Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Cisco Secure Client - AnyConnect 5.1 for Red Hat Enterprise Linux 8.2
CCEVS-VR-VID-11439-2024
nCipher nShield Solo XC Hardware Security Module v12.50.7
NSCIB-CC-163968-CR
name Cisco Secure Client - AnyConnect 5.1 for Red Hat Enterprise Linux 8.2 nCipher nShield Solo XC Hardware Security Module v12.50.7
category Other Devices and Systems Products for Digital Signatures
scheme US NL
status active archived
not_valid_after 25.06.2026 19.11.2024
not_valid_before 25.06.2024 19.11.2019
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11439-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Signed%20certificate%20CC-19-163968.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11439-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification_Report_NSCIB-CC-163968-CR.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11439-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-163968-ST-1.0.pdf
manufacturer Cisco Systems, Inc. nCipher Security Ltd.
manufacturer_web https://www.cisco.com https://www.ncipher.com/
security_level {} AVA_VAN.5, ALC_FLR.2, EAL4+
dgst b9e00b7f61accdc6 0f312e270b3632b2
heuristics/cert_id CCEVS-VR-VID-11439-2024 NSCIB-CC-163968-CR
heuristics/cert_lab US
heuristics/extracted_sars ALC_CMS.1, ASE_CCL.1, ASE_INT.1, ADV_FSP.1, AGD_PRE.1, AVA_VAN.1, ASE_ECD.1, ALC_TSU_EXT.1, ASE_OBJ.1, ATE_IND.1, ASE_REQ.1, ASE_TSS.1, ALC_CMC.1, AGD_OPE.1 ALC_FLR.2, AVA_VAN.5, ATE_IND.2
heuristics/extracted_versions 8.2, 5.1 12.50.7
heuristics/protection_profiles f84bb9133ca2c8db, 90c116e62a19bc4d ee319f4a624019b0
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/MOD_VPN_CLI_v2.4_PP.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_APP_V1.4.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/ANSSI-CC-PP-2016_05 PP.pdf
pdf_data/cert_filename st_vid11439-ci.pdf Signed certificate CC-19-163968.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11439-2024: 1
  • FR:
    • ANSSI-CC-PP-2016/5: 1
  • NL:
    • CC-19-163968: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/5: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
    • EAL4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/vendor
  • Cisco:
    • Cisco: 1
    • Cisco Systems, Inc: 1
pdf_data/cert_keywords/eval_facility
  • Gossamer:
    • Gossamer Security: 1
  • BrightSight:
    • Brightsight: 1
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20240628112026-04'00'
  • /ModDate: D:20240628112026-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 188092
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20191119143204+01'00'
  • /Creator: C458-M&S
  • /ModDate: D:20191119143204+01'00'
  • /Producer: KONICA MINOLTA bizhub C458
  • /Title: C458-M&S19111914310
  • pdf_file_size_bytes: 187387
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid11439-vr.pdf Certification_Report_NSCIB-CC-163968-CR.pdf
pdf_data/report_frontpage
  • NL:
  • US:
    • cert_id: CCEVS-VR-VID11439-2024
    • cert_item: Cisco Secure Client - AnyConnect 5.1 for Red Hat Enterprise Linux 8.2
    • cert_lab: US NIAP
  • NL:
    • cert_id: NSCIB-CC-163968-CR
    • cert_item: nShield Solo XC Hardware Security Module v12.50.7
    • cert_lab: Brightsight
    • developer: nCipher Security Limited
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11439-2024: 1
  • FR:
    • ANSSI-CC-PP-2016/5: 1
  • NL:
    • NSCIB-CC-163968-CR: 12
pdf_data/report_keywords/cc_protection_profile_id
  • ANSSI:
    • ANSSI-CC-PP-2016/5: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 3
    • EAL4 augmented: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 2
  • ATE:
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 4
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 1
  • FCS:
    • FCS_COP: 1
  • FTP:
    • FTP_TRP: 1
pdf_data/report_keywords/vendor
  • Cisco:
    • Cisco: 23
    • Cisco Systems, Inc: 3
pdf_data/report_keywords/eval_facility
  • Gossamer:
    • Gossamer Security: 4
  • BrightSight:
    • Brightsight: 2
pdf_data/report_keywords/asymmetric_crypto
  • FF:
    • DH:
      • Diffie-Hellman: 1
  • ECC:
    • ECC:
      • ECC: 1
    • ECDSA:
      • ECDSA: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 1
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 2
    • IKEv2: 1
  • IPsec:
    • IPsec: 4
  • TLS:
    • SSL:
      • SSL: 1
  • VPN:
    • VPN: 19
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 2
  • TRNG:
    • TRNG: 1
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • other:
    • JIL: 1
pdf_data/report_keywords/standard_id
  • X509:
    • X.509: 1
  • BSI:
    • AIS 31: 2
  • ISO:
    • ISO/IEC 19790:2012: 1
  • NIST:
    • SP 800-90A: 3
pdf_data/report_metadata
pdf_data/st_filename st_vid11439-st.pdf NSCIB-CC-163968-ST-1.0.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 7
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 1
    • ALC_TSU_EXT.1: 3
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 2
    • ASE_OBJ.1: 2
    • ASE_REQ.1: 2
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
  • ALC:
    • ALC_FLR.2: 7
  • AVA:
    • AVA_VAN.5: 9
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 7
    • FCS_CKM.1: 5
    • FCS_CKM.2: 5
    • FCS_CKM.2.1: 1
    • FCS_CKM_EXT: 1
    • FCS_CKM_EXT.1: 4
    • FCS_CKM_EXT.1.1: 1
    • FCS_CKM_EXT.2: 5
    • FCS_CKM_EXT.2.1: 1
    • FCS_CKM_EXT.4: 4
    • FCS_CKM_EXT.4.1: 1
    • FCS_COP: 20
    • FCS_COP.1: 4
    • FCS_RBG_EXT.1: 8
    • FCS_RBG_EXT.1.1: 1
    • FCS_STO_EXT.1: 4
    • FCS_STO_EXT.1.1: 1
  • FDP:
    • FDP_DAR_EXT.1: 4
    • FDP_DAR_EXT.1.1: 1
    • FDP_DEC_EXT.1: 4
    • FDP_DEC_EXT.1.1: 1
    • FDP_DEC_EXT.1.2: 1
    • FDP_NET_EXT.1: 4
    • FDP_NET_EXT.1.1: 1
    • FDP_RIP.2: 4
    • FDP_RIP.2.1: 1
    • FDP_VPN_EXT.1: 1
  • FMT:
    • FMT_CFG_EXT.1: 4
    • FMT_CFG_EXT.1.1: 1
    • FMT_CFG_EXT.1.2: 1
    • FMT_MEC_EXT.1: 4
    • FMT_MEC_EXT.1.1: 1
    • FMT_SMF: 4
    • FMT_SMF.1: 6
    • FMT_SMF.1.1: 1
  • FPR:
    • FPR_ANO_EXT.1: 4
    • FPR_ANO_EXT.1.1: 1
  • FPT:
    • FPT_AEX_EXT.1: 4
    • FPT_AEX_EXT.1.1: 1
    • FPT_AEX_EXT.1.2: 1
    • FPT_AEX_EXT.1.3: 1
    • FPT_AEX_EXT.1.4: 1
    • FPT_AEX_EXT.1.5: 2
    • FPT_API_EXT.1: 4
    • FPT_API_EXT.1.1: 1
    • FPT_IDV_EXT.1: 4
    • FPT_IDV_EXT.1.1: 1
    • FPT_LIB_EXT.1: 4
    • FPT_LIB_EXT.1.1: 1
    • FPT_TST_EXT: 3
    • FPT_TST_EXT.1: 3
    • FPT_TUD_EXT.1: 4
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
    • FPT_TUD_EXT.1.4: 1
    • FPT_TUD_EXT.1.5: 1
    • FPT_TUD_EXT.2: 3
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 2
    • FPT_TUD_EXT.2.3: 1
  • FTP:
    • FTP_DIT_EXT.1: 5
    • FTP_DIT_EXT.1.1: 3
  • FAU:
    • FAU_GEN.1: 10
    • FAU_GEN.1.1: 2
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 1
    • FAU_STG.2: 5
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 1
    • FAU_STG.2.3: 1
  • FCS:
    • FCS_CKM.1: 11
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 1
    • FCS_CKM.4: 11
    • FCS_CKM.4.1: 1
    • FCS_COP.1: 10
    • FCS_COP.1.1: 1
    • FCS_RNG: 12
    • FCS_RNG.1: 5
  • FDP:
    • FDP_ACC: 15
    • FDP_ACC.1: 10
    • FDP_ACF: 14
    • FDP_ACF.1: 12
    • FDP_IFC: 10
    • FDP_IFC.1: 7
    • FDP_IFF: 9
    • FDP_IFF.1: 10
    • FDP_ITC.1: 2
    • FDP_ITC.2: 2
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
    • FDP_SDI.1: 1
    • FDP_SDI.2: 6
    • FDP_SDI.2.1: 1
    • FDP_SDI.2.2: 1
  • FIA:
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_UAU: 13
    • FIA_UAU.1: 9
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.6: 2
    • FIA_UID.1: 14
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA: 22
    • FMT_MSA.1: 5
    • FMT_MSA.3: 9
    • FMT_MTD: 12
    • FMT_MTD.1: 2
    • FMT_SMF.1: 10
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 19
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 4
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_PHP.3: 4
    • FPT_PHP.3.1: 1
    • FPT_STM.1: 7
    • FPT_STM.1.1: 1
    • FPT_TST_EXT.1: 9
    • FPT_TST_EXT.1.1: 1
  • FTP:
    • FTP_TRP: 15
    • FTP_TRP.1: 3
pdf_data/st_keywords/cc_claims
  • A:
    • A.NO_TOE_BYPASS: 1
    • A.PHYSICAL: 1
    • A.PROPER_ADMIN: 1
    • A.PROPER_USER: 1
    • A.TRUSTED_CONFIG: 1
  • O:
    • O.AUTHENTICATION: 1
    • O.CRYPTOGRAPHIC_FUNCTIONS: 1
    • O.INTEGRITY: 1
    • O.KNOWN_STATE: 1
    • O.MANAGEMENT: 1
    • O.NONDISCLOSURE: 1
    • O.PROTECTED_COMMS: 1
    • O.PROTECTED_STORAGE: 1
    • O.QUALITY: 1
  • OE:
    • OE.NO_TOE_BYPASS: 1
    • OE.PHYSICAL: 1
    • OE.PLATFORM: 1
    • OE.PROPER_ADMIN: 1
    • OE.PROPER_USER: 1
    • OE.TRUSTED_CONFIG: 1
  • T:
    • T.LOCAL_ATTACK: 1
    • T.NETWORK_ATTACK: 1
    • T.NETWORK_EAVESDROP: 1
    • T.PHYSICAL_ACCESS: 1
    • T.TSF_CONFIGURATION: 1
    • T.TSF_FAILURE: 1
    • T.UNAUTHORIZED_ACCESS: 1
    • T.USER_DATA_REUSE: 1
  • OE:
    • OE.U: 1
  • OT:
    • OT.A: 1
    • OT.B: 1
    • OT.R: 1
    • OT.RNG: 3
  • R:
    • R.RAD: 1
pdf_data/st_keywords/vendor
  • Cisco:
    • Cisco: 127
    • Cisco Systems, Inc: 5
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 6
      • AES-: 1
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 8
      • HMAC-SHA-256: 3
      • HMAC-SHA-384: 2
  • AES_competition:
    • AES:
      • AES: 7
  • DES:
    • 3DES:
      • TDEA: 1
      • Triple-DES: 4
  • constructions:
    • MAC:
      • CBC-MAC: 2
      • CMAC: 3
      • HMAC: 2
      • HMAC-SHA-224: 1
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 3
    • ECDSA:
      • ECDSA: 15
  • FF:
    • DH:
      • DH: 9
      • Diffie-Hellman: 4
  • ECC:
    • ECDH:
      • ECDH: 1
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 1
      • Diffie-Hellman: 3
    • DSA:
      • DSA: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 1
      • SHA-256: 3
      • SHA-384: 2
      • SHA256: 2
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-224: 1
      • SHA-384: 1
      • SHA-512: 1
pdf_data/st_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 2
  • MAC:
    • MAC: 3
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 28
    • IKEv1: 2
    • IKEv2: 15
  • IPsec:
    • IPsec: 61
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 2
  • VPN:
    • VPN: 66
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 5
  • PRNG:
    • DRBG: 3
  • RNG:
    • RNG: 30
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • GCM:
    • GCM: 3
  • CBC:
    • CBC: 2
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 1
  • ECB:
    • ECB: 2
  • GCM:
    • GCM: 2
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 18
    • P-384: 8
  • Brainpool:
    • brainpoolP160r1: 1
    • brainpoolP160t1: 1
    • brainpoolP192r1: 1
    • brainpoolP192t1: 1
    • brainpoolP224r1: 3
    • brainpoolP224t1: 3
    • brainpoolP256r1: 3
    • brainpoolP256t1: 3
    • brainpoolP320r1: 3
    • brainpoolP320t1: 3
    • brainpoolP384r1: 3
    • brainpoolP384t1: 3
    • brainpoolP512r1: 3
    • brainpoolP512t1: 3
  • NIST:
    • B-233: 1
    • B-283: 3
    • B-409: 3
    • B-571: 2
    • K-233: 1
    • K-283: 3
    • K-409: 3
    • K-571: 2
    • NIST B-163: 1
    • NIST B-233: 2
    • NIST K-163: 1
    • NIST K-233: 2
    • NIST P-192: 1
    • NIST P-224: 2
    • P-192: 1
    • P-224: 4
    • P-256: 6
    • P-384: 6
    • P-521: 4
pdf_data/st_keywords/crypto_library
  • NSS:
    • NSS: 1
  • OpenSSL:
    • OpenSSL: 3
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 2
    • physical tampering: 2
  • SCA:
    • side-channels: 1
pdf_data/st_keywords/tee_name
  • ARM:
    • TrustZone: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 6
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-38D: 2
  • RFC:
    • RFC 3602: 1
    • RFC 4106: 1
    • RFC 4301: 2
    • RFC 4303: 1
    • RFC 4868: 1
    • RFC 4945: 1
    • RFC 5280: 3
    • RFC 5282: 1
    • RFC 6379: 1
    • RFC 6960: 1
    • RFC 8247: 1
    • RFC 8784: 1
  • X509:
    • X.509: 10
  • BSI:
    • AIS 20: 1
    • AIS 31: 9
    • AIS31: 2
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 140-2: 6
    • FIPS 180-4: 1
    • FIPS 186-4: 2
    • FIPS 197: 2
    • FIPS 198-1: 1
  • ISO:
    • ISO/IEC 19790:2012: 1
  • NIST:
    • NIST SP 800-22: 1
    • NIST SP 800-90A: 3
    • SP 800-108: 1
    • SP 800-38A: 1
    • SP 800-38B: 1
    • SP 800-38C: 1
    • SP 800-38D: 1
    • SP 800-38F: 1
    • SP 800-56A: 2
    • SP 800-67: 1
    • SP 800-90A: 3
  • PKCS:
    • PKCS #1: 1
    • PKCS#1: 2
    • PKCS#11: 2
  • RFC:
    • RFC 8017: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Impath, out of scope) with a remote Hardserver (typically on an application server or PC: 1
    • for the TOE. The Hardserver instance in the Connect XC establishes a secure channel (Impath, out of scope) with a remote Hardserver (typically on an application server or PC), which also includes libraries: 1
    • out of scope: 3
    • support higher level APIs, for example, but not limited to NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 1 Configuration 1: TOE in Connect XC Page 8 of 66 nShield Solo XC HSM Security: 1
    • support higher level APIs, for example, but not limited to, NFKM, PKCS#11, MSCAPI, etc. These are out of scope of the TOE. Figure 2 Configuration 2: TOE in host server nShield Solo XC HSM Security Target Page: 1
pdf_data/st_metadata
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different