Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix XenDesktop 4 Platinum Edition
CRP256
MorphoSmart Optic 301 Version 1.0
BSI-DSZ-CC-0790-2013
name Citrix XenDesktop 4 Platinum Edition MorphoSmart Optic 301 Version 1.0
category Access Control Devices and Systems Biometric Systems and Devices
scheme UK DE
not_valid_after 05.01.2016 01.09.2019
not_valid_before 20.08.2010 31.01.2013
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp256.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0790a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp256st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0790b_pdf.pdf
manufacturer Citrix Systems, Inc. Safran Morpho
manufacturer_web https://www.citrix.com https://morpho.com
security_level EAL2+, ALC_FLR.2 ADV_TDS.1, ASE_REQ.2, ALC_DEL.1, ASE_ECD.1, ATE_FUN.1, ALC_FLR.1, AGD_OPE.1, ASE_TSS.1, ATE_COV.1, ADV_FSP.2, ASE_INT.1, ATE_IND.2, ALC_CMS.2, ASE_CCL.1, AGD_PRE.1, ALC_CMC.2, ASE_SPD.1, ASE_OBJ.2, ADV_ARC.1
dgst cd043f860d336c69 a9925b1140bde436
heuristics/cert_id CRP256 BSI-DSZ-CC-0790-2013
heuristics/cert_lab [] BSI
heuristics/cpe_matches cpe:2.3:a:citrix:xendesktop:4.0:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2016-6493, CVE-2014-4700 {}
heuristics/direct_transitive_cves CVE-2012-6314, CVE-2016-6493, CVE-2014-4700 {}
heuristics/indirect_transitive_cves CVE-2016-6493, CVE-2012-6314, CVE-2016-4810, CVE-2014-4700 {}
heuristics/extracted_sars ASE_INT.1, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ADV_TDS.1, ATE_FUN.1, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, ALC_FLR.2, ASE_REQ.2, ALC_CMC.2, ATE_IND.2, ASE_CCL.1 ALC_LCD.2, ASE_INT.1, ALC_DVS.2, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, APE_ECD.1, ALC_FLR.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, ALC_TAT.3, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ADV_TDS.1, ATE_FUN.1, APE_REQ.2, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, APE_CCL.1, ADV_IMP.2, ASE_REQ.2, ATE_DPT.4, ADV_INT.3, APE_INT.1, APE_SPD.1, ALC_CMC.2, ATE_IND.2, APE_OBJ.2, ASE_CCL.1, ADV_SPM.1
heuristics/extracted_versions 4 1.0
heuristics/report_references/directly_referenced_by CRP271 {}
heuristics/report_references/indirectly_referenced_by CRP271, CRP282, CRP281 {}
heuristics/protection_profiles {} b02ed76d2545326a
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0062b_pdf.pdf
pdf_data/report_filename crp256.pdf 0790a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-0790-2013
    • cert_item: MorphoSmart Optic 301, Version 1.0
    • cert_lab: BSI
    • developer: Safran Morpho
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
pdf_data/report_keywords/cc_cert_id
  • UK:
    • CRP256: 2
  • DE:
    • BSI-DSZ-CC-0790-2013: 17
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0062-2010: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 2 augmented: 1
    • EAL2: 1
  • EAL:
    • EAL 4: 2
    • EAL1: 7
    • EAL2: 3
    • EAL3: 4
    • EAL4: 6
    • EAL5: 6
    • EAL6: 3
    • EAL7: 4
  • ITSEC:
    • ITSEC Evaluation: 1
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 2
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 5
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 5
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 5
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 5
    • AGD_PRE: 1
    • AGD_PRE.1: 5
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 5
    • ALC_CMC.3: 1
    • ALC_CMC.4: 1
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 5
    • ALC_CMS.3: 1
    • ALC_CMS.4: 1
    • ALC_CMS.5: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 5
    • ALC_DVS: 1
    • ALC_DVS.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 1
    • ALC_FLR.1: 5
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
    • ALC_LCD.1: 1
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 1
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 5
    • ASE_ECD: 1
    • ASE_ECD.1: 5
    • ASE_INT: 1
    • ASE_INT.1: 5
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 5
    • ASE_REQ.1: 1
    • ASE_REQ.2: 5
    • ASE_SPD: 1
    • ASE_SPD.1: 5
    • ASE_TSS: 1
    • ASE_TSS.1: 5
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 5
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 5
    • ATE_FUN.2: 1
    • ATE_IND: 1
    • ATE_IND.1: 1
    • ATE_IND.2: 5
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 1
    • AVA_VAN.5: 1
pdf_data/report_keywords/cc_sfr
  • FPT:
    • FPT_SPOD.1: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 27
  • Morpho:
    • Morpho: 17
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 4
    • TÜViT: 2
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 3
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • BSI:
    • AIS 32: 1
    • AIS 35: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 19 September 2012, MorphoSmart Optic 301 – Life Cycle Support (ALC) (chapter 2.1), Safran Morpho (confidential document) [13] MSO 301– GUIDES, Version 12, 18 September 2012, Safran Morpho [14] MorphoSmart Programmer’s: 1
    • 8] Evaluation Technical Report, Version 6, 21 January 2013, TÜV Informationstechnik GmbH, (confidential document) [9] Fingerprint Spoof Detection Evaluation Guidance (FSDEG), Version 2.1, 18 December 2009: 1
    • Target, Version 8, 12 September 2012, MorphoSmart Optic 301 Security Target, Safran Morpho (confidential document) [7] Fingerprint Spoof Detection Protection Profile based on Organisational Security Policies: 1
  • OutOfScope:
    • out of scope: 1
    • relevant events and protection of residual and security relevant data. Biometric verification is out of scope of the certification. The Security Target [6] is the basis for this certification. It is based on: 1
pdf_data/report_metadata
  • /Author:
  • /Company: CESG Certification Body
  • /CreationDate: D:20100823173833+01'00'
  • /Creator: Acrobat PDFMaker 9.0 for Word
  • /ModDate: D:20100831083026+01'00'
  • /Producer: Acrobat Distiller 9.0.0 (Windows)
  • /SourceModified: D:20100823163452
  • /Title: Certification Report CRP256
  • /_AdHocReviewCycleID: 703382741
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: T005 - certified!
  • pdf_file_size_bytes: 500557
  • pdf_hyperlinks: https://www.citrix.com/security
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /Author: Federal Office for Information Security
  • /CreationDate: D:20130306111458+01'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, Fingerprint Spoof Detection, Fingerprint, Biometrics, Fingerprint Fake Detection"
  • /ModDate: D:20130306154334+01'00'
  • /Producer: OpenOffice.org 3.2
  • /Subject: Common Criteria Certification
  • /Title: Certification Report BSI-DSZ-CC-0790-2013
  • pdf_file_size_bytes: 880965
  • pdf_hyperlinks: https://www.bsi.bund.de/zertifizierung, https://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 34
pdf_data/st_filename crp256st.pdf 0790b_pdf.pdf
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0062: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 2
  • EAL:
    • EAL 2: 4
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 5
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
  • ADV:
    • ADV_ARC.1: 2
    • ADV_FSP.1: 2
    • ADV_FSP.2: 7
    • ADV_TDS.1: 5
  • AGD:
    • AGD_OPE.1: 4
    • AGD_PRE.1: 4
  • ALC:
    • ALC_CMC.2: 2
    • ALC_CMS.2: 2
    • ALC_DEL.1: 2
    • ALC_FLR.1: 6
  • ASE:
    • ASE_CCL.1: 2
    • ASE_ECD.1: 5
    • ASE_INT.1: 3
    • ASE_OBJ.2: 3
    • ASE_REQ.1: 2
    • ASE_REQ.2: 3
    • ASE_SPD.1: 2
    • ASE_TSS.1: 2
  • ATE:
    • ATE_COV.1: 5
    • ATE_FUN.1: 5
    • ATE_IND.2: 2
  • AVA:
    • AVA_VAN.2: 2
pdf_data/st_keywords/cc_sfr
  • FCO:
    • FCO_SCO: 38
    • FCO_SCO.1: 21
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 18
    • FCS_ECA.1: 7
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 24
    • FDP_ACC.1: 5
    • FDP_ACF: 23
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
    • FDP_RIP: 7
    • FDP_RIP.1: 1
  • FIA:
    • FIA_ATD: 8
    • FIA_ATD.1: 1
    • FIA_UAU: 8
    • FIA_UAU.2: 1
    • FIA_UID: 10
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 10
    • FMT_MOF.1: 1
    • FMT_MSA: 35
    • FMT_MSA.1: 3
    • FMT_MSA.3: 6
    • FMT_SMF: 17
    • FMT_SMF.1: 4
    • FMT_SMR: 18
    • FMT_SMR.1: 6
  • FAU:
    • FAU_GEN: 4
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
  • FDP:
    • FDP_RIP: 3
    • FDP_RIP.2: 4
    • FDP_RIP.2.1: 1
  • FMT:
    • FMT_MTD: 3
    • FMT_MTD.1: 1
    • FMT_MTD.3: 7
    • FMT_MTD.3.1: 1
    • FMT_SMF: 1
    • FMT_SMF.1: 6
    • FMT_SMF.1.1: 1
  • FPT:
    • FPT_SPOD: 6
    • FPT_SPOD.1: 14
    • FPT_SPOD.1.1: 3
    • FPT_SPOD.1.2: 3
    • FPT_SPOD.1.3: 3
    • FPT_SPOD.1.4: 3
    • FPT_STM.1: 2
pdf_data/st_keywords/cc_claims
  • OE:
    • OE.TLS: 6
  • A:
    • A.BIO: 3
  • O:
    • O.AUDIT: 7
    • O.MANAGEMENT: 7
    • O.RESIDUAL: 5
    • O.SPOOF_DETECTION: 5
  • OE:
    • OE.ADMINISTRATION: 9
    • OE.BIO: 2
    • OE.PHYSICAL: 7
    • OE.PLATFORM: 14
  • OSP:
    • OSP.AUDIT: 4
    • OSP.MANAGEMENT: 4
    • OSP.RESIDUAL: 4
    • OSP.SPOOF_DETECTION: 5
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 39
  • Morpho:
    • Morpho: 31
pdf_data/st_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • Triple-DES: 3
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 14
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 3
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 2
    • FIPS 140-2: 9
    • FIPS PUB 140-2: 1
    • FIPS140-2: 10
  • RFC:
    • RFC 2246: 3
    • RFC 2451: 1
  • CC:
    • CCMB-2006-09-001: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 17 1.4.3 Summary of items out of scope of the TOE : 2
    • Ver 1-0 SPB 17 August 2010 Page 18 of 53 Figure 4: Logical boundaries 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components with which Citrix: 1
    • integrates, as detailed in section 1.2.3. Also out of scope of the TOE are the following Citrix components which are included in XenDesktop Platinum Edition: •: 1
    • out of scope: 4
  • OutOfScope:
    • and the fingerprint if genuine. Please be aware that the mechanism for biometric matching is out of scope of the certification. The MSO Demonstrator Application is a software which enables using the MSO: 1
    • of the TOE but do not realize any part of the fake finger detection functionality and are therefore out of scope of the certified security functionality. The storage of the generated log, i.e., the Audit log, is: 1
    • out of scope: 2
pdf_data/st_metadata
  • /Author:
  • /CreationDate: D:20100816144755Z
  • /Creator: PScript5.dll Version 5.2
  • /ModDate: D:20100831083207+01'00'
  • /Producer: GPL Ghostscript 8.15
  • /Title: CIN2-ST-0001 v1-0
  • pdf_file_size_bytes: 1833337
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 53
  • /Author: Safran Morpho
  • /CreationDate: D:20130121143511
  • /Creator: Microsoft® Office Word 2007
  • /Keywords: MSO 301, Common Criteria, CC, Securtiy Target, ST, ST-lite
  • /ModDate: D:20130121144124+01'00'
  • /Producer: Microsoft® Office Word 2007
  • /Subject: ST-lite
  • /Title: MSO FFD Public Security Target
  • pdf_file_size_bytes: 476138
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 30
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different