| name |
Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition |
ID One™ ePass v2.1 with configuration BAC on NXP P5CD040V0B, P5CD080V0B, P5CD144V0B |
| category |
Access Control Devices and Systems |
ICs, Smart Cards and Smart Card-Related Devices and Systems |
| scheme |
UK |
FR |
| status |
archived |
archived |
| not_valid_after |
28.02.2016 |
01.09.2019 |
| not_valid_before |
28.02.2011 |
23.07.2009 |
| cert_link |
None |
None |
| report_link |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp257.pdf |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-2009_20en.pdf |
| st_link |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/t007-st.pdf |
https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/anssi-cible2009_20en.pdf |
| manufacturer |
Citrix Systems, Inc. |
Oberthur Card System / Philips (NXP) |
| manufacturer_web |
https://www.citrix.com |
https://www.oberthur.com/ |
| security_level |
EAL2+, ALC_FLR.2 |
EAL4+, ALC_DVS.2 |
| dgst |
d87a9be3bb5e7640 |
c3c75f22bb67e59e |
| heuristics/cert_id |
CRP257 |
ANSSI-CC-2009/20 |
| heuristics/cert_lab |
[] |
CEACI |
| heuristics/cpe_matches |
{} |
{} |
| heuristics/verified_cpe_matches |
{} |
{} |
| heuristics/related_cves |
{} |
{} |
| heuristics/direct_transitive_cves |
CVE-2016-4810 |
{} |
| heuristics/indirect_transitive_cves |
CVE-2014-4700, CVE-2016-6493, CVE-2016-4810 |
{} |
| heuristics/extracted_sars |
ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ALC_FLR.2, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1 |
ALC_DVS.2, AVA_VAN.3, AVA_VLA.2, AVA_MSU.3, ADV_ARC.1 |
| heuristics/extracted_versions |
6.0 |
2.1 |
| heuristics/prev_certificates |
{} |
{} |
| heuristics/next_certificates |
{} |
{} |
| heuristics/report_references/directly_referenced_by |
CRP282 |
{} |
| heuristics/report_references/directly_referencing |
CRP241 |
BSI-DSZ-CC-0410-2007, BSI-DSZ-CC-0404-2007, BSI-DSZ-CC-0411-2007 |
| heuristics/report_references/indirectly_referenced_by |
CRP282, CRP281 |
{} |
| heuristics/report_references/indirectly_referencing |
CRP241 |
BSI-DSZ-CC-0410-2007, BSI-DSZ-CC-0404-2007, BSI-DSZ-CC-0411-2007 |
| heuristics/scheme_data |
|
|
| heuristics/st_references/directly_referenced_by |
{} |
{} |
| heuristics/st_references/directly_referencing |
{} |
{} |
| heuristics/st_references/indirectly_referenced_by |
{} |
{} |
| heuristics/st_references/indirectly_referencing |
{} |
{} |
| heuristics/protection_profiles |
{} |
{} |
| maintenance_updates |
|
|
| protection_profiles |
|
|
| protection_profile_links |
{} |
{} |
| pdf_data/cert_filename |
None |
None |
| pdf_data/cert_frontpage |
|
|
| pdf_data/cert_keywords/cc_cert_id |
|
|
| pdf_data/cert_keywords/cc_protection_profile_id |
|
|
| pdf_data/cert_keywords/cc_security_level |
|
|
| pdf_data/cert_keywords/cc_sar |
|
|
| pdf_data/cert_keywords/cc_sfr |
|
|
| pdf_data/cert_keywords/cc_claims |
|
|
| pdf_data/cert_keywords/vendor |
|
|
| pdf_data/cert_keywords/eval_facility |
|
|
| pdf_data/cert_keywords/symmetric_crypto |
|
|
| pdf_data/cert_keywords/asymmetric_crypto |
|
|
| pdf_data/cert_keywords/pq_crypto |
|
|
| pdf_data/cert_keywords/hash_function |
|
|
| pdf_data/cert_keywords/crypto_scheme |
|
|
| pdf_data/cert_keywords/crypto_protocol |
|
|
| pdf_data/cert_keywords/randomness |
|
|
| pdf_data/cert_keywords/cipher_mode |
|
|
| pdf_data/cert_keywords/ecc_curve |
|
|
| pdf_data/cert_keywords/crypto_engine |
|
|
| pdf_data/cert_keywords/tls_cipher_suite |
|
|
| pdf_data/cert_keywords/crypto_library |
|
|
| pdf_data/cert_keywords/vulnerability |
|
|
| pdf_data/cert_keywords/side_channel_analysis |
|
|
| pdf_data/cert_keywords/technical_report_id |
|
|
| pdf_data/cert_keywords/device_model |
|
|
| pdf_data/cert_keywords/tee_name |
|
|
| pdf_data/cert_keywords/os_name |
|
|
| pdf_data/cert_keywords/cplc_data |
|
|
| pdf_data/cert_keywords/ic_data_group |
|
|
| pdf_data/cert_keywords/standard_id |
|
|
| pdf_data/cert_keywords/javacard_version |
|
|
| pdf_data/cert_keywords/javacard_api_const |
|
|
| pdf_data/cert_keywords/javacard_packages |
|
|
| pdf_data/cert_keywords/certification_process |
|
|
| pdf_data/cert_metadata |
|
|
| pdf_data/report_filename |
crp257.pdf |
anssi-2009_20en.pdf |
| pdf_data/report_frontpage |
|
- FR:
- cc_security_level: EAL 4 augmented ALC_DVS.2
- cc_version: Common Criteria version 3.1
- cert_id: ANSSI-2009/20
- cert_item: ID One™ ePass v2.1 with configuration BAC on NXP P5CD040V0B, P5CD080V0B, P5CD144V0B
- cert_item_version: Revision 1 with optional code (patch) r2
- cert_lab: CEACI (Thales Security Systems – CNES) 18 avenue Edouard Belin, 31401 Toulouse Cedex 9, France Phone: +33 (0)5 61 28 16 51, email : [email protected]
- developer: Oberthur Technologies1 50 quai Michelet 92300 Levallois-Perret, France NXP Semiconductors GmbH1 Stresemannallee 101 D-22502 Hamburg, Germany Sponsor Oberthur Technologies 50 quai Michelet, 92300 Levallois-Perret, France
- match_rules: ['Certification report reference(.+)Product name(.+)Product reference(.+)Protection profile conformity(.+)Evaluation criteria and version(.+)Evaluation level(.+)Developers(.+)Evaluation facility(.+)Recognition arrangements']
- ref_protection_profiles: PP BAC] BSI-PP-0017 Common Criteria Protection Profile - Machine Readable Travel Document with “ICAO Application”, Basic Access Control
|
| pdf_data/report_keywords/cc_cert_id |
|
- DE:
- BSI-DSZ-CC-0404-2007: 4
- BSI-DSZ-CC-0410-2007: 3
- BSI-DSZ-CC-0411-2007: 4
- FR:
|
| pdf_data/report_keywords/cc_protection_profile_id |
|
- BSI:
- BSI-PP-0002-2001: 1
- BSI-PP-0017: 2
- BSI-PP-0026: 1
|
| pdf_data/report_keywords/cc_security_level |
- EAL:
- EAL2: 3
- EAL2 augmented: 2
|
- EAL:
- EAL 1: 1
- EAL 3: 1
- EAL 4: 2
- EAL 4 augmented: 2
- EAL 5: 1
- EAL 7: 1
- EAL4: 2
- EAL5: 1
- EAL7: 1
- ITSEC:
|
| pdf_data/report_keywords/cc_sar |
|
- ADO:
- ADV:
- ADV_ARC: 1
- ADV_FSP: 1
- ADV_IMP: 1
- ADV_TDS: 1
- AGD:
- ALC:
- ALC_CMC: 1
- ALC_CMS: 1
- ALC_DVS: 1
- ALC_DVS.2: 2
- ALC_FLR: 2
- ALC_TAT: 1
- ASE:
- ASE_CCL: 1
- ASE_ECD: 1
- ASE_INT: 1
- ASE_OBJ: 1
- ASE_REQ: 1
- ASE_SPD: 1
- ASE_TSS: 1
- ATE:
- ATE_COV: 1
- ATE_DPT: 1
- ATE_FUN: 1
- ATE_IND: 1
- AVA:
- AVA_MSU.3: 1
- AVA_VAN: 1
- AVA_VLA.4: 1
|
| pdf_data/report_keywords/cc_sfr |
|
|
| pdf_data/report_keywords/cc_claims |
|
|
| pdf_data/report_keywords/vendor |
|
- NXP:
- NXP: 7
- NXP Semiconductors: 3
- Oberthur:
- Oberthur: 1
- Oberthur Technologies: 11
- Thales:
|
| pdf_data/report_keywords/eval_facility |
|
|
| pdf_data/report_keywords/symmetric_crypto |
|
|
| pdf_data/report_keywords/asymmetric_crypto |
|
|
| pdf_data/report_keywords/pq_crypto |
|
|
| pdf_data/report_keywords/hash_function |
|
|
| pdf_data/report_keywords/crypto_scheme |
|
|
| pdf_data/report_keywords/crypto_protocol |
|
|
| pdf_data/report_keywords/randomness |
|
|
| pdf_data/report_keywords/cipher_mode |
|
|
| pdf_data/report_keywords/ecc_curve |
|
|
| pdf_data/report_keywords/crypto_engine |
|
|
| pdf_data/report_keywords/tls_cipher_suite |
|
|
| pdf_data/report_keywords/crypto_library |
|
|
| pdf_data/report_keywords/vulnerability |
|
|
| pdf_data/report_keywords/side_channel_analysis |
|
|
| pdf_data/report_keywords/technical_report_id |
|
|
| pdf_data/report_keywords/device_model |
|
|
| pdf_data/report_keywords/tee_name |
|
|
| pdf_data/report_keywords/os_name |
|
|
| pdf_data/report_keywords/cplc_data |
|
|
| pdf_data/report_keywords/ic_data_group |
|
|
| pdf_data/report_keywords/standard_id |
- CC:
- CCMB-2009-07-001: 1
- CCMB-2009-07-002: 1
- CCMB-2009-07-003: 1
- CCMB-2009-07-004: 1
- FIPS:
|
- BSI:
- CC:
- CCMB-2006-09-001: 1
- CCMB-2007-09-002: 1
- CCMB-2007-09-003: 1
- CCMB-2007-09-004: 1
- ICAO:
|
| pdf_data/report_keywords/javacard_version |
|
|
| pdf_data/report_keywords/javacard_api_const |
|
|
| pdf_data/report_keywords/javacard_packages |
|
|
| pdf_data/report_keywords/certification_process |
|
|
| pdf_data/report_metadata |
- /Author:
- /Company: Certification Body, CESG
- /CreationDate: D:20110302122612Z
- /Creator: Acrobat PDFMaker 7.0.5 for Word
- /ModDate: D:20110302154835Z
- /Producer: Acrobat Elements 7.0.5 (Windows)
- /Title: Certification Report CRP257
- /_AdHocReviewCycleID: 1808337809
- /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
- /_AuthorEmailDisplayName: WhittakerAxon, Nigel
- /_EmailSubject: Word to PDF
- pdf_file_size_bytes: 390909
- pdf_hyperlinks: https://www.citrix.com/lang/English/support.asp
- pdf_is_encrypted: False
- pdf_number_of_pages: 20
|
- /Author: J. Chuzel
- /Comments: Developpeur
- /Company: SGDN/DCSSI
- /CreationDate: D:20090723103528+02'00'
- /Creator: Acrobat PDFMaker 8.0 for Word
- /Keywords: CER/F/07.5
- /ModDate: D:20090723103539+02'00'
- /Producer: Acrobat Distiller 8.0.0 (Windows)
- /SourceModified: D:20090723083519
- /Subject: ID One™ ePass v2.1 with configuration BAC on NXPP5CD040V0B, P5CD080V0B, P5CD144V0B
- /Title: ANSSI-2009/20
- pdf_file_size_bytes: 248289
- pdf_hyperlinks: http://www.ssi.gouv.fr/, mailto:[email protected]
- pdf_is_encrypted: False
- pdf_number_of_pages: 17
|
| pdf_data/st_filename |
t007-st.pdf |
anssi-cible2009_20en.pdf |
| pdf_data/st_frontpage |
|
|
| pdf_data/st_keywords/cc_cert_id |
|
|
| pdf_data/st_keywords/cc_protection_profile_id |
|
- BSI:
- BSI-PP- 0017: 1
- BSI-PP-0002-2001: 1
|
| pdf_data/st_keywords/cc_security_level |
- EAL:
- EAL2: 5
- EAL2 augmented: 1
|
- EAL:
- EAL4: 4
- EAL4 augmented: 1
- EAL4+: 3
- EAL5+: 3
|
| pdf_data/st_keywords/cc_sar |
- ADV:
- ADV_ARC.1: 1
- ADV_FSP.2: 1
- ADV_TDS.1: 1
- AGD:
- AGD_OPE.1: 1
- AGD_PRE.1: 1
- ALC:
- ALC_CMC.2: 1
- ALC_CMS.2: 1
- ALC_DEL.1: 1
- ALC_FLR.2: 6
- ASE:
- ASE_CCL.1: 1
- ASE_ECD.1: 1
- ASE_INT.1: 1
- ASE_OBJ.2: 1
- ASE_REQ.2: 1
- ASE_SPD.1: 1
- ASE_TSS.1: 1
- ATE:
- ATE_COV.1: 1
- ATE_FUN.1: 1
- ATE_IND.2: 1
- AVA:
|
- ADO:
- ADV:
- AGD:
- ALC:
- AVA:
- AVA_VAN.3: 2
- AVA_VLA.2: 1
|
| pdf_data/st_keywords/cc_sfr |
- FCO:
- FCO_SCO: 8
- FCO_SCO.1: 8
- FCO_SCO.1.1: 1
- FCO_SCO.1.2: 1
- FCO_SCO.1.3: 2
- FCO_SCO.1.4: 1
- FCS:
- FCS_ECA: 7
- FCS_ECA.1: 5
- FCS_ECA.1.1: 1
- FDP:
- FDP_ACC: 17
- FDP_ACC.1: 5
- FDP_ACF: 14
- FDP_ACF.1: 10
- FDP_IFC.1: 1
- FIA:
- FIA_ATD: 7
- FIA_ATD.1: 1
- FIA_UAU: 6
- FIA_UAU.2: 1
- FIA_UID: 8
- FIA_UID.1: 2
- FIA_UID.2: 1
- FMT:
- FMT_MOF: 8
- FMT_MOF.1: 1
- FMT_MSA: 25
- FMT_MSA.1: 4
- FMT_MSA.3: 6
- FMT_SMF: 12
- FMT_SMF.1: 3
- FMT_SMR: 14
- FMT_SMR.1: 6
|
- FAU:
- FAU_SAS: 1
- FAU_SAS.1: 5
- FAU_SAS.1.1: 1
- FCS:
- FCS_CKM: 8
- FCS_CKM.1: 15
- FCS_CKM.2: 2
- FCS_CKM.4: 11
- FCS_COP: 8
- FCS_COP.1: 16
- FCS_RND: 4
- FCS_RND.1: 5
- FDP:
- FDP_ACC: 2
- FDP_ACC.1: 19
- FDP_ACF: 4
- FDP_ACF.1: 19
- FDP_IFC.1: 3
- FDP_ITC: 5
- FDP_ITC.1: 8
- FDP_ITC.1.3: 1
- FDP_ITC.2: 5
- FDP_UCT: 2
- FDP_UCT.1: 4
- FDP_UIT: 2
- FDP_UIT.1: 4
- FIA:
- FIA_API: 5
- FIA_API.1: 5
- FIA_UAU: 13
- FIA_UAU.1: 2
- FIA_UAU.1.1: 1
- FIA_UAU.1.2: 1
- FIA_UAU.4: 3
- FIA_UAU.5: 3
- FIA_UAU.5.1: 1
- FIA_UAU.5.2: 1
- FIA_UAU.6: 3
- FIA_UID.1: 7
- FIA_UID.1.1: 1
- FIA_UID.1.2: 1
- FMT:
- FMT_LIM: 1
- FMT_LIM.1: 7
- FMT_LIM.1.1: 1
- FMT_LIM.2: 6
- FMT_LIM.2.1: 1
- FMT_MOF: 1
- FMT_MOF.1: 10
- FMT_MOF.1.1: 2
- FMT_MSA.2: 7
- FMT_MSA.3: 4
- FMT_MTD: 7
- FMT_MTD.1: 13
- FMT_SEM.1: 1
- FMT_SMF.1: 12
- FMT_SMF.1.1: 1
- FMT_SMR.1: 13
- FMT_SMR.1.1: 1
- FMT_SMR.1.2: 1
- FPR:
- FPT:
- FPT_AMT.1: 1
- FPT_FLS.1: 5
- FPT_FLS.1.1: 1
- FPT_PHP.3: 5
- FPT_PHP.3.1: 1
- FPT_RVM.1: 1
- FPT_SEP.1: 3
- FPT_TST.1: 6
- FPT_TST.1.1: 1
- FPT_TST.1.2: 1
- FPT_TST.1.3: 2
- FTP:
- FTP_ITC.1: 2
- FTP_TRP.1: 2
|
| pdf_data/st_keywords/cc_claims |
|
- A:
- O:
- O.CONFIG: 1
- O.HW_AES: 1
- O.IC: 2
- O.MEM_ACCESS: 1
- O.MF_FW: 1
- O.RND: 4
- O.SFR_ACCESS: 1
- O.TOE: 2
- OE:
- T:
|
| pdf_data/st_keywords/vendor |
|
- NXP:
- Oberthur:
- OBERTHUR: 10
- Oberthur Technologies: 155
|
| pdf_data/st_keywords/eval_facility |
|
|
| pdf_data/st_keywords/symmetric_crypto |
|
- AES_competition:
- DES:
- 3DES:
- 3DES: 1
- TDES: 1
- Triple-DES: 11
- DES:
|
| pdf_data/st_keywords/asymmetric_crypto |
|
|
| pdf_data/st_keywords/pq_crypto |
|
|
| pdf_data/st_keywords/hash_function |
|
- SHA:
- SHA1:
- SHA2:
- SHA-224: 4
- SHA-256: 3
- SHA-384: 2
|
| pdf_data/st_keywords/crypto_scheme |
|
|
| pdf_data/st_keywords/crypto_protocol |
|
|
| pdf_data/st_keywords/randomness |
|
|
| pdf_data/st_keywords/cipher_mode |
|
|
| pdf_data/st_keywords/ecc_curve |
|
|
| pdf_data/st_keywords/crypto_engine |
|
|
| pdf_data/st_keywords/tls_cipher_suite |
- TLS:
- TLS_RSA_WITH_3DES_EDE_CBC_SHA: 2
|
|
| pdf_data/st_keywords/crypto_library |
|
|
| pdf_data/st_keywords/vulnerability |
|
|
| pdf_data/st_keywords/side_channel_analysis |
|
- FI:
- DFA: 3
- Malfunction: 14
- Physical Tampering: 2
- Physical tampering: 1
- fault injection: 1
- malfunction: 5
- physical tampering: 2
- SCA:
- DPA: 1
- Leak-Inherent: 7
- Physical Probing: 1
- physical probing: 4
- other:
|
| pdf_data/st_keywords/technical_report_id |
|
|
| pdf_data/st_keywords/device_model |
|
|
| pdf_data/st_keywords/tee_name |
|
|
| pdf_data/st_keywords/os_name |
|
|
| pdf_data/st_keywords/cplc_data |
|
|
| pdf_data/st_keywords/ic_data_group |
|
- EF:
- EF.COM: 3
- EF.DG15: 4
- EF.SOD: 1
|
| pdf_data/st_keywords/standard_id |
- CC:
- CCMB-2009-07-001: 1
- CCMB-2009-07-002: 1
- CCMB-2009-07-003: 1
- CCMB-2009-07-004: 1
- FIPS:
- FIPS 140: 3
- FIPS 140-2: 7
- FIPS140: 1
- FIPS140-2: 9
|
- BSI:
- CC:
- CCMB-2006-09-001: 1
- CCMB-2007-09-002: 1
- CCMB-2007-09-003: 1
- FIPS:
- FIPS 140-2: 1
- FIPS 180-2: 1
- FIPS 186-3: 1
- FIPS 46-3: 1
- FIPS PUB 140-2: 1
- ICAO:
- ISO:
- ISO/IEC 15946-1: 1
- ISO/IEC 15946-2: 1
- ISO/IEC 7816-2: 1
- PKCS:
- RFC:
|
| pdf_data/st_keywords/javacard_version |
|
|
| pdf_data/st_keywords/javacard_api_const |
|
|
| pdf_data/st_keywords/javacard_packages |
|
|
| pdf_data/st_keywords/certification_process |
- OutOfScope:
- and hence all additional functionality supplied by these other products and components, are out of scope. The evaluated configuration covers only the publishing of applications; streaming of applications: 1
- 22 1.4.3 Summary of items out of scope of the TOE : 1
- 22 1.4.3 Summary of items out of scope of the TOE ........................................22 1.4.4 Required non-TOE: 1
- TOE components, they do not form part of the logical boundary of the TOE. 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components on which Citrix: 1
- out of scope: 4
|
|
| pdf_data/st_metadata |
- /Author: SiVenture
- /CreationDate: D:20110210122512Z
- /Creator: Microsoft® Office Word 2007
- /ModDate: D:20110302154939Z
- /Producer: Microsoft® Office Word 2007
- /Title: CIN4-STt-0001
- pdf_file_size_bytes: 679246
- pdf_hyperlinks: http://www.citrix.com/, http://www.commoncriteriaportal.org/
- pdf_is_encrypted: False
- pdf_number_of_pages: 55
|
- /Author: clemecap
- /CreationDate: D:20090907174921+02'00
- /Creator: PDFCreator Version 0.8.1
- /ModDate: D:20090907174921+02'00
- /Producer: AFPL Ghostscript 8.50
- /Title: FQR 110 4641-1-Public
- pdf_file_size_bytes: 548778
- pdf_hyperlinks: {}
- pdf_is_encrypted: False
- pdf_number_of_pages: 77
|
| state/cert/convert_garbage |
None |
None |
| state/cert/convert_ok |
False |
False |
| state/cert/download_ok |
False |
False |
| state/cert/extract_ok |
False |
False |
| state/cert/pdf_hash |
Equal |
Equal |
| state/cert/txt_hash |
Equal |
Equal |
| state/report/convert_garbage |
None |
None |
| state/report/convert_ok |
True |
True |
| state/report/download_ok |
True |
True |
| state/report/extract_ok |
True |
True |
| state/report/pdf_hash |
Different |
Different |
| state/report/txt_hash |
Different |
Different |
| state/st/convert_garbage |
None |
None |
| state/st/convert_ok |
True |
True |
| state/st/download_ok |
True |
True |
| state/st/extract_ok |
True |
True |
| state/st/pdf_hash |
Different |
Different |
| state/st/txt_hash |
Different |
Different |