Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Cisco X-ES Xpedite5205 Embedded Services Router
CCEVS-VR-VID-10576-2014
IC chip for the reader / writer RC-S940 (CXD9768GG), version 4
None
name Cisco X-ES Xpedite5205 Embedded Services Router IC chip for the reader / writer RC-S940 (CXD9768GG), version 4
category Data Protection ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme US DE
not_valid_after 17.11.2016 01.09.2019
not_valid_before 17.11.2014 01.09.2005
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10576-vr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0308a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid10576-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0308b_pdf.pdf
manufacturer Cisco Systems, Inc. Sony Corporation
manufacturer_web https://www.cisco.com https://www.sony.com/
security_level {} EAL4
dgst c686d7848cdd7943 5d560fb6108db342
heuristics/cert_id CCEVS-VR-VID-10576-2014
heuristics/cert_lab US []
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ALC_DVS.1, ATE_COV.2, ADV_RCR.1, ALC_TAT.1, AVA_VLA.2, AVA_MSU.2, ADV_HLD.2, ATE_FUN.1, AGD_USR.1, AVA_SOF.1, ATE_IND.2, AGD_ADM.1, ADV_LLD.1, ALC_LCD.1, ATE_DPT.1, ADV_FSP.2, ADV_SPM.1, ADV_IMP.1
heuristics/extracted_versions - 4
heuristics/scheme_data
  • category: Network Device, Router, Virtual Private Network
  • certification_date: 17.11.2014
  • evaluation_facility: Leidos Common Criteria Testing Laboratory
  • expiration_date: 17.11.2016
  • id: CCEVS-VR-VID10576
  • product: Cisco X-ES Xpedite5205 Embedded Services Router
  • scheme: US
  • url: https://www.niap-ccevs.org/product/10576
  • vendor: Cisco Systems, Inc.
heuristics/protection_profiles bb67fb1b4f10e7a5, ac9abe3d5c5a31f0 {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_nd_vpn_gw_ep_v1.1.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_nd_v1.1.pdf {}
pdf_data/report_filename st_vid10576-vr.pdf
pdf_data/report_frontpage
  • US:
    • cert_id: CCEVS-VR-VID10576-2014
    • cert_item: For X-ES Xpedite5205 Embedded Services Router
    • cert_lab: US NIAP
  • US:
pdf_data/report_keywords/cc_cert_id
  • US:
    • CCEVS-VR-VID10576-2014: 1
pdf_data/report_keywords/cc_protection_profile_id
pdf_data/report_keywords/cc_security_level
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_SSH_EXT.1.4: 2
pdf_data/report_keywords/cc_claims
pdf_data/report_keywords/vendor
  • Cisco:
    • Cisco: 26
    • Cisco Systems, Inc: 2
pdf_data/report_keywords/eval_facility
  • Leidos:
    • Leidos: 5
pdf_data/report_keywords/symmetric_crypto
pdf_data/report_keywords/asymmetric_crypto
pdf_data/report_keywords/pq_crypto
pdf_data/report_keywords/hash_function
pdf_data/report_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 1
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 1
    • IKEv2: 1
  • IPsec:
    • IPsec: 10
  • SSH:
    • SSH: 3
    • SSHv2: 5
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 1
  • VPN:
    • VPN: 29
pdf_data/report_keywords/randomness
pdf_data/report_keywords/cipher_mode
pdf_data/report_keywords/ecc_curve
pdf_data/report_keywords/crypto_engine
pdf_data/report_keywords/tls_cipher_suite
pdf_data/report_keywords/crypto_library
pdf_data/report_keywords/vulnerability
pdf_data/report_keywords/side_channel_analysis
pdf_data/report_keywords/technical_report_id
pdf_data/report_keywords/device_model
pdf_data/report_keywords/tee_name
pdf_data/report_keywords/os_name
pdf_data/report_keywords/cplc_data
pdf_data/report_keywords/ic_data_group
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
  • RFC:
    • RFC 2460: 1
    • RFC 5280: 1
pdf_data/report_keywords/javacard_version
pdf_data/report_keywords/javacard_api_const
pdf_data/report_keywords/javacard_packages
pdf_data/report_keywords/certification_process
pdf_data/report_metadata
pdf_data/st_filename st_vid10576-st.pdf 0308b_pdf.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL4: 10
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
  • ACM:
    • ACM_AUT.1: 3
    • ACM_CAP.3: 1
    • ACM_CAP.4: 3
    • ACM_SCP.1: 1
    • ACM_SCP.2: 3
  • ADO:
    • ADO_DEL.2: 3
    • ADO_IGS.1: 4
  • ADV:
    • ADV_FSP.1: 7
    • ADV_FSP.2: 3
    • ADV_HLD.1: 2
    • ADV_HLD.2: 5
    • ADV_IMP.1: 4
    • ADV_LLD.1: 5
    • ADV_RCR.1: 4
    • ADV_SPM.1: 6
  • AGD:
    • AGD_ADM.1: 7
    • AGD_USR.1: 3
  • ALC:
    • ALC_DVS.1: 4
    • ALC_LCD.1: 3
    • ALC_TAT.1: 4
  • ATE:
    • ATE_COV.2: 3
    • ATE_DPT.1: 3
    • ATE_FUN.1: 3
    • ATE_IND.2: 3
  • AVA:
    • AVA_MSU.2: 3
    • AVA_SOF.1: 3
    • AVA_VLA.2: 3
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT.1: 4
    • FAU_STG_EXT.1.1: 1
  • FCS:
    • FCS_CKM.1: 7
    • FCS_CKM.1.1: 1
    • FCS_CKM.1.2: 1
    • FCS_CKM_EXT.4: 5
    • FCS_CKM_EXT.4.1: 1
    • FCS_COP.1: 17
    • FCS_COP.1.1: 7
    • FCS_RBG_EXT.1: 4
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSH_EXT.1: 3
    • FCS_SSH_EXT.1.1: 1
    • FCS_SSH_EXT.1.2: 1
    • FCS_SSH_EXT.1.3: 1
    • FCS_SSH_EXT.1.4: 1
    • FCS_SSH_EXT.1.5: 1
    • FCS_SSH_EXT.1.6: 1
    • FCS_SSH_EXT.1.7: 1
  • FDP:
    • FDP_RIP.2: 4
    • FDP_RIP.2.1: 1
  • FIA:
    • FIA_AFL.1: 3
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 4
    • FIA_PMG_EXT.1.1: 1
    • FIA_PSK_EXT.1: 2
    • FIA_PSK_EXT.1.1: 1
    • FIA_PSK_EXT.1.2: 1
    • FIA_PSK_EXT.1.3: 1
    • FIA_PSK_EXT.1.4: 1
    • FIA_UAU.7: 4
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT.2: 4
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 4
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF.1: 3
    • FMT_MOF.1.1: 1
    • FMT_MTD.1: 4
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 4
    • FMT_SMF.1.1: 1
    • FMT_SMR.2: 4
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 4
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_FLS.1: 3
    • FPT_FLS.1.1: 1
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM.1: 4
    • FPT_STM.1.1: 1
    • FPT_TST_EXT: 1
    • FPT_TST_EXT.1: 3
    • FPT_TST_EXT.1.1: 1
    • FPT_TST_EXT.1.2: 1
    • FPT_TUD_EXT.1: 3
  • FTA:
    • FTA_SSL.3: 6
    • FTA_SSL.3.1: 2
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 4
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 5
    • FTA_TAB.1.1: 1
    • FTA_TSE.1: 1
    • FTA_VCM_EXT.1: 1
  • FTP:
    • FTP_ITC.1: 4
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_TRP.1: 4
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FCS:
    • FCS_CKM.1: 20
    • FCS_CKM.1.1: 2
    • FCS_CKM.4: 16
    • FCS_CKM.4.1: 2
    • FCS_COP.1: 22
    • FCS_COP.1.1: 2
  • FDP:
    • FDP_ACC: 3
    • FDP_ACC.1: 13
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 10
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 20
    • FDP_IFC.1.1: 1
    • FDP_IFF.1: 15
    • FDP_IFF.1.1: 1
    • FDP_IFF.1.2: 1
    • FDP_IFF.1.3: 1
    • FDP_IFF.1.4: 1
    • FDP_IFF.1.5: 1
    • FDP_IFF.1.6: 1
    • FDP_ITC.1: 2
    • FDP_ITT.1: 12
    • FDP_ITT.1.1: 1
    • FDP_SDI.1: 14
    • FDP_SDI.1.1: 1
    • FDP_UCT.1: 11
    • FDP_UCT.1.1: 1
    • FDP_UIT.1: 11
    • FDP_UIT.1.1: 1
    • FDP_UIT.1.2: 1
  • FIA:
    • FIA_AFL: 1
    • FIA_AFL.1: 7
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 2
    • FIA_ALF.1: 2
    • FIA_UAU: 1
    • FIA_UAU.2: 10
    • FIA_UAU.2.1: 1
    • FIA_UID.1: 11
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MSA: 1
    • FMT_MSA.1: 22
    • FMT_MSA.1.1: 2
    • FMT_MSA.2: 11
    • FMT_MSA.2.1: 1
    • FMT_MSA.3: 12
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD.1: 10
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 11
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 15
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_AMT.1: 3
    • FPT_FLS.1: 19
    • FPT_FLS.1.1: 1
    • FPT_ITT.1: 12
    • FPT_ITT.1.1: 1
    • FPT_PHP.3: 14
    • FPT_PHP.3.1: 1
    • FPT_RCV.4: 20
    • FPT_RCV.4.1: 1
    • FPT_SDI.1: 1
    • FPT_TST: 1
    • FPT_TST.1: 11
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FTP:
    • FTP_ITC.1: 22
    • FTP_ITC.1.1: 2
    • FTP_ITC.1.2: 2
    • FTP_ITC.1.3: 2
    • FTP_TRP.1: 2
pdf_data/st_keywords/cc_claims
  • A:
    • A.CONNECTIONS: 1
    • A.NO_GENERAL_PURPOSE: 1
    • A.PHYSICAL: 1
    • A.TRUSTED_ADMIN: 1
  • O:
    • O.ADDRESS_FILTERING: 1
    • O.AUTHENTICATION: 1
    • O.CRYPTOGRAPHIC_FUNCTIONS: 1
    • O.DISPLAY_BANNER: 1
    • O.FAIL_SECURE: 1
    • O.PORT_FILTERING: 1
    • O.PROTECTED_COMMUNICATIONS: 1
    • O.RESIDUAL_INFORMATION_CLEARING: 1
    • O.SESSION_LOCK: 1
    • O.SYSTEM_MONITORING: 1
    • O.TOE_ADMINISTRATION: 1
    • O.TSF_SELF_TEST: 1
    • O.VERIFIABLE_UPDATES: 1
  • OE:
    • OE.CONNECTIONS: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.PHYSICAL: 1
    • OE.TRUSTED_ADMIN: 1
  • T:
    • T.ADMIN_ERROR: 1
    • T.DATA_INTEGRITY: 1
    • T.NETWORK_DISCLOSURE: 1
    • T.NETWORK_MISUSE: 1
    • T.REPLAY_ATTACK: 1
    • T.TSF_FAILURE: 2
    • T.UNAUTHORIZED_ACCESS: 1
    • T.UNAUTHORIZED_UPDATE: 1
    • T.UNDETECTED_ACTIONS: 1
    • T.USER_DATA_REUSE: 1
pdf_data/st_keywords/vendor
  • Cisco:
    • Cisco: 27
    • Cisco Systems, Inc: 4
pdf_data/st_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 15
      • AES-: 1
      • AES-256: 1
  • DES:
    • 3DES:
      • 3DES: 1
      • Triple-DES: 2
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 3
  • DES:
    • 3DES:
      • Triple-DES: 4
    • DES:
      • DES: 17
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 6
  • FF:
    • DH:
      • DH: 16
      • Diffie-Hellman: 6
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 8
    • SHA2:
      • SHA-256: 3
      • SHA-384: 1
      • SHA-512: 2
pdf_data/st_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 2
    • Key exchange: 1
  • MAC:
    • MAC: 1
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 33
    • IKEv1: 10
    • IKEv2: 8
  • IPsec:
    • IPsec: 70
  • SSH:
    • SSH: 50
    • SSHv2: 18
  • VPN:
    • VPN: 65
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 4
  • RNG:
    • RBG: 3
    • RNG: 1
  • RNG:
    • RNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CTR:
    • CTR: 2
  • GCM:
    • GCM: 3
  • CBC:
    • CBC: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 6
    • P-384: 6
    • P-521: 6
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 1
    • Malfunction: 26
  • SCA:
    • DPA: 1
    • Physical Probing: 5
    • physical probing: 3
  • other:
    • reverse engineering: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2012-009-001: 1
    • CCMB-2012-009-002: 1
    • CCMB-2012-009-003: 1
    • CCMB-2012-009-004: 1
  • FIPS:
    • FIPS 140-2: 3
    • FIPS 180-3: 1
    • FIPS PUB 186-2: 2
    • FIPS PUB 186-3: 8
    • FIPS PUB 197: 1
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-38D: 2
    • NIST SP 800-56A: 1
    • NIST SP 800-56B: 1
    • SP 800-90: 3
  • RFC:
    • RFC 2460: 2
    • RFC 2560: 1
    • RFC 2986: 1
    • RFC 3602: 1
    • RFC 4106: 1
    • RFC 4109: 1
    • RFC 4253: 1
    • RFC 4301: 1
    • RFC 4303: 1
    • RFC 4945: 1
    • RFC 5280: 3
    • RFC 5282: 1
    • RFC 5759: 1
    • RFC 6379: 1
    • RFC 768: 2
    • RFC 791: 2
    • RFC 793: 2
  • X509:
    • X.509: 3
  • BSI:
    • AIS 20: 1
    • AIS20: 2
  • CC:
    • CCIMB-99-031: 1
    • CCIMB-99-032: 1
    • CCIMB-99-033: 1
  • ISO:
    • ISO/IEC 15408: 6
    • ISO/IEC 18092: 2
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 2.2. Scope of TOE This section describes which IC-chip components are scopes of TOE and which are out of scope based on the “2.1 Product Type”. Be careful that only a part of the IC-Chip components are scope of: 1
    • Information Leakage Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. TOE shall provide protection to the data in the TOE from leakage of information: 1
    • Out of scope: 1
    • Out scope of the TOE) The firmware downloaded to EEPROM during IPL Mode out of scope the TOE: 1
    • i.e. TOE is operating in Normal Mode) is out of scope of this evaluation: 1
    • level is sufficient. Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. 3.1.Assets Assets that must be protected by TOE are defined as the: 1
    • mode to enter if any problems were detected that interferes RC-S940 from operating. Normal Mode (Out of scope in this evaluation) Normal Mode is the operating mode in which the downloaded reader / writer: 1
    • of the TOE, the operation with firmware loaded in the TOE (i.e. TOE is operating in Normal Mode) is out of scope of this evaluation. Nevertheless, the assumption A.Priv is necessary to ensure, that no malicious: 1
    • of this document. Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. 4.1. Security Objectives for the TOE 4.1.1. Security Objectives for the IC-Chip: 1
    • out of scope: 10
    • parts of the TOE. Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. Threats: T.Power_Down RC-S940 Security Target (Public Version) Version.2.04: 1
    • processes) is assumed. Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. T.Phys_Prob Physical Probing Attackers may disclose the data in the TOE: 1
    • results) is assumed. Note: The reader is reminded that the operation of the TOE in Normal Mode is out of scope of this evaluation. T.Leak_Inherent Inherent Information Leakage Attackers may disclose the data: 1
    • that the following paragraphs describe the TOE’s usage where the components are included that out of scope the TOE. Customers are able to create the firmware to be downloaded to EEPROM of the IC-Chip. The: 1
    • up. Firmware of IC-Chip (Out scope of the TOE) The firmware downloaded to EEPROM during IPL Mode out of scope the TOE. Only the administrator who is privileged by the Controller is able to download the: 1
    • utilizing mutual authentication as well as data encryption. Be careful that, however, the firmware out of scopes the TOE. The list below shows an example of operation as a system or a unit provided by the: 1
pdf_data/st_metadata
  • /Author: Debra Baker
  • /Category:
  • /Comments:
  • /Company: Cisco Systems, Inc.
  • /CreationDate: D:20141126103105-05'00'
  • /Creator: Acrobat PDFMaker 10.1 for Word
  • /Keywords:
  • /Manager:
  • /ModDate: D:20141126103113-05'00'
  • /Models: X-ES XPedite5205
  • /NDPP_version: 1.1
  • /PP: Protection Profile for Network Devices
  • /PP_2: Network Device Protection Profile Extended Package VPN Gateway
  • /Producer: Adobe PDF Library 10.0
  • /SourceModified: D:20141126152459
  • /Subject:
  • /TOE: X-ES Xpedite5205 Embedded Services Router
  • /TOE_Software_Version: IOS 15.2(4)GC
  • /TOE_short: ESR
  • /Title: 1
  • /VPNGW_version: 1.1
  • /_Date: October 13, 2014
  • /_Version: 1.0
  • pdf_file_size_bytes: 532068
  • pdf_hyperlinks: http://en.wikipedia.org/wiki/Internet_Control_Message_Protocol
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 55
  • /Author: EbisawaHiroki
  • /Comments: 英文校正 by H.Hamada
  • /Company: Sony Corporation
  • /CreationDate: D:20050819223433+09'00'
  • /Creator: Word 用 Acrobat PDFMaker 7.0
  • /ModDate: D:20050819223926+09'00'
  • /Producer: Acrobat Distiller 7.0 (Windows)
  • /Subject: 英文(K.H.)
  • /Title: MDPU2 ST Ver1.11
  • pdf_file_size_bytes: 309061
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 70
state/report/convert_ok True False
state/report/download_ok True False
state/report/extract_ok True False
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different