Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Forescout v8.3
CCEVS-VR-VID-11279-2022
SDoT Security Gateway, Version 6.2i
BSI-DSZ-CC-1129-2021
name Forescout v8.3 SDoT Security Gateway, Version 6.2i
category Network and Network-Related Devices and Systems Boundary Protection Devices and Systems
scheme US DE
not_valid_after 20.06.2025 27.09.2026
not_valid_before 05.08.2022 27.09.2021
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1129c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1129a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1129b_pdf.pdf
manufacturer ForeScout Technologies, Inc. INFODAS Gesellschaft für Systementwicklung und informationsverarbeitung mbH
manufacturer_web https://www.forescout.com/ https://www.infodas.de
security_level {} EAL4+, ALC_FLR.2
dgst c1819079f2cf4d17 4cd38b96efa2ca6b
heuristics/cert_id CCEVS-VR-VID-11279-2022 BSI-DSZ-CC-1129-2021
heuristics/cert_lab US BSI
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ASE_TSS.1, ASE_SPD.1, ASE_INT.1, ASE_OBJ.2, ALC_FLR.2, ASE_CCL.1, ASE_ECD.1, ASE_REQ.2
heuristics/extracted_versions 8.3 6.2
heuristics/scheme_data
heuristics/protection_profiles 89f2a255423f4a20 {}
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf {}
pdf_data/cert_filename st_vid11279-ci.pdf 1129c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11279-2022: 1
  • DE:
    • BSI-DSZ-CC-1129-2021: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL 4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
pdf_data/cert_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20220815124603-04'00'
  • /ModDate: D:20220815124603-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 181185
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20211004123245+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, Security Gateway, Infodas"
  • /ModDate: D:20211004142015+02'00'
  • /Producer: LibreOffice 6.3
  • /Subject: Certificate BSI-DSZ-CC-1129-2021
  • /Title: Certificate
  • pdf_file_size_bytes: 250309
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid11279-vr.pdf 1129a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • US:
    • cert_id: CCEVS-VR-VID11279-2022
    • cert_item: Forescout v8.3
    • cert_lab: US NIAP
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 4 augmented by ALC_FLR.2
    • cc_version: Product specific Security Target Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1129-2021
    • cert_item: SDoT Security Gateway Version 6.2i
    • cert_lab: BSI
    • developer: INFODAS GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11279-2022: 1
  • DE:
    • BSI-DSZ-CC-1129-2021: 17
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 5
    • EAL 4 augmented: 3
    • EAL 5: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 3
    • ALC_FLR.2: 4
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 1
    • FCS_CKM.2: 1
    • FCS_COP: 4
    • FCS_RBG_EXT.1: 1
  • FTP:
    • FTP_TRP.1: 1
pdf_data/report_keywords/cc_claims
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • OE:
    • OE.ACCESS: 1
    • OE.AUDIT_ENFORCE: 1
    • OE.BOOT: 1
    • OE.DEDICATED_ADMIN_NET: 1
    • OE.DIFF_NET: 1
    • OE.HIGH_AVAILABILITY: 1
    • OE.HIGH_PROTECTION: 1
    • OE.HSM: 1
    • OE.NTP_SERVER: 1
    • OE.PKI: 1
    • OE.ROLE_SEPARATION: 1
    • OE.TRUSTW_ONLY: 1
    • OE.TRUSTW_STAFF: 1
    • OE.USER_IDENT: 1
pdf_data/report_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 3
  • atsec:
    • atsec: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
  • constructions:
    • MAC:
      • HMAC-SHA-256: 2
      • HMAC-SHA-512: 1
  • AES_competition:
    • AES:
      • AES: 8
      • AES-: 1
  • constructions:
    • MAC:
      • HMAC: 5
      • HMAC-SHA-384: 1
pdf_data/report_keywords/asymmetric_crypto
  • FF:
    • DH:
      • Diffie-Hellman: 2
  • ECC:
    • ECDSA:
      • ECDSA: 5
  • FF:
    • DSA:
      • DSA: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-256: 2
      • SHA-384: 2
  • SHA:
    • SHA2:
      • SHA-2: 5
      • SHA-256: 2
      • SHA-384: 3
      • SHA-512: 2
pdf_data/report_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • KA:
    • Key agreement: 1
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 11
    • SSHv1: 2
    • SSHv2: 1
  • TLS:
    • TLS:
      • TLS: 13
      • TLS v1.2: 1
  • VPN:
    • VPN: 1
  • TLS:
    • TLS:
      • TLS: 7
      • TLS1.2: 1
      • TLSv1.2: 2
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 3
  • RNG:
    • RBG: 1
pdf_data/report_keywords/cipher_mode
  • CTR:
    • CTR: 1
  • GCM:
    • GCM: 7
pdf_data/report_keywords/ecc_curve
  • Brainpool:
    • brainpoolP256r1: 3
    • brainpoolP384r1: 1
    • brainpoolP512r1: 3
  • NIST:
    • secp256r1: 3
    • secp384r1: 1
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 4
pdf_data/report_keywords/side_channel_analysis
  • SCA:
    • Timing Attack: 1
  • other:
    • JIL: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 186-4: 3
  • RFC:
    • RFC 3526: 2
  • X509:
    • X.509: 1
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 23: 1
    • AIS 32: 1
    • AIS 35: 2
  • FIPS:
    • FIPS180-4: 8
    • FIPS186-4: 5
    • FIPS197: 3
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • RFC:
    • RFC2104: 3
    • RFC3447: 2
    • RFC5246: 3
    • RFC5288: 2
    • RFC5758: 2
    • RFC6234: 3
  • X509:
    • X.509: 2
    • x.509: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • BSI-DSZ-CC-1129-2021, Version 2, 06.07.2021, SDoT Security Gateway Security Target, INFODAS GmbH (confidential document) [7] Evaluation Technical Report, Version 4, 20.09.2021, Final Evaluation Technical Report, atsec: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
    • sanitised public document) [9] Configuration list for the TOE, 19.07.2021, Main Configuration List (confidential document) [10] SDoT Security Gateway - Produktinformation - Anforderungen an den sicheren Betrieb Product: 1
pdf_data/report_metadata
  • /CreationDate: D:20220815113601-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220815113601-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 570905
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 29
pdf_data/st_filename st_vid11279-st.pdf 1129b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1129: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 5
    • EAL4 augmented: 3
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 9
  • AGD:
    • AGD_OPE.1: 13
    • AGD_PRE.1: 4
  • ALC:
    • ALC_CMC.1: 6
    • ALC_CMS.1: 7
  • ASE:
    • ASE_CCL.1: 16
    • ASE_ECD.1: 12
    • ASE_INT.1: 14
    • ASE_OBJ.1: 6
    • ASE_REQ.1: 12
    • ASE_SPD: 2
    • ASE_SPD.1: 7
    • ASE_TSS.1: 7
  • ATE:
    • ATE_IND.1: 7
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 9
  • ADV:
    • ADV_ARC: 1
    • ADV_FSP: 1
    • ADV_IMP: 1
    • ADV_TDS: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_PRE: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMS: 1
    • ALC_DEL: 1
    • ALC_DVS: 1
    • ALC_FLR: 1
    • ALC_FLR.2: 3
    • ALC_LCD: 1
    • ALC_TAT: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 2
    • ASE_ECD: 1
    • ASE_ECD.1: 2
    • ASE_INT: 1
    • ASE_INT.1: 3
    • ASE_OBJ: 1
    • ASE_OBJ.2: 2
    • ASE_REQ: 1
    • ASE_REQ.2: 2
    • ASE_SPD: 1
    • ASE_SPD.1: 2
    • ASE_TSS: 1
    • ASE_TSS.1: 2
  • ATE:
    • ATE_COV: 1
    • ATE_DPT: 1
    • ATE_FUN: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 2
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG: 1
    • FAU_STG_EXT.1: 5
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 2
    • FCS_CKM.2: 9
    • FCS_CKM.2.1: 2
    • FCS_CKM.4: 6
    • FCS_CKM.4.1: 1
    • FCS_COP: 32
    • FCS_COP.1: 4
    • FCS_NTP_EXT.1.2: 1
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT.1: 8
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT.1: 1
    • FCS_SSHS_EXT.1: 10
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.1: 8
    • FCS_TLSC_EXT.1.1: 1
    • FCS_TLSC_EXT.1.2: 2
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSS_EXT.1: 8
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 2
    • FCS_TLSS_EXT.1.4: 4
  • FIA:
    • FIA_AFL.1: 11
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 7
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT.2: 5
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 5
    • FMT_MOF.1: 1
    • FMT_MTD: 5
    • FMT_MTD.1: 1
    • FMT_SMF.1: 8
    • FMT_SMR.2: 6
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 6
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT.1: 6
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT.1: 6
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 2
    • FPT_TST_EXT.1: 6
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT.1: 6
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL.3: 5
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 5
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 5
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 6
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC.1: 8
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 5
    • FTP_TRP.1: 3
  • FAU:
    • FAU_ARP: 1
    • FAU_ARP.1: 9
    • FAU_ARP.1.1: 1
    • FAU_GEN: 2
    • FAU_GEN.1: 17
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 8
    • FAU_GEN.2.1: 1
    • FAU_SAA: 1
    • FAU_SAA.1: 9
    • FAU_SAA.1.1: 1
    • FAU_SAA.1.2: 1
    • FAU_SAR: 1
    • FAU_SAR.1: 9
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 9
    • FAU_SAR.2.1: 1
    • FAU_STG: 1
    • FAU_STG.1: 6
    • FAU_STG.2: 11
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 1
    • FAU_STG.2.3: 1
    • FAU_STG.3: 9
    • FAU_STG.3.1: 1
    • FAU_STG.4: 7
    • FAU_STG.4.1: 1
  • FCO:
    • FCO_NRO.2: 1
  • FCS:
    • FCS_CKM: 12
    • FCS_CKM.1: 15
    • FCS_CKM.2: 8
    • FCS_CKM.4: 22
    • FCS_CKM.4.1: 1
    • FCS_COP: 47
    • FCS_COP.1: 7
  • FDP:
    • FDP_ACC: 39
    • FDP_ACC.1: 17
    • FDP_ACF: 40
    • FDP_ACF.1: 38
    • FDP_IFC: 38
    • FDP_IFC.1: 19
    • FDP_IFF: 53
    • FDP_IFF.1: 40
    • FDP_IFF.3: 8
    • FDP_IFF.3.1: 1
    • FDP_ITC.1: 14
    • FDP_ITC.2: 15
  • FIA:
    • FIA_ATD.1: 1
    • FIA_UAU: 1
    • FIA_UAU.1: 1
    • FIA_UAU.2: 8
    • FIA_UAU.2.1: 1
    • FIA_UID: 1
    • FIA_UID.1: 1
    • FIA_UID.2: 17
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MSA: 1
    • FMT_MSA.1: 11
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 22
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD: 31
    • FMT_MTD.1: 7
    • FMT_MTD.3: 7
    • FMT_MTD.3.1: 1
    • FMT_SMF: 2
    • FMT_SMF.1: 26
    • FMT_SMF.1.1: 1
    • FMT_SMR: 1
    • FMT_SMR.1: 12
    • FMT_SMR.2: 11
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_INC: 4
    • FPT_INC.1: 13
    • FPT_INC.1.1: 2
    • FPT_INC.1.2: 2
    • FPT_INC.1.3: 2
    • FPT_STM: 1
    • FPT_STM.1: 11
    • FPT_STM.1.1: 1
    • FPT_TDC: 1
    • FPT_TDC.1: 7
    • FPT_TDC.1.1: 1
    • FPT_TDC.1.2: 1
    • FPT_TST: 1
  • FTP:
    • FTP_TRP: 2
    • FTP_TRP.1: 8
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.LIMITED_FUNCTION: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • A:
    • A.ACCESS: 4
    • A.AUDIT: 5
    • A.BOOT: 6
    • A.DEDICATED_ADMIN: 1
    • A.DEDICATED_ADMIN_NET: 5
    • A.DIFF_NET: 5
    • A.HIGH_AVAILABILITY: 5
    • A.HIGH_AVAILABILLITY: 1
    • A.HIGH_PROTECTION: 4
    • A.HSM: 6
    • A.LABEL_MAN: 1
    • A.NTP_SERVER: 5
    • A.PKI: 5
    • A.ROLE_SEPARATION: 4
    • A.TRUSTW_ONLY: 4
    • A.TRUSTW_STAFF: 5
    • A.USER_IDENT: 5
  • OE:
    • OE.ACCESS: 4
    • OE.AUDIT_ENFORCE: 5
    • OE.BOOT: 5
    • OE.DEDICATED_ADMIN_NET: 3
    • OE.DIFF_NET: 7
    • OE.HIGH_AVAILABILITY: 5
    • OE.HIGH_PROTECTION: 8
    • OE.HSM: 2
    • OE.LABEL_MAN: 1
    • OE.NTP_SERVER: 5
    • OE.PKI: 5
    • OE.ROLE_SEPARATION: 5
    • OE.TRUSTW_ONLY: 4
    • OE.TRUSTW_STAFF: 6
    • OE.USER_IDENT: 2
  • OSP:
    • OSP.AUDIT: 5
    • OSP.CONFIG_AUDIT: 5
    • OSP.DUAL_CONTROL: 4
    • OSP.FLOW_CONTROL: 5
    • OSP.PROTOCOLS: 6
  • OT:
    • OT.AUDIT: 10
    • OT.AUDIT_CHANGE_LOG: 8
    • OT.AUDIT_LOG_AVAILABILITY: 10
    • OT.AUDIT_PROTECT: 8
    • OT.BANDWIDTH: 6
    • OT.DEFAULT: 4
    • OT.FILTER: 16
    • OT.FOUR_EYES: 6
    • OT.INIT: 10
    • OT.LABELS: 12
    • OT.PRE_FILTER: 6
    • OT.PROTECTION: 6
    • OT.PROTOCOLS: 11
    • OT.PROTOCOL_DENY: 11
    • OT.ROLE_SEPARATION: 13
    • OT.SANITISED_DATA: 9
    • OT.SECURE_CHANNEL: 8
    • OT.USER_AUTHENTICATION: 11
    • OT.WARNING: 10
  • T:
    • T.AUDIT_ACCESS: 7
    • T.AUDIT_COLLAPSE: 6
    • T.AUDIT_CONTROL: 5
    • T.AUTH: 6
    • T.INSERT: 6
    • T.MALICIOUS_CODE: 8
    • T.MISCONFIG: 6
    • T.REVEAL_TO_LOW: 15
    • T.WRONG_LABEL: 6
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
pdf_data/st_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 20
      • AES-256: 2
    • E2:
      • E2: 3
  • constructions:
    • MAC:
      • HMAC: 5
      • HMAC-SHA-256: 8
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
  • AES_competition:
    • AES:
      • AES: 2
  • constructions:
    • MAC:
      • HMAC: 3
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDHE: 1
  • FF:
    • DH:
      • DH: 5
      • DHE: 1
      • Diffie-Hellman: 9
  • ECC:
    • ECC:
      • ECC: 1
    • ECDH:
      • ECDHE: 1
    • ECDSA:
      • ECDSA: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 8
    • SHA2:
      • SHA-256: 11
      • SHA-384: 8
      • SHA-512: 6
      • SHA256: 2
  • SHA:
    • SHA2:
      • SHA-2: 1
      • SHA-256: 1
      • SHA-384: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • MAC:
    • MAC: 7
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 57
    • SSHv2: 4
  • TLS:
    • DTLS:
      • DTLS: 1
    • SSL:
      • SSL: 3
      • SSL 2.0: 2
      • SSL 3.0: 2
    • TLS:
      • TLS: 69
      • TLS 1.0: 1
      • TLS 1.1: 1
      • TLS 1.2: 2
      • TLS v1.2: 1
      • TLSv1.0: 1
      • TLSv1.1: 1
      • TLSv1.2: 2
  • VPN:
    • VPN: 1
  • TLS:
    • TLS:
      • TLS: 20
      • TLS 1.2: 2
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 10
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • CTR:
    • CTR: 9
  • GCM:
    • GCM: 6
  • GCM:
    • GCM: 1
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP256r1: 1
    • brainpoolP384r1: 1
    • brainpoolP512r1: 1
  • NIST:
    • secp256r1: 1
    • secp384r1: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA256: 2
    • TLS_RSA_WITH_AES_256_GCM_SHA384: 4
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 36
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-004-001: 1
    • CCMB-2017-004-002: 1
    • CCMB-2017-004-003: 1
    • CCMB-2017-004-004: 1
  • FIPS:
    • FIPS 186-4: 8
    • FIPS PUB 180-4: 2
    • FIPS PUB 186-4: 5
    • FIPS PUB 198-1: 1
  • ISO:
    • ISO/IEC 10116:2017: 1
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 19772:2009: 1
    • ISO/IEC 9796-2: 2
  • PKCS:
    • PKCS #1: 2
  • RFC:
    • RFC 2986: 2
    • RFC 3268: 4
    • RFC 3447: 2
    • RFC 3526: 10
    • RFC 4253: 1
    • RFC 5077: 1
    • RFC 5246: 10
    • RFC 5280: 4
    • RFC 5288: 4
    • RFC 6125: 2
    • RFC 6960: 2
    • RFC7030: 1
  • X509:
    • X.509: 5
  • BSI:
    • AIS 35: 1
    • AIS 41: 1
  • CC:
    • CCMB-2017-04-002: 3
    • CCMB-2017-04-003: 2
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 197: 1
  • PKCS:
    • PKCS#1: 1
  • RFC:
    • RFC 2104: 2
    • RFC 3447: 1
    • RFC 3986: 1
    • RFC3986: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • environment the TOE is managing. The TOEs management of the enterprise operational environment is out of scope for the NDcPP. Therefore, interface E4 to these components is out of scope of the evaluation: 1
    • out of scope: 3
    • the update server directly. The TOE receives the update from the Forescout Console. Interface E8 is out of scope of the evaluation. It is being declared as part of the test environment for completeness as it is: 1
pdf_data/st_metadata
  • /Author: INFODAS GmbH
  • /CreationDate: D:20210906121952+02'00'
  • /Creator: Microsoft® Word für Microsoft 365
  • /ModDate: D:20210906121952+02'00'
  • /Producer: Microsoft® Word für Microsoft 365
  • /Subject: Security Target
  • /Title: Security Target Lite
  • pdf_file_size_bytes: 1989754
  • pdf_hyperlinks: http://www.w3.org/TR/xmldsig-core1/, http://www.w3.org/TR/xml/, http://www.xmlspif.org/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 105
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different