Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
CA ACF2 r16
CCEVS-VR-VID-10811-2017
Entrust nShield Solo XC Hardware Security Module v12.60.15
NSCIB-CC-0368256-CR
name CA ACF2 r16 Entrust nShield Solo XC Hardware Security Module v12.60.15
category Other Devices and Systems Products for Digital Signatures
scheme US NL
status archived active
not_valid_after 01.09.2019 17.03.2026
not_valid_before 01.09.2017 17.03.2021
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10811-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-certificate%2021-0368256.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10811-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-0368256-CR-1.0.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10811-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-0368256-ST-1.1.pdf
manufacturer CA Technologies Entrust, Inc.
manufacturer_web https://www.ca.com https://www.entrust.com
security_level {} EAL4+, ALC_FLR.2, AVA_VAN.5
dgst 61c9cd7cd4d905c5 5267a9b98b878ef1
heuristics/cert_id CCEVS-VR-VID-10811-2017 NSCIB-CC-0368256-CR
heuristics/cert_lab US
heuristics/extracted_sars ADV_FSP.1, ALC_CMC.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, AGD_PRE.1 ALC_FLR.2, AVA_VAN.5, ATE_IND.2
heuristics/extracted_versions - 12.60.15
heuristics/scheme_data
  • category: Enterprise Security Management
  • certification_date: 18.08.2017
  • evaluation_facility: Booz Allen Hamilton Common Criteria Testing Laboratory
  • expiration_date: 18.08.2019
  • id: CCEVS-VR-VID10811
  • product: CA ACF2 r16
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10811
  • vendor: CA Technologies
heuristics/protection_profiles 292a489599472031, 64065af56aac20cf ee319f4a624019b0
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_esm_ac_v2.1.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_esm_pm_v2.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/ANSSI-CC-PP-2016_05 PP.pdf
pdf_data/cert_filename st_vid10811-ci.pdf NSCIB-certificate 21-0368256.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10811-2017: 1
  • FR:
    • ANSSI-CC-PP-2016/05-M01: 1
  • NL:
    • CC-21-0368256: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05-M01: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
    • EAL4 augmented: 1
    • EAL7: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/cc_claims
  • R:
    • R.L: 1
pdf_data/cert_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
  • BrightSight:
    • Brightsight: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408-2: 1
    • ISO/IEC 15408-3: 1
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20170901125546-04'00'
  • /ModDate: D:20170901125657-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 178593
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20210614114037+01'00'
  • /Creator: C458-M
  • /ModDate: D:20210614123528+02'00'
  • /Producer: KONICA MINOLTA bizhub C458
  • /Title: C458-M&S21061411400
  • pdf_file_size_bytes: 210038
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid10811-vr.pdf NSCIB-CC-0368256-CR-1.0.pdf
pdf_data/report_frontpage
  • NL:
  • US:
    • cert_id: CCEVS-VR-VID10811-2017
    • cert_item: CAACF2 r16
    • cert_lab: US NIAP
  • NL:
    • cert_id: NSCIB-CC-0368256-CR
    • cert_item: nShield Solo XC Hardware Security Module v12.60.15
    • cert_lab: Brightsight B.V
    • developer: nCipher Security Limited (an Entrust company
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10811-2017: 1
  • FR:
    • ANSSI-CC-PP-2016/05-M01: 1
  • NL:
    • NSCIB-CC-0368256-CR: 12
pdf_data/report_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05-M01: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 2
    • EAL4 augmented: 1
    • EAL4+: 2
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ALC:
    • ALC_FLR.2: 2
  • ATE:
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 4
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 1
  • FCS:
    • FCS_COP: 1
  • FTP:
    • FTP_TRP: 1
pdf_data/report_keywords/cc_claims
  • O:
    • O.ACCESSID: 1
    • O.AUDIT: 1
    • O.AUTH: 1
    • O.CONSISTENT: 1
    • O.DATAPROT: 1
    • O.DISTRIB: 1
    • O.INTEGRITY: 2
    • O.MAINTAIN: 1
    • O.MANAGE: 1
    • O.MNGRID: 1
    • O.MONITOR: 1
    • O.OFLOWS: 1
    • O.POLICY: 1
    • O.PROTCOMMS: 1
    • O.ROBUST: 1
    • O.SELFID: 2
  • T:
    • T.ADMIN_ERROR: 1
    • T.CONTRADICT: 1
    • T.DISABLE: 1
    • T.EAVES: 1
    • T.FALSIFY: 1
    • T.FORGE: 2
    • T.MASK: 1
    • T.NOROUTE: 1
    • T.OFLOWS: 1
    • T.UNAUTH: 2
    • T.WEAKIA: 1
    • T.WEAKPOL: 1
pdf_data/report_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 4
  • BrightSight:
    • Brightsight: 2
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDSA:
      • ECDSA: 1
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 3
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 2
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
  • TRNG:
    • TRNG: 1
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • other:
    • JIL: 1
    • JIL-AAPHD: 1
    • JIL-AMHD: 1
pdf_data/report_keywords/standard_id
  • ISO:
    • ISO/IEC 19790:2012: 1
pdf_data/report_metadata
pdf_data/st_filename st_vid10811-st.pdf NSCIB-CC-0368256-ST-1.1.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-: 1
    • ANSSI-CC-PP-2016/05-: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 59
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 8
  • AGD:
    • AGD_OPE.1: 11
    • AGD_PRE.1: 3
  • ALC:
    • ALC_CMC.1: 5
    • ALC_CMS.1: 6
  • ATE:
    • ATE_IND.1: 6
  • AVA:
    • AVA_VAN.1: 7
  • ALC:
    • ALC_FLR.2: 58
  • AVA:
    • AVA_VAN.5: 60
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 2
    • FAU_GEN.1: 2
    • FAU_GEN.1.1: 3
    • FAU_GEN.1.2: 1
    • FAU_SEL: 2
    • FAU_SEL.1: 4
    • FAU_SEL.1.1: 1
    • FAU_SEL_EXT: 2
    • FAU_SEL_EXT.1: 6
    • FAU_SEL_EXT.1.1: 1
    • FAU_STG: 2
    • FAU_STG.1: 2
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG_EXT: 2
    • FAU_STG_EXT.1: 7
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCO:
    • FCO_NRR: 2
    • FCO_NRR.2: 3
    • FCO_NRR.2.1: 2
    • FCO_NRR.2.2: 1
    • FCO_NRR.2.3: 1
  • FDP:
    • FDP_ACC.1: 10
    • FDP_ACC.1.1: 2
    • FDP_ACF.1: 11
    • FDP_ACF.1.1: 2
    • FDP_ACF.1.2: 2
    • FDP_ACF.1.3: 2
    • FDP_ACF.1.4: 3
  • FIA:
    • FIA_AFL: 2
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_USB: 2
    • FIA_USB.1: 6
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_MOF: 2
    • FMT_MOF.1: 12
    • FMT_MOF.1.1: 4
    • FMT_MOF_EXT: 2
    • FMT_MOF_EXT.1: 5
    • FMT_MOF_EXT.1.1: 1
    • FMT_MSA: 4
    • FMT_MSA.1: 2
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 3
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MSA_EXT: 2
    • FMT_MSA_EXT.5: 5
    • FMT_MSA_EXT.5.1: 1
    • FMT_MSA_EXT.5.2: 1
    • FMT_SMF: 2
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
    • FMT_SMR: 2
    • FMT_SMR.1: 8
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_APW_EXT: 2
    • FPT_APW_EXT.1: 4
    • FPT_FLS_EXT: 2
    • FPT_FLS_EXT.1: 4
    • FPT_FLS_EXT.1.1: 1
    • FPT_RPL: 2
    • FPT_RPL.1: 3
    • FPT_RPL.1.1: 1
    • FPT_RPL.1.2: 1
    • FPT_SKP_EXT: 2
    • FPT_SKP_EXT.1: 2
    • FPT_SKP_EXT.1.1: 1
  • FRU:
    • FRU_FLT: 2
    • FRU_FLT.1: 2
    • FRU_FLT.1.1: 1
  • FTA:
    • FTA_TAB.1: 4
    • FTA_TSE: 2
    • FTA_TSE.1: 4
    • FTA_TSE.1.1: 1
  • FTP:
    • FTP_ITC: 2
    • FTP_ITC.1: 7
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 2
    • FTP_TRP.1: 6
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_GEN.1: 10
    • FAU_GEN.1.1: 2
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 1
    • FAU_STG.2: 5
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 1
    • FAU_STG.2.3: 1
  • FCS:
    • FCS_CKM.1: 11
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 1
    • FCS_CKM.4: 11
    • FCS_CKM.4.1: 1
    • FCS_COP.1: 10
    • FCS_COP.1.1: 1
    • FCS_RNG: 12
    • FCS_RNG.1: 5
  • FDP:
    • FDP_ACC: 15
    • FDP_ACC.1: 10
    • FDP_ACF: 14
    • FDP_ACF.1: 12
    • FDP_IFC: 10
    • FDP_IFC.1: 7
    • FDP_IFF: 9
    • FDP_IFF.1: 10
    • FDP_ITC.1: 2
    • FDP_ITC.2: 2
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
    • FDP_SDI.1: 1
    • FDP_SDI.2: 6
    • FDP_SDI.2.1: 1
    • FDP_SDI.2.2: 1
  • FIA:
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_UAU: 13
    • FIA_UAU.1: 9
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.6: 2
    • FIA_UID.1: 14
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA: 22
    • FMT_MSA.1: 5
    • FMT_MSA.3: 9
    • FMT_MTD: 12
    • FMT_MTD.1: 2
    • FMT_SMF.1: 11
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 18
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 4
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_PHP.3: 4
    • FPT_PHP.3.1: 1
    • FPT_STM.1: 7
    • FPT_STM.1.1: 1
    • FPT_TST_EXT.1: 9
    • FPT_TST_EXT.1.1: 1
  • FTP:
    • FTP_TRP: 15
    • FTP_TRP.1: 3
pdf_data/st_keywords/cc_claims
  • A:
    • A.CRYPTO: 1
    • A.ESM: 1
    • A.INSTALL: 1
    • A.MANAGE: 1
    • A.POLICY: 1
    • A.SYSTIME: 1
    • A.USERID: 1
  • O:
    • O.ACCESSID: 1
    • O.AUDIT: 1
    • O.AUTH: 1
    • O.BANNER: 1
    • O.CONSISTENT: 1
    • O.DATAPROT: 1
    • O.DISTRIB: 1
    • O.INTEGRITY: 1
    • O.MAINTAIN: 1
    • O.MANAGE: 1
    • O.MNGRID: 1
    • O.MONITOR: 1
    • O.OFLOWS: 1
    • O.POLICY: 1
    • O.PROTCOMMS: 1
    • O.ROBUST: 1
    • O.SELFID: 2
  • OE:
    • OE.ADMIN: 2
    • OE.BANNER: 2
    • OE.CRYPTO: 3
    • OE.INSTALL: 2
    • OE.PERSON: 2
    • OE.POLICY: 2
    • OE.PROTECT: 2
    • OE.ROBUST: 1
    • OE.SYSTIME: 2
    • OE.USERID: 3
  • T:
    • T.ADMIN_ERROR: 1
    • T.CONTRADICT: 1
    • T.DISABLE: 1
    • T.EAVES: 1
    • T.FALSIFY: 1
    • T.FORGE: 1
    • T.MASK: 1
    • T.NOROUTE: 1
    • T.OFLOWS: 1
    • T.UNAUTH: 3
    • T.WEAKIA: 1
    • T.WEAKPOL: 1
  • OT:
    • OT.A: 1
    • OT.D: 2
    • OT.RNG: 3
  • R:
    • R.RAD: 1
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
    • Microsoft Corporation: 1
pdf_data/st_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 2
  • AES_competition:
    • AES:
      • AES: 8
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 4
  • constructions:
    • MAC:
      • CBC-MAC: 2
      • CMAC: 3
      • HMAC: 2
      • HMAC-SHA-224: 1
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • FF:
    • DH:
      • Diffie-Hellman: 1
  • ECC:
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 1
      • Diffie-Hellman: 3
    • DSA:
      • DSA: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-224: 1
      • SHA-384: 1
      • SHA-512: 1
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 7
  • TLS:
    • SSL:
      • SSL: 6
    • TLS:
      • TLS: 13
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 5
  • PRNG:
    • DRBG: 3
  • RNG:
    • RNG: 31
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 1
  • ECB:
    • ECB: 2
  • GCM:
    • GCM: 2
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP160r1: 1
    • brainpoolP192r1: 1
    • brainpoolP192t1: 1
    • brainpoolP224r1: 3
    • brainpoolP224t1: 1
    • brainpoolP256r1: 3
    • brainpoolP256t1: 3
    • brainpoolP320r1: 3
    • brainpoolP320t1: 3
    • brainpoolP384r1: 3
    • brainpoolP384t1: 3
    • brainpoolP512r1: 3
    • brainpoolP512t1: 3
  • NIST:
    • B-163: 1
    • B-233: 3
    • B-283: 3
    • B-409: 3
    • B-571: 3
    • K-163: 1
    • K-233: 3
    • K-283: 3
    • K-409: 3
    • K-571: 3
    • NIST P-192: 1
    • NIST P-224: 2
    • P-192: 1
    • P-224: 4
    • P-256: 6
    • P-384: 6
    • P-521: 6
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 2
    • physical tampering: 2
  • SCA:
    • side-channels: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2012-009-001: 1
    • CCMB-2012-009-003: 1
    • CCMB-2012-009-004: 1
  • FIPS:
    • FIPS 140-2: 1
    • FIPS PUB 197: 2
  • PKCS:
    • PKCS#11: 2
  • BSI:
    • AIS 20: 1
    • AIS 31: 9
    • AIS31: 2
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 140-2: 6
    • FIPS 180-4: 1
    • FIPS 186-4: 2
    • FIPS 197: 2
    • FIPS 198-1: 1
  • ISO:
    • ISO/IEC 19790:2012: 1
  • NIST:
    • NIST SP 800-22: 1
    • NIST SP 800-90A: 3
    • SP 800-108: 1
    • SP 800-38A: 1
    • SP 800-38B: 1
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-38F: 1
    • SP 800-56A: 2
    • SP 800-67: 1
    • SP 800-90A: 3
  • PKCS:
    • PKCS #1: 1
    • PKCS#1: 2
    • PKCS#11: 2
  • RFC:
    • RFC 8017: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • boundary. It does not matter if they are installed on the Operational Environment because they are out of scope for the requirements in this evaluation as explained below. EUA – Extended User Authentication: 1
    • out of scope: 1
  • OutOfScope:
    • Impath, out of scope) with a remote Hardserver (typically on an application server or PC: 1
    • for the TOE. The Hardserver instance in the Connect XC establishes a secure channel (Impath, out of scope) with a remote Hardserver (typically on an application server or PC), which also includes libraries: 1
    • out of scope: 3
    • support higher level APIs, for example, but not limited to NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 3 Configuration 1: TOE in Connect XC 8 of 55 nShield Solo XC HSM Security: 1
    • support higher level APIs, for example, but not limited to, NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 4 Configuration 2: TOE in host server 1.3.3 Usage and major security features of: 1
pdf_data/st_metadata
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different