Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix XenDesktop 4 Platinum Edition
CRP256
PalmSecure SDK Version 24 Premium
BSI-DSZ-CC-0511-2008
name Citrix XenDesktop 4 Platinum Edition PalmSecure SDK Version 24 Premium
category Access Control Devices and Systems Biometric Systems and Devices
scheme UK DE
not_valid_after 05.01.2016 01.09.2019
not_valid_before 20.08.2010 30.12.2008
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp256.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0511a.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp256st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0511b.pdf
manufacturer Citrix Systems, Inc. Fujitsu Limited
manufacturer_web https://www.citrix.com https://www.fujitsu.com/
security_level EAL2+, ALC_FLR.2 EAL2
dgst cd043f860d336c69 ca5a5c3b72c34bc3
heuristics/cert_id CRP256 BSI-DSZ-CC-0511-2008
heuristics/cert_lab [] BSI
heuristics/cpe_matches cpe:2.3:a:citrix:xendesktop:4.0:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2016-6493, CVE-2014-4700 {}
heuristics/direct_transitive_cves CVE-2012-6314, CVE-2016-6493, CVE-2014-4700 {}
heuristics/indirect_transitive_cves CVE-2016-6493, CVE-2012-6314, CVE-2016-4810, CVE-2014-4700 {}
heuristics/extracted_sars ASE_INT.1, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ADV_TDS.1, ATE_FUN.1, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, ALC_FLR.2, ASE_REQ.2, ALC_CMC.2, ATE_IND.2, ASE_CCL.1 ALC_LCD.2, ASE_INT.1, ALC_DVS.2, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, APE_ECD.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, ALC_TAT.3, ALC_FLR.3, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ATE_FUN.1, APE_REQ.2, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, APE_CCL.1, ADV_IMP.2, ASE_REQ.2, ATE_DPT.4, ADV_INT.3, APE_INT.1, APE_SPD.1, ALC_CMC.2, ATE_IND.2, APE_OBJ.2, ASE_CCL.1, ADV_TDS.6, ADV_SPM.1
heuristics/extracted_versions 4 24
heuristics/report_references/directly_referenced_by CRP271 {}
heuristics/report_references/indirectly_referenced_by CRP271, CRP282, CRP281 {}
pdf_data/report_filename crp256.pdf 0511a.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-0511-2008
    • cert_item: PalmSecure SDK Version 24 Premium
    • cert_lab: BSI
    • developer: Fujitsu Limited
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
pdf_data/report_keywords/cc_cert_id
  • UK:
    • CRP256: 2
  • DE:
    • BSI-DSZ-CC-0511-2008: 16
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 2 augmented: 1
    • EAL2: 1
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 1
    • EAL 7: 1
    • EAL1: 6
    • EAL2: 4
    • EAL3: 4
    • EAL4: 4
    • EAL5: 6
    • EAL6: 3
    • EAL7: 4
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 2
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 1
    • ALC_CMC.3: 1
    • ALC_CMC.4: 1
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 1
    • ALC_CMS.3: 1
    • ALC_CMS.4: 1
    • ALC_CMS.5: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 1
    • ALC_DVS: 1
    • ALC_DVS.1: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 1
    • ALC_FLR.1: 1
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
    • ALC_LCD.1: 1
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 1
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 1
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.1: 1
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_FUN.2: 1
    • ATE_IND: 1
    • ATE_IND.1: 1
    • ATE_IND.2: 1
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 2
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 1
    • AVA_VAN.5: 1
pdf_data/report_keywords/cc_claims
  • OE:
    • OE.ADMINISTRATION: 1
    • OE.AUDIT_REACTION: 1
    • OE.AUTHADMIN: 1
    • OE.ENROLMENT: 1
    • OE.ENVIRONMENT: 1
    • OE.FALLBACK: 1
    • OE.PHYSICAL: 1
    • OE.ROLES_AND_ACCESS: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 27
  • Microsoft:
    • Microsoft: 7
pdf_data/report_keywords/eval_facility
  • SRC:
    • SRC Security Research & Consulting: 3
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 3
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 8] Evaluation Technical Report, Version 1.1, 24.11.2008, SRC Security Research & Consulting GmbH, (confidential document) [9] Security guide (PalmSecureTM Version 24 Premium), Fujitsu, First edition, September 2008 [10: 1
  • OutOfScope:
    • out of scope: 1
    • tests at the ITSEF excepting such tests which are related to functions or parameters which are out of scope of the evaluation (functions regarding enrolment and identification, parameters regarding threshold: 1
pdf_data/report_metadata
  • /Author:
  • /Company: CESG Certification Body
  • /CreationDate: D:20100823173833+01'00'
  • /Creator: Acrobat PDFMaker 9.0 for Word
  • /ModDate: D:20100831083026+01'00'
  • /Producer: Acrobat Distiller 9.0.0 (Windows)
  • /SourceModified: D:20100823163452
  • /Title: Certification Report CRP256
  • /_AdHocReviewCycleID: 703382741
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: T005 - certified!
  • pdf_file_size_bytes: 500557
  • pdf_hyperlinks: https://www.citrix.com/security
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20090202084856+01'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, PalmSecure SDK Version 24 Premium, Fujitsu Limited"
  • /ModDate: D:20090202150925+01'00'
  • /Producer: StarOffice 8
  • /Subject: Common Criteria Certification
  • /Title: Certification Report BSI-DSZ-CC-0511-2008
  • pdf_file_size_bytes: 922937
  • pdf_hyperlinks: http://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 34
pdf_data/st_filename crp256st.pdf 0511b.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0511: 2
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0016: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 2
  • EAL:
    • EAL2: 6
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 5
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN: 1
    • ATE_FUN.1: 1
    • ATE_IND: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FCO:
    • FCO_SCO: 38
    • FCO_SCO.1: 21
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 18
    • FCS_ECA.1: 7
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 24
    • FDP_ACC.1: 5
    • FDP_ACF: 23
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
    • FDP_RIP: 7
    • FDP_RIP.1: 1
  • FIA:
    • FIA_ATD: 8
    • FIA_ATD.1: 1
    • FIA_UAU: 8
    • FIA_UAU.2: 1
    • FIA_UID: 10
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 10
    • FMT_MOF.1: 1
    • FMT_MSA: 35
    • FMT_MSA.1: 3
    • FMT_MSA.3: 6
    • FMT_SMF: 17
    • FMT_SMF.1: 4
    • FMT_SMR: 18
    • FMT_SMR.1: 6
  • FDP:
    • FDP_ACC.1: 1
    • FDP_ACF.1: 1
    • FDP_RIP: 2
    • FDP_RIP.1: 1
    • FDP_RIP.2: 7
  • FIA:
    • FIA_ATD.1: 1
    • FIA_UAU: 4
    • FIA_UAU.1: 1
    • FIA_UAU.2: 4
    • FIA_UAU.3: 8
    • FIA_UID: 2
    • FIA_UID.1: 2
    • FIA_UID.2: 5
  • FPT:
    • FPT_RPL: 3
    • FPT_RPL.1: 10
pdf_data/st_keywords/cc_claims
  • OE:
    • OE.TLS: 6
  • A:
    • A.ADMINISTRATION: 4
    • A.AUDIT_REACTION: 4
    • A.AUTHADMIN: 4
    • A.ENROLMENT: 4
    • A.ENVIRONMENT: 4
    • A.FALLBACK: 4
    • A.PHYSICAL: 5
    • A.ROLES_AND_ACCESS: 4
  • O:
    • O.BIO_VERIFCATION: 1
    • O.BIO_VERIFICATION: 9
    • O.NO_REPRODUCE: 8
    • O.RESIDUAL: 5
    • O.RESIDUAL_CAPTURE: 6
  • OE:
    • OE.ADMINISTRATION: 5
    • OE.AUDIT_REACKTION: 1
    • OE.AUDIT_REACTION: 17
    • OE.AUTHADMIN: 9
    • OE.ENROLMENT: 5
    • OE.ENVIRONMENT: 5
    • OE.FALLBACK: 3
    • OE.PHYSICAL: 5
    • OE.ROLES_AND_ACCESS: 9
  • OSP:
    • OSP.FAR: 7
    • OSP.USERLIMIT: 4
  • T:
    • T.BRUTEFORCE: 5
    • T.MODIFY_ASSETS: 7
    • T.REPRODUCE: 5
    • T.RESIDUAL: 9
    • T.ROLES: 8
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 39
pdf_data/st_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • Triple-DES: 3
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 14
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 3
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 2
    • FIPS 140-2: 9
    • FIPS PUB 140-2: 1
    • FIPS140-2: 10
  • RFC:
    • RFC 2246: 3
    • RFC 2451: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 17 1.4.3 Summary of items out of scope of the TOE : 2
    • Ver 1-0 SPB 17 August 2010 Page 18 of 53 Figure 4: Logical boundaries 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components with which Citrix: 1
    • integrates, as detailed in section 1.2.3. Also out of scope of the TOE are the following Citrix components which are included in XenDesktop Platinum Edition: •: 1
    • out of scope: 4
  • OutOfScope:
    • Biometric Identification is not addressed within this ST. Furthermore the enrolment process is out of scope of this ST and it is assumed that all authorized users have been enrolled. Last but not least a: 1
    • a mechanism for audit review of the TOE audit logs. As mentioned before all auditing aspects are out of scope of the TOE. • Transmission / Storage: The environment cares for a secure communication and storing: 1
    • higher error rates of those systems are only two of them. The biometric identification process is out of scope of this ST. Please see [BEM] or [BPT] for further explanations. 1.5.2 Wording in context of Common: 1
    • out of scope: 5
    • the BIR to a name or some other "real-life" identification of a user is up to the application and out of scope of the TOE. VERSION 1.0 Security Target for PalmSecure 14.September 2008 All Rights Reserved: 1
    • user identity from the TOE. As mentioned before the specific connection to the Portal Service is out of scope of the TOE and depends on the overall application using the PalmSecure Library. • Auditing: The: 1
pdf_data/st_metadata
  • /Author:
  • /CreationDate: D:20100816144755Z
  • /Creator: PScript5.dll Version 5.2
  • /ModDate: D:20100831083207+01'00'
  • /Producer: GPL Ghostscript 8.15
  • /Title: CIN2-ST-0001 v1-0
  • pdf_file_size_bytes: 1833337
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 53
  • /Author: Fujitsu
  • /Company: Fujitsu
  • /CreationDate: D:20090105144849+09'00'
  • /Creator: Word 用 Acrobat PDFMaker 8.1
  • /Keywords: authentication,biometric,identification,verification
  • /ModDate: D:20090105145458+09'00'
  • /Producer: Acrobat Distiller 8.1.0 (Windows)
  • /SourceModified: D:20090105054723
  • /Subject: PalmSecure SDK
  • /Title: Security Target for PalmSecure
  • pdf_file_size_bytes: 707424
  • pdf_hyperlinks: http://www.bsi.bund.de/
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 59
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different