Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Sourcefire 3D System Version 5.2.0.1
CCEVS-VR-VID-10537-2014
Crunchy Certified PostgreSQL v9.5
21.0.03/TSE-CCCS-33
name Sourcefire 3D System Version 5.2.0.1 Crunchy Certified PostgreSQL v9.5
category Detection Devices and Systems Databases
scheme US TR
not_valid_after 21.03.2016 09.06.2019
not_valid_before 06.08.2014 09.06.2016
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10537-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification%20Report%20-%20Crunchy.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10537-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Security%20Target%20-%20Crunchy%20-%20Version%201.6%20-%2020160509.pdf
manufacturer Sourcefire Inc. Crunchy Data Solutions Inc.
manufacturer_web https://www.sourcefire.com/ https://crunchydata.com/
security_level {} EAL2+, ALC_FLR.2
dgst 79f1b9da6ca5a71c 1be0865a3af6b498
heuristics/cert_id CCEVS-VR-VID-10537-2014 21.0.03/TSE-CCCS-33
heuristics/cert_lab US []
heuristics/extracted_sars ADV_FSP.1, ALC_CMC.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, AGD_PRE.1 ASE_INT.1, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ADV_TDS.1, ATE_FUN.1, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, ALC_FLR.2, ASE_REQ.2, ALC_CMC.2, ATE_IND.2, ASE_CCL.1
heuristics/extracted_versions 5.2.0.1 9.5
heuristics/scheme_data
  • category: Firewall, Wireless Monitoring
  • certification_date: 06.08.2014
  • evaluation_facility: COACT, Inc. Labs
  • expiration_date: 06.08.2016
  • id: CCEVS-VR-VID10537
  • product: Sourcefire 3D System Version 5.2.0.1
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10537
  • vendor: Sourcefire, Inc.
heuristics/protection_profiles ac9abe3d5c5a31f0 3f6ac99252bbf14e
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_nd_v1.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0088b_pdf.pdf
pdf_data/report_filename st_vid10537-vr.pdf Certification Report - Crunchy.pdf
pdf_data/report_frontpage
  • US:
    • cert_id: CCEVS-VR-VID10537-2014
    • cert_item: Sourcefire 3D System Version 5.2.0.1
    • cert_lab: US NIAP
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10537-2014: 1
  • TR:
    • 21.0.03/TSE-CCCS-33: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2+: 1
    • EAL2+: 4
    • EAL4: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL: 1
    • ALC_FLR.2: 6
  • ASE:
    • ASE_INT.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_IND.2: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.AUTHUSER: 1
    • A.CONNECT: 1
    • A.MANAGE: 1
    • A.NO_GENERAL_PURPOSE: 1
    • A.PEER: 1
    • A.PHYSICAL: 1
    • A.SUPPORT: 1
    • A.TRAINEDUSER: 1
  • T:
    • T.ACCESS_TSFDATA: 1
    • T.ACCESS_TSFFUNC: 1
    • T.IA_MASQUERADE: 1
    • T.RESIDUAL_DATA: 1
    • T.TSF_COMPROMISE: 1
    • T.UNAUTHORIZED_ACCESS: 1
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 2
  • constructions:
    • MAC:
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-224: 2
      • SHA-384: 1
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 2
    • SSHv2: 4
  • TLS:
    • SSL:
      • SSL: 2
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 3
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-3: 1
    • FIPS PUB 186-2: 1
    • FIPS PUB 197: 1
    • FIPS PUB 198-1: 1
  • NIST:
    • NIST SP 800-38A: 1
  • CC:
    • CCMB-2012-09-004: 1
  • ISO:
    • ISO/IEC 17025: 2
  • RFC:
    • RFC 1321: 2
pdf_data/report_keywords/javacard_packages
  • org:
    • org.tr: 1
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • Audit Extension e PostGIS Spatial Extensions 2.4.1.2 Components and Capabilities that are Out of Scope The following Crunchy Certified PostgreSQL 9.5 components are out of scope and thus not included in: 1
    • Out of Scope: 1
    • out of scope: 1
    • platforms are included in the TOE. In addition, the following components in the IT environment are out of scope: e Authenticator servers, if configured; and e Terminal emulator 2.4.2 Logical Scope of the TOE 2: 1
pdf_data/report_metadata
  • /Author: Robert Roland
  • /Comments:
  • /Company: COACT
  • /CreationDate: D:20140807135046-04'00'
  • /Creator: Acrobat PDFMaker 10.1 for Word
  • /Keywords:
  • /ModDate: D:20140807135101-04'00'
  • /Producer: Adobe PDF Library 10.0
  • /SourceModified: D:20140807175026
  • /Subject:
  • /Title:
  • pdf_file_size_bytes: 136944
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /CreationDate: D:20160715145628+02'00'
  • /Creator: Canon iR-ADV C5240 PDF
  • /Producer: Adobe PSL 1.2e for Canon
  • pdf_file_size_bytes: 1639551
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 24
pdf_data/st_filename st_vid10537-st.pdf Security Target - Crunchy - Version 1.6 - 20160509.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 3
    • EAL2 augmented: 2
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP: 1
    • ADV_FSP.1: 16
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 15
    • AGD_PRE: 1
    • AGD_PRE.1: 11
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 5
    • ALC_CMS: 1
    • ALC_CMS.1: 6
  • ATE:
    • ATE_IND: 1
    • ATE_IND.1: 6
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 7
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 4
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 11
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT: 5
    • FAU_STG_EXT.1: 4
    • FAU_STG_EXT.1.1: 1
  • FCS:
    • FCS_CKM: 5
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 1
    • FCS_CKM.4: 5
    • FCS_CKM_EXT: 5
    • FCS_CKM_EXT.4: 8
    • FCS_CKM_EXT.4.1: 1
    • FCS_COP.1: 33
    • FCS_COP.1.1: 4
    • FCS_RBG_EXT: 5
    • FCS_RBG_EXT.1: 4
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSH_EXT: 5
    • FCS_SSH_EXT.1: 4
    • FCS_SSH_EXT.1.1: 1
    • FCS_SSH_EXT.1.2: 1
    • FCS_SSH_EXT.1.3: 1
    • FCS_SSH_EXT.1.4: 1
    • FCS_SSH_EXT.1.5: 1
    • FCS_SSH_EXT.1.6: 1
    • FCS_SSH_EXT.1.7: 1
    • FCS_TLS_EXT: 5
    • FCS_TLS_EXT.1: 6
    • FCS_TLS_EXT.1.1: 2
  • FDP:
    • FDP_ITC.1: 5
    • FDP_ITC.2: 5
    • FDP_RIP: 5
    • FDP_RIP.2: 3
    • FDP_RIP.2.1: 1
  • FIA:
    • FIA_PMG_EXT: 5
    • FIA_PMG_EXT.1: 4
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU: 5
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 5
    • FIA_UAU_EXT.2: 4
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 4
    • FIA_UIA_EXT.1: 7
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
    • FIA_UID.1: 2
    • FIA_UID_EXT: 1
  • FMT:
    • FMT_MTD: 5
    • FMT_MTD.1: 3
    • FMT_MTD.1.1: 1
    • FMT_SMF: 6
    • FMT_SMF.1: 5
    • FMT_SMF.1.1: 1
    • FMT_SMR: 5
    • FMT_SMR.2: 3
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 3
    • FPT_APW_EXT.1: 4
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_AWP_EXT: 2
    • FPT_ITT: 5
    • FPT_ITT.1: 7
    • FPT_ITT.1.1: 1
    • FPT_SKP_EXT: 5
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM: 5
    • FPT_STM.1: 4
    • FPT_STM.1.1: 1
    • FPT_TST_EXT: 5
    • FPT_TST_EXT.1: 4
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 5
    • FPT_TUD_EXT.1: 4
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 12
    • FTA_SSL.3: 3
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 6
    • FTA_SSL_EXT.1: 4
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 5
    • FTA_TAB.1: 4
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 5
    • FTP_ITC.1: 3
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 6
    • FTP_TRP.1: 3
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 3
    • FAU_GEN.1.2: 2
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 3
    • FAU_SEL.1: 7
    • FAU_SEL.1.1: 1
  • FDP:
    • FDP_ACC.1: 12
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 6
    • FDP_ACF.1.1: 3
    • FDP_ACF.1.2: 2
    • FDP_ACF.1.3: 3
    • FDP_ACF.1.4: 2
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
  • FIA:
    • FIA_ATD.1: 10
    • FIA_ATD.1.1: 3
    • FIA_UAU.1: 4
    • FIA_UAU.1.1: 3
    • FIA_UAU.1.2: 2
    • FIA_UID.1: 5
    • FIA_UID.1.1: 3
    • FIA_UID.1.2: 2
    • FIA_USB.1: 5
  • FMT:
    • FMT_MOF.1: 8
    • FMT_MOF.1.1: 1
    • FMT_MSA.1: 6
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 5
    • FMT_MSA.3.1: 3
    • FMT_MSA.3.2: 2
    • FMT_MTD.1: 5
    • FMT_MTD.1.1: 3
    • FMT_REV.1: 13
    • FMT_REV.1.1: 7
    • FMT_REV.1.2: 8
    • FMT_SMF.1: 5
    • FMT_SMF.1.1: 2
    • FMT_SMR.1: 7
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 2
  • FPT:
    • FPT_TRC.1: 7
    • FPT_TRC.1.1: 1
    • FPT_TRC.1.2: 1
  • FTA:
    • FTA_MCS.1: 5
    • FTA_MCS.1.1: 3
    • FTA_MCS.1.2: 2
    • FTA_TSE.1: 4
    • FTA_TSE.1.1: 3
pdf_data/st_keywords/cc_claims
  • A:
    • A.CONNECTIONS: 4
    • A.NO_GENERAL_PURPOSE: 1
    • A.PHYSICAL: 1
    • A.TRUSTED_ADMIN: 1
  • O:
    • O.ADDRESS_FILTERING: 5
    • O.DISPLAY_BANNER: 1
    • O.PORT_FILTERING: 5
    • O.PROTECTED_COMMUNICATIONS: 1
    • O.RELATED_CONNECTION_FILTERING: 5
    • O.RESIDUAL_INFORMATION_CLEARING: 1
    • O.SESSION_LOCK: 1
    • O.STATEFUL_INSPECTION: 5
    • O.SYSTEM_MONITORING: 1
    • O.TOE_ADMINISTRATION: 1
    • O.TSF_SELF_TEST: 1
    • O.VERIFIABLE_UPDATES: 1
  • OE:
    • OE.CONNECTIONS: 2
  • T:
    • T.ADMIN_ERROR: 1
    • T.NETWORK_ACCESS: 3
    • T.NETWORK_DISCLOSURE: 2
    • T.NETWORK_DOS: 4
    • T.NETWORK_MISUSE: 2
    • T.TSF_FAILURE: 1
    • T.UNAUTHORIZED_ACCESS: 1
    • T.UNAUTHORIZED_UPDATE: 1
    • T.UNDETECTED_ACTIONS: 1
    • T.USER_DATA_REUSE: 1
  • A:
    • A.AUTHUSER: 2
    • A.CONNECT: 2
    • A.MANAGE: 2
    • A.NO_GENERAL_PURPOSE: 2
    • A.PHYSICAL: 2
    • A.SUPPORT: 2
    • A.TRAINEDUSER: 2
  • O:
    • O.ACCESS_HISTORY: 8
    • O.ADMIN_ROLE: 8
    • O.AUDIT_GENERATION: 6
    • O.DISCRETIONARY_ACCESS: 6
    • O.MANAGE: 10
    • O.MEDIATE: 8
    • O.RESIDUAL_INFORMATION: 8
    • O.TOEACCESS: 1
    • O.TOE_ACCESS: 17
  • OE:
    • OE.ADMIN: 11
    • OE.INFO_PROTECT: 19
    • OE.IT_REMOTE: 9
    • OE.IT_TRUSTED_SYSTEM: 9
    • OE.NO_GENERAL_PURPOSE: 7
    • OE.PHYSICAL: 7
  • T:
    • T.ACCESS_TSFDATA: 2
    • T.ACCESS_TSFFUNC: 2
    • T.IA_MASQUERADE: 3
    • T.IA_USER: 2
    • T.RESIDUAL_DATA: 2
    • T.TSF_COMPROMISE: 3
    • T.UNAUTHORIZED_ACCESS: 3
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 13
  • DES:
    • 3DES:
      • 3DES: 1
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-224: 4
      • SHA-256: 2
      • SHA-384: 5
      • SHA-512: 12
  • MD:
    • MD5:
      • MD5: 4
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
    • Key agreement: 1
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 37
    • SSHv1: 2
    • SSHv2: 19
  • TLS:
    • TLS:
      • TLS: 16
      • TLS 1.0: 1
  • VPN:
    • VPN: 4
  • TLS:
    • SSL:
      • SSL: 14
pdf_data/st_keywords/randomness
  • PRNG:
    • PRNG: 3
  • RNG:
    • RBG: 5
    • RNG: 4
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 1
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 2
    • TLS_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_RSA_WITH_AES_256_CBC_SHA: 2
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 4
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 4
    • FIPS 186-2: 1
    • FIPS 186-3: 1
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-3: 1
    • FIPS PUB 186-2: 2
    • FIPS PUB 186-3: 1
    • FIPS PUB 197: 2
    • FIPS PUB 198-1: 1
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-56B: 1
    • SP 800-56B: 3
    • SP 800-90: 1
  • RFC:
    • RFC 2246: 2
    • RFC 2460: 2
    • RFC 2818: 2
    • RFC 3513: 2
    • RFC 4253: 1
    • RFC 4443: 2
    • RFC 5735: 2
    • RFC 768: 2
    • RFC 791: 2
    • RFC 792: 2
    • RFC 793: 2
    • RFC 959: 1
  • RFC:
    • RFC 1321: 4
    • RFC 1413: 2
    • RFC 1964: 1
    • RFC 2743: 1
    • RFC 4510: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • NTP Server SMTP Server Audit Server SNMP Server Network Assets Legend TOE Operational Environment Out of Scope … … Sourcefire 3D System Security Target 13 The TOE main subsystems are summarized as followed: •: 1
    • Out of Scope: 1
    • in the update header to ensure they match. 12 This process requires access to the Internet and is out of scope of the evaluation. Sourcefire 3D System Security Target 61 During the update process, if the Snort: 1
    • out of scope: 1
  • OutOfScope:
    • Audit Extension PostGIS Spatial Extensions 1.5.10.2 Components and Capabilities that are Out of Scope The following Crunchy Certified PostgreSQL 9.5 components are out of scope and thus not included in: 1
    • Out of Scope: 3
    • are prohibited in the evaluated configuration. See Section 1.5.10.2 for further details regarding Out of Scope Configuration Options. Note: The MD5 implementation is vendor developed to the RFC 1321: 1
    • methods are outside the scope of this evaluation. 1.5.10.3 Configuration Options that are Out of Scope. 1.5.10.3.1 “Trust” authentication option (not in TOE) When the trust authentication option is: 1
    • out of scope: 1
    • platforms are included in the TOE. In addition, the following components in the IT environment are out of scope: Authenticator servers, if configured; and Terminal emulator 1.5.10.4.3 Functional Dependencies: 1
pdf_data/st_metadata
  • /Author: Paul Laurence
  • /CreationDate: D:20160715155933+03'00'
  • /Creator: Microsoft® Word 2013
  • /ModDate: D:20160715155933+03'00'
  • /Producer: Microsoft® Word 2013
  • pdf_file_size_bytes: 1528693
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 80
state/report/convert_garbage False True
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different