Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
BAROC/FISC Terminal Security Access Module, Version 1.0
BSI-DSZ-CC-0442-2008
Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition
CRP257
name BAROC/FISC Terminal Security Access Module, Version 1.0 Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition
category ICs, Smart Cards and Smart Card-Related Devices and Systems Access Control Devices and Systems
scheme DE UK
not_valid_after 01.09.2019 28.02.2016
not_valid_before 15.09.2008 28.02.2011
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0442a.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp257.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0442b.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/t007-st.pdf
manufacturer Financial Information Service Co. Ltd. (FISC) Citrix Systems, Inc.
manufacturer_web https://www.fisc.com.tw/ https://www.citrix.com
security_level EAL4+, AVA_VLA.4, ADV_IMP.2 EAL2+, ALC_FLR.2
dgst c6c5b4a22cd38f9f d87a9be3bb5e7640
heuristics/cert_id BSI-DSZ-CC-0442-2008 CRP257
heuristics/cert_lab BSI []
heuristics/direct_transitive_cves {} CVE-2016-4810
heuristics/indirect_transitive_cves {} CVE-2014-4700, CVE-2016-6493, CVE-2016-4810
heuristics/extracted_sars ADV_LLD.1, ALC_LCD.1, ALC_TAT.1, ADV_FSP.2, ALC_DVS.2, ADV_IMP.2, AGD_ADM.1, ATE_IND.2, AVA_VLA.4, ADV_RCR.1, ATE_DPT.1, AVA_SOF.1, ADV_HLD.2, AGD_USR.1, ATE_COV.2, ATE_FUN.1, AVA_MSU.3, ADV_SPM.1 ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ALC_FLR.2, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1
heuristics/extracted_versions 1.0 6.0
heuristics/report_references/directly_referenced_by {} CRP282
heuristics/report_references/directly_referencing {} CRP241
heuristics/report_references/indirectly_referenced_by {} CRP282, CRP281
heuristics/report_references/indirectly_referencing {} CRP241
pdf_data/report_filename 0442a.pdf crp257.pdf
pdf_data/report_frontpage
  • DE:
    • cert_id: BSI-DSZ-CC-0442-2008
    • cert_item: BAROC/FISC Terminal Security Access Module Version 1.0
    • cert_lab: BSI
    • developer: Financial Information Service Co., Ltd. (FISC) sponsored by The Bankers Association of the Republic of China (BAROC
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
  • DE:
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0426: 2
    • BSI-DSZ-CC-0426-2007-MA-01: 1
    • BSI-DSZ-CC-0442: 1
    • BSI-DSZ-CC-0442-2008: 17
  • NL:
    • CC-0426-2007: 1
  • UK:
    • CRP241: 2
    • CRP257: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 4: 8
    • EAL 4 augmented: 3
    • EAL 7: 1
    • EAL1: 5
    • EAL2: 3
    • EAL3: 4
    • EAL4: 7
    • EAL5: 6
    • EAL5+: 1
    • EAL6: 3
    • EAL7: 4
  • EAL:
    • EAL2: 3
    • EAL2 augmented: 2
pdf_data/report_keywords/cc_sar
  • ACM:
    • ACM_AUT: 2
    • ACM_CAP: 2
    • ACM_SCP: 2
  • ADO:
    • ADO_DEL: 2
    • ADO_IGS: 2
  • ADV:
    • ADV_FSP: 2
    • ADV_HLD: 2
    • ADV_IMP: 2
    • ADV_IMP.2: 5
    • ADV_INT: 2
    • ADV_LLD: 2
    • ADV_RCR: 2
    • ADV_SPM: 2
  • AGD:
    • AGD_ADM: 2
    • AGD_USR: 2
  • ALC:
    • ALC_DVS: 2
    • ALC_FLR: 2
    • ALC_LCD: 1
    • ALC_TAT: 2
  • APE:
    • APE_DES: 1
    • APE_ENV: 1
    • APE_INT: 1
    • APE_OBJ: 1
    • APE_REQ: 1
    • APE_SRE: 1
  • ASE:
    • ASE_DES: 1
    • ASE_ENV: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_PPC: 1
    • ASE_REQ: 1
    • ASE_SRE: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 2
    • ATE_DPT: 2
    • ATE_FUN: 2
    • ATE_IND: 2
  • AVA:
    • AVA_CCA: 2
    • AVA_MSU: 2
    • AVA_SOF: 3
    • AVA_VLA: 3
    • AVA_VLA.2: 1
    • AVA_VLA.3: 1
    • AVA_VLA.4: 6
  • ALC:
    • ALC_FLR.2: 3
pdf_data/report_keywords/vendor
  • NXP:
    • NXP: 12
  • Microsoft:
    • Microsoft: 1
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • 3DES: 1
    • DES:
      • DES: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
  • MD:
    • MD5:
      • MD5: 3
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 9
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 4
  • TLS:
    • TLS:
      • TLS: 7
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • ECB:
    • ECB: 4
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 25: 2
    • AIS 26: 2
    • AIS 31: 1
    • AIS 32: 1
    • AIS 34: 3
    • AIS 35: 1
    • AIS 36: 3
    • AIS 38: 1
  • ISO:
    • ISO/IEC 15408:2005: 2
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140-2: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 0, Date: 2008-05-21, Authors: BAROC & FISC (confidential document) [9] Java Card System Protection Profile Collection, Version: 1.0b, August 2003. This Document: 1
    • Product: NXP P541G072V0P (JCOP 41, v2.3.1), Version 1.0, Date 2007-07-27, ITSEF: TÜVIT (confidential document) [13] Administrator and User Guidance for BAROC/FISC TSAM 1.0, Version 1.0.0, date: 2008-05-21: 1
    • Report, BSI-DSZ-CC-0442, Version 3, Date 2008-07-30, Product:BAROC/FISC TSAM 1.0, ITSEF: TÜVIT (confidential document) [8] Configuration list for the TOE: Configuration Management for 1 BAROC/FISC TSAM 1.0, Version: 1: 1
pdf_data/report_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20081217084137+01'00'
  • /Creator: Writer
  • /Keywords: "BSI-DSZ-CC-0442-2008, Common Criteria, Certification, Zertifizierung, BAROC Terminal Security Access Module Version 1.0, Financial Information Services Co., Ltd. (FISC), The Bankers Association of the Republic of China (BAROC)"
  • /ModDate: D:20090105105200+01'00'
  • /Producer: StarOffice 8
  • /Subject: Common Criteria, Certification
  • /Title: Certification Report BSI-DSZ-CC-0442-2008
  • pdf_file_size_bytes: 1307314
  • pdf_hyperlinks: http://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 34
  • /Author:
  • /Company: Certification Body, CESG
  • /CreationDate: D:20110302122612Z
  • /Creator: Acrobat PDFMaker 7.0.5 for Word
  • /ModDate: D:20110302154835Z
  • /Producer: Acrobat Elements 7.0.5 (Windows)
  • /Title: Certification Report CRP257
  • /_AdHocReviewCycleID: 1808337809
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: Word to PDF
  • pdf_file_size_bytes: 390909
  • pdf_hyperlinks: https://www.citrix.com/lang/English/support.asp
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
pdf_data/st_filename 0442b.pdf t007-st.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0348: 1
    • BSI-DSZ-CC-0426: 1
    • BSI-DSZ-CC-0442: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP- 1600: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 12
    • EAL4 augmented: 8
    • EAL4+: 1
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 1
pdf_data/st_keywords/cc_sar
  • ACM:
    • ACM_AUT.1: 2
    • ACM_CAP.4: 2
    • ACM_SCP.2: 1
  • ADO:
    • ADO_DEL.2: 2
    • ADO_IGS.1: 2
  • ADV:
    • ADV_FSP.1: 1
    • ADV_FSP.2: 2
    • ADV_HLD.2: 3
    • ADV_IMP.1: 1
    • ADV_IMP.2: 13
    • ADV_LLD.1: 4
    • ADV_RCR.1: 3
    • ADV_SPM.1: 4
  • AGD:
    • AGD_ADM.1: 3
    • AGD_USR.1: 3
  • ALC:
    • ALC_DVS.1: 3
    • ALC_DVS.2: 3
    • ALC_LCD.1: 2
    • ALC_TAT.1: 3
  • ATE:
    • ATE_COV.2: 2
    • ATE_DPT.1: 2
    • ATE_FUN.1: 2
    • ATE_IND.2: 3
  • AVA:
    • AVA_MSU.2: 3
    • AVA_MSU.3: 3
    • AVA_SOF.1: 2
    • AVA_VLA: 1
    • AVA_VLA.3: 2
    • AVA_VLA.4: 12
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 6
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_ARP.1: 1
    • FAU_SAA.1: 1
  • FCS:
    • FCS_CKM: 11
    • FCS_CKM.1: 4
    • FCS_CKM.2: 1
    • FCS_CKM.3: 1
    • FCS_CKM.4: 4
    • FCS_COP: 6
    • FCS_COP.1: 3
    • FCS_RND.1: 1
  • FDP:
    • FDP_ACC: 23
    • FDP_ACC.1: 13
    • FDP_ACC.2: 1
    • FDP_ACF: 12
    • FDP_ACF.1: 19
    • FDP_CKM: 1
    • FDP_ETC.1: 1
    • FDP_IFC: 4
    • FDP_IFC.1: 7
    • FDP_IFF: 4
    • FDP_IFF.1: 1
    • FDP_ITC: 14
    • FDP_ITC.1: 15
    • FDP_ITC.1.3: 4
    • FDP_RIP.1: 1
    • FDP_ROL.1: 1
    • FDP_SDI: 5
    • FDP_SDI.2: 7
    • FDP_UCT: 11
    • FDP_UCT.1: 4
    • FDP_UIT: 13
    • FDP_UIT.1: 9
  • FIA:
    • FIA_AFL: 7
    • FIA_AFL.1: 5
    • FIA_ATD.1: 1
    • FIA_UAU: 20
    • FIA_UAU.1: 7
    • FIA_UAU.3: 1
    • FIA_UAU.4: 3
    • FIA_UAU.5: 8
    • FIA_UID: 6
    • FIA_UID.1: 8
    • FIA_UID.2: 1
    • FIA_USB.1: 1
  • FMT:
    • FMT_LIM.1: 1
    • FMT_LIM.2: 1
    • FMT_MSA: 40
    • FMT_MSA.1: 8
    • FMT_MSA.2: 7
    • FMT_MSA.3: 9
    • FMT_MTD.1: 1
    • FMT_MTD.3: 1
    • FMT_SMF: 15
    • FMT_SMF.1: 3
    • FMT_SMR: 12
    • FMT_SMR.1: 7
  • FPR:
    • FPR_UNO.1: 1
  • FPT:
    • FPT_AMT.1: 1
    • FPT_FLS.1: 1
    • FPT_PHP.1: 1
    • FPT_PHP.3: 1
    • FPT_RCV.3: 1
    • FPT_RCV.4: 1
    • FPT_RVM.1: 1
    • FPT_SEP.1: 1
    • FPT_TDC.1: 1
    • FPT_TST.1: 1
  • FRU:
    • FRU_FLT.2: 1
    • FRU_RSA: 4
  • FTP:
    • FTP_ITC: 17
    • FTP_ITC.1: 19
    • FTP_TRP.1: 2
  • FCO:
    • FCO_SCO: 8
    • FCO_SCO.1: 8
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 7
    • FCS_ECA.1: 5
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 17
    • FDP_ACC.1: 5
    • FDP_ACF: 14
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
  • FIA:
    • FIA_ATD: 7
    • FIA_ATD.1: 1
    • FIA_UAU: 6
    • FIA_UAU.2: 1
    • FIA_UID: 8
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 8
    • FMT_MOF.1: 1
    • FMT_MSA: 25
    • FMT_MSA.1: 4
    • FMT_MSA.3: 6
    • FMT_SMF: 12
    • FMT_SMF.1: 3
    • FMT_SMR: 14
    • FMT_SMR.1: 6
pdf_data/st_keywords/cc_claims
  • A:
    • A.DEV: 10
    • A.DLV: 10
    • A.DLV_PROTECT: 2
    • A.KEYS: 7
    • A.NATIVE: 2
    • A.NO-DELETION: 2
    • A.NO-INSTALL: 2
    • A.TEST_OPERATE: 1
    • A.USE_DIAG: 8
    • A.USE_KEYS: 1
    • A.VERIFICATION: 2
  • D:
    • D.APP_CODE: 1
    • D.APP_C_DATA: 1
    • D.APP_I_DATA: 1
    • D.APP_KEYS: 1
  • O:
    • O.ALARM: 2
    • O.CARD-MANAGEMENT: 2
    • O.CIPHER: 3
    • O.FAULT_PROTECT: 2
    • O.FIREWALL: 3
    • O.KEY-MNGT: 3
    • O.NATIVE: 2
    • O.OPERATE: 3
    • O.OS_DECEIVE: 2
    • O.PHYSICAL: 3
    • O.PIN-MNGT: 2
    • O.PROTECT_DATA: 7
    • O.REALLOCATION: 2
    • O.RESOURCES: 3
    • O.RND: 3
    • O.SCP: 8
    • O.SHRD_VAR_CONFID: 2
    • O.SHRD_VAR_INTEG: 3
    • O.SID: 3
    • O.SIDE_CHANNEL: 3
    • O.TRANSACTION: 2
  • OE:
    • OE.DEL_NOS: 1
    • OE.DEV_NOS: 1
    • OE.DLV_DATA: 1
    • OE.DLV_PROTECT: 1
    • OE.IC_ORG: 1
    • OE.NATIVE: 2
    • OE.NO-DELETION: 2
    • OE.NO-INSTALL: 2
    • OE.TEST_OPERATE: 1
    • OE.USE_DIAG: 1
    • OE.USE_KEYS: 1
    • OE.VERIFICATION: 2
  • OSP:
    • OSP.IC_ORG: 1
    • OSP.SN: 7
    • OSP.TXN: 1
    • OSP.TXN_SECURE: 6
  • T:
    • T.ACCESS_DATA: 3
    • T.CONFID-APPLI-DATA: 3
    • T.CONFID-JCS-CODE: 2
    • T.CONFID-JCS-DATA: 3
    • T.DEL: 2
    • T.DEL_IC_NOS: 2
    • T.DEV_IC: 2
    • T.DEV_NOS: 2
    • T.EXE-CODE: 4
    • T.FAULT: 3
    • T.INTEG-APPLI-CODE: 2
    • T.INTEG-APPLI-DATA: 3
    • T.INTEG-JCS-CODE: 2
    • T.INTEG-JCS-DATA: 2
    • T.INTEGRITY: 6
    • T.KEY_ACCESS: 5
    • T.LEAKAGE: 3
    • T.NATIVE: 3
    • T.OS_DECEIVE: 3
    • T.OS_OPERATE: 3
    • T.PHYSICAL: 3
    • T.RESOURCES: 3
    • T.RND: 3
    • T.SID: 6
    • T.TMD_ACCESS: 5
  • O:
    • O.TLS-TOE: 10
pdf_data/st_keywords/vendor
  • NXP:
    • NXP: 5
  • Philips:
    • Philips: 1
  • Microsoft:
    • Microsoft: 18
pdf_data/st_keywords/eval_facility
  • TUV:
    • TÜViT: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • Triple-DES: 1
    • DES:
      • DES: 1
  • AES_competition:
    • AES:
      • AES: 4
  • DES:
    • 3DES:
      • Triple-DES: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 39
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • TLS:
    • TLS:
      • TLS: 33
pdf_data/st_keywords/randomness
  • RNG:
    • RND: 6
    • RNG: 2
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • ECB:
    • ECB: 6
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 2
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS 20: 1
    • AIS20: 5
  • FIPS:
    • FIPS 1573: 1
  • ISO:
    • ISO/IEC 7816-4: 1
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 3
    • FIPS 140-2: 7
    • FIPS140: 1
    • FIPS140-2: 9
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • and hence all additional functionality supplied by these other products and components, are out of scope. The evaluated configuration covers only the publishing of applications; streaming of applications: 1
    • 22 1.4.3 Summary of items out of scope of the TOE : 1
    • 22 1.4.3 Summary of items out of scope of the TOE ........................................22 1.4.4 Required non-TOE: 1
    • TOE components, they do not form part of the logical boundary of the TOE. 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components on which Citrix: 1
    • out of scope: 4
pdf_data/st_metadata
  • /Author: BAROC & FISC
  • /CreationDate: D:20080714065458+02'00'
  • /Creator: pdfFactory Pro www.context-gmbh.de
  • /Keywords: Document Version 1.0.0; Terminal Security Access Module; secure transactions; POS terminal; remote host application; integrity; authenticity; confidentiality; encryption; decryption; MAC generation; JavaCard applet; NXP P541G072V0P smart card controller
  • /Producer: pdfFactory Pro 3.30 (Windows XP Professional German)
  • /Subject: Evaluation of BAROC/FISC TSAM 1.0
  • /Title: Security Target for BAROC/FISC TSAM 1.0
  • pdf_file_size_bytes: 318324
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 62
  • /Author: SiVenture
  • /CreationDate: D:20110210122512Z
  • /Creator: Microsoft® Office Word 2007
  • /ModDate: D:20110302154939Z
  • /Producer: Microsoft® Office Word 2007
  • /Title: CIN4-STt-0001
  • pdf_file_size_bytes: 679246
  • pdf_hyperlinks: http://www.citrix.com/, http://www.commoncriteriaportal.org/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 55
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different