Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Entrust nShield Solo XC Hardware Security Module v12.60.15
NSCIB-CC-0368256-CR
IBM MaaS360 v2.9 Cloud Extender
CCEVS-VR-10896-2018
name Entrust nShield Solo XC Hardware Security Module v12.60.15 IBM MaaS360 v2.9 Cloud Extender
category Products for Digital Signatures Other Devices and Systems
scheme NL US
status active archived
not_valid_after 17.03.2026 14.06.2020
not_valid_before 17.03.2021 14.06.2018
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-certificate%2021-0368256.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10896-ci.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-0368256-CR-1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10896-vr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-0368256-ST-1.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10896-st.pdf
manufacturer Entrust, Inc. IBM Corporation
manufacturer_web https://www.entrust.com https://www.ibm.com
security_level AVA_VAN.5, ALC_FLR.2, EAL4+ {}
dgst 5267a9b98b878ef1 2c0dc37a32bccf79
heuristics/cert_id NSCIB-CC-0368256-CR CCEVS-VR-10896-2018
heuristics/cert_lab US
heuristics/cpe_matches {} cpe:2.3:a:ibm:maas360:-:*:*:*:*:*:*:*
heuristics/related_cves {} CVE-2020-4353
heuristics/extracted_sars ALC_FLR.2, AVA_VAN.5, ATE_IND.2 AGD_PRE.1, ASE_CCL.1, ASE_INT.1, ADV_FSP.1, AVA_VAN.1, ASE_ECD.1, ALC_TSU_EXT.1, ASE_SPD.1, ASE_OBJ.1, ATE_IND.1, ASE_REQ.1, ASE_TSS.1, ALC_CMC.1, ALC_CMS.2, AGD_OPE.1
heuristics/extracted_versions 12.60.15 2.9
heuristics/scheme_data
heuristics/protection_profiles ee319f4a624019b0 1aeebf1c5963b606
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/ANSSI-CC-PP-2016_05 PP.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_app_v1.2.pdf
pdf_data/cert_filename NSCIB-certificate 21-0368256.pdf st_vid10896-ci.pdf
pdf_data/cert_keywords/cc_cert_id
  • FR:
    • ANSSI-CC-PP-2016/05-M01: 1
  • NL:
    • CC-21-0368256: 1
  • US:
    • CCEVS-VR-VID10896-2018: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05-M01: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
    • EAL4 augmented: 1
    • EAL7: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/cc_claims
  • R:
    • R.L: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • atsec:
    • atsec: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408-2: 1
    • ISO/IEC 15408-3: 1
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20210614114037+01'00'
  • /Creator: C458-M
  • /ModDate: D:20210614123528+02'00'
  • /Producer: KONICA MINOLTA bizhub C458
  • /Title: C458-M&S21061411400
  • pdf_file_size_bytes: 210038
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20180622120102-04'00'
  • /ModDate: D:20180622120102-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 182323
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename NSCIB-CC-0368256-CR-1.0.pdf st_vid10896-vr.pdf
pdf_data/report_frontpage
  • NL:
    • cert_id: NSCIB-CC-0368256-CR
    • cert_item: nShield Solo XC Hardware Security Module v12.60.15
    • cert_lab: Brightsight B.V
    • developer: nCipher Security Limited (an Entrust company
  • US:
  • NL:
  • US:
    • cert_id: CCEVS-VR-10896-2018
    • cert_item: IBM MaaS360 v2.91 Cloud Extender
    • cert_lab: US NIAP
pdf_data/report_keywords/cc_cert_id
  • FR:
    • ANSSI-CC-PP-2016/05-M01: 1
  • NL:
    • NSCIB-CC-0368256-CR: 12
  • US:
    • CCEVS-VR-10896-2018: 1
pdf_data/report_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05-M01: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 2
    • EAL4 augmented: 1
    • EAL4+: 2
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 2
  • ATE:
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 4
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 1
  • FCS:
    • FCS_COP: 1
  • FTP:
    • FTP_TRP: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 14
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • atsec:
    • atsec: 5
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDSA:
      • ECDSA: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 1
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 4
      • TLS 1.2: 3
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
  • TRNG:
    • TRNG: 1
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
  • OpenSSL:
    • OpenSSL: 7
pdf_data/report_keywords/vulnerability
  • CVE:
    • CVE-2018-0737: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • other:
    • JIL: 1
    • JIL-AAPHD: 1
    • JIL-AMHD: 1
  • SCA:
    • side channel: 1
    • timing attack: 1
pdf_data/report_keywords/standard_id
  • ISO:
    • ISO/IEC 19790:2012: 1
  • X509:
    • X.509: 1
pdf_data/report_metadata
pdf_data/st_filename NSCIB-CC-0368256-ST-1.1.pdf st_vid10896-st.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-: 1
    • ANSSI-CC-PP-2016/05-: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 59
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 58
  • AVA:
    • AVA_VAN.5: 60
  • ADV:
    • ADV_FSP.1: 12
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 12
    • AGD_PRE: 1
    • AGD_PRE.1: 8
  • ALC:
    • ALC_CMC.1: 6
    • ALC_CMS.1: 3
    • ALC_CMS.2: 4
    • ALC_TSU_EXT.1: 10
  • ASE:
    • ASE_CCL.1: 16
    • ASE_ECD.1: 12
    • ASE_INT.1: 14
    • ASE_OBJ.1: 6
    • ASE_REQ.1: 12
    • ASE_SPD.1: 9
    • ASE_TSS.1: 7
  • ATE:
    • ATE_IND.1: 7
  • AVA:
    • AVA_VAN.1: 8
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 10
    • FAU_GEN.1.1: 2
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 1
    • FAU_STG.2: 5
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 1
    • FAU_STG.2.3: 1
  • FCS:
    • FCS_CKM.1: 11
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 1
    • FCS_CKM.4: 11
    • FCS_CKM.4.1: 1
    • FCS_COP.1: 10
    • FCS_COP.1.1: 1
    • FCS_RNG: 12
    • FCS_RNG.1: 5
  • FDP:
    • FDP_ACC: 15
    • FDP_ACC.1: 10
    • FDP_ACF: 14
    • FDP_ACF.1: 12
    • FDP_IFC: 10
    • FDP_IFC.1: 7
    • FDP_IFF: 9
    • FDP_IFF.1: 10
    • FDP_ITC.1: 2
    • FDP_ITC.2: 2
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
    • FDP_SDI.1: 1
    • FDP_SDI.2: 6
    • FDP_SDI.2.1: 1
    • FDP_SDI.2.2: 1
  • FIA:
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_UAU: 13
    • FIA_UAU.1: 9
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.6: 2
    • FIA_UID.1: 14
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA: 22
    • FMT_MSA.1: 5
    • FMT_MSA.3: 9
    • FMT_MTD: 12
    • FMT_MTD.1: 2
    • FMT_SMF.1: 11
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 18
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 4
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_PHP.3: 4
    • FPT_PHP.3.1: 1
    • FPT_STM.1: 7
    • FPT_STM.1.1: 1
    • FPT_TST_EXT.1: 9
    • FPT_TST_EXT.1.1: 1
  • FTP:
    • FTP_TRP: 15
    • FTP_TRP.1: 3
  • FCS:
    • FCS_CKM: 1
    • FCS_CKM.1: 12
    • FCS_CKM.1.1: 5
    • FCS_CKM.2: 6
    • FCS_CKM.2.1: 1
    • FCS_CKM_EXT.1: 4
    • FCS_CKM_EXT.1.1: 1
    • FCS_COP.1: 26
    • FCS_COP.1.1: 5
    • FCS_RBG_EXT.1: 16
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.2: 6
    • FCS_RBG_EXT.2.1: 1
    • FCS_RBG_EXT.2.2: 1
    • FCS_STO_EXT.1: 8
    • FCS_STO_EXT.1.1: 1
    • FCS_TLSC_EXT: 1
    • FCS_TLSC_EXT.1: 19
    • FCS_TLSC_EXT.1.1: 1
    • FCS_TLSC_EXT.1.2: 2
    • FCS_TLSC_EXT.1.3: 2
    • FCS_TLSC_EXT.4: 13
    • FCS_TLSS_EXT.1: 1
    • FCS_TLSS_EXT.1.1: 3
  • FDP:
    • FDP_DAR_EXT.1: 9
    • FDP_DAR_EXT.1.1: 1
    • FDP_DEC_EXT.1: 6
    • FDP_DEC_EXT.1.1: 1
    • FDP_DEC_EXT.1.2: 2
    • FDP_NET_EXT.1: 5
    • FDP_NET_EXT.1.1: 1
  • FMT:
    • FMT_CFG_EXT.1: 6
    • FMT_CFG_EXT.1.1: 1
    • FMT_CFG_EXT.1.2: 1
    • FMT_MEC_EXT.1: 8
    • FMT_MEC_EXT.1.1: 1
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
  • FPR:
    • FPR_ANO_EXT.1: 6
    • FPR_ANO_EXT.1.1: 1
  • FPT:
    • FPT_AEX_EXT.1: 8
    • FPT_AEX_EXT.1.1: 1
    • FPT_AEX_EXT.1.2: 1
    • FPT_AEX_EXT.1.3: 1
    • FPT_AEX_EXT.1.4: 1
    • FPT_AEX_EXT.1.5: 1
    • FPT_API_EXT.1: 5
    • FPT_API_EXT.1.1: 2
    • FPT_LIB_EXT.1: 9
    • FPT_TUD_EXT.1: 6
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
    • FPT_TUD_EXT.1.4: 1
    • FPT_TUD_EXT.1.5: 2
    • FPT_TUD_EXT.1.6: 1
  • FTP:
    • FTP_DIT_EXT.1: 12
    • FTP_DIT_EXT.1.1: 2
pdf_data/st_keywords/cc_claims
  • OT:
    • OT.A: 1
    • OT.D: 2
    • OT.RNG: 3
  • R:
    • R.RAD: 1
  • A:
    • A.PLATFORM: 1
    • A.PROPER_ADMIN: 1
    • A.PROPER_USER: 1
  • O:
    • O.INTEGRITY: 1
    • O.MANAGEMENT: 1
    • O.PROTECTED_COMMS: 1
    • O.PROTECTED_STORAGE: 1
    • O.QUALITY: 1
  • OE:
    • OE.PLATFORM: 1
    • OE.PROPER_ADMIN: 1
    • OE.PROPER_USER: 1
  • T:
    • T.LOCAL_ATTACK: 1
    • T.NETWORK_ATTACK: 1
    • T.NETWORK_EAVESDROP: 1
    • T.PHYSICAL_ACCESS: 1
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
    • Microsoft Corporation: 1
  • Microsoft:
    • Microsoft: 19
    • Microsoft Corporation: 1
pdf_data/st_keywords/eval_facility
  • atsec:
    • atsec: 3
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 8
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 4
  • constructions:
    • MAC:
      • CBC-MAC: 2
      • CMAC: 3
      • HMAC: 2
      • HMAC-SHA-224: 1
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
  • AES_competition:
    • AES:
      • AES: 13
      • AES-128: 1
      • AES-256: 1
      • AES256: 1
    • RC:
      • RC4: 1
  • constructions:
    • MAC:
      • CBC-MAC: 1
      • HMAC: 3
      • HMAC-SHA-256: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 1
      • Diffie-Hellman: 3
    • DSA:
      • DSA: 2
  • ECC:
    • ECC:
      • ECC: 6
    • ECDSA:
      • ECDSA: 9
  • FF:
    • DH:
      • DH: 1
    • DSA:
      • DSA: 4
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-224: 1
      • SHA-384: 1
      • SHA-512: 1
  • MD:
    • MD5:
      • MD5: 1
  • SHA:
    • SHA1:
      • SHA-1: 14
      • SHA1: 2
    • SHA2:
      • SHA-256: 17
      • SHA-384: 15
      • SHA256: 5
      • SHA384: 4
      • SHA512: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 2
pdf_data/st_keywords/crypto_protocol
  • PGP:
    • PGP: 2
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 46
      • TLS 1.2: 10
      • TLS1.2: 1
  • VPN:
    • VPN: 1
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 3
  • RNG:
    • RNG: 31
  • PRNG:
    • DRBG: 17
  • RNG:
    • RBG: 4
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 1
  • ECB:
    • ECB: 2
  • GCM:
    • GCM: 2
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 2
  • GCM:
    • GCM: 2
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP160r1: 1
    • brainpoolP192r1: 1
    • brainpoolP192t1: 1
    • brainpoolP224r1: 3
    • brainpoolP224t1: 1
    • brainpoolP256r1: 3
    • brainpoolP256t1: 3
    • brainpoolP320r1: 3
    • brainpoolP320t1: 3
    • brainpoolP384r1: 3
    • brainpoolP384t1: 3
    • brainpoolP512r1: 3
    • brainpoolP512t1: 3
  • NIST:
    • B-163: 1
    • B-233: 3
    • B-283: 3
    • B-409: 3
    • B-571: 3
    • K-163: 1
    • K-233: 3
    • K-283: 3
    • K-409: 3
    • K-571: 3
    • NIST P-192: 1
    • NIST P-224: 2
    • P-192: 1
    • P-224: 4
    • P-256: 6
    • P-384: 6
    • P-521: 6
  • NIST:
    • P-256: 22
    • P-384: 22
    • secp256r1: 5
    • secp384r1: 5
    • secp512r1: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 4
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 4
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 4
    • TLS_RSA_WITH_AES_128_CBC_SHA: 4
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA256: 4
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 30
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 2
    • physical tampering: 2
  • SCA:
    • side-channels: 1
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 20: 1
    • AIS 31: 9
    • AIS31: 2
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 140-2: 6
    • FIPS 180-4: 1
    • FIPS 186-4: 2
    • FIPS 197: 2
    • FIPS 198-1: 1
  • ISO:
    • ISO/IEC 19790:2012: 1
  • NIST:
    • NIST SP 800-22: 1
    • NIST SP 800-90A: 3
    • SP 800-108: 1
    • SP 800-38A: 1
    • SP 800-38B: 1
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-38F: 1
    • SP 800-56A: 2
    • SP 800-67: 1
    • SP 800-90A: 3
  • PKCS:
    • PKCS #1: 1
    • PKCS#1: 2
    • PKCS#11: 2
  • RFC:
    • RFC 8017: 1
  • FIPS:
    • FIPS 140-2: 1
    • FIPS 180-4: 4
    • FIPS 186-4: 8
    • FIPS 197: 3
    • FIPS 198-1: 2
    • FIPS PUB 186-4: 11
  • NIST:
    • NIST SP 800-38A: 1
    • NIST SP 800-38D: 1
    • NIST SP 800-56A: 1
    • NIST SP 800-56B: 1
    • NIST SP 800-57: 1
    • NIST SP 800-90A: 2
    • SP 800-108: 1
    • SP 800-135: 1
    • SP 800-38D: 2
    • SP 800-56B: 2
    • SP 800-90A: 1
  • PKCS:
    • PKCS1: 2
  • RFC:
    • RFC 2818: 4
    • RFC 5246: 12
    • RFC 5280: 5
    • RFC 5289: 16
    • RFC 5759: 2
    • RFC 6125: 2
    • RFC5280: 1
    • RFC5759: 1
  • X509:
    • X.509: 15
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Impath, out of scope) with a remote Hardserver (typically on an application server or PC: 1
    • for the TOE. The Hardserver instance in the Connect XC establishes a secure channel (Impath, out of scope) with a remote Hardserver (typically on an application server or PC), which also includes libraries: 1
    • out of scope: 3
    • support higher level APIs, for example, but not limited to NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 3 Configuration 1: TOE in Connect XC 8 of 55 nShield Solo XC HSM Security: 1
    • support higher level APIs, for example, but not limited to, NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 4 Configuration 2: TOE in host server 1.3.3 Usage and major security features of: 1
pdf_data/st_metadata
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different