI-DSZ-CC-1094-2019 {}
pdf_data/cert_filename 1002c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1002-2018: 1
pdf_data/cert_keywords/cc_protection_profile_id
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
pdf_data/cert_keywords/cc_sar
pdf_data/cert_keywords/cc_sfr
pdf_data/cert_keywords/cc_claims
pdf_data/cert_keywords/vendor
pdf_data/cert_keywords/eval_facility
pdf_data/cert_keywords/symmetric_crypto
pdf_data/cert_keywords/asymmetric_crypto
pdf_data/cert_keywords/pq_crypto
pdf_data/cert_keywords/hash_function
pdf_data/cert_keywords/crypto_scheme
pdf_data/cert_keywords/crypto_protocol
pdf_data/cert_keywords/randomness
pdf_data/cert_keywords/cipher_mode
pdf_data/cert_keywords/ecc_curve
pdf_data/cert_keywords/crypto_engine
pdf_data/cert_keywords/tls_cipher_suite
pdf_data/cert_keywords/crypto_library
pdf_data/cert_keywords/vulnerability
pdf_data/cert_keywords/side_channel_analysis
pdf_data/cert_keywords/technical_report_id
pdf_data/cert_keywords/device_model
pdf_data/cert_keywords/tee_name
pdf_data/cert_keywords/os_name
pdf_data/cert_keywords/cplc_data
pdf_data/cert_keywords/ic_data_group
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
  • PKCS:
    • PKCS#11: 1
pdf_data/cert_keywords/javacard_version
pdf_data/cert_keywords/javacard_api_const
pdf_data/cert_keywords/javacard_packages
pdf_data/cert_keywords/certification_process
pdf_data/cert_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20180423082623+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, IBM, PKCS#11 FW IDs 'dada00eb' (4767) and 'e41c1444' (4765)"
  • /ModDate: D:20180423142404+02'00'
  • /Producer: LibreOffice 5.2
  • /Subject: Zertifikat, Certificate, Urkunde
  • /Title: Certification Report BSI-DSZ-CC-1002-2018
  • pdf_file_size_bytes: 922473
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename 1002a_pdf.pdf CRP193.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4
    • cc_version: Product specific Security Target Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1002-2018
    • cert_item: IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' (4767) and 'e41c1444' (4765
    • cert_lab: BSI
    • developer: IBM Research & Development Germany
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • DE:
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1002-2018: 15
  • UK:
    • CERTIFICATION REPORT No. P193: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 5
  • EAL:
    • EAL 4: 1
    • EAL1: 1
    • EAL4: 25
    • EAL7: 1
  • ITSEC:
    • ITSEC E3: 1
    • ITSEC E3 Assurance: 1
    • ITSEC E3 Evaluation: 1
    • ITSEC E3 Secure: 1
    • ITSEC E3 and: 3
    • ITSEC E3 evaluation: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 2
pdf_data/report_keywords/eval_facility
  • atsec:
    • atsec: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 3
  • DES:
    • 3DES:
      • TDES: 3
  • AES_competition:
    • AES:
      • AES: 2
  • DES:
    • 3DES:
      • Triple-DES: 1
    • DES:
      • DES: 4
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 3
    • ECDSA:
      • ECDSA: 4
  • FF:
    • DSA:
      • DSA: 4
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-2: 1
      • SHA-224: 1
      • SHA-256: 6
      • SHA-384: 1
      • SHA-512: 1
      • SHA256: 1
  • MD:
    • MD5:
      • MD5: 3
  • SHA:
    • SHA1:
      • SHA-1: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 1
  • KEX:
    • Key Exchange: 1
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 4
  • VPN:
    • VPN: 28
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 1
  • TRNG:
    • TRNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 3
  • ECB:
    • ECB: 2
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 20: 2
    • AIS 23: 1
    • AIS 32: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 186-3: 1
    • FIPS 186-4: 8
    • FIPS 197: 1
    • FIPS 46-3: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-90A: 1
  • PKCS:
    • PKCS#1: 1
    • PKCS#11: 15
  • RFC:
    • RFC 3447: 1
    • RFC 5639: 3
  • X509:
    • X.509: 1
  • CC:
    • CCIMB-99-031: 1
    • CCIMB-99-032: 1
    • CCIMB-99-033: 1
  • FIPS:
    • FIPS 140-1: 2
  • PKCS:
    • PKCS #1: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • EP11 configuration list (BOE) for documentation files, Version 1, 2017-07-14, IBM (confidential document) Hardware configuration list for IBM 4765 and 4767 EP11 HSMs, Version 1.0, 2017- 08-31, IBM: 1
    • Report, Version 5, 2018-03-12, Final Evaluation Technical Report, atsec information security GmbH (confidential document) [8] Configuration lists for the TOE: Configuration list of static content measured by SHA256: 1
    • Version 1.0, 2016- 12-12, IBM (confidential document) EP11 configuration list BOE, Version 1, 2017-07-14, IBM (confidential document) 7 specifically •: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /Author: racook
  • /CreationDate: D:20031001145710Z
  • /Creator: LFA_T193_P193_CertRep_10 - Microsoft Word
  • /ModDate: D:20131119171437Z
  • /Producer: Acrobat PDFWriter 5.0 for Windows NT
  • /Title: LFA_T193_P193_CertRep_10.DOC
  • pdf_file_size_bytes: 113666
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 30
pdf_data/st_filename 1002b_pdf.pdf LFA_T193v1-8.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0045-2009: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL4: 3
  • EAL:
    • EAL4: 56
  • ITSEC:
    • ITSEC E3 Certification: 1
    • ITSEC E3 System: 1
    • ITSEC E3 or: 1
pdf_data/st_keywords/cc_sar
  • ACM:
    • ACM_AUT.1: 1
    • ACM_CAP.4: 1
    • ACM_SCP.2: 1
  • ADO:
    • ADO_DEL.2: 1
    • ADO_IGS.1: 1
  • ADV:
    • ADV_FSP.2: 1
    • ADV_HLD.2: 1
    • ADV_IMP.1: 1
    • ADV_LLD.1: 1
    • ADV_RCR.1: 1
    • ADV_SPM.1: 1
  • AGD:
    • AGD_ADM.1: 1
    • AGD_USR.1: 1
  • ALC:
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_MSU.2: 1
    • AVA_SOF.1: 1
    • AVA_VLA.2: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 8
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_SAA.1: 6
    • FAU_SAA.1.1: 1
    • FAU_SAA.1.2: 1
    • FAU_SAR.1: 13
    • FAU_SAR.1.1: 2
    • FAU_SAR.1.2: 2
    • FAU_SAR.3: 5
    • FAU_SAR.3.1: 1
  • FCS:
    • FCS_CKM.1: 3
    • FCS_CKM.4: 3
    • FCS_COP.1: 9
    • FCS_COP.1.1: 2
  • FDP:
    • FDP_ACC.1: 8
    • FDP_ACC.1.1: 2
    • FDP_ACF.1: 8
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 36
    • FDP_IFC.1.1: 4
    • FDP_IFF.1: 33
    • FDP_IFF.1.1: 4
    • FDP_IFF.1.2: 4
    • FDP_IFF.1.3: 6
    • FDP_IFF.1.4: 4
    • FDP_IFF.1.5: 4
    • FDP_IFF.1.6: 4
    • FDP_ITT.1: 13
    • FDP_ITT.1.1: 2
  • FIA:
    • FIA_UAU.5: 5
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 3
  • FMT:
    • FMT_MOF.1: 13
    • FMT_MOF.1.1: 2
    • FMT_MSA.1: 27
    • FMT_MSA.1.1: 4
    • FMT_MSA.2: 3
    • FMT_MSA.3: 25
    • FMT_MSA.3.1: 3
    • FMT_MSA.3.2: 3
    • FMT_SMR.1: 10
  • FPT:
    • FPT_STM.1: 6
    • FPT_STM.1.1: 1
  • FTP:
    • FTP_ITC.1: 11
    • FTP_ITC.1.1: 2
    • FTP_ITC.1.2: 2
    • FTP_ITC.1.3: 2
pdf_data/st_keywords/vendor
  • STMicroelectronics:
    • STM: 4
  • Microsoft:
    • Microsoft: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 13
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 8
  • constructions:
    • MAC:
      • CMAC: 2
      • HMAC: 7
  • miscellaneous:
    • SEED:
      • SEED: 1
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • 3-DES: 2
    • DES:
      • DES: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 5
    • ECDSA:
      • ECDSA: 7
    • ECIES:
      • ECIES: 1
  • FF:
    • DH:
      • DH: 4
      • Diffie-Hellman: 2
    • DSA:
      • DSA: 12
  • RSA:
    • RSA 2048: 1
  • FF:
    • DH:
      • Diffie-Hellman: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 6
    • SHA2:
      • SHA-224: 5
      • SHA-256: 14
      • SHA-384: 4
      • SHA-512: 4
  • MD:
    • MD5:
      • MD5: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
    • Key agreement: 1
  • KEX:
    • Key Exchange: 1
  • MAC:
    • MAC: 10
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
  • IKE:
    • IKE: 2
  • TLS:
    • TLS:
      • TLS: 6
  • VPN:
    • VPN: 28
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 2
  • RNG:
    • RNG: 19
  • TRNG:
    • TRNG: 5
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • ECB:
    • ECB: 4
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-192: 8
    • P-224: 8
    • P-256: 8
    • P-384: 8
    • P-521: 8
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • malfunction: 2
  • SCA:
    • side-channel: 1
pdf_data/st_keywords/tee_name
  • other:
    • T6: 4
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 31: 1
  • FIPS:
    • FIPS 140-2: 3
    • FIPS 180-4: 1
    • FIPS 186-4: 1
    • FIPS 197: 4
  • ISO:
    • ISO/IEC 18031:2011: 1
  • PKCS:
    • PKCS 11: 1
    • PKCS#11: 153
    • PKCS1: 5
    • PKCS11: 1
    • PKCS12: 1
  • RFC:
    • RFC 3394: 1
    • RFC 3447: 11
    • RFC 5649: 1
  • X509:
    • X.509: 6
  • FIPS:
    • FIPS PUB 180-1: 1
    • FIPS PUB 197: 1
    • FIPS PUB 46-2: 4
  • PKCS:
    • PKCS #3: 1
    • PKCS#1: 2
  • RFC:
    • RFC 1321: 2
    • RFC 1777: 1
    • RFC 1778: 1
    • RFC 2104: 2
    • RFC 2246: 1
    • RFC 2404: 1
    • RFC 2405: 1
    • RFC 2409: 1
  • X509:
    • X.509: 2
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • out of scope: 1
    • these dependencies are addressed by the correct implementation of the standard protocols, which is out of scope of the evaluation Common Criteria EAL4 Evaluation VPN-1/Firewall-1 Next Generation (Feature Pack 2: 1
pdf_data/st_metadata
  • /Author: Visegrady, Tamas <tvi (at) zurich.ibm.com>
  • /CreationDate: D:20170830165958+02'00'
  • /Creator: IBM Research --- Zurich and IBM Boeblingen/Poughkeepsie
  • /Keywords: IBM 4767 (hw. 00LV498 (2)); PCIeCC; XCP, Enterprise PKCS11 (EP11)
  • /ModDate: D:20170830165958+02'00'
  • /PTEX.Fullbanner: This is pdfTeX, Version 3.14159265-2.6-1.40.18 (TeX Live 2017/TeX Live for SUSE Linux) kpathsea version 6.2.3
  • /Producer: pdfTeX
  • /Subject: Security Policy [rev. 273]
  • /Title: IBM Enterprise PKCS11(on 4767) Security Target (EAL 4 )
  • /Trapped: /False
  • pdf_file_size_bytes: 840064
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 52
  • /Author: ingber
  • /CreationDate: D:20030717214842Z
  • /Creator: ADOBEPS4.DRV Version 4.52
  • /ModDate: D:20031001150027+02'00'
  • /Producer: Acrobat Distiller 5.0.5 (Windows)
  • /Title: Microsoft Word - CC_Security_Target_NG_FP2 v1.8 for Nokia.doc
  • pdf_file_size_bytes: 274699
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 47
state/cert/convert_ok True False
state/cert/download_ok True False
state/cert/extract_ok True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different