Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
CCEVS-VR-VID-10980-2019
Utimaco CryptoServer CP5 Se12 5.1.0.0, CryptoServer CP5 Se52 5.1.0.0, CryptoServer CP5 Se500 5.1.0.0, CryptoServer CP5 Se1500 5.1.0.0.
NSCIB-CC-222073-CR
name Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10 Utimaco CryptoServer CP5 Se12 5.1.0.0, CryptoServer CP5 Se52 5.1.0.0, CryptoServer CP5 Se500 5.1.0.0, CryptoServer CP5 Se1500 5.1.0.0.
category Network and Network-Related Devices and Systems Products for Digital Signatures
scheme US NL
not_valid_after 12.11.2021 20.12.2023
not_valid_before 12.11.2019 14.05.2020
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/certificaat%2020-222073.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/nscib-cc-222073-cr-v1.2cert.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/[ST-LITE]%20CryptoServerCP5_ST-Lite_v2-0-0.pdf
manufacturer Palo Alto Networks, Inc. Utimaco
manufacturer_web https://www.paloaltonetworks.com/ https://hsm.utimaco.com/
security_level {} EAL4+, AVA_VAN.5
dgst a8e03915b8738eb7 7df3a10d555052d5
heuristics/cert_id CCEVS-VR-VID-10980-2019 NSCIB-CC-222073-CR
heuristics/cert_lab US
heuristics/extracted_sars ADV_FSP.1, ALC_CMC.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, AGD_PRE.1 ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ALC_TAT.1, ASE_SPD.1, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1
heuristics/extracted_versions 8.1.10 5.1.0.0
heuristics/report_references/directly_referenced_by {} NSCIB-CC-159381-CR2
heuristics/report_references/indirectly_referenced_by {} NSCIB-CC-159381-CR2
heuristics/scheme_data
  • category: Network Device
  • certification_date: 12.11.2019
  • evaluation_facility: Leidos Common Criteria Testing Laboratory
  • expiration_date: 12.11.2021
  • id: CCEVS-VR-VID10980
  • product: Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10980
  • vendor: Palo Alto Networks, Inc.
heuristics/protection_profiles {} ee319f4a624019b0
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/ANSSI-CC-PP-2016_05 PP.pdf
pdf_data/cert_filename st_vid10980-ci.pdf certificaat 20-222073.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • FR:
    • ANSSI-CC-PP-2016/05: 1
  • NL:
    • CC-19-222073: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
    • EAL4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/eval_facility
  • Leidos:
    • Leidos: 1
  • BrightSight:
    • Brightsight: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191119111952-05'00'
  • /ModDate: D:20191119111952-05'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 180256
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20200528102215+01'00'
  • /Creator: C458-M
  • /ModDate: D:20200528102255+02'00'
  • /Producer: KONICA MINOLTA bizhub C458
  • /Title: C458-M&S20052810210
  • pdf_file_size_bytes: 88046
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid10980-vr.pdf nscib-cc-222073-cr-v1.2cert.pdf
pdf_data/report_frontpage
  • NL:
  • US:
    • cert_id: CCEVS-VR-VID10980-2019
    • cert_item: for Palo Alto Networks Panorama v8.1.10
    • cert_lab: US NIAP
  • NL:
    • cert_id: NSCIB-CC-222073-CR
    • cert_item: CryptoServer CP5 Se12 5.1.0.0, CryptoServer CP5 Se52 5.1.0.0, CryptoServer CP5 Se500 5.1.0.0, CryptoServer CP5 Se1500 5.1.0.0
    • cert_lab: Brightsight
    • developer: Utimaco IS GmbH
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • FR:
    • ANSSI-CC-PP-2016/05: 1
  • NL:
    • NSCIB-CC-222073-CR: 14
pdf_data/report_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/05: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 2
    • EAL4 augmented: 1
    • EAL4+: 3
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.5: 3
pdf_data/report_keywords/cc_sfr
  • FPT:
    • FPT_PHP.1: 1
    • FPT_PHP.3: 1
pdf_data/report_keywords/eval_facility
  • Leidos:
    • Leidos: 6
  • BrightSight:
    • Brightsight: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 6
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 7
  • FF:
    • DH:
      • Diffie-Hellman: 2
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 1
    • SHA3:
      • SHA-3: 1
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 7
    • SSHv2: 1
  • TLS:
    • TLS:
      • TLS: 9
  • VPN:
    • VPN: 3
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 2
pdf_data/report_keywords/vulnerability
  • ROCA:
    • ROCA: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • SCA:
    • side channel: 1
  • other:
    • JIL: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
  • ISO:
    • ISO/IEC 19790:2012: 1
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed: 1
    • out of scope: 2
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
  • OutOfScope:
    • The possibility of the SAM was in scope of the evaluation. The SAM itself is out of scope of this evaluation: 1
    • of the TOE). The possibility of the SAM was in scope of the evaluation. The SAM itself is out of scope of this evaluation. For SAM developers see the guidance “Internal SAM developer documentation”. For: 1
    • out of scope: 1
pdf_data/report_metadata
  • /CreationDate: D:20191119084910-05'00'
  • /ModDate: D:20191119084910-05'00'
  • pdf_file_size_bytes: 584095
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /AAPL:Keywords: []
  • /CreationDate: D:20200528084847Z00'00'
  • /Creator: Preview
  • /Keywords:
  • /ModDate: D:20200528084847Z00'00'
  • /Producer: Mac OS X 10.13.6 Quartz PDFContext
  • /Title: NSCIB-CC-222073-CR v1.2.pdf
  • pdf_file_size_bytes: 821699
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 15
pdf_data/st_filename st_vid10980-st.pdf [ST-LITE] CryptoServerCP5_ST-Lite_v2-0-0.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 6
    • EAL4 augmented: 3
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 2
    • ADV_ARC.1: 12
    • ADV_FSP: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 7
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 2
  • AVA:
    • AVA_VAN.5: 11
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 2
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT: 1
    • FAU_STG_EXT.1: 3
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 5
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 6
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 3
    • FCS_CKM.4.1: 1
    • FCS_COP: 19
    • FCS_COP.1: 4
    • FCS_RBG_EXT: 1
    • FCS_RBG_EXT.1: 5
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT.1.5: 1
    • FCS_SSHS_EXT: 1
    • FCS_SSHS_EXT.1: 3
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 2
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT: 2
    • FCS_TLSC_EXT.1: 3
    • FCS_TLSC_EXT.1.1: 2
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 2
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSC_EXT.2.2: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSC_EXT.2.4: 1
    • FCS_TLSC_EXT.2.5: 1
    • FCS_TLSS_EXT: 2
    • FCS_TLSS_EXT.1: 3
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 1
    • FCS_TLSS_EXT.2: 2
    • FCS_TLSS_EXT.2.1: 1
    • FCS_TLSS_EXT.2.2: 1
    • FCS_TLSS_EXT.2.3: 1
    • FCS_TLSS_EXT.2.4: 1
    • FCS_TLSS_EXT.2.5: 1
    • FCS_TLSS_EXT.2.6: 1
  • FIA:
    • FIA_AFL: 1
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 1
    • FIA_PMG_EXT.1: 3
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU: 1
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 1
    • FIA_UAU_EXT.2: 2
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 1
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 4
    • FMT_MOF.1: 1
    • FMT_MTD: 4
    • FMT_MTD.1: 1
    • FMT_SMF: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
    • FMT_SMR: 1
    • FMT_SMR.2: 3
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 1
    • FPT_APW_EXT.1: 3
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT: 1
    • FPT_SKP_EXT.1: 3
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT: 1
    • FPT_STM_EXT.1: 4
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 2
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 3
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 2
    • FTA_SSL.3: 3
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 2
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 1
    • FTA_SSL_EXT.1: 3
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 1
    • FTA_TAB.1: 4
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 1
    • FTP_ITC.1: 4
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 3
  • FAU:
    • FAU_GEN: 1
    • FAU_GEN.1: 23
    • FAU_GEN.1.1: 3
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 7
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 1
    • FAU_STG.2: 9
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 2
    • FAU_STG.2.3: 1
  • FCS:
    • FCS_CKM: 36
    • FCS_CKM.1: 67
    • FCS_CKM.2: 9
    • FCS_CKM.4: 92
    • FCS_CKM.4.1: 1
    • FCS_COP: 133
    • FCS_COP.1: 43
    • FCS_RND.1: 1
    • FCS_RNG: 4
    • FCS_RNG.1: 11
    • FCS_RNG.1.1: 2
    • FCS_RNG.1.2: 2
  • FDP:
    • FDP_ACC: 23
    • FDP_ACC.1: 23
    • FDP_ACC.1.1: 1
    • FDP_ACF: 41
    • FDP_ACF.1: 20
    • FDP_IFC: 11
    • FDP_IFC.1: 19
    • FDP_IFF: 29
    • FDP_IFF.1: 19
    • FDP_ITC.1: 54
    • FDP_ITC.2: 54
    • FDP_RIP.1: 12
    • FDP_RIP.1.1: 1
    • FDP_SDI.1: 2
    • FDP_SDI.2: 10
    • FDP_SDI.2.1: 2
    • FDP_SDI.2.2: 1
  • FIA:
    • FIA_AFL: 16
    • FIA_AFL.1: 8
    • FIA_AFL.1.2: 1
    • FIA_UAU: 41
    • FIA_UAU.1: 13
    • FIA_UAU.1.1: 1
    • FIA_UAU.6: 4
    • FIA_UID.1: 26
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA: 62
    • FMT_MSA.1: 16
    • FMT_MSA.3: 13
    • FMT_MTD: 41
    • FMT_MTD.1: 5
    • FMT_SMF: 1
    • FMT_SMF.1: 35
    • FMT_SMF.1.1: 8
    • FMT_SMR: 1
    • FMT_SMR.1: 45
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 11
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 11
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_PHP.3: 9
    • FPT_PHP.3.1: 1
    • FPT_STM.1: 13
    • FPT_STM.1.1: 1
    • FPT_TST.1: 1
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 19
    • FPT_TST_EXT.1.1: 3
  • FTP:
    • FTP_TRP: 38
    • FTP_TRP.1: 13
    • FTP_TRP.1.1: 2
pdf_data/st_keywords/cc_claims
  • A:
    • A.PHYSICAL_PROTECTION: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • OT:
    • OT.RNG: 7
  • R:
    • R.RAD: 1
pdf_data/st_keywords/vendor
  • Broadcom:
    • Broadcom: 2
  • Microsoft:
    • Microsoft: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 33
      • AES-256: 5
  • DES:
    • 3DES:
      • 3DES: 1
  • constructions:
    • MAC:
      • HMAC: 9
      • HMAC-SHA-256: 7
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
  • AES_competition:
    • AES:
      • AES: 37
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • CMAC: 4
      • HMAC: 14
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 2
      • ECDHE: 1
    • ECDSA:
      • ECDSA: 21
  • FF:
    • DH:
      • DH: 7
      • DHE: 1
      • Diffie-Hellman: 8
    • DSA:
      • DSA: 4
  • RSA:
    • RSA 2048: 2
    • RSA-2048: 1
  • ECC:
    • ECC:
      • ECC: 5
    • ECDSA:
      • ECDSA: 22
  • FF:
    • DH:
      • Diffie-Hellman: 4
    • DSA:
      • DSA: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-256: 6
      • SHA-384: 4
      • SHA-512: 4
      • SHA256: 17
  • SHA:
    • SHA2:
      • SHA-2: 2
      • SHA-224: 2
      • SHA-256: 2
      • SHA-384: 2
      • SHA-512: 2
    • SHA3:
      • SHA-3: 2
      • SHA3-224: 2
      • SHA3-256: 2
      • SHA3-384: 2
      • SHA3-512: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 2
  • KA:
    • Key Agreement: 2
    • Key agreement: 1
  • MAC:
    • MAC: 2
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 1
  • IPsec:
    • IPsec: 3
  • SSH:
    • SSH: 44
    • SSHv2: 7
  • TLS:
    • SSL:
      • SSL: 5
      • SSL 2.0: 4
      • SSL 3.0: 4
    • TLS:
      • TLS: 78
      • TLS 1.0: 4
      • TLS 1.1: 4
      • TLS 1.2: 6
      • TLS1.1: 1
      • TLS1.2: 1
      • TLSv1.1: 3
      • TLSv1.2: 6
  • VPN:
    • VPN: 4
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 14
  • RNG:
    • RBG: 4
    • RNG: 6
  • PRNG:
    • DRBG: 3
  • RNG:
    • RNG: 40
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 8
  • CCM:
    • CCM: 4
  • CTR:
    • CTR: 7
  • GCM:
    • GCM: 12
  • CBC:
    • CBC: 5
  • ECB:
    • ECB: 4
  • GCM:
    • GCM: 4
  • OFB:
    • OFB: 5
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 18
    • P-384: 12
    • P-521: 10
    • secp256r1: 7
    • secp384r1: 7
    • secp521r1: 3
  • ANSSI:
    • FRP256v1: 3
  • Brainpool:
    • brainpoolP224r1: 3
    • brainpoolP224t1: 3
    • brainpoolP256r1: 3
    • brainpoolP256t1: 3
    • brainpoolP320r1: 3
    • brainpoolP320t1: 3
    • brainpoolP384r1: 3
    • brainpoolP384t1: 3
    • brainpoolP512r1: 3
    • brainpoolP512t1: 3
  • NIST:
    • Curve P-224: 2
    • Curve P-256: 2
    • Curve P-384: 2
    • Curve P-521: 1
    • P-224: 3
    • P-256: 3
    • P-384: 3
    • P-521: 1
    • curve P-224: 1
    • curve P-256: 1
    • curve P-384: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 7
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 5
    • TLS_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 7
    • TLS_RSA_WITH_AES_256_CBC_SHA: 7
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • physical tampering: 4
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 2
    • FIPS 186-4: 3
    • FIPS PUB 186-4: 18
  • ISO:
    • ISO/IEC 14888-: 1
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 2
  • NIST:
    • NIST SP 800-56A: 2
    • SP 800-90A: 2
  • PKCS:
    • PKCS #1: 2
    • PKCS#12: 2
  • RFC:
    • RFC 2818: 3
    • RFC 2986: 2
    • RFC 3268: 28
    • RFC 3526: 3
    • RFC 4253: 2
    • RFC 4346: 4
    • RFC 4492: 24
    • RFC 5246: 30
    • RFC 5280: 5
    • RFC 5289: 44
    • RFC 5759: 1
    • RFC 6125: 3
    • RFC 6960: 1
    • RFC 8017: 2
  • X509:
    • X.509: 8
  • CC:
    • CCMB-2012-09-001: 2
    • CCMB-2012-09-002: 2
    • CCMB-2012-09-003: 2
    • CCMB-2012-09-004: 2
  • FIPS:
    • FIPS 140-2: 7
    • FIPS 180-4: 2
    • FIPS 186-4: 4
    • FIPS 197: 8
    • FIPS 198: 2
    • FIPS 202: 2
    • FIPS PUB 140-2: 1
    • FIPS PUB 180-4: 1
    • FIPS PUB 186-4: 1
    • FIPS PUB 197: 1
    • FIPS PUB 198: 1
    • FIPS PUB 202: 1
  • ISO:
    • ISO/IEC 19790:2012: 6
  • NIST:
    • NIST SP 800-38A: 6
  • PKCS:
    • PKCS#1: 15
    • PKCS#3: 2
    • PKCS#5: 4
  • RFC:
    • RFC 2104: 2
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed. The: 1
    • extent specified by the security functional requirements: TLS, HTTPS, SSH. The features below are out of scope. Table 2 Excluded Features Feature Description Telnet and HTTP Management Protocols Telnet and HTTP: 1
    • out of scope: 3
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
pdf_data/st_metadata
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different