Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Junos OS 22.3R1 for QFX5200-32C, QFX5110-48S, QFX5110-32Q, QFX5120-48T, QFX5120-48Y, QFX5120-32C, QFX5210-64C, QFX5200-48Y and EX4650-48Y
Certificate Number: 2024/155
PikeOS Separation Kernel, Version 5.1.3
BSI-DSZ-CC-1146-2022
name Junos OS 22.3R1 for QFX5200-32C, QFX5110-48S, QFX5110-32Q, QFX5120-48T, QFX5120-48Y, QFX5120-32C, QFX5210-64C, QFX5200-48Y and EX4650-48Y PikeOS Separation Kernel, Version 5.1.3
category Network and Network-Related Devices and Systems Operating Systems
scheme AU DE
not_valid_after 17.10.2029 19.09.2027
not_valid_before 17.10.2024 20.09.2022
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/AISEP_Certificate_2024_155_EFT-T033_Junos%20OS%2022.3R1%20for%20QFX5000%20series%20and%20EX4650-48Y_os.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1146c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/AISEP-CC-CR-2024-EFT-T033-CR-V1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1146a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Juniper%20Junos%2022.3R1%20for%20QFX,%20EX%20Series%20Security%20Target%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1146b_pdf.pdf
manufacturer Juniper Networks, Inc. SYSGO GmbH
manufacturer_web https://www.juniper.net/ https://www.SYSGO.com
security_level {} ADV_IMP.2, ALC_CMC.5, EAL5+, AVA_VAN.5, ALC_DVS.2, ALC_FLR.3
dgst d002051f34dd2ad2 2704a53db5b77866
heuristics/cert_id Certificate Number: 2024/155 BSI-DSZ-CC-1146-2022
heuristics/cert_lab [] BSI
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 ALC_TAT.1, ALC_CMS.5, AVA_VAN.5, ADV_FSP.4, ALC_LCD.1, ALC_DVS.2, ALC_CMC.5, ADV_ARC.1, ADV_TDS.3, AGD_OPE.1, ATE_DPT.1, ALC_FLR.3, ADV_INT.2, ADV_IMP.2, AGD_PRE.1
heuristics/extracted_versions 22.3 5.1.3
heuristics/report_references/directly_referenced_by {} BSI-DSZ-CC-1185-2023
heuristics/report_references/indirectly_referenced_by {} BSI-DSZ-CC-1185-2023
heuristics/scheme_data
heuristics/protection_profiles 89f2a255423f4a20 {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf {}
pdf_data/cert_filename AISEP_Certificate_2024_155_EFT-T033_Junos OS 22.3R1 for QFX5000 series and EX4650-48Y_os.pdf 1146c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • AU:
    • Certificate Number: 2024/155: 1
  • DE:
    • BSI-DSZ-CC-1146-2022: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 4: 1
    • EAL 5: 2
    • EAL 5 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_IMP.2: 1
  • ALC:
    • ALC_CMC.5: 1
    • ALC_DVS.2: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20250115234959+11'00'
  • /ModDate: D:20250115234959+11'00'
  • pdf_file_size_bytes: 146621
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20220920112048+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, SYSGO GmbH, PikeOS, Separation Kernel, Certification Report"
  • /ModDate: D:20220920135502+02'00'
  • /Producer: LibreOffice 7.2
  • /Subject: Certification Report, Common Criteria Zertifizierung, PikeOS Separation Kernel, Version 5.1.3
  • /Title: Certification Report BSI-DSZ-CC-1146-2022
  • pdf_file_size_bytes: 327689
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename AISEP-CC-CR-2024-EFT-T033-CR-V1.0.pdf 1146a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cc_security_level: Common Criteria Part 3 conformant EAL 5 augmented by ADV_IMP.2, ALC_CMC.5, ALC_DVS.2, ALC_FLR.3, AVA_VAN.5
    • cc_version: Product specific Security Target Common Criteria Part 2 conformant
    • cert_id: BSI-DSZ-CC-1146-2022
    • cert_item: PikeOS Separation Kernel Version 5.1.3
    • cert_lab: BSI
    • developer: SYSGO GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: None
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1146-2022: 15
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 2
    • EAL 2+: 1
    • EAL 4: 4
    • EAL 5: 7
    • EAL 5 augmented: 3
    • EAL 5+: 1
    • EAL 6: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.5: 1
    • ADV_IMP.2: 5
    • ADV_INT.2: 1
    • ADV_TDS.4: 1
  • ALC:
    • ALC_CMC.5: 5
    • ALC_CMS.5: 1
    • ALC_DVS.2: 5
    • ALC_FLR: 3
    • ALC_FLR.3: 5
    • ALC_TAT.2: 1
  • ATE:
    • ATE_DPT.3: 1
    • ATE_IND: 1
  • AVA:
    • AVA_VAN.5: 5
pdf_data/report_keywords/vendor
  • NXP:
    • NXP: 1
pdf_data/report_keywords/eval_facility
  • Teron:
    • Teron Labs: 4
  • atsec:
    • atsec: 3
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 4
    • SSHv2: 2
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
pdf_data/report_keywords/tee_name
  • AMD:
    • PSP: 5
pdf_data/report_keywords/standard_id
  • NIST:
    • SP 800-90B: 1
  • BSI:
    • AIS 32: 1
    • AIS 34: 2
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Report, Version 7, 2022-09-08, Final Evaluation Technical Report, atsec information security GmbH, (confidential document) [8] Configuration list for the TOE, 2022-09-06, 18064-0000-MDL.xlsx (confidential document) [9: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
pdf_data/report_metadata
pdf_data/st_filename Juniper Junos 22.3R1 for QFX, EX Series Security Target v1.0.pdf 1146b_pdf.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 5: 5
    • EAL 5 augmented: 2
    • EAL 5+: 1
    • EAL5: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 4
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.5: 4
    • ALC_DVS.2: 5
    • ALC_FLR.3: 4
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ATE:
    • ATE_DPT.1: 1
  • AVA:
    • AVA_VAN.5: 4
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 2
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT: 2
    • FAU_STG_EXT.1: 3
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 2
    • FCS_CKM.1: 7
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 4
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 4
    • FCS_CKM.4.1: 1
    • FCS_COP: 19
    • FCS_COP.1: 5
    • FCS_NTP_EXT.1.4: 2
    • FCS_RBG_EXT.1: 7
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHS_EXT: 2
    • FCS_SSHS_EXT.1: 7
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.2.3: 1
  • FIA:
    • FIA_AFL: 2
    • FIA_AFL.1: 9
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 2
    • FIA_PMG_EXT.1: 5
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU: 2
    • FIA_UAU.7: 4
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 2
    • FIA_UAU_EXT.2: 4
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 2
    • FIA_UIA_EXT.1: 5
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 17
    • FMT_MOF.1: 3
    • FMT_MTD: 12
    • FMT_MTD.1: 2
    • FMT_SMF: 2
    • FMT_SMF.1: 8
    • FMT_SMF.1.1: 1
    • FMT_SMR: 2
    • FMT_SMR.2: 6
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 2
    • FPT_APW_EXT.1: 5
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_FLS: 2
    • FPT_SKP_EXT: 2
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM.1: 1
    • FPT_STM_EXT: 2
    • FPT_STM_EXT.1: 5
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 2
    • FPT_TST_EXT.1: 5
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT: 2
    • FPT_TUD_EXT.1: 9
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 2
    • FTA_SSL.3: 6
    • FTA_SSL.4: 5
    • FTA_SSL_EXT: 2
    • FTA_SSL_EXT.1: 5
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 2
    • FTA_TAB.1: 7
  • FTP:
    • FTP_ITC: 2
    • FTP_ITC.1: 8
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 7
    • FTP_TRP.1: 4
  • FDP:
    • FDP_ACC: 32
    • FDP_ACC.2: 12
    • FDP_ACF: 34
    • FDP_ACF.1: 27
    • FDP_IFC.2: 8
    • FDP_IFF.1: 11
  • FIA:
    • FIA_UID.2: 6
  • FMT:
    • FMT_MSA.1: 6
    • FMT_MSA.3: 7
    • FMT_MSA.3.1: 2
    • FMT_MTD: 12
    • FMT_MTD.1: 3
    • FMT_SMF.1: 5
    • FMT_SMR.1: 7
  • FRU:
    • FRU_RSA: 10
    • FRU_RSA.2: 5
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINSTRATOR: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • A:
    • A.EXCLUSIVE_RESOURCES: 4
    • A.HARDWARE: 4
    • A.PHYSICAL: 4
    • A.PRIVILEGED_EXECUTABLES: 5
    • A.TRUSTWORTHY_PERSONNEL: 4
  • OE:
    • OE.EXCLUSIVE_RESOURCES: 3
    • OE.HARDWARE: 2
    • OE.PHYSICAL: 2
    • OE.PRIVILEGED_EXECUTABLES: 3
    • OE.TRUSTWORTHY_PERSONNEL: 3
  • OT:
    • OT.API_PROTECTION: 4
    • OT.CONFIDENTIALITY: 6
    • OT.INTEGRITY: 4
    • OT.RESOURCE_AVAILABILITY: 6
  • T:
    • T.DEPLETION: 4
    • T.DISCLOSURE: 4
    • T.EXECUTION: 4
    • T.MODIFICATION: 4
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 10
  • constructions:
    • MAC:
      • HMAC: 3
      • HMAC-SHA-256: 4
      • HMAC-SHA-512: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 4
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 6
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
      • SHA1: 4
    • SHA2:
      • SHA-256: 5
      • SHA-384: 3
      • SHA-512: 4
  • SHA:
    • SHA2:
      • SHA256: 1
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 3
  • KEX:
    • Key Exchange: 2
    • Key exchange: 1
  • MAC:
    • MAC: 4
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 4
  • SSH:
    • SSH: 108
    • SSHv2: 11
  • TLS:
    • DTLS:
      • DTLS: 4
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 9
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 2
    • PRNG: 1
  • RNG:
    • RBG: 1
    • RNG: 3
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 4
  • GCM:
    • GCM: 2
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 14
    • P-384: 10
    • P-521: 8
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 7
pdf_data/st_keywords/tee_name
  • AMD:
    • PSP: 37
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 5
  • ISO:
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 2
    • ISO/IEC 9796-2: 1
  • NIST:
    • SP 800-90A: 1
    • SP 800-90B: 2
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 3526: 2
    • RFC 4251: 2
    • RFC 4252: 1
    • RFC 4253: 3
    • RFC 4254: 1
    • RFC 5077: 1
    • RFC 5656: 1
    • RFC 6668: 1
    • RFC3526: 1
    • RFC4344: 1
    • RFC5656: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • 10 1.5.5 Summary of Out of Scope Items : 1
    • 10 1.5.5 Summary of Out of Scope Items ...................................................................................10 2: 1
    • Out of Scope: 2
    • for remote administration; • Serial connection client for local administration. 1.5.5 Summary of Out of Scope Items • Use of telnet, since it violates the Trusted Path requirement set (see Section 5.7.2) • Use: 1
pdf_data/st_metadata
  • /Author: Guillaume Fumaroli
  • /CreationDate: D:20220907162051Z
  • /Creator: disclosed
  • /Keywords: operating system, separation kernel, MILS, multiple independent levels of security, virtualization, hypervisor, embedded, BSI-VS-AP-0015-2019, qualification renforcé
  • /ModDate: D:20220907162051Z
  • /PTEX.Fullbanner: This is pdfTeX, Version 3.1415926-2.4-1.40.13 (TeX Live 2012/Debian) kpathsea version 6.1.0
  • /Producer: disclosed
  • /Subject:
  • /Title: Security Target PikeOS Separation Kernel v5.1.3
  • /Trapped: /False
  • pdf_file_size_bytes: 1057120
  • pdf_hyperlinks: mailto:[email protected], mailto:[email protected], mailto:[email protected], https://www.sysgo.com
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 63
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different