Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
CyberArk Privileged Access Manager – Windows Components including PSM v14.0.0.9, CPM v14.0.0.9 and PVWA v14.0.0.32
NSCIB-CC-2400012-01-CR
Oracle Identity Governance 12c
604-LSS
name CyberArk Privileged Access Manager – Windows Components including PSM v14.0.0.9, CPM v14.0.0.9 and PVWA v14.0.0.32 Oracle Identity Governance 12c
scheme NL CA
not_valid_after 03.07.2029 09.10.2029
not_valid_before 03.07.2024 09.10.2024
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400012-01-Cert.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/604-LSS%20CT.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400012-01-CR.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/604-LSS%20CR.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400012-01-ST_1.8.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/604-LSS%20ST%20v1.5.pdf
manufacturer CyberArk Software, Ltd Oracle Corporation
manufacturer_web https://www.cyberark.com/ https://www.oracle.com
security_level ALC_CMS.1, ADV_FSP.1, ASE_ECD.1, AGD_PRE.1, AGD_OPE.1, ASE_INT.1, ASE_CCL.1, ASE_SPD.1, ALC_CMC.1, ATE_IND.1, ASE_TSS.1, AVA_VAN.1 {}
dgst 84d69988d138d512 b3bdda767050e981
heuristics/cert_id NSCIB-CC-2400012-01-CR 604-LSS
heuristics/cert_lab []
heuristics/extracted_sars AGD_OPE.1, ASE_SPD.1, ADV_FSP.1, ASE_REQ.1, ASE_OBJ.1, AVA_VAN.1, ASE_ECD.1, ASE_CCL.1, AGD_PRE.1, ALC_CMS.1, ALC_TSU_EXT.1, ALC_CMC.1, ASE_INT.1, ASE_TSS.1, ATE_IND.1 AGD_OPE.1, ASE_SPD.1, ADV_FSP.1, ASE_REQ.1, ASE_OBJ.1, AVA_VAN.1, ASE_ECD.1, ASE_CCL.1, AGD_PRE.1, ALC_CMS.1, ALC_CMC.1, ASE_INT.1, ASE_TSS.1, ATE_IND.1
heuristics/extracted_versions 14.0.0.9, 14.0.0.32 -
heuristics/scheme_data
  • certification_date: 09.10.2024
  • level: PP_ESM_ICM_V2.1
  • product: Oracle Identity Governance 12c
  • vendor: Oracle Corporation
heuristics/protection_profiles c40ae795865a0dba, 90c116e62a19bc4d baff81729834174e
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_APP_V1.4.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PKG_TLS_V1.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_ESM_ICM_V2.1.pdf
pdf_data/cert_filename NSCIB-CC-2400012-01-Cert.pdf 604-LSS CT.pdf
pdf_data/cert_keywords/cc_cert_id
  • NL:
    • NSCIB-2400012-01: 1
    • NSCIB-CC-2400012-01: 1
  • CA:
    • 604-LSS: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_SPD.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • SGS:
    • SGS: 1
    • SGS Brightsight: 1
  • Lightship:
    • Lightship Security: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408-1: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 18045:2008: 1
pdf_data/cert_metadata
  • /Author: brian
  • /CreationDate: D:20240717190647+01'00'
  • /Creator: Microsoft® Word 2021
  • /ModDate: D:20240717190647+01'00'
  • /Producer: Microsoft® Word 2021
  • /Title: NSCIB Certificate
  • pdf_file_size_bytes: 129631
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Sinitski, Kiril
  • /CreationDate: D:20241021133224-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_ActionId: 03c3dcc6-6bfd-4194-a625-fb83b8d0389e
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_ContentBits: 1
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Enabled: true
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Method: Privileged
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_Name: UNCLASSIFIED
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_SetDate: 2023-05-16T11:46:20Z
  • /MSIP_Label_4dd2c6e0-f1e3-4cf2-bd0b-256ab4cff3af_SiteId: da9cbe40-ec1e-4997-afb3-17d87574571a
  • /ModDate: D:20241021133224-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 386313
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename NSCIB-CC-2400012-01-CR.pdf 604-LSS CR.pdf
pdf_data/report_frontpage
  • NL:
    • cert_id: NSCIB-CC-2400012-01-CR
    • cert_item: CyberArk Privileged Access Manager – Windows Components including PSM v14.0.0.9, CPM v14.0.0.9 and PVWA v14.0.0.32
    • cert_lab: SGS Brightsight B.V.
    • developer: CyberArk Software Ltd
  • CA:
  • NL:
  • CA:
pdf_data/report_keywords/cc_cert_id
  • NL:
    • NSCIB-2400012-01: 1
    • NSCIB-CC-2400012-01-CR: 12
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL4: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_SPD.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 1
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • SGS:
    • SGS: 2
    • SGS Brightsight: 2
  • Lightship:
    • Lightship Security: 1
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 1
  • TLS:
    • TLS:
      • TLS: 7
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
pdf_data/report_keywords/standard_id
  • X509:
    • X.509: 1
  • ISO:
    • ISO/IEC 17025: 2
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • following proprietary or non-standard algorithms, protocols and implementations: none, which are out of scope as there are no security claims relating to these. Page: 11/12 of report number: 1
    • out of scope: 1
pdf_data/report_metadata
pdf_data/st_filename NSCIB-CC-2400012-01-ST_1.8.pdf 604-LSS ST v1.5.pdf
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 1
    • FCS_CKM.2: 2
    • FCS_CKM.2.1: 1
    • FCS_CKM_EXT.1: 3
    • FCS_CKM_EXT.1.1: 1
    • FCS_COP: 13
    • FCS_COP.1: 4
    • FCS_RBG_EXT.1: 3
    • FCS_RBG_EXT.1.1: 1
    • FCS_STO_EXT.1: 4
    • FCS_STO_EXT.1.1: 1
    • FCS_TLSC_EXT: 2
    • FCS_TLSC_EXT.1: 1
    • FCS_TLSC_EXT.1.1: 1
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.5: 2
    • FCS_TLSC_EXT.5.1: 1
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLS_EXT.1: 3
    • FCS_TLS_EXT.1.1: 1
  • FDP:
    • FDP_DAR_EXT.1: 2
    • FDP_DAR_EXT.1.1: 1
    • FDP_DEC_EXT.1: 4
    • FDP_DEC_EXT.1.1: 1
    • FDP_DEC_EXT.1.2: 1
    • FDP_NET_EXT.1: 3
    • FDP_NET_EXT.1.1: 1
  • FMT:
    • FMT_CFG_EXT.1: 3
    • FMT_CFG_EXT.1.1: 1
    • FMT_CFG_EXT.1.2: 1
    • FMT_MEC_EXT.1: 3
    • FMT_MEC_EXT.1.1: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
  • FPR:
    • FPR_ANO_EXT.1: 3
    • FPR_ANO_EXT.1.1: 1
  • FPT:
    • FPT_AEX_EXT.1: 3
    • FPT_AEX_EXT.1.1: 1
    • FPT_AEX_EXT.1.2: 1
    • FPT_AEX_EXT.1.3: 2
    • FPT_AEX_EXT.1.4: 1
    • FPT_AEX_EXT.1.5: 2
    • FPT_API_EXT.1: 3
    • FPT_API_EXT.1.1: 1
    • FPT_IDV_EXT.1: 3
    • FPT_IDV_EXT.1.1: 1
    • FPT_LIB_EXT.1: 3
    • FPT_LIB_EXT.1.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 2
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
    • FPT_TUD_EXT.1.4: 1
    • FPT_TUD_EXT.1.5: 1
    • FPT_TUD_EXT.2: 2
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 2
    • FPT_TUD_EXT.2.3: 1
  • FTP:
    • FTP_DIT_EXT.1: 3
    • FTP_DIT_EXT.1.1: 2
  • FAU:
    • FAU_GEN.1: 3
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_STG_EXT.1: 7
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 2
    • FCS_CKM.1: 1
    • FCS_CKM_EXT.4: 1
    • FCS_COP: 2
    • FCS_COP.1: 2
    • FCS_RBG_EXT.1: 2
    • FCS_SSH: 1
    • FCS_SSH_EXT.1: 2
    • FCS_SSH_EXT.1.7: 1
    • FCS_TLS: 1
    • FCS_TLS_EXT.1: 2
  • FIA:
    • FIA_USB.1: 4
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_MOF.1: 5
    • FMT_MOF.1.1: 1
    • FMT_MTD.1: 3
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 4
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 4
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_APW_EXT.1: 4
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
  • FTA:
    • FTA_TAB.1: 1
  • FTP:
    • FTP_ICT.1: 1
    • FTP_ITC: 1
    • FTP_ITC.1: 5
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 1
    • FTP_TRP.1: 6
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.PLATFORM: 3
    • A.PROPER_ADMIN: 3
    • A.PROPER_USER: 3
  • O:
    • O.INTEGRITY: 3
    • O.MANAGEMENT: 5
    • O.PROTECTED_COMMS: 5
    • O.PROTECTED_STORAG: 1
    • O.PROTECTED_STORAGE: 2
    • O.QUALITY: 5
  • OE:
    • OE.PLATFORM: 3
    • OE.PROPER_ADMIN: 3
    • OE.PROPER_USER: 3
  • T:
    • T.LOCAL_ATTACK: 2
    • T.NETWORK_ATTACK: 5
    • T.NETWORK_EAVES: 1
    • T.NETWORK_EAVESDROP: 3
    • T.PHYSICAL_ACCESS: 2
  • A:
    • A.CRYPTO: 1
    • A.ENROLLMENT: 1
    • A.ESM: 2
    • A.FEDERATE: 1
    • A.MANAGE: 1
    • A.ROBUST: 1
    • A.SYSTIME: 1
  • O:
    • O.ACCESSID: 1
    • O.AUDIT: 1
    • O.AUTH: 1
    • O.BANNER: 1
    • O.EXPORT: 1
    • O.IDENT: 1
    • O.INTEGRITY: 1
    • O.MANAGE: 1
    • O.PROTCOMMS: 1
    • O.PROTCRED: 1
    • O.SELFID: 1
  • OE:
    • OE.ADMIN: 1
    • OE.CRYPTO: 1
    • OE.ENROLLMENT: 1
    • OE.FEDERATE: 1
    • OE.INSTALL: 1
    • OE.MANAGEMENT: 1
    • OE.PERSON: 1
    • OE.ROBUST: 1
    • OE.SYSTIME: 1
  • T:
    • T.ADMIN_ERROR: 1
    • T.EAVES: 1
    • T.FALSIFY: 1
    • T.FORGE: 1
    • T.INSUFFATR: 1
    • T.MASK: 1
    • T.RAWCRED: 1
    • T.UNAUTH: 1
    • T.WEAKIA: 1
pdf_data/st_keywords/vendor
  • Cisco:
    • Cisco: 1
  • Microsoft:
    • Microsoft: 15
  • Microsoft:
    • Microsoft: 1
pdf_data/st_keywords/eval_facility
  • Lightship:
    • Lightship Security: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • constructions:
    • MAC:
      • HMAC: 4
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDH:
      • ECDHE: 2
    • ECDSA:
      • ECDSA: 1
  • FF:
    • DH:
      • DHE: 2
  • RSA:
    • RSA 2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 2
      • SHA-384: 2
      • SHA-512: 2
      • SHA256: 3
      • SHA384: 3
      • SHA512: 3
pdf_data/st_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 1
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 6
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 64
      • TLS 1.1: 1
      • TLS 1.2: 1
      • TLS v1.2: 5
  • SSH:
    • SSH: 3
  • TLS:
    • TLS:
      • TLS: 9
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 7
  • RNG:
    • RBG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • CTR:
    • CTR: 1
  • GCM:
    • GCM: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 2
    • P-384: 2
    • secp256r1: 2
    • secp384r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 4
pdf_data/st_keywords/crypto_library
  • BouncyCastle:
    • BouncyCastle: 1
  • OpenSSL:
    • OpenSSL: 2
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 186-4: 4
  • NIST:
    • NIST SP 800-38A: 1
    • NIST SP 800-38D: 2
    • SP 800-90: 1
  • RFC:
    • RFC 5246: 2
    • RFC 5280: 5
    • RFC 5288: 2
    • RFC 5289: 4
    • RFC 5759: 1
    • RFC 6125: 2
    • RFC 7919: 1
  • X509:
    • X.509: 5
  • NIST:
    • NIST SP 800-131A: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • are as follows: a) PrivateArk client b) PVWA: i) Authentication other than LDAP or CyberArk are out of scope: SAML, Radius, OpenID out of scope. ii) Ticketing system iii) Oracle Database iv) Check Point GAIA: 1
    • i) old autodetection d) CPM i) Supported engines: PMPassChange, NetInvoker ii) TPC engine is out of scope. e) PSM CyberArk Security Target Page 9 of 41 i) PSM-SSH connection component ii) PSM-WinScp: 1
    • out of scope: 2
  • OutOfScope:
    • e.g. !, $, #, ^) 59 Additional password policy options are provided by the product but they are out of scope of the claimed Protection Profile so they are not discussed as part of the TSF: 1
    • e.g. !, $, #, ^) 59 Additional password policy options are provided by the product but they are out of scope of the claimed Protection Profile so they are not discussed as part of the TSF. 6.1.3 ESM_ICT.1 60: 1
    • out of scope: 1
pdf_data/st_metadata
state/cert/convert_garbage False True
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different