Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
CCEVS-VR-VID-10980-2019
Huawei GaussDB(openGauss) Database Management System (DBMS) V500R001C20SPC100+V500R001C20HP1015
NSCIB-CC-0392006-CR
name Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10 Huawei GaussDB(openGauss) Database Management System (DBMS) V500R001C20SPC100+V500R001C20HP1015
category Network and Network-Related Devices and Systems Databases
scheme US NL
status archived active
not_valid_after 12.11.2021 31.08.2027
not_valid_before 12.11.2019 31.08.2022
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/nscib-cert-cc-22-0392006.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/nscib-cc-0392006-cr-final.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/huawei-gaussdb-kernel-v500r001c20spc100-security-target-v0.18.pdf
manufacturer Palo Alto Networks, Inc. Huawei Technologies Co., Ltd.
manufacturer_web https://www.paloaltonetworks.com/ https://www.huawei.com
security_level {} EAL4+, ALC_FLR.2
dgst a8e03915b8738eb7 acde0feaacc840d9
heuristics/cert_id CCEVS-VR-VID-10980-2019 NSCIB-CC-0392006-CR
heuristics/cert_lab US
heuristics/extracted_sars ADV_FSP.1, ALC_CMC.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, AGD_PRE.1 ALC_FLR.2
heuristics/extracted_versions 8.1.10 -
heuristics/scheme_data
  • category: Network Device
  • certification_date: 12.11.2019
  • evaluation_facility: Leidos Common Criteria Testing Laboratory
  • expiration_date: 12.11.2021
  • id: CCEVS-VR-VID10980
  • product: Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10980
  • vendor: Palo Alto Networks, Inc.
heuristics/protection_profiles {} 3f6ac99252bbf14e
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0088b_pdf.pdf
pdf_data/cert_filename st_vid10980-ci.pdf nscib-cert-cc-22-0392006.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • NL:
    • CC-22-0392006: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0088-V2: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 2
    • EAL4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 1
    • ALC_FLR.3: 2
pdf_data/cert_keywords/cc_claims
  • R:
    • R.L: 1
pdf_data/cert_keywords/vendor
  • Huawei:
    • Huawei: 2
    • Huawei Technologies Co: 1
pdf_data/cert_keywords/eval_facility
  • Leidos:
    • Leidos: 1
  • BrightSight:
    • Brightsight: 1
  • SGS:
    • SGS: 1
    • SGS Brightsight: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408-1: 1
    • ISO/IEC 15408-2: 1
    • ISO/IEC 15408-3: 1
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191119111952-05'00'
  • /ModDate: D:20191119111952-05'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 180256
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: kruitr
  • /CreationDate: D:20220928161032+02'00'
  • /Creator: Bullzip PDF Printer (11.0.0.2588)
  • /ModDate: D:20220928161124+02'00'
  • /Producer: PDF Printer / www.bullzip.com / FPG / TUV Rheinland Service GmbH
  • /Title: Microsoft Word - CC-22-0392006_rev1.doc
  • pdf_file_size_bytes: 246144
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid10980-vr.pdf nscib-cc-0392006-cr-final.pdf
pdf_data/report_frontpage
  • NL:
  • US:
    • cert_id: CCEVS-VR-VID10980-2019
    • cert_item: for Palo Alto Networks Panorama v8.1.10
    • cert_lab: US NIAP
  • NL:
    • cert_id: NSCIB-CC-0392006-CR
    • cert_item: Huawei GaussDB(openGauss) Database Management System (DBMS) V500R001C20SPC100+V500R001C20HP1015
    • cert_lab: SGS Brightsight B.V.
    • developer: Huawei Technologies Co., Ltd
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • NL:
    • NSCIB-CC-0392006-CR: 11
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 1
    • EAL4+: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_FLR.2: 2
pdf_data/report_keywords/vendor
  • Huawei:
    • Huawei: 16
    • Huawei Technologies Co: 3
pdf_data/report_keywords/eval_facility
  • Leidos:
    • Leidos: 6
  • BrightSight:
    • Brightsight: 2
  • SGS:
    • SGS: 2
    • SGS Brightsight: 2
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 7
    • SSHv2: 1
  • TLS:
    • TLS:
      • TLS: 9
  • VPN:
    • VPN: 3
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed: 1
    • out of scope: 2
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
pdf_data/report_metadata
  • /CreationDate: D:20191119084910-05'00'
  • /ModDate: D:20191119084910-05'00'
  • pdf_file_size_bytes: 584095
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
pdf_data/st_filename st_vid10980-st.pdf huawei-gaussdb-kernel-v500r001c20spc100-security-target-v0.18.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0088-V2: 3
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL4: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_FSP: 1
    • ADV_IMP: 1
    • ADV_INT: 1
    • ADV_SPM: 1
    • ADV_TDS: 1
  • AGD:
    • AGD_OPE: 2
    • AGD_PRE: 2
  • ALC:
    • ALC_CMC: 1
    • ALC_CMS: 1
    • ALC_DEL: 1
    • ALC_DVS: 1
    • ALC_FLR: 2
    • ALC_FLR.2: 3
    • ALC_LCD: 1
    • ALC_TAT: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 1
    • ATE_DPT: 1
    • ATE_FUN: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 2
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT: 1
    • FAU_STG_EXT.1: 3
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 5
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 6
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 3
    • FCS_CKM.4.1: 1
    • FCS_COP: 19
    • FCS_COP.1: 4
    • FCS_RBG_EXT: 1
    • FCS_RBG_EXT.1: 5
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT.1.5: 1
    • FCS_SSHS_EXT: 1
    • FCS_SSHS_EXT.1: 3
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 2
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT: 2
    • FCS_TLSC_EXT.1: 3
    • FCS_TLSC_EXT.1.1: 2
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 2
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSC_EXT.2.2: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSC_EXT.2.4: 1
    • FCS_TLSC_EXT.2.5: 1
    • FCS_TLSS_EXT: 2
    • FCS_TLSS_EXT.1: 3
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 1
    • FCS_TLSS_EXT.2: 2
    • FCS_TLSS_EXT.2.1: 1
    • FCS_TLSS_EXT.2.2: 1
    • FCS_TLSS_EXT.2.3: 1
    • FCS_TLSS_EXT.2.4: 1
    • FCS_TLSS_EXT.2.5: 1
    • FCS_TLSS_EXT.2.6: 1
  • FIA:
    • FIA_AFL: 1
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 1
    • FIA_PMG_EXT.1: 3
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU: 1
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 1
    • FIA_UAU_EXT.2: 2
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 1
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 4
    • FMT_MOF.1: 1
    • FMT_MTD: 4
    • FMT_MTD.1: 1
    • FMT_SMF: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
    • FMT_SMR: 1
    • FMT_SMR.2: 3
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 1
    • FPT_APW_EXT.1: 3
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT: 1
    • FPT_SKP_EXT.1: 3
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT: 1
    • FPT_STM_EXT.1: 4
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 2
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 3
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 2
    • FTA_SSL.3: 3
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 2
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 1
    • FTA_SSL_EXT.1: 3
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 1
    • FTA_TAB.1: 4
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 1
    • FTP_ITC.1: 4
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 3
  • FAU:
    • FAU_GEN.1: 12
    • FAU_GEN.1.1: 2
    • FAU_GEN.1.2: 2
    • FAU_GEN.2: 10
    • FAU_GEN.2.1: 2
    • FAU_SEL.1: 11
    • FAU_SEL.1.1: 3
  • FDP:
    • FDP_ACC.1: 19
    • FDP_ACC.1.1: 2
    • FDP_ACF.1: 18
    • FDP_ACF.1.1: 2
    • FDP_ACF.1.2: 2
    • FDP_ACF.1.3: 2
    • FDP_ACF.1.4: 2
    • FDP_IFC.1: 1
    • FDP_RIP.1: 10
    • FDP_RIP.1.1: 3
  • FIA:
    • FIA_ATD.1: 17
    • FIA_ATD.1.1: 2
    • FIA_UAU: 1
    • FIA_UAU.2: 9
    • FIA_UAU.2.1: 2
    • FIA_UAU.2.2: 1
    • FIA_UID: 1
    • FIA_UID.1: 3
    • FIA_UID.2: 12
    • FIA_UID.2.1: 2
    • FIA_UID.2.2: 1
    • FIA_USB.1: 5
  • FMT:
    • FMT_MOF.1: 10
    • FMT_MOF.1.1: 2
    • FMT_MSA.1: 11
    • FMT_MSA.1.1: 2
    • FMT_MSA.3: 11
    • FMT_MSA.3.1: 2
    • FMT_MSA.3.2: 2
    • FMT_MTD.1: 12
    • FMT_MTD.1.1: 1
    • FMT_REV.1: 15
    • FMT_REV.1.1: 5
    • FMT_REV.1.2: 3
    • FMT_SMF.1: 14
    • FMT_SMF.1.1: 3
    • FMT_SMR.1: 21
    • FMT_SMR.1.1: 2
    • FMT_SMR.1.2: 2
  • FPT:
    • FPT_ITT.1: 1
    • FPT_STM.1: 1
    • FPT_TRC.1: 13
    • FPT_TRC.1.1: 2
    • FPT_TRC.1.2: 2
  • FTA:
    • FTA_MCS.1: 9
    • FTA_MCS.1.1: 2
    • FTA_MCS.1.2: 2
    • FTA_TSE.1: 8
    • FTA_TSE.1.1: 2
pdf_data/st_keywords/cc_claims
  • A:
    • A.PHYSICAL_PROTECTION: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • A:
    • A.AUTHUSER: 2
    • A.CONNECT: 3
    • A.MANAGE: 2
    • A.NO_GENERAL_PURPOSE: 3
    • A.PHYSICAL: 3
    • A.SUPPORT: 4
    • A.TRAINEDUSER: 2
  • O:
    • O.ACCESS_HISTORY: 1
    • O.ADMIN_R: 1
    • O.ADMIN_ROLE: 9
    • O.AUDIT: 2
    • O.AUDIT_GENERATION: 5
    • O.DISCRETI: 1
    • O.DISCRETIONARY: 2
    • O.DISCRETIONARY_ACCESS: 5
    • O.MANAGE: 12
    • O.MEDIATE: 9
    • O.RESIDUAL: 1
    • O.RESIDUAL_INFORM: 1
    • O.RESIDUAL_INFORMATION: 8
    • O.TOE_ACCE: 1
    • O.TOE_ACCESS: 18
  • OE:
    • OE.ADMIN: 11
    • OE.INFO_PROTECT: 20
    • OE.IT_REMOTE: 10
    • OE.IT_TRUSTED: 1
    • OE.IT_TRUSTED_SYSTEM: 9
    • OE.NO_GENERAL_PURPOSE: 8
    • OE.PHYSICAL: 8
  • T:
    • T.ACCESS_TSFDATA: 3
    • T.ACCESS_TSFFUNC: 2
    • T.IA_MASQUERADE: 5
    • T.IA_USER: 2
    • T.RESIDUAL_DATA: 3
    • T.TSF_COMPROMISE: 3
    • T.UNAUTHORIZED_AC: 1
    • T.UNAUTHORIZED_ACCESS: 3
pdf_data/st_keywords/vendor
  • Broadcom:
    • Broadcom: 2
  • Microsoft:
    • Microsoft: 1
  • Huawei:
    • Huawei: 16
    • Huawei Technologies Co: 104
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 33
      • AES-256: 5
  • DES:
    • 3DES:
      • 3DES: 1
  • constructions:
    • MAC:
      • HMAC: 9
      • HMAC-SHA-256: 7
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 2
      • ECDHE: 1
    • ECDSA:
      • ECDSA: 21
  • FF:
    • DH:
      • DH: 7
      • DHE: 1
      • Diffie-Hellman: 8
    • DSA:
      • DSA: 4
  • RSA:
    • RSA 2048: 2
    • RSA-2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-256: 6
      • SHA-384: 4
      • SHA-512: 4
      • SHA256: 17
  • SHA:
    • SHA2:
      • SHA256: 2
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 2
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 1
  • IPsec:
    • IPsec: 3
  • SSH:
    • SSH: 44
    • SSHv2: 7
  • TLS:
    • SSL:
      • SSL: 5
      • SSL 2.0: 4
      • SSL 3.0: 4
    • TLS:
      • TLS: 78
      • TLS 1.0: 4
      • TLS 1.1: 4
      • TLS 1.2: 6
      • TLS1.1: 1
      • TLS1.2: 1
      • TLSv1.1: 3
      • TLSv1.2: 6
  • VPN:
    • VPN: 4
  • TLS:
    • SSL:
      • SSL: 2
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 14
  • RNG:
    • RBG: 4
    • RNG: 6
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 8
  • CCM:
    • CCM: 4
  • CTR:
    • CTR: 7
  • GCM:
    • GCM: 12
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 18
    • P-384: 12
    • P-521: 10
    • secp256r1: 7
    • secp384r1: 7
    • secp521r1: 3
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 7
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 5
    • TLS_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 7
    • TLS_RSA_WITH_AES_256_CBC_SHA: 7
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 2
    • FIPS 186-4: 3
    • FIPS PUB 186-4: 18
  • ISO:
    • ISO/IEC 14888-: 1
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 2
  • NIST:
    • NIST SP 800-56A: 2
    • SP 800-90A: 2
  • PKCS:
    • PKCS #1: 2
    • PKCS#12: 2
  • RFC:
    • RFC 2818: 3
    • RFC 2986: 2
    • RFC 3268: 28
    • RFC 3526: 3
    • RFC 4253: 2
    • RFC 4346: 4
    • RFC 4492: 24
    • RFC 5246: 30
    • RFC 5280: 5
    • RFC 5289: 44
    • RFC 5759: 1
    • RFC 6125: 3
    • RFC 6960: 1
    • RFC 8017: 2
  • X509:
    • X.509: 8
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed. The: 1
    • extent specified by the security functional requirements: TLS, HTTPS, SSH. The features below are out of scope. Table 2 Excluded Features Feature Description Telnet and HTTP Management Protocols Telnet and HTTP: 1
    • out of scope: 3
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
  • OutOfScope:
    • 600 GB, and the space of each non-OS disk is greater than or equal to 600 GB. Switch Switch is also out of scope and thus not included in the TOE. It is used to connect node instances in a cluster. OS Evaluation: 1
    • Cluster Manage Components (including CM Agent, Om Monitor, and CM Server, ETCD) are also out of scope and thus not included in the TOE. They are used to manage and monitor the running status of the TOE: 1
    • Operation Manager Server (including gs_ctl, gs_dump, gs_restore, gs_upgrade, gs_redis) are also out of scope and thus not included in the TOE. They offer the operation tools and configuration manage: 1
    • TOE. Clients Clients (including local and remote clients: GSQL, JDBC, ODBC, Psycopg,Libpq) are also out of scope and thus not included in the TOE. They are used to interact with the TOE. Cluster Manager: 1
    • V2.0SP5, x86_64 Supported OSs: EulerOS V2.0SP8, ARM Software The Software of Python v2.7 is out of scope and thus not included in the TOE. The Software of Huawei JDK1.8.0 is out of scope and thus not: 1
    • database security. 2.3.3 Non-TOE Hardware and Software The following hardware resources are out of scope and thus not included in the TOE but are necessary for its operation: Server hardware and OS are: 1
    • including CM Agent, Om Monitor, and CM Server, ETCD) are also out of scope and thus not included in the TOE: 1
    • including gs_ctl, gs_dump, gs_restore, gs_upgrade, gs_redis) are also out of scope and thus not included in the TOE: 1
    • including local and remote clients: GSQL, JDBC, ODBC, Psycopg,Libpq) are also out of scope and thus not included in the TOE: 1
    • out of scope: 9
    • the required environment for installing and running the TOE. Manager Network channel is also out of scope and thus not included in the TOE. It is used to monitor the status of each node instance in the: 1
pdf_data/st_metadata
  • /Author: zhujinwei,wangshaoyu
  • /CreationDate: D:20220607160913+02'00'
  • /Creator: Microsoft® Word 2016
  • /Keywords: ST
  • /ModDate: D:20220607160913+02'00'
  • /Producer: Microsoft® Word 2016
  • /Subject: Security Target
  • /Title: ASE_ST
  • pdf_file_size_bytes: 2037368
  • pdf_hyperlinks: https://e.huawei.com/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 80
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different