Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
secunet wall, Version 6.01
BSI-DSZ-CC-1116-2020
NetApp Storage Encryption (NSE) Running ONTAP 9.14.1
CCEVS-VR-VID-11477-2024
name secunet wall, Version 6.01 NetApp Storage Encryption (NSE) Running ONTAP 9.14.1
category Network and Network-Related Devices and Systems Other Devices and Systems
scheme DE US
status archived active
not_valid_after 10.01.2025 18.11.2026
not_valid_before 10.01.2020 18.11.2024
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1116c_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11477-ci.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1116a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11477-vr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1116b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11477-st.pdf
manufacturer Secunet Security Networks AG NetApp, Inc.
manufacturer_web https://www.secunet.com/en/ https://www.netapp.com/
security_level ASE_TSS.2, ALC_FLR.2, EAL4+, AVA_VAN.5 {}
dgst 7b221e836b5e04db ebcbec6fc7d39ca6
heuristics/cert_id BSI-DSZ-CC-1116-2020 CCEVS-VR-VID-11477-2024
heuristics/cert_lab BSI US
heuristics/cpe_matches {} cpe:2.3:a:netapp:ontap_9:-:*:*:*:*:*:*:*
heuristics/related_cves {} CVE-2023-27535, CVE-2022-42915
heuristics/extracted_sars ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ALC_TAT.1, ASE_SPD.1, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_TSS.2, ALC_FLR.2, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1 ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, ATE_FUN.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1
heuristics/extracted_versions 6.01 9.14.1
heuristics/report_references/directly_referenced_by BSI-DSZ-CC-1116-V2-2022 {}
heuristics/report_references/indirectly_referenced_by BSI-DSZ-CC-1116-V2-2022 {}
heuristics/scheme_data
heuristics/protection_profiles {} 52d782dbb1cd05bd
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_FDE_AA_V2.0E.pdf
pdf_data/cert_filename 1116c_pdf.pdf st_vid11477-ci.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1116-2020: 1
  • US:
    • CCEVS-VR-VID11477-2024: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 2
    • EAL 4 augmented: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
  • ASE:
    • ASE_TSS.2: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/eval_facility
  • Leidos:
    • Leidos: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20200117091703+01'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung"
  • /ModDate: D:20200117094158+01'00'
  • /Producer: LibreOffice 6.2
  • /Subject: secunet wall 6.0.1
  • /Title: Certification Report BSI-DSZ-CC-1116
  • pdf_file_size_bytes: 304663
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Producer: WeasyPrint 62.3
  • /Title: VID11477-FINAL CERT
  • pdf_file_size_bytes: 136132
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename 1116a_pdf.pdf st_vid11477-vr.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ALC_FLR.2, AVA_VAN.5 und ASE_TSS.2
    • cc_version: Product specific Security Target Common Criteria Part 2 conformant
    • cert_id: BSI-DSZ-CC-1116-2020
    • cert_item: secunet wall, Version 6.0.1
    • cert_lab: BSI
    • developer: secunet Security Networks AG
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • US:
  • DE:
  • US:
    • cert_id: CCEVS-VR-VID11477-2024
    • cert_item: for NetApp Storage Encryption (NSE) Running ONTAP 9.14.1
    • cert_lab: US NIAP
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1116: 1
    • BSI-DSZ-CC-1116-2020: 12
  • US:
    • CCEVS-VR-VID11477-2024: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 8
    • EAL 4 augmented: 3
    • EAL 5: 3
    • EAL 5+: 1
    • EAL 6: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 3
    • ALC_FLR.2: 4
  • ASE:
    • ASE_TSS.2: 4
  • AVA:
    • AVA_VAN.5: 4
  • ADV:
    • ADV_FSP.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ATE:
    • ATE_FUN.1: 1
  • AVA:
    • AVA_VAN.1: 1
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 1
  • FCS:
    • FCS_COP: 1
    • FCS_COP.1: 1
  • FDP:
    • FDP_IFF.1: 1
  • FMT:
    • FMT_SMR.1: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
pdf_data/report_keywords/eval_facility
  • SRC:
    • SRC Security Research & Consulting: 3
  • Leidos:
    • Leidos: 6
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 2
      • SHA-512: 9
      • SHA512: 1
pdf_data/report_keywords/crypto_protocol
  • PGP:
    • PGP: 5
  • SSH:
    • SSH: 5
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RBG: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 32: 1
    • AIS 34: 2
  • FIPS:
    • FIPS PUB 180-4: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • RFC:
    • RFC 8017: 3
  • NIST:
    • NIST SP 800-132: 1
    • NIST SP 800-38F: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 1, BSI-DSZ-CC-1116 Version: Version 1.2, Date: 13.12.2019, SRC Security Research & Consulting GmbH (confidential document) [8] secunet wall 6.0.1, Administrationshandbuch, Handbuch-Version 1.0, 15.10.2019, secunet: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
  • OutOfScope:
    • not tested in the evaluated configuration. System Manager GUI The System Manager GUI is considered out of scope and all management is performed via the command line interface. VMware Virtualization VMware: 1
    • out of scope: 1
pdf_data/report_metadata
pdf_data/st_filename 1116b_pdf.pdf st_vid11477-st.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1116: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 4
    • EAL4 augmented: 2
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_FLR.2: 5
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.2: 7
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 6
  • ADV:
    • ADV_FSP.1: 11
  • AGD:
    • AGD_OPE.1: 12
    • AGD_PRE.1: 8
  • ALC:
    • ALC_CMC.1: 6
    • ALC_CMS.1: 7
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 2
  • ATE:
    • ATE_IND.1: 7
  • AVA:
    • AVA_VAN.1: 8
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 11
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
  • FCS:
    • FCS_CKM.1: 4
    • FCS_CKM.4: 4
    • FCS_COP: 19
    • FCS_COP.1: 2
  • FDP:
    • FDP_ACC: 1
    • FDP_ACC.1: 3
    • FDP_IFC.1: 17
    • FDP_IFC.1.1: 2
    • FDP_IFF: 1
    • FDP_IFF.1: 11
    • FDP_IFF.1.1: 2
    • FDP_IFF.1.2: 1
    • FDP_IFF.1.3: 1
    • FDP_IFF.1.4: 1
    • FDP_IFF.1.5: 1
    • FDP_ITC.1: 4
    • FDP_ITC.2: 13
    • FDP_ITC.2.1: 1
    • FDP_ITC.2.2: 1
    • FDP_ITC.2.3: 1
    • FDP_ITC.2.4: 1
    • FDP_ITC.2.5: 1
  • FIA:
    • FIA_AFL.1: 9
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_UAU.1: 11
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UID.1: 12
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA.1: 11
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 11
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 14
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 14
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_STM.1: 12
    • FPT_STM.1.1: 1
    • FPT_TDC.1: 12
    • FPT_TDC.1.1: 1
    • FPT_TDC.1.2: 1
  • FTP:
    • FTP_ITC.1: 2
    • FTP_TRP.1: 2
  • FCS:
    • FCS_AFA_EXT: 4
    • FCS_AFA_EXT.1: 7
    • FCS_AFA_EXT.1.1: 2
    • FCS_AFA_EXT.2: 6
    • FCS_AFA_EXT.2.1: 1
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 1
    • FCS_CKM.4: 16
    • FCS_CKM.4.1: 2
    • FCS_CKM_EXT.4: 16
    • FCS_CKM_EXT.4.1: 2
    • FCS_COP.1: 45
    • FCS_COP.1.1: 9
    • FCS_KDF_EXT: 4
    • FCS_KDF_EXT.1: 7
    • FCS_KDF_EXT.1.1: 1
    • FCS_KYC_EXT: 4
    • FCS_KYC_EXT.1: 4
    • FCS_KYC_EXT.1.1: 1
    • FCS_KYC_EXT.1.2: 1
    • FCS_KYC_EXT.2: 2
    • FCS_PCC_EXT: 4
    • FCS_PCC_EXT.1: 8
    • FCS_PCC_EXT.1.1: 1
    • FCS_RBG_EXT: 1
    • FCS_RBG_EXT.1: 12
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SNI_EXT: 2
    • FCS_SNI_EXT.1: 7
    • FCS_SNI_EXT.1.1: 1
    • FCS_SNI_EXT.1.2: 1
    • FCS_SNI_EXT.1.3: 1
    • FCS_VAL_EXT: 2
    • FCS_VAL_EXT.1: 9
    • FCS_VAL_EXT.1.1: 1
    • FCS_VAL_EXT.1.2: 1
    • FCS_VAL_EXT.1.3: 1
  • FMT:
    • FMT_MOF: 2
    • FMT_MOF.1: 6
    • FMT_MOF.1.1: 1
    • FMT_SMF: 4
    • FMT_SMF.1: 4
    • FMT_SMF.1.1: 1
    • FMT_SMR: 4
    • FMT_SMR.1: 3
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_KYP_EXT: 4
    • FPT_KYP_EXT.1: 5
    • FPT_KYP_EXT.1.1: 2
    • FPT_PWR_EXT: 8
    • FPT_PWR_EXT.1: 8
    • FPT_PWR_EXT.1.1: 1
    • FPT_PWR_EXT.2: 4
    • FPT_PWR_EXT.2.1: 1
    • FPT_TST_EXT: 4
    • FPT_TST_EXT.1: 6
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 4
    • FPT_TUD_EXT.1: 4
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
pdf_data/st_keywords/cc_claims
  • OE:
    • OE.INITIAL_DRIVE_STATE: 1
    • OE.PASSPHRASE_STRENGTH: 1
    • OE.PHYSICAL: 1
    • OE.PLATFORM_STATE: 1
    • OE.POWER_DOWN: 1
    • OE.SINGLE_USE_ET: 1
    • OE.STRONG_ENVIRONMENT_CRYPTO: 1
    • OE.TRAINED_USERS: 1
    • OE.TRUSTED_CHANNEL: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 8
      • AES-128: 1
      • AES-256: 5
  • constructions:
    • MAC:
      • HMAC: 5
      • HMAC-SHA-512: 6
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDSA:
      • ECDSA: 1
  • RSA:
    • RSA 3072: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 2
      • SHA-512: 1
      • SHA512: 1
  • PBKDF:
    • PBKDF2: 5
  • SHA:
    • SHA2:
      • SHA-256: 9
      • SHA-384: 5
      • SHA-512: 9
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 2
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 4
  • SSH:
    • SSH: 2
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 19
  • RNG:
    • RBG: 4
    • RNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CCM:
    • CCM: 1
  • GCM:
    • GCM: 1
  • XEX:
    • XEX: 1
  • XTS:
    • XTS: 2
pdf_data/st_keywords/crypto_library
  • Generic:
    • Crypto Library v2.24: 1
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 180-4: 1
  • RFC:
    • RFC 791: 1
    • RFC 8017: 3
    • RFC4253: 1
  • FIPS:
    • FIPS 186-4: 1
    • FIPS PUB 186-4: 2
  • ISO:
    • ISO/IEC 10118: 2
    • ISO/IEC 18031:2011: 1
    • ISO/IEC 18033-3: 1
    • ISO/IEC 9796-2: 2
  • NIST:
    • NIST SP 800-132: 5
    • NIST SP 800-38F: 2
    • NIST SP 800-90A: 3
  • PKCS:
    • PKCS #1: 2
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • not tested in the evaluated configuration. System Manager GUI The System Manager GUI is considered out of scope and all management is performed via the command line interface. VMware Virtualization VMware: 1
    • out of scope: 2
    • to the security functional requirements specified in this Security Target. The features below are out of scope. Feature Description SnapLock NetApp SnapLock is the WORM (write once, read many) compliance: 1
pdf_data/st_metadata
  • /Author: koob.christian
  • /CreationDate: D:20191212161737+01'00'
  • /Creator: FreePDF 4.14 - http://shbox.de
  • /ModDate: D:20191212161737+01'00'
  • /Producer: GPL Ghostscript 9.50
  • /Title: ST_secunetwall_1.8
  • pdf_file_size_bytes: 309104
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 45
state/cert/convert_garbage False True
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different