Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
AssetCentral 4.0.0 consist of AssetXplorer (v5.0) and AssetCentral Server (v4.0)
ISCB-5-RPT-C023-CR-v1a
ID One™ ePass v2.1 with configuration EAC RSA & ECC on NXP P5CD040V0B, P5CD080V0B, P5CD144V0B
ANSSI-CC-2009/19
name AssetCentral 4.0.0 consist of AssetXplorer (v5.0) and AssetCentral Server (v4.0) ID One™ ePass v2.1 with configuration EAC RSA & ECC on NXP P5CD040V0B, P5CD080V0B, P5CD144V0B
category Other Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme MY FR
not_valid_before 16.01.2012 23.07.2009
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C023-CR-v1a.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-2009_19en.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Authentic%20Venture%20EAL1%20Security%20Target%20(AssetCentral)%20v1.1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-cible2009_19en.pdf
manufacturer Authentic Venture Sdn Bhd Oberthur Card System / Philips (NXP)
manufacturer_web https://www.ventures.com.my https://www.oberthur.com/
security_level EAL1 EAL4+, AVA_VAN.5, ALC_DVS.2
dgst b7e122dade348c21 61c31bdcb23b6f20
heuristics/cert_id ISCB-5-RPT-C023-CR-v1a ANSSI-CC-2009/19
heuristics/cert_lab [] CEACI
heuristics/extracted_sars ASE_CCL.1, AGD_PRE.1, ALC_CMC.1, AGD_OPE.1, ATE_IND.1, ASE_INT.1, ASE_ECD.1, ASE_OBJ.1, ASE_REQ.1, ALC_CMS.1, ASE_TSS.1, AVA_VAN.1, ADV_FSP.1 ALC_DVS.2, AVA_VLA.4, AVA_VAN.5, AVA_MSU.3, ADV_SPM.1, ADV_ARC.1
heuristics/extracted_versions 4.0.0, 5.0, 4.0 2.1
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-0410-2007, BSI-DSZ-CC-0404-2007, BSI-DSZ-CC-0411-2007
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-0410-2007, BSI-DSZ-CC-0404-2007, BSI-DSZ-CC-0411-2007
heuristics/scheme_data
  • cert_no: 2012-001-C023
  • certification_date: 16.01.2012
  • developer: Authentic Venture Sdn Bhd
  • enhanced:
    • assurance_level: EAL1
    • category: Other Devices and Systems
    • cert_id: C023
    • certification_date: 16.01.2012
    • developer: Khairun Nisa Aziz Block U, UPM-MTDC,Incubation Center One,University Putra Malaysia,43400 Serdang,Selangor MALAYSIA URL: http://www.ventures.com.myEmail: [email protected]:+ 603 8941 2739Fax:+ 603 8941 8651
    • expiration_date: 16.01.2017
    • mutual_recognition: CCRA
    • product: AssetCentral 4.0.0 consist of AssetXplorer (v5.0) and AssetCentral Server (v4.0)
    • report_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C023/ISCB-5-RPT-C023-CR-v1a.pdf
    • scope: AssetCentral 4.0.0 is an automated asset management system. It automates the protection of managed systems against unauthorized software or hardware installations and removal, and having unlicensed software-related vulnerabilities. It allows users to monitor compliance throughout an organisation for their IT asset. AssetCentral comprises a server component and agents, known as AssetXplorer agents, which are deployed on computers throughout the enterprise. AssetXplorer agents send information about each computer to AssetCentral Server. AssetCentral Server consolidates all the information and allows administrators and custom-role users to view them through a web interface. AssetXplorer is part of the TOE. The security features within the scope of the evaluation includes: Auditing – provides auditing capabilities. Identification and Authentication – provides identification and authentication of human users of the TOE. It also provides identification of AssetXplorer that are installed in managed devices. Security Management - provides security management through the use of the Web Administration Interface. Through the enforcement of the AssetCentral Access Control Policy, the ability to manage various security attributes is controlled. User Data Protection - provides its own access control between subjects and objects covered by the AssetCentral Access Control Policy. Secure Communications - able to protect the user data from disclosure and modification when the scanned data is sent from AssetXplorer to AssetCentral Server.
    • status: Archive
    • target_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C023/Authentic%20Venture%20EAL1%20Security%20Target%20(AssetCentral)%20v1.1.pdf
    • type: Automated asset management system
  • expiration_date: 16.01.2017
  • level: EAL1
  • product: AssetCentral 4.0.0 consist of AssetXplorer (v5.0) and AssetCentral Server (v4.0)
  • recognition: CCRA
  • url: https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/154
maintenance_updates
pdf_data/report_filename ISCB-5-RPT-C023-CR-v1a.pdf anssi-2009_19en.pdf
pdf_data/report_frontpage
  • FR:
  • FR:
    • cc_security_level: EAL 4 augmented ALC_DVS.2, AVA_VAN.5
    • cc_version: Common Criteria version 3.1
    • cert_id: ANSSI-2009/19
    • cert_item: ID One™ ePass v2.1 with configuration EAC RSA & ECC on NXP P5CD040V0B, P5CD080V0B, P5CD144V0B
    • cert_item_version: Revision 1 with optional code (patch) r2.0
    • cert_lab: CEACI (Thales Security Systems – CNES) 18 avenue Edouard Belin, 31401 Toulouse Cedex 9, France Phone: +33 (0)5 61 28 16 51, email : [email protected]
    • developer: Oberthur Technologies1 50 quai Michelet 92300 Levallois-Perret, France NXP Semiconductors GmbH1 Stresemannallee 101 D-22502 Hamburg, Germany Sponsor Oberthur Technologies 50 quai Michelet, 92300 Levallois-Perret, France
    • match_rules: ['Certification report reference(.+)Product name(.+)Product reference(.+)Protection profile conformity(.+)Evaluation criteria and version(.+)Evaluation level(.+)Developers(.+)Evaluation facility(.+)Recognition arrangements']
    • ref_protection_profiles: PP EAC] BSI-PP-0026 Common Criteria Protection Profile - Machine Readable Travel Document with “ICAO Application”, Extended Access Control
pdf_data/report_keywords/cc_cert_id
  • MY:
    • ISCB-5-RPT-C023-CR-v1a: 29
  • DE:
    • BSI-DSZ-CC-0404-2007: 4
    • BSI-DSZ-CC-0410-2007: 3
    • BSI-DSZ-CC-0411-2007: 3
  • FR:
    • ANSSI-2009/19: 18
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0002-2001: 1
    • BSI-PP-0017: 1
    • BSI-PP-0026: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL1: 16
  • EAL:
    • EAL 1: 1
    • EAL 3: 1
    • EAL 4: 2
    • EAL 4 augmented: 2
    • EAL 5: 1
    • EAL 7: 1
    • EAL4: 2
    • EAL5: 1
    • EAL7: 1
  • ITSEC:
    • ITSEC E6 and: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_DEL: 1
  • ADO:
    • ADO_DEL: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_FSP: 1
    • ADV_IMP: 1
    • ADV_TDS: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMS: 1
    • ALC_DVS: 1
    • ALC_DVS.2: 2
    • ALC_FLR: 2
    • ALC_TAT: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_ECD: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_REQ: 1
    • ASE_SPD: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 1
    • ATE_DPT: 1
    • ATE_FUN: 1
    • ATE_IND: 1
  • AVA:
    • AVA_MSU.3: 1
    • AVA_VAN: 1
    • AVA_VAN.5: 1
    • AVA_VLA.4: 1
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 1
    • FAU_GEN.2: 1
    • FAU_SAR.1: 1
    • FAU_SAR.2: 1
  • FDP:
    • FDP_ACC.1: 1
    • FDP_ACF.1: 1
  • FIA:
    • FIA_ATD.1: 1
    • FIA_UAU.2: 1
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF.1: 1
    • FMT_MSA.1: 1
    • FMT_MSA.3: 1
    • FMT_SMF.1: 1
    • FMT_SMR.1: 1
  • FPT:
    • FPT_ITT.1: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 3
  • NXP:
    • NXP: 24
    • NXP Semiconductors: 4
  • Oberthur:
    • Oberthur: 1
    • Oberthur Technologies: 11
  • Thales:
    • Thales: 2
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • DES:
      • DES: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 17
pdf_data/report_keywords/standard_id
  • ISO:
    • ISO/IEC 18045: 2
    • ISO/IEC15408: 2
  • BSI:
    • AIS 31: 1
    • AIS31: 3
  • CC:
    • CCMB-2006-09-001: 1
    • CCMB-2007-09-002: 1
    • CCMB-2007-09-003: 1
    • CCMB-2007-09-004: 1
  • ICAO:
    • ICAO: 5
pdf_data/report_metadata
  • /Author: nassor
  • /CreationDate: D:20090814102813+02'00'
  • /Creator: PScript5.dll Version 5.2
  • /ModDate: D:20090814102813+02'00'
  • /Producer: Acrobat Distiller 8.0.0 (Windows)
  • /Title: Microsoft Word - anssi-2009_19en.doc
  • pdf_file_size_bytes: 171587
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 17
pdf_data/st_filename Authentic Venture EAL1 Security Target (AssetCentral) v1.1.pdf anssi-cible2009_19en.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP- 0017: 1
    • BSI-PP-0002-2001: 1
    • BSI-PP-0017: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL1: 10
  • EAL:
    • EAL4: 4
    • EAL4 augmented: 1
    • EAL4+: 3
    • EAL5+: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ASE:
    • ASE_CCL: 2
    • ASE_CCL.1: 2
    • ASE_ECD.1: 2
    • ASE_INT: 2
    • ASE_INT.1: 2
    • ASE_OBJ: 2
    • ASE_OBJ.1: 2
    • ASE_REQ: 2
    • ASE_REQ.1: 2
    • ASE_TSS: 2
    • ASE_TSS.1: 2
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
  • ADO:
    • ADO_DEL: 1
    • ADO_IGS: 1
  • ADV:
    • ADV_ARC.1: 1
    • ADV_SPM.1: 1
  • AGD:
    • AGD_PRE: 3
  • ALC:
    • ALC_DVS.2: 3
  • AVA:
    • AVA_VAN.3: 2
    • AVA_VAN.5: 3
    • AVA_VLA.2: 1
    • AVA_VLA.4: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 8
    • FAU_GEN.1.1: 3
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 1
    • FAU_SAR.1: 7
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 3
    • FAU_SAR.2.1: 1
  • FDP:
    • FDP_ACC: 1
    • FDP_ACC.1: 10
    • FDP_ACF.1: 5
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 2
    • FDP_IFF: 2
  • FIA:
    • FIA_ATD.1: 5
    • FIA_ATD.1.1: 1
    • FIA_UAU: 1
    • FIA_UAU.1: 1
    • FIA_UAU.2: 3
    • FIA_UAU.2.1: 1
    • FIA_UID: 1
    • FIA_UID.1: 6
    • FIA_UID.2: 5
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MOF.1: 5
    • FMT_MOF.1.1: 1
    • FMT_MSA.1: 7
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 7
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 10
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 10
    • FMT_SMR.1.1: 1
  • FPT:
    • FPT_ITT.1: 3
    • FPT_ITT.1.1: 1
    • FPT_STM.1: 2
  • FTP:
    • FTP_ITT.1: 2
  • FAU:
    • FAU_SAS: 1
    • FAU_SAS.1: 5
    • FAU_SAS.1.1: 1
  • FCS:
    • FCS_CKM: 13
    • FCS_CKM.1: 19
    • FCS_CKM.2: 3
    • FCS_CKM.4: 14
    • FCS_COP: 13
    • FCS_COP.1: 21
    • FCS_RND: 4
    • FCS_RND.1: 6
  • FDP:
    • FDP_ACC.1: 10
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 9
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 3
    • FDP_ITC: 5
    • FDP_ITC.1: 9
    • FDP_ITC.1.3: 1
    • FDP_ITC.2: 6
    • FDP_UCT: 1
    • FDP_UCT.1: 4
    • FDP_UIT: 1
    • FDP_UIT.1: 4
  • FIA:
    • FIA_AFL: 2
    • FIA_AFL.1: 7
    • FIA_API: 8
    • FIA_API.1: 7
    • FIA_UAU: 14
    • FIA_UAU.1: 3
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.4: 4
    • FIA_UAU.5: 4
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6: 3
    • FIA_UID.1: 7
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_LIM: 1
    • FMT_LIM.1: 7
    • FMT_LIM.1.1: 1
    • FMT_LIM.2: 6
    • FMT_LIM.2.1: 1
    • FMT_MOF: 1
    • FMT_MOF.1: 5
    • FMT_MOF.1.1: 1
    • FMT_MSA.2: 6
    • FMT_MSA.3: 3
    • FMT_MTD: 13
    • FMT_MTD.1: 27
    • FMT_MTD.3: 4
    • FMT_MTD.3.1: 1
    • FMT_SEM.1: 1
    • FMT_SMF.1: 14
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 15
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPR:
    • FPR_TST.1.1: 1
  • FPT:
    • FPT_AMT.1: 1
    • FPT_FLS.1: 5
    • FPT_FLS.1.1: 1
    • FPT_PHP.3: 5
    • FPT_PHP.3.1: 1
    • FPT_RVM.1: 1
    • FPT_SEP.1: 3
    • FPT_TST.1: 6
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 2
  • FTP:
    • FTP_ITC.1: 2
    • FTP_TRP.1: 2
pdf_data/st_keywords/cc_claims
  • OE:
    • OE.ADMIN: 1
    • OE.COMMUNICATION: 2
    • OE.INSTALL: 1
    • OE.LOCAL: 1
    • OE.NETWORK: 1
    • OE.PATCH: 1
    • OE.PHYSICAL: 1
    • OE.TIMESTAMP: 1
  • A:
    • A.IC: 2
  • O:
    • O.CONFIG: 1
    • O.HW_AES: 1
    • O.IC: 2
    • O.MEM_ACCESS: 1
    • O.MF_FW: 1
    • O.RND: 4
    • O.SFR_ACCESS: 1
    • O.TOE: 2
  • OE:
    • OE.IC: 2
  • T:
    • T.TOE: 2
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • NXP:
    • NXP: 13
  • Oberthur:
    • OBERTHUR: 10
    • Oberthur Technologies: 161
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 2
  • DES:
    • 3DES:
      • 3DES: 1
      • TDES: 1
      • Triple-DES: 12
    • DES:
      • DES: 9
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 18
    • ECDH:
      • ECDH: 4
    • ECDSA:
      • ECDSA: 7
  • FF:
    • DH:
      • DH: 3
      • Diffie-Hellman: 3
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 5
      • SHA1: 1
    • SHA2:
      • SHA-224: 6
      • SHA-256: 4
      • SHA-384: 4
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 7
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
pdf_data/st_keywords/randomness
  • RNG:
    • RND: 6
    • RNG: 3
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • ECB:
    • ECB: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 3
    • Malfunction: 14
    • Physical Tampering: 2
    • Physical tampering: 1
    • fault injection: 1
    • malfunction: 5
    • physical tampering: 2
  • SCA:
    • DPA: 1
    • Leak-Inherent: 7
    • Physical Probing: 1
    • physical probing: 4
  • other:
    • reverse engineering: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI 2006: 1
pdf_data/st_keywords/ic_data_group
  • EF:
    • EF.COM: 9
    • EF.DG1: 12
    • EF.DG13: 3
    • EF.DG14: 6
    • EF.DG15: 3
    • EF.DG16: 11
    • EF.DG2: 5
    • EF.DG3: 7
    • EF.DG4: 7
    • EF.DG5: 5
    • EF.SOD: 7
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 31: 1
  • CC:
    • CCMB-2006-09-001: 1
    • CCMB-2007-09-002: 1
    • CCMB-2007-09-003: 1
  • FIPS:
    • FIPS 140-2: 1
    • FIPS 180-2: 1
    • FIPS 186-3: 1
    • FIPS 46-3: 1
    • FIPS PUB 140-2: 1
  • ICAO:
    • ICAO: 11
  • ISO:
    • ISO/IEC 15946-1: 1
    • ISO/IEC 15946-2: 1
    • ISO/IEC 7816-2: 1
  • PKCS:
    • PKCS#1: 1
    • PKCS#3: 1
  • RFC:
    • RFC 3447: 1
pdf_data/st_metadata
  • /Author: Nunni Zainal Abidin (stratsec)
  • /CreationDate: D:20111125105310+08'00'
  • /Creator: Microsoft® Word 2010
  • /ModDate: D:20111125105310+08'00'
  • /Producer: Microsoft® Word 2010
  • /Subject: Security Target
  • /Title: AssetCentral
  • pdf_file_size_bytes: 564770
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 27
  • /Author: clemecap
  • /CreationDate: D:20090907174942+02'00
  • /Creator: PDFCreator Version 0.8.1
  • /ModDate: D:20090907174942+02'00
  • /Producer: AFPL Ghostscript 8.50
  • /Title: FQR-110 4642-1-Public
  • pdf_file_size_bytes: 606559
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 80
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different