Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Forescout v8.3
CCEVS-VR-VID-11279-2022
KoCoBox MED+ Netzkonnektor, Version 5.5.12
BSI-DSZ-CC-1067-V5-2024
name Forescout v8.3 KoCoBox MED+ Netzkonnektor, Version 5.5.12
category Network and Network-Related Devices and Systems Other Devices and Systems
scheme US DE
not_valid_after 20.06.2025 18.12.2029
not_valid_before 05.08.2022 19.12.2024
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-ci.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1067V5c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1067V5a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11279-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1067V5b_pdf.pdf
manufacturer ForeScout Technologies, Inc. KoCo Connector GmbH
manufacturer_web https://www.forescout.com/ https://www.kococonnector.de
security_level {} ADV_FSP.4, AVA_VAN.5, ALC_FLR.2, ADV_IMP.1, ALC_TAT.1, EAL3+, ADV_TDS.3
dgst c1819079f2cf4d17 884113f2ed8fa172
heuristics/cert_id CCEVS-VR-VID-11279-2022 BSI-DSZ-CC-1067-V5-2024
heuristics/cert_lab US BSI
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ALC_TAT.1, AVA_VAN.5, ALC_DEL.1, ADV_FSP.4, ADV_ARC.1, ADV_TDS.3, AGD_OPE.1, ALC_FLR.2, ADV_IMP.1
heuristics/extracted_versions 8.3 5.5.12
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-1067-V4-2023
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-1067-V4-2023, BSI-DSZ-CC-1067-V3-2022, BSI-DSZ-CC-1067-2020, BSI-DSZ-CC-1067-V2-2022
heuristics/scheme_data
  • category: eHealth
  • cert_id: BSI-DSZ-CC-1067-V5-2024
  • certification_date: 19.12.2024
  • enhanced:
    • applicant: KoCo Connector GmbH Dessauer Str. 28/29 10963 Berlin
    • assurance_level: EAL3,ADV_FSP.4,ADV_IMP.1,ADV_TDS.3,ALC_FLR.2,ALC_TAT.1,AVA_VAN.5
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1067V5c_pdf.pdf?__blob=publicationFile&v=2
    • certification_date: 19.12.2024
    • description: The target of evaluation (TOE) is KoCoBox MED+ Netzkonnektor, Version 2.3.24. The TOE is the network and operating system specific software part of the product KoCoBox MED+. This product is a decentral component, called “e-Health Konnektor” in the context of the German health care telematics infrastructure. The specific TOE software part is called network connector (NK) (German: “Netzkonnektor”).
    • entries: [frozendict({'id': 'BSI-DSZ-CC-1067-V5-2024 (Ausstellungsdatum / Certification Date 19.12.2024, gültlig bis / valid until 18.12.2029)', 'description': 'The target of evaluation (TOE) is KoCoBox MED+ Netzkonnektor, Version 5.5.12. The TOE is the network and operating system specific software part of the product KoCoBox MED+. This product is a decentral component, called “e-Health Konnektor” in the context of the German health care telematics infrastructure. The specific TOE software part is called network connector (NK) (German: “Netzkonnektor”).'}), frozendict({'id': 'BSI-DSZ-CC-1067-V4-2023 (Ausstellungsdatum / Certification Date 07.06.2023, gültlig bis / valid until 06.06.2028)', 'description': 'software part is called network connector (NK) (German:'}), frozendict({'id': 'BSI-DSZ-CC-1067-V3-2022-MA-02 (Ausstellungsdatum / Certification Date 19.04.2024)', 'description': 'Security Target'}), frozendict({'id': 'BSI-DSZ-CC-1067-V3-2022-MA-01 (Ausstellungsdatum / Certification Date 12.08.2022)', 'description': ') (German:'})]
    • evaluation_facility: TÜV Informationstechnik GmbH
    • expiration_date: 18.12.2029
    • product: KoCoBox MED+ Netzkonnektor, 5.5.12
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1067V5a_pdf.pdf?__blob=publicationFile&v=2
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1067V5b_pdf.pdf?__blob=publicationFile&v=2
  • product: KoCoBox MED+ Netzkonnektor, 5.5.12
  • subcategory: Software
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1067.html
  • vendor: KoCo Connector GmbH
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-0904-V2-2021, BSI-DSZ-CC-0916-2015, BSI-DSZ-CC-0976-V4-2021
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-1079-V2-2020, BSI-DSZ-CC-0904-V2-2021, BSI-DSZ-CC-1110-V3-2020, BSI-DSZ-CC-0976-V4-2021, BSI-DSZ-CC-0916-2015
heuristics/protection_profiles 89f2a255423f4a20 19e2d2b1593c97a5
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0097V2b_pdf.pdf
pdf_data/cert_filename st_vid11279-ci.pdf 1067V5c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11279-2022: 1
  • DE:
    • BSI-DSZ-CC-1067-V5-2024: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0097-V2-2020-MA-02: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL 4: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20220815124603-04'00'
  • /ModDate: D:20220815124603-04'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 181185
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Federal Office for Information Security
  • /Keywords: "Common Criteria, Certification, Zertifizierung, Konnektor"
  • /Subject: Common Criteria, Certification, Zertifizierung, Konnektor
  • /Title: Certification Report BSI-DSZ-CC-1067-V5-2024
  • pdf_file_size_bytes: 233847
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename st_vid11279-vr.pdf 1067V5a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • US:
    • cert_id: CCEVS-VR-VID11279-2022
    • cert_item: Forescout v8.3
    • cert_lab: US NIAP
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 3 augmented by AVA_VAN.5, ADV_FSP.4, ADV_TDS.3, ADV_IMP.1, ALC_TAT.1, ALC_FLR.2 valid until: 18 December 2029
    • cc_version: PP conformant plus product specific extensions Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1067-V5-2024
    • cert_item: KoCoBox MED+ Netzkonnektor, Version 5.5.12
    • cert_lab: BSI
    • developer: KoCo Connector GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097-V2-2020-MA-02, Version 1.6.7, 15.03.2023, Bundesamt für Sicherheit in der Informationstechnik (BSI
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID11279-2022: 1
  • DE:
    • BSI-DSZ-CC-1067-V4-: 1
    • BSI-DSZ-CC-1067-V4-2023: 2
    • BSI-DSZ-CC-1067-V5-2024: 17
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0097-V2-2020-MA-02: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 3: 4
    • EAL 3 augmented: 3
    • EAL 4: 4
    • EAL 5: 3
    • EAL 5+: 1
    • EAL 6: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • ALC:
    • ALC_FLR: 3
    • ALC_FLR.2: 4
    • ALC_TAT.1: 4
  • ATE:
    • ATE_FUN: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.5: 5
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 1
    • FCS_CKM.2: 1
    • FCS_COP: 4
    • FCS_RBG_EXT.1: 1
  • FCS:
    • FCS_CKM: 10
    • FCS_COP: 21
    • FCS_RNG: 2
  • FDP:
    • FDP_ACC: 2
    • FDP_ACF: 2
    • FDP_ITC: 1
    • FDP_UIT: 2
  • FPT:
    • FPT_TDC: 15
  • FTP:
    • FTP_ITC: 2
    • FTP_TRP: 1
pdf_data/report_keywords/cc_claims
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • OE:
    • OE.NK: 4
pdf_data/report_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 3
  • TUV:
    • TÜV Informationstechnik: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
  • constructions:
    • MAC:
      • HMAC-SHA-256: 2
      • HMAC-SHA-512: 1
  • AES_competition:
    • AES:
      • AES: 14
      • AES-: 7
      • AES-128: 2
      • AES-256: 2
  • constructions:
    • MAC:
      • HMAC: 9
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
pdf_data/report_keywords/asymmetric_crypto
  • FF:
    • DH:
      • Diffie-Hellman: 2
  • ECC:
    • ECC:
      • ECC: 13
    • ECDH:
      • ECDH: 4
    • ECDSA:
      • ECDSA: 18
    • ECIES:
      • ECIES: 1
  • FF:
    • DH:
      • DH: 6
      • Diffie-Hellman: 6
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
    • SHA2:
      • SHA-256: 2
      • SHA-384: 2
  • SHA:
    • SHA2:
      • SHA-256: 4
      • SHA-512: 2
      • SHA256: 1
pdf_data/report_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • AEAD:
    • AEAD: 3
  • KA:
    • Key Agreement: 5
  • KEX:
    • Key Exchange: 5
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 11
    • SSHv1: 2
    • SSHv2: 1
  • TLS:
    • TLS:
      • TLS: 13
      • TLS v1.2: 1
  • VPN:
    • VPN: 1
  • IKE:
    • IKE: 7
    • IKEv2: 11
  • IPsec:
    • IPsec: 14
  • TLS:
    • TLS:
      • TLS: 31
      • TLS 1.2: 1
      • TLS v1.2: 2
      • TLSv1.2: 3
  • VPN:
    • VPN: 5
pdf_data/report_keywords/randomness
  • PRNG:
    • DRBG: 3
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 2
pdf_data/report_keywords/cipher_mode
  • CTR:
    • CTR: 1
  • CBC:
    • CBC: 6
  • GCM:
    • GCM: 8
pdf_data/report_keywords/ecc_curve
  • NIST:
    • P-256: 4
    • P-384: 2
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 4
pdf_data/report_keywords/side_channel_analysis
  • SCA:
    • Timing Attack: 1
  • SCA:
    • side-channel: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
    • BSI TR-03111: 1
    • BSI TR-03116-1: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 186-4: 3
  • RFC:
    • RFC 3526: 2
  • X509:
    • X.509: 1
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 20: 2
    • AIS 32: 1
    • AIS 34: 2
    • AIS 38: 1
    • AIS 46: 1
  • FIPS:
    • FIPS PUB 180-4: 1
    • FIPS PUB 186-4: 1
    • FIPS180-4: 19
    • FIPS186-4: 10
    • FIPS197: 6
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • PKCS:
    • PKCS#12: 2
  • RFC:
    • RFC 2104: 1
    • RFC 2631: 1
    • RFC 3268: 1
    • RFC 3526: 1
    • RFC 3602: 1
    • RFC 4055: 1
    • RFC 4106: 1
    • RFC 4301: 1
    • RFC 4303: 1
    • RFC 4492: 1
    • RFC 4868: 1
    • RFC 5116: 1
    • RFC 5246: 1
    • RFC 5280: 1
    • RFC 5282: 1
    • RFC 5289: 1
    • RFC 5639: 1
    • RFC 7027: 1
    • RFC 7292: 1
    • RFC 7296: 1
    • RFC 8017: 1
    • RFC2104: 5
    • RFC2631: 3
    • RFC3268: 4
    • RFC3526: 3
    • RFC3602: 3
    • RFC4055: 3
    • RFC4106: 2
    • RFC4301: 4
    • RFC4303: 4
    • RFC4492: 3
    • RFC4868: 2
    • RFC5116: 2
    • RFC5246: 5
    • RFC5280: 5
    • RFC5282: 3
    • RFC5289: 2
    • RFC5639: 4
    • RFC7027: 6
    • RFC7292: 2
    • RFC7296: 5
    • RFC8017: 11
  • X509:
    • X.509: 7
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 1, 15.11.2024, Evaluation Technical Report Summary (ETR Summary), TÜV Informationstechnik GmbH, (confidential document) [8] Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den: 1
    • Bundesamt für Sicherheit in der Informationstechnik (BSI) [9] Configuration lists for the TOE (confidential documents) Configuration Items os-cillation for G3 HW Generation, v5.5.12, KoCo Connector GmbH. SHA-1: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
  • /CreationDate: D:20220815113601-04'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220815113601-04'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 570905
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 29
pdf_data/st_filename st_vid11279-st.pdf 1067V5b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0904-V2-2021: 1
    • BSI-DSZ-CC-0916-2015: 1
    • BSI-DSZ-CC-0976-V4-2021: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP- 0082-2: 1
    • BSI-CC-PP- 0097: 1
    • BSI-CC-PP- 0098: 1
    • BSI-CC-PP-0082: 1
    • BSI-CC-PP-0082-2: 1
    • BSI-CC-PP-0097: 72
    • BSI-CC-PP-0098: 67
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL3: 5
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 9
  • AGD:
    • AGD_OPE.1: 13
    • AGD_PRE.1: 4
  • ALC:
    • ALC_CMC.1: 6
    • ALC_CMS.1: 7
  • ASE:
    • ASE_CCL.1: 16
    • ASE_ECD.1: 12
    • ASE_INT.1: 14
    • ASE_OBJ.1: 6
    • ASE_REQ.1: 12
    • ASE_SPD: 2
    • ASE_SPD.1: 7
    • ASE_TSS.1: 7
  • ATE:
    • ATE_IND.1: 7
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 9
  • ADV:
    • ADV_ARC.1: 3
    • ADV_FSP.4: 2
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • AGD:
    • AGD_ADM: 4
    • AGD_JSON: 1
    • AGD_OPE.1: 3
  • ALC:
    • ALC_DEL: 4
    • ALC_DEL.1: 3
    • ALC_FLR.2: 2
    • ALC_TAT.1: 2
  • AVA:
    • AVA_VAN.3: 1
    • AVA_VAN.5: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 6
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 2
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG: 1
    • FAU_STG_EXT.1: 5
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM.1: 9
    • FCS_CKM.1.1: 2
    • FCS_CKM.2: 9
    • FCS_CKM.2.1: 2
    • FCS_CKM.4: 6
    • FCS_CKM.4.1: 1
    • FCS_COP: 32
    • FCS_COP.1: 4
    • FCS_NTP_EXT.1.2: 1
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT.1: 8
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHC_EXT.1: 1
    • FCS_SSHS_EXT.1: 10
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.1: 8
    • FCS_TLSC_EXT.1.1: 1
    • FCS_TLSC_EXT.1.2: 2
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSS_EXT.1: 8
    • FCS_TLSS_EXT.1.1: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 2
    • FCS_TLSS_EXT.1.4: 4
  • FIA:
    • FIA_AFL.1: 11
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 7
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT.2: 5
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 5
    • FMT_MOF.1: 1
    • FMT_MTD: 5
    • FMT_MTD.1: 1
    • FMT_SMF.1: 8
    • FMT_SMR.2: 6
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 6
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT.1: 6
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT.1: 6
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 2
    • FPT_TST_EXT.1: 6
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT.1: 6
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL.3: 5
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 5
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 5
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 6
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC.1: 8
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 5
    • FTP_TRP.1: 3
  • FAU:
    • FAU_GEN: 11
    • FAU_GEN.1: 3
    • FAU_GEN.2: 1
  • FCS:
    • FCS_CKM: 40
    • FCS_CKM.1: 9
    • FCS_CKM.2: 4
    • FCS_CKM.4: 7
    • FCS_COP: 55
    • FCS_COP.1: 14
    • FCS_RNG: 21
    • FCS_RNG.1: 7
    • FCS_RNG.1.1: 1
    • FCS_RNG.1.2: 1
  • FDP:
    • FDP_ACC: 2
    • FDP_ACF: 2
    • FDP_ETC: 4
    • FDP_ETC.2: 4
    • FDP_IFC: 7
    • FDP_IFC.1: 1
    • FDP_IFF: 6
    • FDP_IFF.1: 9
    • FDP_ITC: 6
    • FDP_ITC.1: 4
    • FDP_ITC.2: 11
    • FDP_RIP: 4
    • FDP_RIP.1: 1
  • FIA:
    • FIA_UID: 5
    • FIA_UID.1: 2
  • FMT:
    • FMT_MOF: 7
    • FMT_MOF.1: 2
    • FMT_MSA: 16
    • FMT_MSA.1: 1
    • FMT_MSA.3: 2
    • FMT_MSA.4: 1
    • FMT_MTD: 5
    • FMT_MTD.1: 2
    • FMT_SMF: 5
    • FMT_SMF.1: 1
    • FMT_SMR: 5
    • FMT_SMR.1: 2
  • FPT:
    • FPT_EMS: 7
    • FPT_EMS.1: 3
    • FPT_STM: 8
    • FPT_STM.1: 1
    • FPT_TDC: 10
    • FPT_TDC.1: 6
    • FPT_TST: 5
    • FPT_TST.1: 3
  • FTP:
    • FTP_ITC: 12
    • FTP_ITC.1: 8
    • FTP_TRP: 7
    • FTP_TRP.1: 4
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.LIMITED_FUNCTION: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • A:
    • A.NK: 16
  • O:
    • O.NK: 55
  • OE:
    • OE.NK: 53
  • OSP:
    • OSP.AK: 1
    • OSP.NK: 4
  • T:
    • T.NK: 12
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • GD:
    • G&D: 1
    • G+D: 2
    • Giesecke+Devrient: 2
pdf_data/st_keywords/eval_facility
  • BoozAllenHamilton:
    • Booz Allen Hamilton: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 20
      • AES-256: 2
    • E2:
      • E2: 3
  • constructions:
    • MAC:
      • HMAC: 5
      • HMAC-SHA-256: 8
      • HMAC-SHA-384: 4
      • HMAC-SHA-512: 4
  • AES_competition:
    • AES:
      • AES: 21
      • AES-: 2
      • AES-128: 3
      • AES-256: 2
  • constructions:
    • MAC:
      • HMAC: 24
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDHE: 1
  • FF:
    • DH:
      • DH: 5
      • DHE: 1
      • Diffie-Hellman: 9
  • ECC:
    • ECC:
      • ECC: 12
    • ECDH:
      • ECDH: 1
      • ECDHE: 1
    • ECDSA:
      • ECDSA: 9
  • FF:
    • DH:
      • DH: 4
      • Diffie-Hellman: 5
  • RSA:
    • RSA 2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 8
    • SHA2:
      • SHA-256: 11
      • SHA-384: 8
      • SHA-512: 6
      • SHA256: 2
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-2: 2
      • SHA-256: 10
      • SHA-384: 2
      • SHA-512: 3
      • SHA256: 6
      • SHA384: 2
      • SHA512: 3
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • MAC:
    • MAC: 7
  • AEAD:
    • AEAD: 1
  • KEX:
    • Key Exchange: 4
  • MAC:
    • MAC: 1
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 57
    • SSHv2: 4
  • TLS:
    • DTLS:
      • DTLS: 1
    • SSL:
      • SSL: 3
      • SSL 2.0: 2
      • SSL 3.0: 2
    • TLS:
      • TLS: 69
      • TLS 1.0: 1
      • TLS 1.1: 1
      • TLS 1.2: 2
      • TLS v1.2: 1
      • TLSv1.0: 1
      • TLSv1.1: 1
      • TLSv1.2: 2
  • VPN:
    • VPN: 1
  • IKE:
    • IKE: 10
    • IKEv2: 8
  • IPsec:
    • IPsec: 23
  • TLS:
    • TLS:
      • TLS: 130
      • TLS 1.1: 1
      • TLS 1.2: 6
      • TLS 1.3: 1
  • VPN:
    • VPN: 49
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 10
  • RNG:
    • RBG: 1
  • RNG:
    • RNG: 12
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • CTR:
    • CTR: 9
  • GCM:
    • GCM: 6
  • CBC:
    • CBC: 5
  • GCM:
    • GCM: 4
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP256r1: 5
    • brainpoolP384r1: 3
    • brainpoolP512r1: 1
  • NIST:
    • P-256: 4
    • P-384: 4
    • secp256r1: 4
    • secp384r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA: 4
    • TLS_RSA_WITH_AES_256_CBC_SHA256: 2
    • TLS_RSA_WITH_AES_256_GCM_SHA384: 4
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 3
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA38492: 1
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 2
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 36
  • BouncyCastle:
    • BouncyCastle: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-03111: 2
    • BSI TR-03116-1: 3
pdf_data/st_keywords/os_name
  • STARCOS:
    • STARCOS 3: 6
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-004-001: 1
    • CCMB-2017-004-002: 1
    • CCMB-2017-004-003: 1
    • CCMB-2017-004-004: 1
  • FIPS:
    • FIPS 186-4: 8
    • FIPS PUB 180-4: 2
    • FIPS PUB 186-4: 5
    • FIPS PUB 198-1: 1
  • ISO:
    • ISO/IEC 10116:2017: 1
    • ISO/IEC 18031:2011: 4
    • ISO/IEC 19772:2009: 1
    • ISO/IEC 9796-2: 2
  • PKCS:
    • PKCS #1: 2
  • RFC:
    • RFC 2986: 2
    • RFC 3268: 4
    • RFC 3447: 2
    • RFC 3526: 10
    • RFC 4253: 1
    • RFC 5077: 1
    • RFC 5246: 10
    • RFC 5280: 4
    • RFC 5288: 4
    • RFC 6125: 2
    • RFC 6960: 2
    • RFC7030: 1
  • X509:
    • X.509: 5
  • FIPS:
    • FIPS 180-4: 7
    • FIPS 186-4: 7
    • FIPS 197: 4
    • FIPS PUB 180-4: 5
    • FIPS PUB 186-4: 6
    • FIPS PUB 197: 3
  • NIST:
    • NIST SP 800-38A: 1
    • NIST SP 800-38D: 1
    • NIST SP 800-90A: 5
  • PKCS:
    • PKCS#1: 4
    • PKCS#12: 3
  • RFC:
    • RFC 2104: 4
    • RFC 2131: 3
    • RFC 2132: 3
    • RFC 3526: 4
    • RFC 3602: 4
    • RFC 4035: 3
    • RFC 4055: 6
    • RFC 4106: 4
    • RFC 4301: 4
    • RFC 4303: 4
    • RFC 4868: 4
    • RFC 5246: 7
    • RFC 5280: 4
    • RFC 5282: 6
    • RFC 5289: 4
    • RFC 5639: 13
    • RFC 5746: 3
    • RFC 5756: 1
    • RFC 5905: 4
    • RFC 6151: 1
    • RFC 6818: 1
    • RFC 7027: 9
    • RFC 7292: 3
    • RFC 7296: 10
    • RFC 7822: 1
    • RFC 8017: 7
    • RFC 8422: 6
    • RFC2104: 1
    • RFC4035: 1
    • RFC4106: 1
    • RFC5246: 1
    • RFC5905: 1
    • RFC7027: 1
    • RFC7296: 1
  • X509:
    • X.509: 18
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • environment the TOE is managing. The TOEs management of the enterprise operational environment is out of scope for the NDcPP. Therefore, interface E4 to these components is out of scope of the evaluation: 1
    • out of scope: 3
    • the update server directly. The TOE receives the update from the Forescout Console. Interface E8 is out of scope of the evaluation. It is being declared as part of the test environment for completeness as it is: 1
pdf_data/st_metadata
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different