Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition
CRP257
STARCOS 3.4 Health eGK C1
BSI-DSZ-CC-0533-2009
name Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition STARCOS 3.4 Health eGK C1
category Access Control Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme UK DE
not_valid_after 28.02.2016 01.09.2019
not_valid_before 28.02.2011 30.04.2009
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp257.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0533a.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/t007-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0533b.pdf
manufacturer Citrix Systems, Inc. G+D Mobile Security GmbH
manufacturer_web https://www.citrix.com https://www.gi-de.com/de/de/mobile-security/
security_level EAL2+, ALC_FLR.2 EAL4+, ALC_DVS.2, AVA_MSU.3, AVA_VLA.4
dgst d87a9be3bb5e7640 14a5c53ecf382027
heuristics/cert_id CRP257 BSI-DSZ-CC-0533-2009
heuristics/cert_lab [] BSI
heuristics/direct_transitive_cves CVE-2016-4810, CVE-2016-6493 {}
heuristics/indirect_transitive_cves CVE-2014-4700, CVE-2016-4810, CVE-2016-6493 {}
heuristics/extracted_sars ALC_FLR.2, ADV_ARC.1, ATE_COV.1, AGD_OPE.1, AGD_PRE.1, ALC_DEL.1, ASE_SPD.1, ADV_TDS.1, ASE_OBJ.2, ASE_REQ.2, AVA_VAN.2, ATE_FUN.1, ASE_TSS.1, ATE_IND.2, ALC_CMC.2, ASE_CCL.1, ALC_CMS.2, ASE_ECD.1, ASE_INT.1, ADV_FSP.2 ADV_FSP.1, ADV_SPM.1, ALC_TAT.1, ADV_LLD.1, AGD_USR.1, ADV_HLD.2, AGD_ADM.1, ADV_RCR.1, ALC_LCD.1, ADV_IMP.2, AVA_VLA.4, AVA_MSU.3, ALC_DVS.2
heuristics/extracted_versions 6.0 3.4
heuristics/report_references/directly_referenced_by CRP282 {}
heuristics/report_references/directly_referencing CRP241 BSI-DSZ-CC-0406-2007, BSI-DSZ-CC-0410-2007
heuristics/report_references/indirectly_referenced_by CRP281, CRP282 {}
heuristics/report_references/indirectly_referencing CRP241 BSI-DSZ-CC-0322-2005, BSI-DSZ-CC-0266-2005, BSI-DSZ-CC-0410-2007, BSI-DSZ-CC-0406-2007, BSI-DSZ-CC-0223-2003, BSI-DSZ-CC-0404-2007, BSI-DSZ-CC-0169-2002
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-0410-2007
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-0410-2007
maintenance_updates

pdf_data/report_filename crp257.pdf 0533a.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-0533-2009
    • cert_item: STARCOS 3.4 Health eGK C1
    • cert_lab: BSI
    • developer: Giesecke & Devrient GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
pdf_data/report_keywords/cc_cert_id
  • UK:
    • CRP241: 2
    • CRP257: 1
  • DE:
    • BSI-DSZ-CC-0406-2007: 3
    • BSI-DSZ-CC-0410-2007: 1
    • BSI-DSZ-CC-0410-2007-MA-04: 1
    • BSI-DSZ-CC-0533-2009: 22
    • BSI-DSZ-CC-430-2008: 1
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0020-V2-2007-: 2
    • BSI-PP-0020-V2-2007-MA02: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL2: 3
    • EAL2 augmented: 2
  • EAL:
    • EAL 1: 1
    • EAL 4: 9
    • EAL 4 augmented: 3
    • EAL 7: 1
    • EAL1: 5
    • EAL2: 3
    • EAL3: 4
    • EAL4: 7
    • EAL5: 6
    • EAL5+: 1
    • EAL6: 3
    • EAL7: 4
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 3
  • ACM:
    • ACM_AUT: 2
    • ACM_AUT.1: 1
    • ACM_CAP: 2
    • ACM_CAP.4: 1
    • ACM_SCP: 2
    • ACM_SCP.2: 1
  • ADO:
    • ADO_DEL: 2
    • ADO_DEL.2: 1
    • ADO_IGS: 2
    • ADO_IGS.1: 1
  • ADV:
    • ADV_FSP: 2
    • ADV_HLD: 2
    • ADV_IMP: 2
    • ADV_IMP.2: 5
    • ADV_INT: 2
    • ADV_LLD: 2
    • ADV_RCR: 2
    • ADV_SPM: 2
  • AGD:
    • AGD_ADM: 2
    • AGD_USR: 2
  • ALC:
    • ALC_DVS: 2
    • ALC_DVS.1: 1
    • ALC_FLR: 2
    • ALC_LCD: 1
    • ALC_LCD.1: 1
    • ALC_TAT: 2
    • ALC_TAT.1: 1
  • APE:
    • APE_DES: 1
    • APE_ENV: 1
    • APE_INT: 1
    • APE_OBJ: 1
    • APE_REQ: 1
    • APE_SRE: 1
  • ASE:
    • ASE_DES: 1
    • ASE_ENV: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_PPC: 1
    • ASE_REQ: 1
    • ASE_SRE: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 2
    • ATE_DPT: 2
    • ATE_FUN: 4
    • ATE_IND: 5
  • AVA:
    • AVA_CCA: 2
    • AVA_MSU: 2
    • AVA_MSU.3: 5
    • AVA_SOF: 3
    • AVA_VLA: 6
    • AVA_VLA.2: 1
    • AVA_VLA.3: 1
    • AVA_VLA.4: 6
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • GD:
    • G&D: 2
    • Giesecke & Devrient: 19
  • NXP:
    • NXP: 7
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 3
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • Triple-DES: 2
    • DES:
      • DES: 1
pdf_data/report_keywords/asymmetric_crypto
  • RSA:
    • RSA 2048: 1
pdf_data/report_keywords/hash_function
  • MD:
    • MD5:
      • MD5: 3
  • SHA:
    • SHA2:
      • SHA-256: 2
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 4
  • TLS:
    • TLS:
      • TLS: 7
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • DFA: 1
    • malfunction: 1
    • physical tampering: 1
  • SCA:
    • DPA: 1
    • SPA: 1
  • other:
    • JIL: 5
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
    • BSI TR-03116: 2
pdf_data/report_keywords/os_name
  • STARCOS:
    • STARCOS 3: 37
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140-2: 1
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 20: 2
    • AIS 25: 2
    • AIS 26: 3
    • AIS 31: 2
    • AIS 32: 1
    • AIS 34: 4
    • AIS 35: 2
    • AIS 36: 3
    • AIS 37: 1
    • AIS 38: 1
    • AIS20: 1
    • AIS31: 1
    • AIS38: 1
  • FIPS:
    • FIPS 180-2: 1
    • FIPS PUB 46-3: 1
  • ISO:
    • ISO/IEC 15408:2005: 3
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • C1 (confidential document) [9] Security Target BSI-DSZ-CC-0533-2009, Version 1.0, 16.04.2009, Security Target Lite STARCOS 3: 1
    • Health eGK C1, TÜV Informationstechnik GmbH (confidential document) [8] Configuration list for the TOE, Version 1.7, 16.04.2009, Configuration List STARCOS 3.4 Health: 1
    • P5CD080V0B Secure Smart Card Controller, Version 1.1, 23.04.2008, BSI-DSZ-CC-430-2008, T-Systems (confidential document) [12] Certification Report for NXP Secure Smart Card Controller P5CD080V0B, P5CN080V0B and: 1
    • Version 1.0, 16.04.2009, Security Target STARCOS 3.4 Health eGK C1, Giesecke & Devrient GmbH (confidential document) [7] Evaluation Technical Report, Version 3, 23.04.2009, Evaluation Technikal Report for STARCOS 3: 1
pdf_data/report_metadata
  • /Author:
  • /Company: Certification Body, CESG
  • /CreationDate: D:20110302122612Z
  • /Creator: Acrobat PDFMaker 7.0.5 for Word
  • /ModDate: D:20110302154835Z
  • /Producer: Acrobat Elements 7.0.5 (Windows)
  • /Title: Certification Report CRP257
  • /_AdHocReviewCycleID: 1808337809
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: Word to PDF
  • pdf_file_size_bytes: 390909
  • pdf_hyperlinks: https://www.citrix.com/lang/English/support.asp
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20090512075200+02'00'
  • /Creator: Writer
  • /Keywords: "STARCOS 3.4 Health eGK C1, Giesecke & Devrient GmbH, Common Criteria, Zertifizierung, Certification"
  • /ModDate: D:20090518112427+02'00'
  • /Producer: StarOffice 9
  • /Subject: Common Criteria Zertifizierung
  • /Title: Certification Report BSI-DSZ-CC-0533-2009
  • pdf_file_size_bytes: 403782
  • pdf_hyperlinks: https://certificates.gi-de.com/, http://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 38
pdf_data/st_filename t007-st.pdf 0533b.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0410-2007: 2
    • BSI-DSZ-CC-0410-2007-MA-04: 1
  • NL:
    • CC-0410-2007: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-****: 1
    • BSI-PP-0002: 2
    • BSI-PP-0002-2001: 1
    • BSI-PP-0005-: 1
    • BSI-PP-0006-2002T: 1
    • BSI-PP-0020-V2_5-2008: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 1
  • EAL:
    • EAL4: 11
    • EAL4 augmented: 2
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 6
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
  • ADO:
    • ADO_IGS.1: 1
  • ADV:
    • ADV_FSP.1: 2
    • ADV_HLD.2: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 6
    • ADV_LLD.1: 2
    • ADV_RCR.1: 1
    • ADV_SPM.1: 2
  • AGD:
    • AGD_ADM.1: 2
    • AGD_USR.1: 2
  • ALC:
    • ALC_TAT.1: 1
  • AVA:
    • AVA_MSU.3: 5
    • AVA_VLA.4: 6
pdf_data/st_keywords/cc_sfr
  • FCO:
    • FCO_SCO: 8
    • FCO_SCO.1: 8
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 7
    • FCS_ECA.1: 5
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 17
    • FDP_ACC.1: 5
    • FDP_ACF: 14
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
  • FIA:
    • FIA_ATD: 7
    • FIA_ATD.1: 1
    • FIA_UAU: 6
    • FIA_UAU.2: 1
    • FIA_UID: 8
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 8
    • FMT_MOF.1: 1
    • FMT_MSA: 25
    • FMT_MSA.1: 4
    • FMT_MSA.3: 6
    • FMT_SMF: 12
    • FMT_SMF.1: 3
    • FMT_SMR: 14
    • FMT_SMR.1: 6
  • FCS:
    • FCS_CKM: 7
    • FCS_CKM.1: 24
    • FCS_CKM.2: 2
    • FCS_CKM.4: 26
    • FCS_CKM.4.1: 3
    • FCS_COP: 44
    • FCS_COP.1: 27
    • FCS_RND: 9
    • FCS_RND.1: 13
    • FCS_RND.1.1: 4
  • FDP:
    • FDP_ACC.1: 7
    • FDP_ACC.2: 12
    • FDP_ACC.2.1: 4
    • FDP_ACC.2.2: 4
    • FDP_ACF: 1
    • FDP_ACF.1: 13
    • FDP_ACF.1.1: 3
    • FDP_ACF.1.2: 3
    • FDP_ACF.1.3: 3
    • FDP_ACF.1.4: 3
    • FDP_IFC.1: 4
    • FDP_ITC.1: 16
    • FDP_ITC.2: 15
    • FDP_RIP: 14
    • FDP_RIP.1: 11
    • FDP_RIP.1.1: 2
    • FDP_SDI.1: 2
    • FDP_SDI.2: 5
    • FDP_SDI.2.1: 3
    • FDP_SDI.2.2: 3
    • FDP_UCT.1: 11
    • FDP_UCT.1.1: 3
    • FDP_UIT.1: 6
    • FDP_UIT.1.1: 3
    • FDP_UIT.1.2: 3
  • FIA:
    • FIA_AFL: 42
    • FIA_AFL.1: 25
    • FIA_ATD.1: 7
    • FIA_ATD.1.1: 3
    • FIA_UAU.1: 14
    • FIA_UAU.1.1: 3
    • FIA_UAU.1.2: 3
    • FIA_UAU.4: 8
    • FIA_UAU.4.1: 3
    • FIA_UID.1: 8
    • FIA_UID.1.1: 3
    • FIA_UID.1.2: 3
  • FMT:
    • FMT_LIM: 6
    • FMT_LIM.1: 20
    • FMT_LIM.1.1: 4
    • FMT_LIM.2: 19
    • FMT_LIM.2.1: 3
    • FMT_MSA.1: 1
    • FMT_MSA.2: 19
    • FMT_MSA.3: 2
    • FMT_MTD: 27
    • FMT_MTD.1: 19
    • FMT_SMF.1: 19
    • FMT_SMF.1.1: 3
    • FMT_SMR.1: 19
    • FMT_SMR.1.1: 3
    • FMT_SMR.1.2: 3
  • FPT:
    • FPT_AMT.1: 2
    • FPT_FLS.1: 9
    • FPT_FLS.1.1: 3
    • FPT_PHP.3: 9
    • FPT_PHP.3.1: 3
    • FPT_RVM.1: 10
    • FPT_RVM.1.1: 3
    • FPT_SEP.1: 10
    • FPT_SEP.1.1: 3
    • FPT_SEP.1.2: 3
    • FPT_TST.1: 11
    • FPT_TST.1.1: 3
    • FPT_TST.1.2: 3
    • FPT_TST.1.3: 3
  • FTP:
    • FTP_ITC.1: 14
    • FTP_ITC.1.1: 3
    • FTP_ITC.1.2: 3
    • FTP_ITC.1.3: 3
    • FTP_TRP.1: 4
pdf_data/st_keywords/cc_claims
  • O:
    • O.TLS-TOE: 10
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 18
  • GD:
    • G&D: 1
    • Giesecke & Devrient: 8
  • NXP:
    • NXP: 10
    • NXP Semiconductors: 2
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • DES:
    • 3DES:
      • Triple-DES: 2
  • AES_competition:
    • AES:
      • AES: 1
    • HPC:
      • HPC: 16
  • DES:
    • 3DES:
      • 3-DES: 1
      • TDES: 3
      • Triple-DES: 3
    • DES:
      • DES: 1
pdf_data/st_keywords/asymmetric_crypto
  • RSA:
    • RSA2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 5
      • SHA-224: 1
      • SHA-256: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 16
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • TLS:
    • TLS:
      • TLS: 33
  • TLS:
    • SSL:
      • SSL: 1
pdf_data/st_keywords/randomness
  • TRNG:
    • TRNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 2
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • Malfunction: 3
    • Physical Tampering: 2
    • Physical tampering: 1
    • fault injection: 1
    • malfunction: 4
    • physical tampering: 7
  • SCA:
    • DPA: 1
    • physical probing: 5
    • side channel: 1
    • side channels: 2
  • other:
    • Bleichenbacher attack: 1
    • reverse engineering: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-03116: 2
pdf_data/st_keywords/os_name
  • STARCOS:
    • STARCOS 3: 16
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 3
    • FIPS 140-2: 7
    • FIPS140: 1
    • FIPS140-2: 9
  • BSI:
    • AIS 20: 1
    • AIS20: 2
    • AIS31: 2
  • CC:
    • CCIMB-2005-08-001: 1
    • CCIMB-2005-08-002: 1
    • CCIMB-2005-08-003: 1
    • CCIMB-2005-08-004: 1
    • CCMB-2005-08-001: 1
    • CCMB-2005-08-002: 1
  • FIPS:
    • FIPS PUB 46-3: 1
  • ISO:
    • ISO/IEC 7816-4: 1
  • X509:
    • X.509: 6
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • and hence all additional functionality supplied by these other products and components, are out of scope. The evaluated configuration covers only the publishing of applications; streaming of applications: 1
    • 22 1.4.3 Summary of items out of scope of the TOE : 1
    • 22 1.4.3 Summary of items out of scope of the TOE ........................................22 1.4.4 Required non-TOE: 1
    • TOE components, they do not form part of the logical boundary of the TOE. 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components on which Citrix: 1
    • out of scope: 4
  • OutOfScope:
    • FDP_ACF.1 Note by the ST-author 32: Keys and other data for creation of qualified signatures are out of scope of this Security Target. The TOE shall meet the requirement “Security attribute based access: 1
    • out of scope: 1
pdf_data/st_metadata
  • /Author: SiVenture
  • /CreationDate: D:20110210122512Z
  • /Creator: Microsoft® Office Word 2007
  • /ModDate: D:20110302154939Z
  • /Producer: Microsoft® Office Word 2007
  • /Title: CIN4-STt-0001
  • pdf_file_size_bytes: 679246
  • pdf_hyperlinks: http://www.commoncriteriaportal.org/, http://www.citrix.com/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 55
  • /Author: Giesecke & Devrient GmbH
  • /CreationDate: D:20090416131128+02'00'
  • /Creator: PScript5.dll Version 5.2.2
  • /Keywords: Common Criteria; CC; eGK; Gesundheitskarte; Giesecke & Devrient; G&D
  • /ModDate: D:20090514102835+02'00'
  • /Producer: Acrobat Distiller 7.0 (Windows)
  • /Title: Security Target Lite, STARCOS 3.4 Health eGK C1
  • pdf_file_size_bytes: 382562
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 108
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different