Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Fortinet FortiProxy v1.0
383-4-475
TCOS ID Version 3.0 Release 1/P71
BSI-DSZ-CC-1188-2023
name Fortinet FortiProxy v1.0 TCOS ID Version 3.0 Release 1/P71
category Network and Network-Related Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme CA DE
status archived active
not_valid_after 08.08.2024 18.04.2028
not_valid_before 08.08.2019 18.04.2023
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-475%20CT%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1188c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-475%20CR%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1188a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-475%20ST%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1188b_pdf.pdf
manufacturer Fortinet, Inc. Deutsche Telekom Security GmbH
manufacturer_web https://www.fortinet.com/ https://www.telekom.de/security
security_level {} ALC_DVS.2, EAL4+, ATE_DPT.2, AVA_VAN.5
dgst bb31977fded40970 cfe95a153cff5649
heuristics/cert_id 383-4-475 BSI-DSZ-CC-1188-2023
heuristics/cert_lab [] BSI
heuristics/cpe_matches cpe:2.3:a:fortinet:fortiproxy:1.0.1:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.5:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.4:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.6:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.0:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.2:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.7:*:*:*:*:*:*:*, cpe:2.3:a:fortinet:fortiproxy:1.0.3:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2023-45583, CVE-2023-36641, CVE-2021-42755, CVE-2018-13383, CVE-2024-26010, CVE-2021-43074, CVE-2023-36640, CVE-2023-22640, CVE-2021-42757, CVE-2022-22299, CVE-2023-22639, CVE-2018-13381, CVE-2024-26011, CVE-2023-22641, CVE-2021-22128, CVE-2019-17656, CVE-2018-13380, CVE-2021-26110, CVE-2021-22130, CVE-2022-42475, CVE-2022-42474, CVE-2018-13382, CVE-2022-41331, CVE-2023-41677, CVE-2021-44170, CVE-2024-21762, CVE-2022-43947, CVE-2021-43072, CVE-2024-48885, CVE-2023-33305, CVE-2024-48884, CVE-2020-6648, CVE-2023-29181, CVE-2018-13379, CVE-2023-29180 {}
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ALC_DVS.2, ALC_CMC.4, ADV_IMP.1, ATE_COV.2, ALC_FLR.1, ALC_TAT.1, ATE_DPT.2, AVA_VAN.5, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, ADV_FUN.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ADV_TDS.3, ASE_TSS.2, ADV_FSP.4
heuristics/extracted_versions 1.0 3.0
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-1149-2022
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-1149-2022
heuristics/scheme_data
  • category: Electronic ID documents
  • cert_id: BSI-DSZ-CC-1188-2023
  • certification_date: 18.04.2023
  • enhanced:
    • applicant: Deutsche Telekom Security GmbH Untere Industriestraße 20 57250 Netphen
    • assurance_level: EAL4+,ALC_DVS.2,ATE_DPT.2,AVA_VAN.5
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1188c_pdf.pdf?__blob=publicationFile&v=2
    • certification_date: 18.04.2023
    • description: The Target of Evaluation (TOE) is the product TCOS ID Version 3.0 Release 1/P71 provided by Deutsche Telekom Security GmbH, based on the hardware platform P71 (N7122) by NXP Semiconductors GmbH. It is an electronic Identity Card representing a smart card with contactless interface programmed according to the Technical Guideline BSI TR-03110 and the ICAO specifications. The evaluation of the product is based on the Protection Profiles BSI-CC-PP-0087-V2-2016-MA-01 and BSI-CC-PP-0090-2016 (including further referenced Protections Profiles). Additionally, the TOE meets the requirements of the Technical Guideline BSI TR-03116-2 as part of the qualification for the use within electronic ID card projects of the Federal Republic of Germany. The smart card provides the following authentication mechanisms: Passive Authentication, Password Authenticated Connection Establishment (PACE), Chip Authentication version 1, 2 and 3, Terminal Authentication version 1 and 2. The smart card contains at least one of the following applications that are all subject of the TOE’s evaluation: • ePassport Application • eID Application • eSign Application Two different major configurations of the TOE exist that only differ in the installed file system or applications respectively: • Passport • ID Document Furthermore, the TOE provides the so-called Update-in-Field mechanism. This secure update mechanism allows to install code-signed updates of the TOE Embedded Software (operating system part) by authorized staff during operational use. The TOE’s evaluation only covers the Update-in-Field mechanism itself, but does not cover any update packages.
    • entries: [frozendict({'id': 'Machine-Readable'}), frozendict({'id': 'Common'})]
    • evaluation_facility: SRC Security Research & Consulting GmbH
    • expiration_date: 17.04.2028
    • product: TCOS ID Version 3.0 Release 1/P71
    • protection_profile: Machine-Readable Electronic Documents based on BSI TR-03110 for Official Use (MR.ED-PP), Version 2.0.3, 18 July 2016, BSI-CC-PP-0087-V2-2016-MA-01Common Criteria PP Configuration Machine Readable Electronic Documents - Optionales Nachladen (Optional Post-Emission Updates) [MR.ED-ON-PP], Version 0.9.2, 18 August 2016, BSI-CC-PP-0090-2016
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1188a_pdf.pdf?__blob=publicationFile&v=2
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1188b_pdf.pdf?__blob=publicationFile&v=2
  • product: TCOS ID Version 3.0 Release 1/P71
  • subcategory: IC with applications
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Hoheitliche_Dokumente-IC_mit_Anwendung/1188.html
  • vendor: Deutsche Telekom Security GmbH
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-1149-2022
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-1149-2022
heuristics/protection_profiles 48ac4778e4272298 d90a82ee45f94fe0, 3eb6aa5ff339f509
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.0E.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0087V2b_pdf.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0090b_pdf.pdf
pdf_data/cert_filename 383-4-475 CT v1.0.pdf 1188c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • CA:
    • 383-4-475: 1
  • DE:
    • BSI-DSZ-CC-1188-2023: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0087-V2-2016-MA-01: 1
    • BSI-CC-PP-0090-2016: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_DVS.2: 1
  • ATE:
    • ATE_DPT.2: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/eval_facility
  • Lightship:
    • Lightship Security: 1
  • DeutscheTelekom:
    • Deutsche Telekom Security: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20190122115136-04'00'
  • /Creator: Adobe Illustrator CC 22.0 (Windows)
  • /ModDate: D:20190809134920-04'00'
  • /Producer: Adobe PDF library 15.00
  • /Title: cyber-centre-product-evaluation-certificate-e-bg
  • pdf_file_size_bytes: 1848669
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /Keywords: "Common Criteria, Certification, Zertifizierung, MRTD, ePass, eID, eSign"
  • /Subject: Common Criteria, Certification, Zertifizierung, MRTD, ePass, eID, eSign
  • /Title: Certificate BSI-DSZ-CC-1188-2023
  • pdf_file_size_bytes: 232861
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename 383-4-475 CR v1.0.pdf 1188a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • CA:
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ALC_DVS.2, ATE_DPT.2, AVA_VAN.5
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1188-2023
    • cert_item: TCOS ID Version 3.0 Release 1/P71
    • cert_lab: BSI
    • developer: Deutsche Telekom Security GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Common Criteria Protection Profile Machine- Readable Electronic Documents based on BSI TR- 03110 for Official Use [MR.ED-PP], Version 2.0.3, 18 July 2016, BSI-CC-PP-0087-V2-2016-MA-01 Common Criteria PP Configuration Machine Readable Electronic Documents – Optionales Nachladen (Optional Post-Emission Updates) [MR.ED-ON-PP], Version 0.9.2, 18 August 2016, BSI-CC-PP-0090-2016
  • CA:
pdf_data/report_keywords/cc_cert_id
  • CA:
    • 383-4-475: 1
  • DE:
    • BSI-DSZ-CC-1149-2022: 6
    • BSI-DSZ-CC-1149-2022-MA-01: 5
    • BSI-DSZ-CC-1188: 3
    • BSI-DSZ-CC-1188-2023: 21
    • BSI-DSZ-CC-S-0208-2022: 2
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0056-V2-2012-MA-02: 2
    • BSI-CC-PP-0059-2009-MA-02: 1
    • BSI-CC-PP-0068-V2-: 1
    • BSI-CC-PP-0068-V2-2011-MA-01: 2
    • BSI-CC-PP-0086-2015: 3
    • BSI-CC-PP-0087-V2-: 1
    • BSI-CC-PP-0087-V2-2016-MA-01: 1
    • BSI-CC-PP-0090-2016: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 5
    • EAL 4 augmented: 3
    • EAL 5: 4
    • EAL 5+: 1
    • EAL 6: 1
    • EAL5+: 1
    • EAL6: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.2: 5
    • ALC_FLR: 2
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ATE:
    • ATE_DPT.2: 4
  • AVA:
    • AVA_VAN.5: 4
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 22
    • FCS_COP: 23
    • FCS_RND: 1
  • FIA:
    • FIA_API: 1
    • FIA_UAU: 6
  • FTP:
    • FTP_ITC: 6
pdf_data/report_keywords/vendor
  • NXP:
    • NXP: 11
    • NXP Semiconductors: 10
pdf_data/report_keywords/eval_facility
  • Lightship:
    • Lightship Security: 1
  • DeutscheTelekom:
    • Deutsche Telekom Security: 19
  • SRC:
    • SRC Security Research & Consulting: 3
  • TUV:
    • TÜV Informationstechnik: 1
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 12
      • AES-256: 1
  • constructions:
    • MAC:
      • CMAC: 4
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 5
    • ECDH:
      • ECDH: 8
    • ECDSA:
      • ECDSA: 4
  • FF:
    • DH:
      • Diffie-Hellman: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 2
      • SHA-512: 1
pdf_data/report_keywords/crypto_scheme
  • KA:
    • Key Agreement: 4
  • MAC:
    • MAC: 1
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 1
  • PACE:
    • PACE: 18
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 6
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • OFB:
    • OFB: 2
pdf_data/report_keywords/ecc_curve
  • Brainpool:
    • brainpoolP512t1: 2
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • fault injection: 1
    • malfunction: 1
  • SCA:
    • side channel: 2
  • other:
    • JIL: 5
    • deep learning: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102-1: 1
    • BSI TR-03110: 8
    • BSI TR-03116: 3
    • BSI TR-03116-2: 2
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
    • FIPS140-2: 1
  • ISO:
    • ISO/IEC 17025: 2
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 20: 3
    • AIS 23: 1
    • AIS 25: 4
    • AIS 26: 4
    • AIS 31: 3
    • AIS 32: 1
    • AIS 34: 4
    • AIS 36: 4
    • AIS 37: 2
    • AIS 38: 1
    • AIS 46: 2
    • AIS20: 2
    • AIS31: 2
  • FIPS:
    • FIPS PUB 180-4: 1
    • FIPS180: 3
    • FIPS186: 12
    • FIPS197: 4
  • ICAO:
    • ICAO: 15
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • RFC:
    • RFC 5639: 15
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Evaluation (ETR COMP), BSI-DSZ-CC- 1149, Version 3, 10 May 2022, TÜV Informationstechnik GmbH (confidential document) [23] Certification Report BSI-DSZ-CC-S-0208-2022 for Bundesdruckerei GmbH manufacturing site for: 1
    • ID Version 3.0 Release 1/P71, Version 1.1, 05 April 2023, SRC Security Research & Consulting GmbH (confidential document) [14] Configuration List BSI-DSZ-CC-1188, Konfigurationsliste von TCOS ID Version 3.0 Release 1: 1
    • P71D600, Version 1.0, 28 March 2023, Deutsche Telekom Security GmbH (confidential document) [15] TCOS ID card Version 3.0 Release 1, Guidance Document – Common Part, Guidance Documentation: 1
    • Security GmbH (confidential document) Note: End of report 38 / 38: 1
    • Zufallszahlengenerierung in TCOS, Version 1.4, 13 January 2023, Deutsche Telekom Security GmbH (confidential document) [UiF] Spezifikation ‘Update im Feld’ aus Applikationssicht, Version 0.12, 04 August 2022, Deutsche: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /Author: Clark, Cory P.
  • /Comments: 1.0
  • /Company: CSEC-CSTC
  • /CreationDate: D:20190815095759-04'00'
  • /Creator: Acrobat PDFMaker 17 for Word
  • /ModDate: D:20190815095805-04'00'
  • /Producer: Adobe PDF Library 15.0
  • /SourceModified: D:20190815135711
  • pdf_file_size_bytes: 724230
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 16
pdf_data/st_filename 383-4-475 ST v1.0.pdf 1188b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1149-2022: 1
    • BSI-DSZ-CC-1149-2022-MA-01: 1
    • BSI-DSZ-CC-1188: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP- 0086-2015: 1
    • BSI-CC-PP-0056-V2-: 1
    • BSI-CC-PP-0059-2009-MA-02: 2
    • BSI-CC-PP-0068-V2-2011-MA-01: 1
    • BSI-CC-PP-0068-V2-2011-MA01: 1
    • BSI-CC-PP-0084-2014: 1
    • BSI-CC-PP-0086-2015: 1
    • BSI-CC-PP-0087-V2-2016-MA-01: 2
    • BSI-CC-PP-0090-: 1
    • BSI-CC-PP-0090-2016: 1
    • BSI-CC-PP0084: 1
    • BSI-CC-PP0087: 1
    • BSI-PP-0055-2009: 1
    • BSI-PP-0056-V2-2012-MA02: 1
    • BSI-PP-0087: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL 6: 1
    • EAL 6 augmented: 1
    • EAL 6+: 1
    • EAL4: 10
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE: 4
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 2
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 4
    • ADV_FSP: 1
    • ADV_FSP.4: 2
    • ADV_FUN.1: 1
    • ADV_IMP.1: 2
    • ADV_TDS.3: 3
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 2
    • AGD_PRE.1: 3
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.4: 1
    • ALC_CMS: 1
    • ALC_CMS.4: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 2
    • ALC_DVS: 1
    • ALC_DVS.2: 7
    • ALC_FLR.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 5
    • ATE_DPT.3: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.5: 8
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 19
    • FAU_GEN.1: 9
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG: 1
    • FAU_STG_EXT: 2
    • FAU_STG_EXT.1: 10
    • FAU_STG_EXT.1.1: 2
    • FAU_STG_EXT.1.2: 2
    • FAU_STG_EXT.1.3: 2
    • FAU_STG_EXT.2: 5
    • FAU_STG_EXT.2.1: 1
  • FCO:
    • FCO_CPC_EXT: 2
    • FCO_CPC_EXT.1: 9
    • FCO_CPC_EXT.1.1: 3
    • FCO_CPC_EXT.1.2: 3
    • FCO_CPC_EXT.1.3: 2
  • FCS:
    • FCS_CKM: 7
    • FCS_CKM.1: 16
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 23
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 5
    • FCS_CKM.4.1: 1
    • FCS_COP: 73
    • FCS_COP.1: 9
    • FCS_DTLS: 2
    • FCS_DTLS_EXT.1.1: 1
    • FCS_DTLS_EXT.2.1: 1
    • FCS_RBG_EXT: 3
    • FCS_RBG_EXT.1: 21
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 3
    • FCS_SSHC: 2
    • FCS_SSHC_EXT: 1
    • FCS_SSHC_EXT.1: 6
    • FCS_SSHC_EXT.1.1: 1
    • FCS_SSHC_EXT.1.2: 1
    • FCS_SSHC_EXT.1.3: 1
    • FCS_SSHC_EXT.1.4: 1
    • FCS_SSHC_EXT.1.5: 3
    • FCS_SSHC_EXT.1.6: 1
    • FCS_SSHC_EXT.1.7: 1
    • FCS_SSHC_EXT.1.8: 1
    • FCS_SSHC_EXT.1.9: 1
    • FCS_SSHS: 1
    • FCS_SSHS_EXT: 2
    • FCS_SSHS_EXT.1: 10
    • FCS_SSHS_EXT.1.1: 2
    • FCS_SSHS_EXT.1.2: 3
    • FCS_SSHS_EXT.1.3: 2
    • FCS_SSHS_EXT.1.4: 2
    • FCS_SSHS_EXT.1.5: 3
    • FCS_SSHS_EXT.1.6: 2
    • FCS_SSHS_EXT.1.7: 2
    • FCS_SSHS_EXT.1.8: 2
    • FCS_TLSC_EXT: 5
    • FCS_TLSC_EXT.1: 8
    • FCS_TLSC_EXT.1.1: 4
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 9
    • FCS_TLSC_EXT.2.1: 2
    • FCS_TLSC_EXT.2.2: 2
    • FCS_TLSC_EXT.2.3: 2
    • FCS_TLSC_EXT.2.4: 2
    • FCS_TLSC_EXT.2.5: 2
    • FCS_TLSS_EXT: 5
    • FCS_TLSS_EXT.1: 11
    • FCS_TLSS_EXT.1.1: 5
    • FCS_TLSS_EXT.1.2: 2
    • FCS_TLSS_EXT.1.3: 2
    • FCS_TLSS_EXT.2: 6
    • FCS_TLSS_EXT.2.1: 2
    • FCS_TLSS_EXT.2.2: 1
    • FCS_TLSS_EXT.2.3: 1
    • FCS_TLSS_EXT.2.4: 2
    • FCS_TLSS_EXT.2.5: 1
    • FCS_TLSS_EXT.2.6: 1
    • FCS_TLS_EXT.1.1: 2
  • FIA:
    • FIA_AFL.1: 7
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 3
    • FIA_PMG_EXT.1: 9
    • FIA_PMG_EXT.1.1: 2
    • FIA_UAU.1: 1
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 3
    • FIA_UAU_EXT.2: 11
    • FIA_UAU_EXT.2.1: 2
    • FIA_UIA_EXT: 4
    • FIA_UIA_EXT.1: 10
    • FIA_UIA_EXT.1.1: 2
    • FIA_UIA_EXT.1.2: 2
  • FMT:
    • FMT_MOF: 11
    • FMT_MOF.1: 4
    • FMT_MTD: 8
    • FMT_MTD.1: 4
    • FMT_SMF.1: 12
    • FMT_SMF.1.1: 1
    • FMT_SMR.2: 7
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 3
    • FPT_APW_EXT.1: 9
    • FPT_APW_EXT.1.1: 2
    • FPT_APW_EXT.1.2: 2
    • FPT_ITT: 4
    • FPT_ITT.1: 4
    • FPT_PTD: 1
    • FPT_SKP_EXT: 3
    • FPT_SKP_EXT.1: 9
    • FPT_SKP_EXT.1.1: 2
    • FPT_STM: 2
    • FPT_STM_EXT: 1
    • FPT_STM_EXT.1: 8
    • FPT_STM_EXT.1.1: 2
    • FPT_STM_EXT.1.2: 3
    • FPT_TST_EXT: 2
    • FPT_TST_EXT.1: 9
    • FPT_TST_EXT.1.1: 3
    • FPT_TST_EXT.2: 7
    • FPT_TST_EXT.2.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 8
    • FPT_TUD_EXT.1.1: 2
    • FPT_TUD_EXT.1.2: 3
    • FPT_TUD_EXT.1.3: 8
    • FPT_TUD_EXT.2: 7
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 1
  • FTA:
    • FTA_SSL: 1
    • FTA_SSL.3: 5
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT: 2
    • FTA_SSL_EXT.1: 10
    • FTA_SSL_EXT.1.1: 2
    • FTA_TAB.1: 8
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC: 4
    • FTP_ITC.1: 13
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_ITC_EXT.1.1: 1
    • FTP_TRP: 8
    • FTP_TRP.1: 2
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_SAS: 21
    • FAU_SAS.1: 7
    • FAU_SAS.1.1: 1
  • FCS:
    • FCS_CKM: 73
    • FCS_CKM.1: 29
    • FCS_CKM.2: 9
    • FCS_CKM.4: 31
    • FCS_COP: 97
    • FCS_COP.1: 29
    • FCS_RND: 13
    • FCS_RND.1: 10
    • FCS_RND.1.1: 1
    • FCS_RNG: 3
  • FDP:
    • FDP_ACC: 44
    • FDP_ACC.1: 21
    • FDP_ACF: 59
    • FDP_ACF.1: 51
    • FDP_IFC: 5
    • FDP_IFC.1: 8
    • FDP_IFF: 8
    • FDP_IFF.1: 5
    • FDP_ITC.1: 18
    • FDP_ITC.2: 19
    • FDP_ITT.1: 1
    • FDP_RIP: 19
    • FDP_RIP.1: 12
    • FDP_SDC.1: 1
    • FDP_SDI: 12
    • FDP_SDI.1: 3
    • FDP_SDI.2: 5
    • FDP_UCT: 7
    • FDP_UCT.1: 3
    • FDP_UIT: 7
    • FDP_UIT.1: 4
  • FIA:
    • FIA_AFL: 37
    • FIA_AFL.1: 11
    • FIA_API: 34
    • FIA_API.1: 10
    • FIA_API.1.1: 1
    • FIA_UAU: 83
    • FIA_UAU.1: 16
    • FIA_UAU.4: 3
    • FIA_UAU.5: 7
    • FIA_UAU.6: 5
    • FIA_UIA: 1
    • FIA_UID: 37
    • FIA_UID.1: 17
  • FMT:
    • FMT_LIM: 31
    • FMT_LIM.1: 21
    • FMT_LIM.1.1: 1
    • FMT_LIM.2: 17
    • FMT_LIM.2.1: 1
    • FMT_MOF: 6
    • FMT_MOF.1: 1
    • FMT_MSA: 34
    • FMT_MSA.1: 6
    • FMT_MSA.3: 8
    • FMT_MSA.4: 1
    • FMT_MTD: 123
    • FMT_MTD.1: 18
    • FMT_MTD.3: 5
    • FMT_SMF: 28
    • FMT_SMF.1: 36
    • FMT_SMF.1.1: 1
    • FMT_SMR: 12
    • FMT_SMR.1: 39
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_EMS: 23
    • FPT_EMS.1: 17
    • FPT_EMS.1.1: 3
    • FPT_EMS.1.2: 4
    • FPT_FLS: 16
    • FPT_FLS.1: 7
    • FPT_ITT.1: 1
    • FPT_PHP: 17
    • FPT_PHP.1: 2
    • FPT_PHP.3: 5
    • FPT_TST: 17
    • FPT_TST.1: 12
  • FRU:
    • FRU_FLT.2: 1
  • FTP:
    • FTP_ITC: 34
    • FTP_ITC.1: 20
    • FTP_TRP.1: 4
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_: 1
    • A.LIMITED_: 1
    • A.NO_THRU_: 1
    • A.PHYSICAL_: 1
    • A.REGULAR_: 1
    • A.RESIDUAL_: 1
    • A.TRUSTED_: 1
  • OE:
    • OE.ADMIN_CREDEN: 1
    • OE.NO_GENERAL_: 1
    • OE.NO_THRU_: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFO: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • T:
    • T.PASSWORD_: 1
    • T.PASSWORD_CRACKING: 3
    • T.SECURITY_: 2
    • T.SECURITY_FUNCTIONAL: 2
    • T.UNAUTHORIZED_: 1
    • T.UNAUTHORIZED_ADMINIS: 1
    • T.UNDETECTED_: 1
    • T.UNDETECTED_ACTIVITY: 2
    • T.UNTRUSTED_: 1
    • T.UNTRUSTED_COMMUNI: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 2
    • T.UPDATE_: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_: 2
    • T.WEAK_AUTHENTICATIO: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • A:
    • A.CGA: 2
    • A.SCA: 2
  • O:
    • O.AES: 1
    • O.ECC: 1
    • O.PUF: 1
    • O.RND: 3
    • O.RSA: 1
    • O.TDES: 1
  • OE:
    • OE.HID_VAD: 4
  • T:
    • T.RND: 1
pdf_data/st_keywords/vendor
  • NXP:
    • NXP: 4
    • NXP Semiconductors: 2
pdf_data/st_keywords/eval_facility
  • DeutscheTelekom:
    • Deutsche Telekom Security: 158
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 23
      • AES-: 3
      • AES-128: 2
  • constructions:
    • MAC:
      • HMAC: 12
      • HMAC-SHA-256: 3
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
  • AES_competition:
    • AES:
      • AES: 19
      • AES-256: 1
  • DES:
    • 3DES:
      • 3DES: 1
      • TDES: 4
      • Triple-DES: 3
  • constructions:
    • MAC:
      • CMAC: 6
      • KMAC: 4
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 4
    • ECDH:
      • ECDH: 3
      • ECDHE: 3
    • ECDSA:
      • ECDSA: 9
  • FF:
    • DH:
      • DH: 11
      • DHE: 4
      • Diffie-Hellman: 17
  • RSA:
    • RSA 2048: 1
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 15
    • ECDSA:
      • ECDSA: 2
  • FF:
    • DH:
      • DH: 4
      • Diffie-Hellman: 9
    • DSA:
      • DSA: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 7
    • SHA2:
      • SHA-256: 8
      • SHA-384: 2
      • SHA-512: 6
      • SHA256: 12
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-224: 1
      • SHA-256: 1
      • SHA-384: 1
      • SHA-512: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 20
  • KA:
    • Key Agreement: 2
  • MAC:
    • MAC: 9
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 4
    • IKEv1: 12
    • IKEv2: 12
  • IPsec:
    • IPsec: 15
  • SSH:
    • SSH: 82
    • SSHv2: 1
  • TLS:
    • DTLS:
      • DTLS: 75
      • DTLS 1.0: 9
      • DTLS 1.2: 9
      • DTLS v1.0: 4
      • DTLS v1.2: 4
    • SSL:
      • SSL: 9
      • SSL 2.0: 4
      • SSL 3.0: 4
    • TLS:
      • TLS: 106
      • TLS 1.0: 4
      • TLS 1.1: 9
      • TLS 1.2: 7
      • TLS v1.0: 2
      • TLS1.1: 1
      • TLS1.2: 1
  • PACE:
    • PACE: 167
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 4
  • RNG:
    • RBG: 3
  • RNG:
    • RND: 4
    • RNG: 7
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • CTR:
    • CTR: 1
  • GCM:
    • GCM: 3
  • CBC:
    • CBC: 3
  • CTR:
    • CTR: 1
  • OFB:
    • OFB: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 10
    • P-384: 6
    • P-521: 4
    • curve P-384: 2
    • secp256r1: 6
    • secp384r1: 4
    • secp521r1: 4
  • Brainpool:
    • brainpoolP192r1: 1
    • brainpoolP192t1: 1
    • brainpoolP224r1: 1
    • brainpoolP224t1: 1
    • brainpoolP256r1: 2
    • brainpoolP256t1: 1
    • brainpoolP320r1: 1
    • brainpoolP320t1: 1
    • brainpoolP384r1: 2
    • brainpoolP384t1: 1
    • brainpoolP512r1: 2
    • brainpoolP512t1: 1
  • NIST:
    • NIST P-256: 1
    • P-192: 2
    • P-256: 3
    • P-384: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 4
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 4
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 4
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 4
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 4
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 4
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 4
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 4
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 4
    • TLS_RSA_WITH_AES_128_CBC_SHA: 12
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA: 4
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 6
    • Physical Tampering: 2
    • Physical tampering: 2
    • fault injection: 1
    • malfunction: 5
    • physical tampering: 5
  • SCA:
    • DPA: 1
    • Leak-Inherent: 6
    • physical probing: 3
  • other:
    • reverse engineering: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-03110: 4
pdf_data/st_keywords/ic_data_group
  • EF:
    • EF.ChipSecurity: 1
    • EF.DG1: 3
    • EF.DG14: 3
    • EF.DG16: 2
    • EF.DG2: 1
    • EF.DG3: 5
    • EF.DG4: 5
    • EF.SOD: 2
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS PUB 186-4: 4
    • FIPS140-2: 1
  • ISO:
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 5
    • ISO/IEC 9796-2: 1
  • NIST:
    • NIST SP 800-57: 2
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 2818: 8
    • RFC 2986: 2
    • RFC 3268: 8
    • RFC 3526: 3
    • RFC 3602: 2
    • RFC 4106: 1
    • RFC 4109: 1
    • RFC 4251: 1
    • RFC 4253: 7
    • RFC 4301: 2
    • RFC 4304: 1
    • RFC 4346: 6
    • RFC 4347: 9
    • RFC 4492: 8
    • RFC 4868: 2
    • RFC 4945: 1
    • RFC 5246: 18
    • RFC 5280: 13
    • RFC 5282: 1
    • RFC 5289: 8
    • RFC 5759: 1
    • RFC 5996: 2
    • RFC 6125: 9
    • RFC 6187: 1
    • RFC 6347: 13
    • RFC 6960: 1
    • RFC 8017: 1
  • X509:
    • X.509: 31
  • BSI:
    • AIS 31: 1
    • AIS 36: 1
    • AIS31: 2
    • AIS36: 2
  • CC:
    • CCMB-2012-09-004: 1
    • CCMB-2017-04-001: 2
    • CCMB-2017-04-002: 2
    • CCMB-2017-04-003: 2
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS PUB 180-4: 1
    • FIPS PUB 186-4: 1
    • FIPS180: 2
    • FIPS186: 7
    • FIPS197: 3
  • ICAO:
    • ICAO: 6
  • PKCS:
    • PKCS#3: 8
  • RFC:
    • RFC 2631: 1
    • RFC 5639: 1
    • RFC5639: 27
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • indicated as “REQUIRED” but not listed in the later elements of this component are implemented is out of scope of the evaluation activity for this requirement. FCS_SSHC_EXT.1.2 The TSF shall ensure that the SSH: 1
    • indicated as “REQUIRED” but not listed in the later elements of this component are implemented is out of scope of the evaluation activity for this requirement. FCS_SSHS_EXT.1.2 The TSF shall ensure that the SSH: 1
    • out of scope: 2
  • OutOfScope:
    • For the eSign Application the interface is not specified in the SSCD PP ([SSCDPP]) and it is out of scope of the Technical Guideline TR-03110 (cf: 1
    • For the eSign Application the interface is not specified in the SSCD PP ([SSCDPP]) and it is out of scope of the Technical Guideline TR-03110 (cf. [EACTR Part 3, B.7]). 13 For the ePass Application, the: 1
    • by these terminals was given already in chapter 1.3.3. 71 Others than above listed terminals are out of scope of this ST. In particular, terminals using Basic Access Control (BAC) are not supported by the TOE: 1
    • out of scope: 2
pdf_data/st_metadata
  • /Author: Lachlan Turner
  • /CreationDate: D:20190625213148+00'00'
  • /Creator: Microsoft Word
  • /ModDate: D:20190625213148+00'00'
  • /Subject: FortiProxy 1.0
  • /Title: Fortinet
  • pdf_file_size_bytes: 1248984
  • pdf_hyperlinks: http://docs.fortinet.com/fortiproxy, http://www.arkinfosec.net/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 103
  • /Author: Markus Blick, Ernst-G. Giessman
  • /Keywords: Electronic Identity Card, Residence Permit Card, eID, eIDAS, Passport
  • /Subject: TCOS ID Version 3.0 Release 1
  • /Title: TCOS ID Version 3.0 Release 1 (NXP)
  • pdf_file_size_bytes: 2069185
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 152
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different