Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition
CRP257
STARCOS 3.4 Health AHC C1
BSI-DSZ-CC-0601-2010
name Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition STARCOS 3.4 Health AHC C1
category Access Control Devices and Systems Products for Digital Signatures
scheme UK DE
not_valid_after 28.02.2016 01.09.2019
not_valid_before 28.02.2011 25.01.2010
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp257.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0601a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/t007-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0601b_pdf.pdf
manufacturer Citrix Systems, Inc. G+D Mobile Security GmbH
manufacturer_web https://www.citrix.com https://www.gi-de.com/de/de/mobile-security/
security_level EAL2+, ALC_FLR.2 EAL4+
dgst d87a9be3bb5e7640 25e85b615092caa9
heuristics/cert_id CRP257 BSI-DSZ-CC-0601-2010
heuristics/cert_lab [] BSI
heuristics/direct_transitive_cves CVE-2016-4810 {}
heuristics/indirect_transitive_cves CVE-2014-4700, CVE-2016-6493, CVE-2016-4810 {}
heuristics/extracted_sars ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ALC_FLR.2, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1 ADV_TDS.3, ALC_FLR.3, ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, AVA_VAN.5, ASE_INT.1, ALC_CMC.4, ADV_COMP.1, APE_ECD.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ATE_DPT.1, ASE_ECD.1, APE_OBJ.2, ADV_IMP.1, ALC_LCD.1, ADV_FSP.4, ASE_SPD.1, ALC_COMP.1, APE_INT.1, ATE_COV.2, ADV_INT.3, ALC_DVS.1, ALC_TAT.1, APE_CCL.1, AGD_OPE.1, ALC_CMS.4, APE_SPD.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1, ADV_SPM.1, APE_REQ.2
heuristics/extracted_versions 6.0 3.4
heuristics/report_references/directly_referenced_by CRP282 {}
heuristics/report_references/directly_referencing CRP241 BSI-DSZ-CC-0466-2008
heuristics/report_references/indirectly_referenced_by CRP282, CRP281 {}
heuristics/report_references/indirectly_referencing CRP241 BSI-DSZ-CC-0466-2008
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-0466-2008
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-0466-2008
pdf_data/report_filename crp257.pdf 0601a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-0601-2010
    • cert_item: STARCOS 3.4 Health AHC C1
    • cert_lab: BSI
    • developer: Giesecke & Devrient GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
pdf_data/report_keywords/cc_cert_id
  • UK:
    • CRP241: 2
    • CRP257: 1
  • DE:
    • BSI-DSZ-CC-0466: 1
    • BSI-DSZ-CC-0466-2008: 3
    • BSI-DSZ-CC-0601: 2
    • BSI-DSZ-CC-0601-2010: 20
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0059-: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL2: 3
    • EAL2 augmented: 2
  • EAL:
    • EAL 1: 1
    • EAL 4: 11
    • EAL 4 augmented: 3
    • EAL 7: 1
    • EAL1: 6
    • EAL2: 3
    • EAL3: 4
    • EAL4: 4
    • EAL5: 6
    • EAL5+: 1
    • EAL6: 3
    • EAL7: 4
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 3
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 1
    • ADV_COMP.1: 1
    • ADV_FSP: 1
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 1
    • ADV_FSP.4: 1
    • ADV_FSP.5: 1
    • ADV_FSP.6: 1
    • ADV_IMP: 1
    • ADV_IMP.1: 1
    • ADV_IMP.2: 1
    • ADV_INT: 1
    • ADV_INT.1: 1
    • ADV_INT.2: 1
    • ADV_INT.3: 1
    • ADV_SPM: 1
    • ADV_SPM.1: 1
    • ADV_TDS: 1
    • ADV_TDS.1: 1
    • ADV_TDS.2: 1
    • ADV_TDS.3: 1
    • ADV_TDS.4: 1
    • ADV_TDS.5: 1
    • ADV_TDS.6: 1
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 1
    • AGD_PRE: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.1: 1
    • ALC_CMC.2: 1
    • ALC_CMC.3: 1
    • ALC_CMC.4: 2
    • ALC_CMC.5: 1
    • ALC_CMS: 1
    • ALC_CMS.1: 1
    • ALC_CMS.2: 1
    • ALC_CMS.3: 1
    • ALC_CMS.4: 2
    • ALC_CMS.5: 1
    • ALC_COMP.1: 1
    • ALC_DEL: 1
    • ALC_DEL.1: 2
    • ALC_DVS: 1
    • ALC_DVS.1: 2
    • ALC_DVS.2: 1
    • ALC_FLR: 1
    • ALC_FLR.1: 1
    • ALC_FLR.2: 1
    • ALC_FLR.3: 1
    • ALC_LCD.1: 2
    • ALC_LCD.2: 1
    • ALC_TAT: 1
    • ALC_TAT.1: 2
    • ALC_TAT.2: 1
    • ALC_TAT.3: 1
  • APE:
    • APE_CCL.1: 1
    • APE_ECD.1: 1
    • APE_INT.1: 1
    • APE_OBJ.1: 1
    • APE_OBJ.2: 1
    • APE_REQ.1: 1
    • APE_REQ.2: 1
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 1
    • ASE_ECD: 1
    • ASE_ECD.1: 1
    • ASE_INT: 1
    • ASE_INT.1: 1
    • ASE_OBJ: 1
    • ASE_OBJ.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.1: 1
    • ASE_REQ.2: 1
    • ASE_SPD: 1
    • ASE_SPD.1: 1
    • ASE_TSS: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 1
    • ATE_COV.2: 1
    • ATE_COV.3: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_DPT.2: 1
    • ATE_DPT.3: 1
    • ATE_DPT.4: 1
    • ATE_FUN: 3
    • ATE_FUN.1: 1
    • ATE_FUN.2: 1
    • ATE_IND: 3
    • ATE_IND.1: 1
    • ATE_IND.2: 1
    • ATE_IND.3: 1
  • AVA:
    • AVA_VAN: 4
    • AVA_VAN.1: 1
    • AVA_VAN.2: 1
    • AVA_VAN.3: 1
    • AVA_VAN.4: 1
    • AVA_VAN.5: 6
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • GD:
    • G&D: 4
    • Giesecke & Devrient: 18
  • NXP:
    • NXP: 9
    • NXP Semiconductors: 1
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 2
    • TÜViT: 1
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • Triple-DES: 2
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 9
pdf_data/report_keywords/hash_function
  • MD:
    • MD5:
      • MD5: 3
  • SHA:
    • SHA2:
      • SHA-2: 1
      • SHA-256: 5
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 4
  • TLS:
    • TLS:
      • TLS: 7
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • Malfunction: 1
    • physical tampering: 2
  • SCA:
    • DPA: 1
    • SPA: 1
  • other:
    • JIL: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
pdf_data/report_keywords/os_name
  • STARCOS:
    • STARCOS 3: 44
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140-2: 1
  • BSI:
    • AIS 1: 1
    • AIS 14: 1
    • AIS 19: 1
    • AIS 20: 4
    • AIS 25: 2
    • AIS 26: 2
    • AIS 31: 1
    • AIS 32: 1
    • AIS 34: 3
    • AIS 35: 2
    • AIS 36: 3
    • AIS 37: 2
    • AIS 38: 2
    • AIS36: 1
  • FIPS:
    • FIPS 180-2: 1
    • FIPS 46-3: 2
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 8] Evaluation Technical Report STARCOS 3.4 Health AHC C1, Version 3, 17.12.2009, TÜViT GmbH (confidential document) [9] ETR-lite for composition according to AIS 36 for the Product STARCOS 3.4 Health AHC C1: 1
    • AHC C1 (confidential document) 8 specifically • AIS 20, Version 1, 2. December 1999, Funktionalitätsklassen und: 1
    • Version 2.3, 17.12.2009, Security Target STARCOS 3.4 Health AHC C1, Giesecke & Devrient GmbH (confidential document) [7] Security Target BSI-DSZ-CC-0601, Version 2.3, 17.12.2009, Security Target Lite STARCOS 3.4: 1
    • composition according to AIS36 / NXP P5CC052V0A Secure Smart Card Controller, T-Systems GEI GmbH (confidential document) [10] Configuration list for the TOE, Version 1.4, 17.12.2009, Configuration List STARCOS 3.4: 1
  • OutOfScope:
    • out of scope: 1
    • the cryptographic functionality implemented in the TOE. Hereby, the TOE's SHA-256 functionality was out of scope under the aspect of confidentiality. The primary focus for devising penetration tests was to cover: 1
pdf_data/report_metadata
  • /Author:
  • /Company: Certification Body, CESG
  • /CreationDate: D:20110302122612Z
  • /Creator: Acrobat PDFMaker 7.0.5 for Word
  • /ModDate: D:20110302154835Z
  • /Producer: Acrobat Elements 7.0.5 (Windows)
  • /Title: Certification Report CRP257
  • /_AdHocReviewCycleID: 1808337809
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: Word to PDF
  • pdf_file_size_bytes: 390909
  • pdf_hyperlinks: https://www.citrix.com/lang/English/support.asp
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20100222090038+01'00'
  • /Creator: Writer
  • /Keywords: Zertifizierung, Common Criteria, STARCOS 3.4 Health AHC C1, G&D, Giesecke & Devrient GmbH
  • /ModDate: D:20100222094506+01'00'
  • /Producer: StarOffice 9
  • /Subject: Common Criteria Certification
  • /Title: Certification Report BSI-DSZ-CC-0601-2010
  • pdf_file_size_bytes: 1082440
  • pdf_hyperlinks: https://www.bsi.bund.de/, https://certificates.gi-de.com/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 42
pdf_data/st_filename t007-st.pdf 0601b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0466-2008: 2
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0002-2001: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 1
  • EAL:
    • EAL 4: 2
    • EAL4: 7
    • EAL4 augmented: 4
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 6
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
  • ADV:
    • ADV_ARC.1: 3
    • ADV_FSP.4: 2
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 2
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.5: 6
pdf_data/st_keywords/cc_sfr
  • FCO:
    • FCO_SCO: 8
    • FCO_SCO.1: 8
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 7
    • FCS_ECA.1: 5
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 17
    • FDP_ACC.1: 5
    • FDP_ACF: 14
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
  • FIA:
    • FIA_ATD: 7
    • FIA_ATD.1: 1
    • FIA_UAU: 6
    • FIA_UAU.2: 1
    • FIA_UID: 8
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 8
    • FMT_MOF.1: 1
    • FMT_MSA: 25
    • FMT_MSA.1: 4
    • FMT_MSA.3: 6
    • FMT_SMF: 12
    • FMT_SMF.1: 3
    • FMT_SMR: 14
    • FMT_SMR.1: 6
  • FAU:
    • FAU_GEN: 1
  • FCS:
    • FCS_CKM.1: 13
    • FCS_CKM.1.1: 2
    • FCS_CKM.2: 2
    • FCS_CKM.4: 11
    • FCS_CKM.4.1: 1
    • FCS_COP.1: 7
    • FCS_COP.1.1: 1
  • FDP:
    • FDP_ACC: 23
    • FDP_ACC.1: 18
    • FDP_ACF: 14
    • FDP_ACF.1: 19
    • FDP_DAU: 6
    • FDP_DAU.1: 1
    • FDP_DAU.2: 3
    • FDP_IFC.1: 8
    • FDP_ITC.1: 4
    • FDP_ITC.2: 4
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
    • FDP_SDI: 11
    • FDP_SDI.1: 2
    • FDP_SDI.2: 5
  • FIA:
    • FIA_AFL.1: 5
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_API: 6
    • FIA_API.1: 7
    • FIA_API.1.1: 2
    • FIA_UAU.1: 8
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UID.1: 13
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MOF.1: 6
    • FMT_MOF.1.1: 1
    • FMT_MSA: 11
    • FMT_MSA.1: 5
    • FMT_MSA.2: 6
    • FMT_MSA.2.1: 1
    • FMT_MSA.3: 16
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MSA.4: 7
    • FMT_MSA.4.1: 3
    • FMT_MTD: 10
    • FMT_MTD.1: 3
    • FMT_SMF.1: 22
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 23
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_FLS.1: 6
    • FPT_FLS.1.1: 1
    • FPT_PHP.1: 6
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_PHP.3: 6
    • FPT_PHP.3.1: 2
    • FPT_TST: 2
    • FPT_TST.1: 11
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FTP:
    • FTP_ITC: 6
    • FTP_ITC.1: 4
    • FTP_ITC.1.1: 1
pdf_data/st_keywords/cc_claims
  • O:
    • O.TLS-TOE: 10
  • A:
    • A.CGA: 3
    • A.SCA: 3
  • OE:
    • OE.CGA_SSCD: 9
    • OE.CGA_TC_SVD: 9
    • OE.HID_VAD: 3
  • OT:
    • OT.TOE_SSCD: 12
    • OT.TOE_TC_SVD_EXP: 5
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 18
  • GD:
    • G&D: 5
    • Giesecke & Devrient: 7
  • NXP:
    • NXP: 2
    • NXP Semiconductors: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • DES:
    • 3DES:
      • Triple-DES: 2
  • DES:
    • DES:
      • DES: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 2
  • RSA:
    • RSA2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-2: 1
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • TLS:
    • TLS:
      • TLS: 33
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 2
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 1
    • fault injection: 1
    • physical tampering: 13
  • SCA:
    • DPA: 2
    • SPA: 2
    • timing attacks: 2
pdf_data/st_keywords/os_name
  • STARCOS:
    • STARCOS 3: 95
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 3
    • FIPS 140-2: 7
    • FIPS140: 1
    • FIPS140-2: 9
  • BSI:
    • AIS 20: 1
    • AIS 31: 1
    • AIS20: 1
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • and hence all additional functionality supplied by these other products and components, are out of scope. The evaluated configuration covers only the publishing of applications; streaming of applications: 1
    • 22 1.4.3 Summary of items out of scope of the TOE : 1
    • 22 1.4.3 Summary of items out of scope of the TOE ........................................22 1.4.4 Required non-TOE: 1
    • TOE components, they do not form part of the logical boundary of the TOE. 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components on which Citrix: 1
    • out of scope: 4
pdf_data/st_metadata
  • /Author: SiVenture
  • /CreationDate: D:20110210122512Z
  • /Creator: Microsoft® Office Word 2007
  • /ModDate: D:20110302154939Z
  • /Producer: Microsoft® Office Word 2007
  • /Title: CIN4-STt-0001
  • pdf_file_size_bytes: 679246
  • pdf_hyperlinks: http://www.citrix.com/, http://www.commoncriteriaportal.org/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 55
  • /Author: Giesecke&Devrient GmbH
  • /Comments: Final Version
  • /Company: Giesecke & Devrient
  • /CreationDate: D:20091217144542+01'00'
  • /Creator: Acrobat PDFMaker 8.1 für Word
  • /Keywords: Security Target Lite; STARCOS 3.4 Health AHC C1; SSCD
  • /ModDate: D:20091217145337+01'00'
  • /Producer: Acrobat Distiller 8.1.0 (Windows)
  • /SourceModified: D:20091217134518
  • /Subject: Security Target Lite STARCOS 3.4 Health AHC C1, Version 2.3/17.12.09
  • /Title: Security Target Lite STARCOS 3.4 Health AHC C1, Version 2.3/17.12.09
  • pdf_file_size_bytes: 444187
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 72
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different