Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition
CRP257
BAROC/FISC Terminal Security Access Module, Version 1.0
BSI-DSZ-CC-0442-2008
name Citrix XenApp 6.0 for Windows Server 2008 R2 - Platinum Edition BAROC/FISC Terminal Security Access Module, Version 1.0
category Access Control Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme UK DE
not_valid_after 28.02.2016 01.09.2019
not_valid_before 28.02.2011 15.09.2008
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/crp257.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0442a.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/t007-st.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0442b.pdf
manufacturer Citrix Systems, Inc. Financial Information Service Co. Ltd. (FISC)
manufacturer_web https://www.citrix.com https://www.fisc.com.tw/
security_level EAL2+, ALC_FLR.2 EAL4+, ADV_IMP.2, AVA_VLA.4
dgst d87a9be3bb5e7640 c6c5b4a22cd38f9f
heuristics/cert_id CRP257 BSI-DSZ-CC-0442-2008
heuristics/cert_lab [] BSI
heuristics/direct_transitive_cves CVE-2016-4810 {}
heuristics/indirect_transitive_cves CVE-2014-4700, CVE-2016-6493, CVE-2016-4810 {}
heuristics/extracted_sars AGD_OPE.1, ASE_ECD.1, ADV_FSP.2, ALC_DEL.1, ALC_CMS.2, ADV_ARC.1, ATE_COV.1, AVA_VAN.2, ASE_SPD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_CCL.1, ATE_IND.2, ADV_TDS.1, ASE_TSS.1, ATE_FUN.1, AGD_PRE.1, ALC_CMC.2, ALC_FLR.2 ALC_DVS.2, ADV_HLD.2, AGD_USR.1, AVA_SOF.1, ADV_FSP.2, ADV_RCR.1, ADV_IMP.2, ALC_TAT.1, ALC_LCD.1, ATE_DPT.1, AVA_VLA.4, ADV_SPM.1, ATE_IND.2, ADV_LLD.1, AVA_MSU.3, AGD_ADM.1, ATE_COV.2, ATE_FUN.1
heuristics/extracted_versions 6.0 1.0
heuristics/report_references/directly_referenced_by CRP282 {}
heuristics/report_references/directly_referencing CRP241 {}
heuristics/report_references/indirectly_referenced_by CRP281, CRP282 {}
heuristics/report_references/indirectly_referencing CRP241 {}
pdf_data/report_filename crp257.pdf 0442a.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-0442-2008
    • cert_item: BAROC/FISC Terminal Security Access Module Version 1.0
    • cert_lab: BSI
    • developer: Financial Information Service Co., Ltd. (FISC) sponsored by The Bankers Association of the Republic of China (BAROC
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
pdf_data/report_keywords/cc_cert_id
  • UK:
    • CRP241: 2
    • CRP257: 1
  • DE:
    • BSI-DSZ-CC-0426: 2
    • BSI-DSZ-CC-0426-2007-MA-01: 1
    • BSI-DSZ-CC-0442: 1
    • BSI-DSZ-CC-0442-2008: 17
  • NL:
    • CC-0426-2007: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL2: 3
    • EAL2 augmented: 2
  • EAL:
    • EAL 1: 1
    • EAL 4: 8
    • EAL 4 augmented: 3
    • EAL 7: 1
    • EAL1: 5
    • EAL2: 3
    • EAL3: 4
    • EAL4: 7
    • EAL5: 6
    • EAL5+: 1
    • EAL6: 3
    • EAL7: 4
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR.2: 3
  • ACM:
    • ACM_AUT: 2
    • ACM_CAP: 2
    • ACM_SCP: 2
  • ADO:
    • ADO_DEL: 2
    • ADO_IGS: 2
  • ADV:
    • ADV_FSP: 2
    • ADV_HLD: 2
    • ADV_IMP: 2
    • ADV_IMP.2: 5
    • ADV_INT: 2
    • ADV_LLD: 2
    • ADV_RCR: 2
    • ADV_SPM: 2
  • AGD:
    • AGD_ADM: 2
    • AGD_USR: 2
  • ALC:
    • ALC_DVS: 2
    • ALC_FLR: 2
    • ALC_LCD: 1
    • ALC_TAT: 2
  • APE:
    • APE_DES: 1
    • APE_ENV: 1
    • APE_INT: 1
    • APE_OBJ: 1
    • APE_REQ: 1
    • APE_SRE: 1
  • ASE:
    • ASE_DES: 1
    • ASE_ENV: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_PPC: 1
    • ASE_REQ: 1
    • ASE_SRE: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 2
    • ATE_DPT: 2
    • ATE_FUN: 2
    • ATE_IND: 2
  • AVA:
    • AVA_CCA: 2
    • AVA_MSU: 2
    • AVA_SOF: 3
    • AVA_VLA: 3
    • AVA_VLA.2: 1
    • AVA_VLA.3: 1
    • AVA_VLA.4: 6
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 1
  • NXP:
    • NXP: 12
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • 3DES: 1
    • DES:
      • DES: 1
pdf_data/report_keywords/hash_function
  • MD:
    • MD5:
      • MD5: 3
  • SHA:
    • SHA1:
      • SHA-1: 1
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 9
pdf_data/report_keywords/crypto_protocol
  • IPsec:
    • IPsec: 4
  • TLS:
    • TLS:
      • TLS: 7
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • ECB:
    • ECB: 4
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140-2: 1
  • BSI:
    • AIS 25: 2
    • AIS 26: 2
    • AIS 31: 1
    • AIS 32: 1
    • AIS 34: 3
    • AIS 35: 1
    • AIS 36: 3
    • AIS 38: 1
  • ISO:
    • ISO/IEC 15408:2005: 2
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • 0, Date: 2008-05-21, Authors: BAROC & FISC (confidential document) [9] Java Card System Protection Profile Collection, Version: 1.0b, August 2003. This Document: 1
    • Product: NXP P541G072V0P (JCOP 41, v2.3.1), Version 1.0, Date 2007-07-27, ITSEF: TÜVIT (confidential document) [13] Administrator and User Guidance for BAROC/FISC TSAM 1.0, Version 1.0.0, date: 2008-05-21: 1
    • Report, BSI-DSZ-CC-0442, Version 3, Date 2008-07-30, Product:BAROC/FISC TSAM 1.0, ITSEF: TÜVIT (confidential document) [8] Configuration list for the TOE: Configuration Management for 1 BAROC/FISC TSAM 1.0, Version: 1: 1
pdf_data/report_metadata
  • /Author:
  • /Company: Certification Body, CESG
  • /CreationDate: D:20110302122612Z
  • /Creator: Acrobat PDFMaker 7.0.5 for Word
  • /ModDate: D:20110302154835Z
  • /Producer: Acrobat Elements 7.0.5 (Windows)
  • /Title: Certification Report CRP257
  • /_AdHocReviewCycleID: 1808337809
  • /_AuthorEmail: Nigel.WhittakerAxon@cesg.gsi.gov.uk
  • /_AuthorEmailDisplayName: WhittakerAxon, Nigel
  • /_EmailSubject: Word to PDF
  • pdf_file_size_bytes: 390909
  • pdf_hyperlinks: https://www.citrix.com/lang/English/support.asp
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20081217084137+01'00'
  • /Creator: Writer
  • /Keywords: "BSI-DSZ-CC-0442-2008, Common Criteria, Certification, Zertifizierung, BAROC Terminal Security Access Module Version 1.0, Financial Information Services Co., Ltd. (FISC), The Bankers Association of the Republic of China (BAROC)"
  • /ModDate: D:20090105105200+01'00'
  • /Producer: StarOffice 8
  • /Subject: Common Criteria, Certification
  • /Title: Certification Report BSI-DSZ-CC-0442-2008
  • pdf_file_size_bytes: 1307314
  • pdf_hyperlinks: http://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 34
pdf_data/st_filename t007-st.pdf 0442b.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0348: 1
    • BSI-DSZ-CC-0426: 1
    • BSI-DSZ-CC-0442: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP- 1600: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL2: 5
    • EAL2 augmented: 1
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 12
    • EAL4 augmented: 8
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 6
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
  • ACM:
    • ACM_AUT.1: 2
    • ACM_CAP.4: 2
    • ACM_SCP.2: 1
  • ADO:
    • ADO_DEL.2: 2
    • ADO_IGS.1: 2
  • ADV:
    • ADV_FSP.1: 1
    • ADV_FSP.2: 2
    • ADV_HLD.2: 3
    • ADV_IMP.1: 1
    • ADV_IMP.2: 13
    • ADV_LLD.1: 4
    • ADV_RCR.1: 3
    • ADV_SPM.1: 4
  • AGD:
    • AGD_ADM.1: 3
    • AGD_USR.1: 3
  • ALC:
    • ALC_DVS.1: 3
    • ALC_DVS.2: 3
    • ALC_LCD.1: 2
    • ALC_TAT.1: 3
  • ATE:
    • ATE_COV.2: 2
    • ATE_DPT.1: 2
    • ATE_FUN.1: 2
    • ATE_IND.2: 3
  • AVA:
    • AVA_MSU.2: 3
    • AVA_MSU.3: 3
    • AVA_SOF.1: 2
    • AVA_VLA: 1
    • AVA_VLA.3: 2
    • AVA_VLA.4: 12
pdf_data/st_keywords/cc_sfr
  • FCO:
    • FCO_SCO: 8
    • FCO_SCO.1: 8
    • FCO_SCO.1.1: 1
    • FCO_SCO.1.2: 1
    • FCO_SCO.1.3: 2
    • FCO_SCO.1.4: 1
  • FCS:
    • FCS_ECA: 7
    • FCS_ECA.1: 5
    • FCS_ECA.1.1: 1
  • FDP:
    • FDP_ACC: 17
    • FDP_ACC.1: 5
    • FDP_ACF: 14
    • FDP_ACF.1: 10
    • FDP_IFC.1: 1
  • FIA:
    • FIA_ATD: 7
    • FIA_ATD.1: 1
    • FIA_UAU: 6
    • FIA_UAU.2: 1
    • FIA_UID: 8
    • FIA_UID.1: 2
    • FIA_UID.2: 1
  • FMT:
    • FMT_MOF: 8
    • FMT_MOF.1: 1
    • FMT_MSA: 25
    • FMT_MSA.1: 4
    • FMT_MSA.3: 6
    • FMT_SMF: 12
    • FMT_SMF.1: 3
    • FMT_SMR: 14
    • FMT_SMR.1: 6
  • FAU:
    • FAU_ARP.1: 1
    • FAU_SAA.1: 1
  • FCS:
    • FCS_CKM: 11
    • FCS_CKM.1: 4
    • FCS_CKM.2: 1
    • FCS_CKM.3: 1
    • FCS_CKM.4: 4
    • FCS_COP: 6
    • FCS_COP.1: 3
    • FCS_RND.1: 1
  • FDP:
    • FDP_ACC: 23
    • FDP_ACC.1: 13
    • FDP_ACC.2: 1
    • FDP_ACF: 12
    • FDP_ACF.1: 19
    • FDP_CKM: 1
    • FDP_ETC.1: 1
    • FDP_IFC: 4
    • FDP_IFC.1: 7
    • FDP_IFF: 4
    • FDP_IFF.1: 1
    • FDP_ITC: 14
    • FDP_ITC.1: 15
    • FDP_ITC.1.3: 4
    • FDP_RIP.1: 1
    • FDP_ROL.1: 1
    • FDP_SDI: 5
    • FDP_SDI.2: 7
    • FDP_UCT: 11
    • FDP_UCT.1: 4
    • FDP_UIT: 13
    • FDP_UIT.1: 9
  • FIA:
    • FIA_AFL: 7
    • FIA_AFL.1: 5
    • FIA_ATD.1: 1
    • FIA_UAU: 20
    • FIA_UAU.1: 7
    • FIA_UAU.3: 1
    • FIA_UAU.4: 3
    • FIA_UAU.5: 8
    • FIA_UID: 6
    • FIA_UID.1: 8
    • FIA_UID.2: 1
    • FIA_USB.1: 1
  • FMT:
    • FMT_LIM.1: 1
    • FMT_LIM.2: 1
    • FMT_MSA: 40
    • FMT_MSA.1: 8
    • FMT_MSA.2: 7
    • FMT_MSA.3: 9
    • FMT_MTD.1: 1
    • FMT_MTD.3: 1
    • FMT_SMF: 15
    • FMT_SMF.1: 3
    • FMT_SMR: 12
    • FMT_SMR.1: 7
  • FPR:
    • FPR_UNO.1: 1
  • FPT:
    • FPT_AMT.1: 1
    • FPT_FLS.1: 1
    • FPT_PHP.1: 1
    • FPT_PHP.3: 1
    • FPT_RCV.3: 1
    • FPT_RCV.4: 1
    • FPT_RVM.1: 1
    • FPT_SEP.1: 1
    • FPT_TDC.1: 1
    • FPT_TST.1: 1
  • FRU:
    • FRU_FLT.2: 1
    • FRU_RSA: 4
  • FTP:
    • FTP_ITC: 17
    • FTP_ITC.1: 19
    • FTP_TRP.1: 2
pdf_data/st_keywords/cc_claims
  • O:
    • O.TLS-TOE: 10
  • A:
    • A.DEV: 10
    • A.DLV: 10
    • A.DLV_PROTECT: 2
    • A.KEYS: 7
    • A.NATIVE: 2
    • A.NO-DELETION: 2
    • A.NO-INSTALL: 2
    • A.TEST_OPERATE: 1
    • A.USE_DIAG: 8
    • A.USE_KEYS: 1
    • A.VERIFICATION: 2
  • D:
    • D.APP_CODE: 1
    • D.APP_C_DATA: 1
    • D.APP_I_DATA: 1
    • D.APP_KEYS: 1
  • O:
    • O.ALARM: 2
    • O.CARD-MANAGEMENT: 2
    • O.CIPHER: 3
    • O.FAULT_PROTECT: 2
    • O.FIREWALL: 3
    • O.KEY-MNGT: 3
    • O.NATIVE: 2
    • O.OPERATE: 3
    • O.OS_DECEIVE: 2
    • O.PHYSICAL: 3
    • O.PIN-MNGT: 2
    • O.PROTECT_DATA: 7
    • O.REALLOCATION: 2
    • O.RESOURCES: 3
    • O.RND: 3
    • O.SCP: 8
    • O.SHRD_VAR_CONFID: 2
    • O.SHRD_VAR_INTEG: 3
    • O.SID: 3
    • O.SIDE_CHANNEL: 3
    • O.TRANSACTION: 2
  • OE:
    • OE.DEL_NOS: 1
    • OE.DEV_NOS: 1
    • OE.DLV_DATA: 1
    • OE.DLV_PROTECT: 1
    • OE.IC_ORG: 1
    • OE.NATIVE: 2
    • OE.NO-DELETION: 2
    • OE.NO-INSTALL: 2
    • OE.TEST_OPERATE: 1
    • OE.USE_DIAG: 1
    • OE.USE_KEYS: 1
    • OE.VERIFICATION: 2
  • OSP:
    • OSP.IC_ORG: 1
    • OSP.SN: 7
    • OSP.TXN: 1
    • OSP.TXN_SECURE: 6
  • T:
    • T.ACCESS_DATA: 3
    • T.CONFID-APPLI-DATA: 3
    • T.CONFID-JCS-CODE: 2
    • T.CONFID-JCS-DATA: 3
    • T.DEL: 2
    • T.DEL_IC_NOS: 2
    • T.DEV_IC: 2
    • T.DEV_NOS: 2
    • T.EXE-CODE: 4
    • T.FAULT: 3
    • T.INTEG-APPLI-CODE: 2
    • T.INTEG-APPLI-DATA: 3
    • T.INTEG-JCS-CODE: 2
    • T.INTEG-JCS-DATA: 2
    • T.INTEGRITY: 6
    • T.KEY_ACCESS: 5
    • T.LEAKAGE: 3
    • T.NATIVE: 3
    • T.OS_DECEIVE: 3
    • T.OS_OPERATE: 3
    • T.PHYSICAL: 3
    • T.RESOURCES: 3
    • T.RND: 3
    • T.SID: 6
    • T.TMD_ACCESS: 5
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 18
  • NXP:
    • NXP: 5
  • Philips:
    • Philips: 1
pdf_data/st_keywords/eval_facility
  • TUV:
    • TÜViT: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • DES:
    • 3DES:
      • Triple-DES: 2
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • 3DES:
      • Triple-DES: 1
    • DES:
      • DES: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 39
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • TLS:
    • TLS:
      • TLS: 33
pdf_data/st_keywords/randomness
  • RNG:
    • RND: 6
    • RNG: 2
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • ECB:
    • ECB: 6
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 2
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
    • CCMB-2009-07-004: 1
  • FIPS:
    • FIPS 140: 3
    • FIPS 140-2: 7
    • FIPS140: 1
    • FIPS140-2: 9
  • BSI:
    • AIS 20: 1
    • AIS20: 5
  • FIPS:
    • FIPS 1573: 1
  • ISO:
    • ISO/IEC 7816-4: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • and hence all additional functionality supplied by these other products and components, are out of scope. The evaluated configuration covers only the publishing of applications; streaming of applications: 1
    • 22 1.4.3 Summary of items out of scope of the TOE : 1
    • 22 1.4.3 Summary of items out of scope of the TOE ........................................22 1.4.4 Required non-TOE: 1
    • TOE components, they do not form part of the logical boundary of the TOE. 1.4.3 Summary of items out of scope of the TOE The items out of scope of the TOE include the Microsoft components on which Citrix: 1
    • out of scope: 4
pdf_data/st_metadata
  • /Author: SiVenture
  • /CreationDate: D:20110210122512Z
  • /Creator: Microsoft® Office Word 2007
  • /ModDate: D:20110302154939Z
  • /Producer: Microsoft® Office Word 2007
  • /Title: CIN4-STt-0001
  • pdf_file_size_bytes: 679246
  • pdf_hyperlinks: http://www.commoncriteriaportal.org/, http://www.citrix.com/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 55
  • /Author: BAROC & FISC
  • /CreationDate: D:20080714065458+02'00'
  • /Creator: pdfFactory Pro www.context-gmbh.de
  • /Keywords: Document Version 1.0.0; Terminal Security Access Module; secure transactions; POS terminal; remote host application; integrity; authenticity; confidentiality; encryption; decryption; MAC generation; JavaCard applet; NXP P541G072V0P smart card controller
  • /Producer: pdfFactory Pro 3.30 (Windows XP Professional German)
  • /Subject: Evaluation of BAROC/FISC TSAM 1.0
  • /Title: Security Target for BAROC/FISC TSAM 1.0
  • pdf_file_size_bytes: 318324
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 62
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different