Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Trustwave AppDetectivePRO version 10.2
CCEVS-VR-VID-11306-2023
Employee Express (EmplX) Security Module v1.0 (Build SVR 2.0)
ISCB-5-RPT-C019-CR-v1a
name Trustwave AppDetectivePRO version 10.2 Employee Express (EmplX) Security Module v1.0 (Build SVR 2.0)
scheme US MY
not_valid_after 20.09.2025 04.11.2016
not_valid_before 20.09.2023 04.11.2011
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11306-ci.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11306-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C019-CR-v1a.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11306-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/MYWave%20EAL2%20Security%20Target%20(EmplX%20Security%20Module)%20v1.0.pdf
manufacturer Trustwave Holdings, Inc. MYwave Sdn Bhd
manufacturer_web https://www.trustwave.com/ https://www.mywave.biz
security_level {} EAL2
dgst 6cdd9a0dc56ac03f 111e346581566c73
heuristics/cert_id CCEVS-VR-VID-11306-2023 ISCB-5-RPT-C019-CR-v1a
heuristics/cert_lab US []
heuristics/extracted_sars ALC_TSU.1, ASE_CCL.1, AGD_PRE.1, ALC_CMC.1, ASE_SPD.1, AGD_OPE.1, ATE_IND.1, ASE_INT.1, ASE_ECD.1, ASE_OBJ.1, ASE_REQ.1, ALC_CMS.1, AVA_VAN.1, ADV_FSP.1 ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1
heuristics/extracted_versions 10.2 1.0, 2.0
heuristics/scheme_data
  • api_url: https://www.niap-ccevs.org/api/project/product/pcl_products/11306/
  • categories: ['Application Software']
  • category: Application Software
  • certification_date: 20.09.2023
  • evaluation_facility: Acumen Security
  • expiration_date: 20.09.2025
  • id: CCEVS-VR-VID11306
  • product: Trustwave AppDetectivePRO version 10.2
  • scheme: US
  • url: https://www.niap-ccevs.org/products/11306
  • vendor: Trustwave Holdings Inc
  • cert_no: 2011-018-C019
  • certification_date: 04.11.2011
  • developer: MYwave Sdn Bhd
  • enhanced:
    • assurance_level: EAL2
    • category: Other Devices and Systems
    • cert_id: C019
    • certification_date: 04.11.2011
    • developer: Yip Hon Choong 1-3-21, Krystal Point Corporate Park,Jalan Tun Dr Awang,11900 Bayan Lepas, Pulau Pinang MALAYSIA URL: http://www.mywave.bizEmail: [email protected]:+ 604 6403 117
    • expiration_date: 04.11.2016
    • mutual_recognition: CCRA
    • product: Employee Express (EmplX) Security Module
    • report_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C019/ISCB-5-RPT-C019-CR-v1a.pdf
    • scope: The Target of Evaluation (TOE), Employee Express (EmplX) Security Module v1.0 (Build SVR 2.0) is a PHP module of EmplX Human Resource Management Systems (HRMS) web application hosted on a web server. It is designed to be used as a core security controlling module for a web-based application environment. The TOE provides core security functionality such as authentication, access control, secure communications and application security management. All http requests to the web server will be meditated by the TOE before allowing access to the rest of the EmplX HRMS. The security functionality that is within the scope of the evaluation includes: Access control – EmplX Security Module manages access control based on user IDs, user roles and access control lists. It maintains access control lists (ACLs) for each object within an organisation. Each ACL maps users and roles to the operations that they are permitted to perform on the object. Organisation Management – EmplX Security Module provides strict controls on organisation management. Only Super Administrators can manage the creation, modification and destruction of an organisation. Users and Supervisors can only operate within their organisation. Identification and Authentication – each user is required to successfully identified using user ID and authenticated using password before any interaction with protected resources within EmplX HRMS is permitted. Security Management - EmplX Security Module provides functions that allow management of the TOE and its security functions. It restricts access to the management functions based on the role of the user. Secure Communications - EmplX Security Module is able to protect the user data from disclosure and modification when it is sent from users' browser to the EmplX HRMS using the secure SSL channel.
    • status: Archive
    • target_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C019/MYWave%20EAL2%20Security%20Target%20(EmplX%20Security%20Module)%20v1.0.pdf
    • type: Specialist software module designed to be used as a core security controlling module for a web-based application environment
  • expiration_date: 04.11.2016
  • level: EAL2
  • product: Employee Express (EmplX) Security Module
  • recognition: CCRA
  • url: https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/153
heuristics/protection_profiles 90c116e62a19bc4d {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_APP_V1.4.pdf {}
pdf_data/cert_filename st_vid11306-ci.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11306-2023: 1
pdf_data/cert_keywords/cc_protection_profile_id
pdf_data/cert_keywords/cc_security_level
pdf_data/cert_keywords/cc_sar
pdf_data/cert_keywords/cc_sfr
pdf_data/cert_keywords/cc_claims
pdf_data/cert_keywords/vendor
pdf_data/cert_keywords/eval_facility
  • Acumen:
    • Acumen Security: 1
pdf_data/cert_keywords/symmetric_crypto
pdf_data/cert_keywords/asymmetric_crypto
pdf_data/cert_keywords/pq_crypto
pdf_data/cert_keywords/hash_function
pdf_data/cert_keywords/crypto_scheme
pdf_data/cert_keywords/crypto_protocol
pdf_data/cert_keywords/randomness
pdf_data/cert_keywords/cipher_mode
pdf_data/cert_keywords/ecc_curve
pdf_data/cert_keywords/crypto_engine
pdf_data/cert_keywords/tls_cipher_suite
pdf_data/cert_keywords/crypto_library
pdf_data/cert_keywords/vulnerability
pdf_data/cert_keywords/side_channel_analysis
pdf_data/cert_keywords/technical_report_id
pdf_data/cert_keywords/device_model
pdf_data/cert_keywords/tee_name
pdf_data/cert_keywords/os_name
pdf_data/cert_keywords/cplc_data
pdf_data/cert_keywords/ic_data_group
pdf_data/cert_keywords/standard_id
pdf_data/cert_keywords/javacard_version
pdf_data/cert_keywords/javacard_api_const
pdf_data/cert_keywords/javacard_packages
pdf_data/cert_keywords/certification_process
pdf_data/cert_metadata
  • /CreationDate: D:20231002135614-04'00'
  • /ModDate: D:20231002135614-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 179432
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid11306-vr.pdf ISCB-5-RPT-C019-CR-v1a.pdf
pdf_data/report_frontpage
  • US:
    • cert_id: CCEVS-VR-VID11306-2023
    • cert_item: Trustwave AppDetectivePRO v10.2
    • cert_lab: US NIAP
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11306-2023: 1
  • MY:
    • ISCB-5-RPT-C019-CR-v1a: 30
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL2: 10
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_COP.1: 1
  • FDP:
    • FDP_ACC.1: 1
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.3: 1
  • FIA:
    • FIA_UAU.2: 1
    • FIA_UID.2: 1
  • FMT:
    • FMT_MSA.1: 1
    • FMT_MSA.3: 1
    • FMT_MTD: 4
    • FMT_SMF.1: 1
    • FMT_SMR.1: 1
  • FTP:
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.3: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 5
pdf_data/report_keywords/eval_facility
  • Acumen:
    • Acumen Security: 4
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 2
      • SHA-224: 1
      • SHA-256: 2
      • SHA-384: 1
      • SHA-512: 1
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 4
    • TLS:
      • TLS: 1
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
pdf_data/report_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 180-2: 2
  • ISO:
    • ISO/IEC 18045: 2
    • ISO/IEC15408: 2
pdf_data/report_metadata
  • /Author: Zie
  • /CreationDate: D:20111109153418+08'00'
  • /Creator: PScript5.dll Version 5.2
  • /ModDate: D:20111109153418+08'00'
  • /Producer: Acrobat Distiller 8.3.1 (Windows)
  • /Title: Microsoft Word - ISCB-5-RPT-C019-CR-v1a _web_
  • pdf_file_size_bytes: 330254
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 30
pdf_data/st_filename st_vid11306-st.pdf MYWave EAL2 Security Target (EmplX Security Module) v1.0.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 9
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
    • ALC_TSU: 1
    • ALC_TSU.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
  • ASE:
    • ASE_CCL.1: 4
    • ASE_ECD.1: 1
    • ASE_INT.1: 4
    • ASE_OBJ.2: 4
    • ASE_REQ.2: 4
    • ASE_SPD.1: 4
    • ASE_TSS.1: 4
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM_EXT.1: 3
    • FCS_CKM_EXT.1.1: 1
    • FCS_RBG_EXT.1: 3
    • FCS_RBG_EXT.1.1: 1
    • FCS_STO_EXT.1: 3
    • FCS_STO_EXT.1.1: 1
  • FDP:
    • FDP_DAR_EXT.1: 3
    • FDP_DAR_EXT.1.1: 1
    • FDP_DEC_EXT.1: 3
    • FDP_DEC_EXT.1.1: 1
    • FDP_DEC_EXT.1.2: 1
    • FDP_NET_EXT.1: 3
    • FDP_NET_EXT.1.1: 1
  • FMT:
    • FMT_CFG_EXT.1: 3
    • FMT_CFG_EXT.1.1: 1
    • FMT_CFG_EXT.1.2: 1
    • FMT_MEC_EXT.1: 3
    • FMT_MEC_EXT.1.1: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
  • FPR:
    • FPR_ANO_EXT.1: 3
    • FPR_ANO_EXT.1.1: 1
  • FPT:
    • FPT_AEX_EXT.1: 3
    • FPT_AEX_EXT.1.1: 1
    • FPT_AEX_EXT.1.2: 1
    • FPT_AEX_EXT.1.3: 1
    • FPT_AEX_EXT.1.4: 1
    • FPT_AEX_EXT.1.5: 1
    • FPT_API_EXT.1: 3
    • FPT_API_EXT.1.1: 1
    • FPT_IDV_EXT.1: 3
    • FPT_IDV_EXT.1.1: 1
    • FPT_LIB_EXT.1: 3
    • FPT_LIB_EXT.1.1: 1
    • FPT_TUD_EXT.1: 3
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
    • FPT_TUD_EXT.1.4: 1
    • FPT_TUD_EXT.1.5: 1
    • FPT_TUD_EXT.2: 2
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 2
    • FPT_TUD_EXT.2.3: 1
  • FTP:
    • FTP_DIT_EXT.1: 3
    • FTP_DIT_EXT.1.1: 2
  • FCS:
    • FCS_CKM.1: 3
    • FCS_CKM.4: 3
    • FCS_COP: 1
    • FCS_COP.1: 4
    • FCS_COP.1.1: 1
  • FDP:
    • FDP_ACC: 2
    • FDP_ACC.1: 11
    • FDP_ACC.1.1: 1
    • FDP_ACF: 2
    • FDP_ACF.1: 6
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 2
    • FDP_IFF: 2
    • FDP_ITC.1: 2
    • FDP_ITC.2: 2
  • FIA:
    • FIA_UAU: 2
    • FIA_UAU.1: 1
    • FIA_UAU.2: 4
    • FIA_UAU.2.1: 1
    • FIA_UID: 2
    • FIA_UID.1: 4
    • FIA_UID.2: 5
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MSA: 2
    • FMT_MSA.1: 6
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 7
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD: 25
    • FMT_SMF: 1
    • FMT_SMF.1: 19
    • FMT_SMF.1.1: 1
    • FMT_SMR: 2
    • FMT_SMR.1: 17
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FTP:
    • FTP_TRP.1: 5
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.PLATFORM: 1
    • A.PROPER_ADMIN: 1
    • A.PROPER_USER: 1
  • O:
    • O.INTEGRITY: 1
    • O.MANAGMENT: 1
    • O.PROTECTED_COMMS: 1
    • O.PROTECTED_STORAGE: 1
    • O.QUALITY: 1
  • OE:
    • OE.PLATFORM: 1
    • OE.PROPER_ADMIN: 1
    • OE.PROPER_USER: 1
  • T:
    • T.LOCAL_ATTACK: 1
    • T.NETWORK_ATTACK: 1
    • T.NETWORK_EAVESDROP: 1
    • T.PHYSICAL_ACCESS: 1
  • A:
    • A.ADMIN: 2
    • A.DATABASE: 2
    • A.ENVIRONMENT: 2
    • A.MANAGEMENT: 2
    • A.NETWORK: 2
    • A.PATCH: 1
    • A.PHYSICAL: 2
    • A.SSL_CONFIG: 2
  • O:
    • O.ACCESS: 4
    • O.COMM: 3
    • O.MANAGE: 3
    • O.ORGANISATION: 3
    • O.PASSWORD: 3
    • O.USER: 5
  • OE:
    • OE.ADMIN: 2
    • OE.DATABASE: 2
    • OE.ENVIRONMENT: 2
    • OE.MANAGEMENT: 2
    • OE.NETWORK: 2
    • OE.PATCH: 2
    • OE.PHYSICAL: 2
    • OE.SSL_CONFIG: 2
  • T:
    • T.ACCESS: 2
    • T.COMM: 1
    • T.MANAGEMENT: 2
    • T.ORGANISATION: 3
    • T.PASSWORD: 2
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 13
pdf_data/st_keywords/eval_facility
  • Acumen:
    • Acumen Security: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA1: 1
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 1
  • TLS:
    • TLS:
      • TLS: 1
  • TLS:
    • SSL:
      • SSL: 8
    • TLS:
      • TLS: 1
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 4
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/st_metadata
  • /Author: Zie
  • /CreationDate: D:20111109153646+08'00'
  • /Creator: PScript5.dll Version 5.2
  • /ModDate: D:20111109153646+08'00'
  • /Producer: Acrobat Distiller 8.3.1 (Windows)
  • /Title: Microsoft Word - MYWave EAL2 Security Target _EmplX Security Module_ v1.0
  • pdf_file_size_bytes: 307957
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 37
state/cert/convert_ok True False
state/cert/download_ok True False
state/cert/extract_ok True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different