Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
CCEVS-VR-VID-10980-2019
NXP Secure Smart Card Controller P6022y VB* including IC Dedicated Software
BSI-DSZ-CC-1059-V3-2019
name Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10 NXP Secure Smart Card Controller P6022y VB* including IC Dedicated Software
category Network and Network-Related Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme US DE
not_valid_after 12.11.2021 29.11.2024
not_valid_before 12.11.2019 29.11.2019
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1059V3c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1059V3a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10980-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1059V3b_pdf.pdf
manufacturer Palo Alto Networks, Inc. NXP Semiconductors Germany GmbH, Business Unit Security and Connectivity
manufacturer_web https://www.paloaltonetworks.com/ https://www.nxp.com
security_level {} EAL6+, ALC_FLR.1, ASE_TSS.2
dgst a8e03915b8738eb7 be5c86302bdf6805
heuristics/cert_id CCEVS-VR-VID-10980-2019 BSI-DSZ-CC-1059-V3-2019
heuristics/cert_lab US BSI
heuristics/extracted_sars ADV_FSP.1, ALC_CMC.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, AGD_PRE.1 ASE_INT.1, ALC_DVS.2, ADV_TDS.5, ASE_ECD.1, ALC_FLR.1, ASE_SPD.1, ALC_CMS.5, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, ALC_TAT.3, ATE_FUN.2, ADV_FSP.5, AGD_OPE.1, AGD_PRE.1, ATE_DPT.3, ADV_ARC.1, ASE_OBJ.2, ADV_IMP.2, ALC_CMC.5, ASE_TSS.2, ASE_REQ.2, ADV_INT.3, ATE_IND.2, ASE_CCL.1, ATE_COV.3, ADV_SPM.1
heuristics/extracted_versions 8.1.10 -
heuristics/report_references/directly_referenced_by {} ANSSI-CC-2020/36, ANSSI-CC-2020/38, BSI-DSZ-CC-1059-V4-2021, ANSSI-CC-2020/47, ANSSI-CC-2020/46, ANSSI-CC-2020/26, ANSSI-CC-2020/35, ANSSI-CC-2020/48, ANSSI-CC-2020/50, ANSSI-CC-2020/51, ANSSI-CC-2020/37, ANSSI-CC-2020/52, ANSSI-CC-2020/53
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-1059-V2-2019
heuristics/report_references/indirectly_referenced_by {} ANSSI-CC-2020/36, ANSSI-CC-2020/38, BSI-DSZ-CC-1059-V4-2021, NSCIB-CC-23-67206-CR, ANSSI-CC-2020/46, ANSSI-CC-2020/51, NSCIB-CC-98209-CR5, ANSSI-CC-2020/37, ANSSI-CC-2020/52, ANSSI-CC-2020/53-R01, ANSSI-CC-2020/26, ANSSI-CC-2020/26-R01, BSI-DSZ-CC-1059-V5-2022, ANSSI-CC-2019/43-R01, ANSSI-CC-2020/47, ANSSI-CC-2020/50-R01, ANSSI-CC-2020/35, ANSSI-CC-2020/50, NSCIB-CC-2200035-01-CR, ANSSI-CC-2020/53, ANSSI-CC-2020/51-R01, ANSSI-CC-2020/48, ANSSI-CC-2023/38, ANSSI-CC-2020/52-R01
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-1059-V2-2019, BSI-DSZ-CC-1059-2018, BSI-DSZ-CC-0973-2016, BSI-DSZ-CC-0973-V2-2016
heuristics/scheme_data
  • category: Network Device
  • certification_date: 12.11.2019
  • evaluation_facility: Leidos Common Criteria Testing Laboratory
  • expiration_date: 12.11.2021
  • id: CCEVS-VR-VID10980
  • product: Palo Alto Networks M-100, M-200, M-500, and M-600 Hardware, and Virtual Appliances all running Panorama 8.1.10
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10980
  • vendor: Palo Alto Networks, Inc.
heuristics/st_references/directly_referenced_by {} ANSSI-CC-2020/37, ANSSI-CC-2020/36, ANSSI-CC-2020/35, ANSSI-CC-2020/38
heuristics/st_references/indirectly_referenced_by {} ANSSI-CC-2020/37, ANSSI-CC-2020/36, ANSSI-CC-2020/35, ANSSI-CC-2020/38
heuristics/protection_profiles {} cf0f01bcd7be3e9c
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0084b_pdf.pdf
pdf_data/cert_filename st_vid10980-ci.pdf 1059V3c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • DE:
    • BSI-DSZ-CC-1059-V3-2019: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-2014: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 5: 1
    • EAL 6: 1
    • EAL 6 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.1: 1
  • ASE:
    • ASE_TSS.2: 1
pdf_data/cert_keywords/vendor
  • NXP:
    • NXP: 1
    • NXP Semiconductors: 1
pdf_data/cert_keywords/eval_facility
  • Leidos:
    • Leidos: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191119111952-05'00'
  • /ModDate: D:20191119111952-05'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 180256
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20191202121647+01'00'
  • /Creator: Writer
  • /Keywords: Common Criteria, Certification, Zertifizierung, NXP, Smart Card Controller, P6022y VB*
  • /ModDate: D:20191202122435+01'00'
  • /Producer: LibreOffice 6.2
  • /Subject: Common Criteria Certification
  • /Title: Certificate BSI-DSZ-CC-1059-V3-2019
  • pdf_file_size_bytes: 284152
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid10980-vr.pdf 1059V3a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • US:
    • cert_id: CCEVS-VR-VID10980-2019
    • cert_item: for Palo Alto Networks Panorama v8.1.10
    • cert_lab: US NIAP
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 6 augmented by ALC_FLR.1 and ASE_TSS.2
    • cc_version: PP conformant plus product specific extensions Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1059-V3-2019
    • cert_item: NXP Secure Smart Card Controller P6022y VB* including IC Dedicated Software
    • cert_lab: BSI
    • developer: NXP Semiconductors Germany GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Security IC Platform Protection Profile with Augmentation Packages Version 1.0, 13 January 2014, BSI-CC-PP-0084-2014
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10980-2019: 1
  • DE:
    • BSI-DSZ-CC-1059-V2-2019: 2
    • BSI-DSZ-CC-1059-V3-2019: 20
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-2014: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 1
    • EAL 5: 4
    • EAL 5+: 1
    • EAL 6: 5
    • EAL 6 augmented: 3
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ALC:
    • ALC_CMC.5: 1
    • ALC_CMS.5: 1
    • ALC_DEL.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 3
    • ALC_FLR.1: 4
    • ALC_LCD.1: 1
    • ALC_TAT.3: 1
  • ASE:
    • ASE_TSS.2: 4
pdf_data/report_keywords/cc_claims
  • O:
    • O.C: 5
  • R:
    • R.O: 5
pdf_data/report_keywords/vendor
  • NXP:
    • NXP: 33
    • NXP Semiconductors: 31
pdf_data/report_keywords/eval_facility
  • Leidos:
    • Leidos: 6
  • TUV:
    • TÜV Informationstechnik: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 9
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 1
      • Triple-DES: 4
    • DES:
      • DES: 3
  • constructions:
    • MAC:
      • CBC-MAC: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 1
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 7
    • SSHv2: 1
  • TLS:
    • TLS:
      • TLS: 9
  • VPN:
    • VPN: 3
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 4
  • TRNG:
    • TRNG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
  • ECB:
    • ECB: 6
pdf_data/report_keywords/crypto_engine
  • SmartMX:
    • SmartMX2: 11
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • SCA:
    • physical probing: 1
  • other:
    • JIL: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
  • BSI:
    • AIS 1: 1
    • AIS 20: 1
    • AIS 25: 2
    • AIS 26: 1
    • AIS 31: 3
    • AIS 32: 1
    • AIS 34: 2
    • AIS 35: 2
    • AIS 36: 2
    • AIS 37: 1
    • AIS 38: 1
    • AIS 47: 1
    • AIS31: 2
    • AIS39: 1
    • AIS46: 1
  • FIPS:
    • FIPS197: 3
  • ISO:
    • ISO/IEC 14443: 4
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 7816: 2
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed: 1
    • out of scope: 2
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
  • ConfidentialDocument:
    • 1.5, 2019-08-02, NXP Semiconductors (confidential document) [18] Order Entry Form Delivery Data, Version 2.1, 2019-11-18, NXP Semiconductors [19] NXP Secure: 1
    • 2018-11-27, NXP Semiconductors (confidential document) 7 specifically • AIS 1, Version 14, Durchführung der Ortsbesichtigung in der Entwicklungsumgebung: 1
    • 3.7, 2017-05-15, NXP Semiconductors (confidential document) [16] Objective Data Sheet Addendum - SmartMX2 P602xy VB Family Firmware Interface Specification: 1
    • Controller P6022y VB Configuration List - Hardware IC, Version 1.6, 2019-08-09, NXP Semiconductors (confidential document) [20] NXP Secure Smart Card Controller P6022y VB Evaluation Reference List, Version 2.5, 2019-11-20: 1
    • Evaluation (ETR COMP) for the P6022y VB VB, version 2, 2019-11-20, TÜV Informationstechnik GmbH (confidential document) [11] Product Data Sheet - SmartMX2 family P6022y VB, Secure high-performance smart card controller: 1
    • GmbH (confidential document) [8] Security IC Platform Protection Profile with Augmentation Packages Version 1.0, 13 January: 1
    • NXP Semiconductors (confidential document) 26 / 32 BSI-DSZ-CC-1059-V3-2019 Certification Report C. Excerpts from the Criteria For the: 1
    • NXP Semiconductors (confidential document) [13] Information on Guidance and Operation, NXP Secure Smart Card Controller P6022y VB, Version 1: 1
    • Smart Card Controller P6022y VB – Security Target, Version 2.6, 2019-08-23, NXP Semiconductors (confidential document) [7] Evaluation Technical Report BSI-DSZ-CC-1059-V3-2019, Version 2, 2019-11-20, TÜV: 1
    • SmartMX2 P6022y VB, Wafer and delivery specification, Version 3.3, 2019-07-12, NXP Semiconductors (confidential document) [15] Product data sheet addendum - SmartMX2 P602xy VB family, Firmware Interface Specification: 1
    • Version 1.1, 2016-05-23, NXP Semiconductors (confidential document) [17] Product data sheet addendum - SmartMX2 P6022y VB ATMC Wafer and delivery specification: 1
    • Version 3.6, 2019-08-22, NXP Semiconductors (confidential document) [12] Instruction Set for the SmartMX2 family, Secure smart card controller, Version 3.1: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /CreationDate: D:20191119084910-05'00'
  • /ModDate: D:20191119084910-05'00'
  • pdf_file_size_bytes: 584095
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
pdf_data/st_filename st_vid10980-st.pdf 1059V3b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1059: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0084-2014: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 1
    • EAL4 augmented: 1
    • EAL4+: 2
    • EAL6: 44
    • EAL6 augmented: 5
    • EAL6+: 11
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 3
    • ADV_FSP.4: 3
    • ADV_FSP.5: 11
    • ADV_IMP: 1
    • ADV_IMP.2: 3
    • ADV_INT.3: 1
    • ADV_SPM: 2
    • ADV_SPM.1: 1
    • ADV_TDS.5: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 3
    • ALC_CMC.4: 3
    • ALC_CMC.5: 4
    • ALC_CMS: 3
    • ALC_CMS.4: 3
    • ALC_CMS.5: 5
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS: 1
    • ALC_DVS.2: 1
    • ALC_FLR.1: 6
    • ALC_LCD.1: 1
    • ALC_TAT.3: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.2: 6
  • ATE:
    • ATE_COV: 1
    • ATE_COV.3: 3
    • ATE_DPT.3: 1
    • ATE_FUN.2: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.5: 2
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 2
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT: 1
    • FAU_STG_EXT.1: 3
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 5
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 6
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 3
    • FCS_CKM.4.1: 1
    • FCS_COP: 19
    • FCS_COP.1: 4
    • FCS_RBG_EXT: 1
    • FCS_RBG_EXT.1: 5
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT.1.5: 1
    • FCS_SSHS_EXT: 1
    • FCS_SSHS_EXT.1: 3
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 2
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT: 2
    • FCS_TLSC_EXT.1: 3
    • FCS_TLSC_EXT.1.1: 2
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 2
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSC_EXT.2.2: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSC_EXT.2.4: 1
    • FCS_TLSC_EXT.2.5: 1
    • FCS_TLSS_EXT: 2
    • FCS_TLSS_EXT.1: 3
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 1
    • FCS_TLSS_EXT.2: 2
    • FCS_TLSS_EXT.2.1: 1
    • FCS_TLSS_EXT.2.2: 1
    • FCS_TLSS_EXT.2.3: 1
    • FCS_TLSS_EXT.2.4: 1
    • FCS_TLSS_EXT.2.5: 1
    • FCS_TLSS_EXT.2.6: 1
  • FIA:
    • FIA_AFL: 1
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 1
    • FIA_PMG_EXT.1: 3
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU: 1
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 1
    • FIA_UAU_EXT.2: 2
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 1
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 4
    • FMT_MOF.1: 1
    • FMT_MTD: 4
    • FMT_MTD.1: 1
    • FMT_SMF: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
    • FMT_SMR: 1
    • FMT_SMR.2: 3
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 1
    • FPT_APW_EXT.1: 3
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT: 1
    • FPT_SKP_EXT.1: 3
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT: 1
    • FPT_STM_EXT.1: 4
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 2
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 3
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 2
    • FTA_SSL.3: 3
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 2
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 1
    • FTA_SSL_EXT.1: 3
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 1
    • FTA_TAB.1: 4
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 1
    • FTP_ITC.1: 4
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 3
  • FAU:
    • FAU_SAS.1: 7
    • FAU_SAS.1.1: 1
  • FCS:
    • FCS_CKM.1: 17
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 2
    • FCS_CKM.4: 46
    • FCS_CKM.4.1: 3
    • FCS_COP.1: 45
    • FCS_COP.1.1: 4
    • FCS_RNG.1: 8
    • FCS_RNG.1.1: 3
    • FCS_RNG.1.2: 2
  • FDP:
    • FDP_ACC.1: 37
    • FDP_ACC.1.1: 2
    • FDP_ACF.1: 34
    • FDP_ACF.1.1: 2
    • FDP_ACF.1.2: 2
    • FDP_ACF.1.3: 2
    • FDP_ACF.1.4: 2
    • FDP_IFC.1: 10
    • FDP_ITC.1: 14
    • FDP_ITC.2: 16
    • FDP_ITT.1: 6
    • FDP_ROL.1: 1
    • FDP_SDC.1: 16
    • FDP_SDC.1.1: 2
    • FDP_SDI.1: 5
    • FDP_SDI.2: 36
    • FDP_SDI.2.1: 5
    • FDP_SDI.2.2: 5
  • FIA:
    • FIA_UAU.2: 2
    • FIA_UAU.5: 2
    • FIA_UID.2: 2
  • FMT:
    • FMT_LIM.1: 3
    • FMT_LIM.2: 4
    • FMT_MSA.1: 28
    • FMT_MSA.1.1: 2
    • FMT_MSA.3: 24
    • FMT_MSA.3.1: 2
    • FMT_MSA.3.2: 2
    • FMT_SMF.1: 22
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 7
  • FPT:
    • FPT_FLS.1: 8
    • FPT_ITT.1: 6
    • FPT_PHP.3: 8
    • FPT_RPL.1: 2
    • FPT_TDC.1: 2
  • FRU:
    • FRU_FLT.2: 8
  • FTP:
    • FTP_TRP.1: 2
pdf_data/st_keywords/cc_claims
  • A:
    • A.PHYSICAL_PROTECTION: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • O:
    • O.AES: 7
    • O.CUST_RECONF_PLAIN: 6
    • O.EEPROM_INTEGRITY: 5
    • O.FM_FW: 9
    • O.MEM_ACCESS: 10
    • O.PUF: 6
    • O.RND: 3
    • O.SFR_: 1
    • O.SFR_ACCESS: 8
    • O.TDES: 7
  • T:
    • T.RND: 2
pdf_data/st_keywords/vendor
  • Broadcom:
    • Broadcom: 2
  • Microsoft:
    • Microsoft: 1
  • NXP:
    • NXP: 212
    • NXP Semiconductors: 45
    • NXP Semiconductors N.V: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 33
      • AES-256: 5
  • DES:
    • 3DES:
      • 3DES: 1
  • constructions:
    • MAC:
      • HMAC: 9
      • HMAC-SHA-256: 7
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
  • AES_competition:
    • AES:
      • AES: 82
  • DES:
    • 3DES:
      • TDEA: 1
      • TDES: 45
      • Triple-DES: 19
    • DES:
      • DEA: 1
      • DES: 8
  • constructions:
    • MAC:
      • CBC-MAC: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 2
      • ECDHE: 1
    • ECDSA:
      • ECDSA: 21
  • FF:
    • DH:
      • DH: 7
      • DHE: 1
      • Diffie-Hellman: 8
    • DSA:
      • DSA: 4
  • RSA:
    • RSA 2048: 2
    • RSA-2048: 1
  • ECC:
    • ECC:
      • ECC: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-256: 6
      • SHA-384: 4
      • SHA-512: 4
      • SHA256: 17
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 2
  • MAC:
    • MAC: 8
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 1
  • IPsec:
    • IPsec: 3
  • SSH:
    • SSH: 44
    • SSHv2: 7
  • TLS:
    • SSL:
      • SSL: 5
      • SSL 2.0: 4
      • SSL 3.0: 4
    • TLS:
      • TLS: 78
      • TLS 1.0: 4
      • TLS 1.1: 4
      • TLS 1.2: 6
      • TLS1.1: 1
      • TLS1.2: 1
      • TLSv1.1: 3
      • TLSv1.2: 6
  • VPN:
    • VPN: 4
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 14
  • RNG:
    • RBG: 4
    • RNG: 6
  • RNG:
    • RND: 5
    • RNG: 14
  • TRNG:
    • TRNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 8
  • CCM:
    • CCM: 4
  • CTR:
    • CTR: 7
  • GCM:
    • GCM: 12
  • CBC:
    • CBC: 4
  • ECB:
    • ECB: 6
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 18
    • P-384: 12
    • P-521: 10
    • secp256r1: 7
    • secp384r1: 7
    • secp521r1: 3
pdf_data/st_keywords/crypto_engine
  • SmartMX:
    • SmartMX: 1
    • SmartMX2: 16
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 7
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 7
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 5
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 5
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 5
    • TLS_RSA_WITH_AES_128_CBC_SHA: 7
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 7
    • TLS_RSA_WITH_AES_256_CBC_SHA: 7
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 10
    • fault injection: 2
    • malfunction: 2
    • physical tampering: 1
  • SCA:
    • DPA: 2
    • Leak-Inherent: 11
    • Physical Probing: 2
    • physical probing: 1
    • side channel: 1
    • timing attacks: 2
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 2
    • FIPS 186-4: 3
    • FIPS PUB 186-4: 18
  • ISO:
    • ISO/IEC 14888-: 1
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 9796-2: 2
  • NIST:
    • NIST SP 800-56A: 2
    • SP 800-90A: 2
  • PKCS:
    • PKCS #1: 2
    • PKCS#12: 2
  • RFC:
    • RFC 2818: 3
    • RFC 2986: 2
    • RFC 3268: 28
    • RFC 3526: 3
    • RFC 4253: 2
    • RFC 4346: 4
    • RFC 4492: 24
    • RFC 5246: 30
    • RFC 5280: 5
    • RFC 5289: 44
    • RFC 5759: 1
    • RFC 6125: 3
    • RFC 6960: 1
    • RFC 8017: 2
  • X509:
    • X.509: 8
  • BSI:
    • AIS31: 2
  • CC:
    • CCMB-2017-04-001: 2
    • CCMB-2017-04-002: 2
    • CCMB-2017-04-003: 2
    • CCMB-2017-04-004: 2
  • FIPS:
    • FIPS 197: 3
    • FIPS PUB 197: 2
  • ISO:
    • ISO/IEC 14443: 20
    • ISO/IEC 18092: 2
    • ISO/IEC 7816: 28
    • ISO/IEC 9797-1: 1
  • NIST:
    • NIST SP 800-38A: 3
    • NIST SP 800-67: 4
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • e., stateful inspection filtering, IPsec VPN gateway, IPS/IDS threat prevention) are not evaluated (out of scope). Only the secure communication channels from Panorama to firewalls and Wildfires are claimed. The: 1
    • extent specified by the security functional requirements: TLS, HTTPS, SSH. The features below are out of scope. Table 2 Excluded Features Feature Description Telnet and HTTP Management Protocols Telnet and HTTP: 1
    • out of scope: 3
    • protocol and can be used to build a management interface. This feature is not tested and is out of scope. Stateful inspection filtering, VPN gateway, IPS/IDS threat prevention, URL filtering (PAN- DB: 1
pdf_data/st_metadata
  • /Author: NXP B.V.
  • /CreationDate: D:20190823112800+01'00'
  • /Creator: DITA Open Toolkit
  • /Keywords: CC Security Evaluation, Security Target Lite, Functional Requirements, Security Functionality, Assurance Level 6+, P6022y VB, P6022P VB, P6022X VB, P6022M VB, P6022D VB, P6022J VB
  • /Producer: Apache FOP Version 1.1
  • /Subject: NXP Secure Smart Card Controller P6022y VB
  • /Title: Security Target Lite
  • pdf_file_size_bytes: 848910
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 101
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different