Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
CBB business application unit Version 1.0
JISEC-CC-CRP-C0024
Web Bytes Xilnex Framework version 3.0
ISCB-5-RPT-C030-CR-v1a
name CBB business application unit Version 1.0 Web Bytes Xilnex Framework version 3.0
scheme JP MY
not_valid_after 10.12.2010 16.02.2017
not_valid_before 11.03.2005 16.02.2012
report_link https://www.commoncriteriaportal.org/files/epfiles/c0024_ecvr2.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C030-CR-v1a.pdf
st_link https://www.commoncriteriaportal.org/files/epfiles/ https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Web%20Bytes%20EAL1%20Security%20Target%20(Xilnex%20Framework)%20v1.1.pdf
manufacturer The Bank of Tokyo-Mitsubishi/ MITSUBISHI ELECTRIC INFORMATION SYSTEMS CORPORATION Web Bytes Sdn Bhd
manufacturer_web https://www.webbytes.com.my
security_level EAL2 EAL1
dgst dcf4627be41380b4 0136a64efd2140e4
heuristics/cert_id JISEC-CC-CRP-C0024 ISCB-5-RPT-C030-CR-v1a
heuristics/extracted_sars {} ASE_CCL.1, AGD_PRE.1, ALC_CMC.1, AGD_OPE.1, ATE_IND.1, ASE_INT.1, ASE_ECD.1, ASE_OBJ.1, ASE_REQ.1, ALC_CMS.1, ASE_TSS.1, AVA_VAN.1, ADV_FSP.1
heuristics/extracted_versions 1.0 3.0
heuristics/scheme_data
  • cert_id: JISEC-CC-CRP-C0024
  • certification_date: 01.03.2005
  • claim: EAL2
  • enhanced:
    • assurance_level: EAL2
    • description: PRODUCT DESCRIPTION TOE is a unit mounted in the banking terminal "CBB terminal" provided a convenience store, and consists of application software and a tamper-resistant security hard ware board "TURBOMISTY". By using a CBB terminal, customer can take a banking service at a convenience store without having to visit a bank branch. For providing with these services securely, TOE has several functions as well as application registration, receiving application form and data communication, with a security function to keep a confidentiality of the personal identification number.
    • evaluation_facility: Electronic Commerce Security Technology Laboratory Inc.
    • product: CBB business application unit
    • product_type: IT product (data protection function in a terminal for banking services)
    • toe_version: Version 1.0
    • vendor: The Bank of Tokyo-Mitsubishi UFJ, Ltd. / MITSUBISHI ELECTRIC INFORMATION SYSTEMS CORPORATION
  • expiration_date: 01.01.2011
  • supplier: The Bank of Tokyo-Mitsubishi UFJ,Ltd./ MITSUBISHI ELECTRIC INFORMATION SYSTEMS CORPORATION
  • toe_japan_link: https://www.ipa.go.jp/en/security/jisec/software/certified-cert/c0024_it4036.html
  • toe_japan_name: CBB business application unit Version 1.0
  • toe_overseas_link: None
  • toe_overseas_name: -----
  • cert_no: 2012-002-C030
  • certification_date: 16.02.2012
  • developer: Web Bytes Sdn Bhd
  • enhanced:
    • assurance_level: EAL1
    • category: Other Devices and Systems
    • cert_id: C030
    • certification_date: 16.02.2012
    • developer: Ooi Boon-Sheng Unit 1-2-33, Kompleks Mayang Mall,Jalan Mayang Pasir 1,11950 Bayan Baru,Pulau Pinang MALAYSIA URL: http://www.webbytes.com.myEmail: [email protected]:+ 6012 472 9615Fax:+ 604 611 0162
    • expiration_date: 16.02.2017
    • mutual_recognition: CCRA
    • product: Web Bytes Xilnex Framework version 3.0
    • report_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C030/ISCB-5-RPT-C030-CR-v1a.pdf
    • scope: Web Bytes Xilnex Framework Version 3.0 is a distribution and synchronization platform which distributes subscribed applications to multiple clients as well performs data synchronisation between all the clients in the same group. The TOE comprises of two primary components as follows: Client Software. The client software that installs directly on each user's PC which operates the daily process and update based on the user activities. Server Software. The server software that extends client software with secure communication, identification and authentication, and data synchronization. The security functions that the TOE provides include the following: Secure Transmission – All communications between the server and the client is through an SSL channel. It protects the user data from disclosure and modification. Access control – The TOE allows users to launch only the applications they subscribed to as well as accessing the database. The TOE will check the user ID and their organization ID to ensure the applications that the user is allowed to run. Identification and Authentication – Users will have to present their credentials to the server for identification and authentication before the user is allowed to launch the applications and access the user data at the backend and at the local cache. Encryption – Username and passwords are always hashed when they are being stored into the database and during authentication. Management – The TOE contains various management functions to ensure efficient and secure management of the TOE. The TOE maintains two roles, users and administrator, to ensure that the functions are restricted to only the TOE administrator.
    • status: Archive
    • target_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C030/Web%20Bytes%20EAL1%20Security%20Target%20(Xilnex%20Framework)%20v1.1.pdf
    • type: Distribution and synchronization platform
  • expiration_date: 16.02.2017
  • level: EAL1
  • product: Web Bytes Xilnex Framework version 3.0
  • recognition: CCRA
  • url: https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/152
protection_profile_links {} {}
pdf_data/report_filename c0024_ecvr2.pdf ISCB-5-RPT-C030-CR-v1a.pdf
pdf_data/report_keywords/cc_cert_id
  • JP:
    • Certification No. C0024: 1
  • MY:
    • ISCB-5-RPT-C030-CR-v1a: 29
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL2: 1
  • EAL:
    • EAL 1: 1
    • EAL1: 11
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_DEL: 1
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 1
    • FCS_CKM.4: 1
    • FCS_COP.1: 1
  • FDP:
    • FDP_ACC.1: 1
    • FDP_ACF.1: 1
  • FIA:
    • FIA_AFL.1: 1
    • FIA_ATD.1: 1
    • FIA_UAU.2: 1
    • FIA_UID.2: 1
  • FMT:
    • FMT_ITT.1: 1
    • FMT_MSA.1: 1
    • FMT_MSA.3: 1
    • FMT_SMF.1: 1
    • FMT_SMR.1: 1
pdf_data/report_keywords/vendor
  • Microsoft:
    • Microsoft: 2
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • RC:
      • RC4: 4
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA512: 2
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 9
pdf_data/report_keywords/standard_id
  • ISO:
    • ISO/IEC 18045: 2
    • ISO/IEC15408: 2
pdf_data/report_metadata
  • /Author: IPA/JISEC
  • /Company: IPA/ISEC
  • /CreationDate: D:20051104120631+09'00'
  • /Creator: Word 用 Acrobat PDFMaker 6.0
  • /ModDate: D:20051104120640+09'00'
  • /Producer: Acrobat Distiller 6.0 (Windows)
  • /SourceModified: D:20051104030140
  • /Title: TOE List
  • pdf_file_size_bytes: 23139
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/st_filename Web Bytes EAL1 Security Target (Xilnex Framework) v1.1.pdf
pdf_data/st_keywords/cc_cert_id
pdf_data/st_keywords/cc_protection_profile_id
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL1: 9
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ASE:
    • ASE_CCL: 2
    • ASE_CCL.1: 2
    • ASE_ECD.1: 2
    • ASE_INT: 2
    • ASE_INT.1: 2
    • ASE_OBJ: 2
    • ASE_OBJ.1: 2
    • ASE_REQ: 2
    • ASE_REQ.1: 2
    • ASE_TSS: 2
    • ASE_TSS.1: 2
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN.1: 2
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 13
    • FCS_CKM.2: 2
    • FCS_CKM.4: 10
    • FCS_CKM.4.1: 1
    • FCS_COP: 11
    • FCS_COP.1: 2
  • FDP:
    • FDP_ACC.1: 10
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 5
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_IFC.1: 2
    • FDP_IFF: 2
    • FDP_ITC.1: 6
    • FDP_ITC.2: 6
  • FIA:
    • FIA_AFL.1: 4
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD.1: 3
    • FIA_ATD.1.1: 1
    • FIA_UAU.1: 1
    • FIA_UAU.2: 4
    • FIA_UAU.2.1: 1
    • FIA_UID.1: 5
    • FIA_UID.2: 6
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MSA.1: 6
    • FMT_MSA.1.1: 1
    • FMT_MSA.3: 7
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 8
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITT.1: 4
    • FPT_ITT.1.1: 1
pdf_data/st_keywords/cc_claims
  • OE:
    • OE.ADMIN: 1
    • OE.CERTIFICATES: 1
    • OE.DATABASE: 1
    • OE.ENVIRONMENT: 1
    • OE.INSTALL: 1
    • OE.NETWORK: 1
    • OE.PHYSICAL: 1
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 4
pdf_data/st_keywords/eval_facility
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • RC:
      • RC4: 7
pdf_data/st_keywords/asymmetric_crypto
pdf_data/st_keywords/pq_crypto
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA512: 3
pdf_data/st_keywords/crypto_scheme
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • SSL:
      • SSL: 10
pdf_data/st_keywords/randomness
pdf_data/st_keywords/cipher_mode
pdf_data/st_keywords/ecc_curve
pdf_data/st_keywords/crypto_engine
pdf_data/st_keywords/tls_cipher_suite
pdf_data/st_keywords/crypto_library
pdf_data/st_keywords/vulnerability
pdf_data/st_keywords/side_channel_analysis
pdf_data/st_keywords/technical_report_id
pdf_data/st_keywords/device_model
pdf_data/st_keywords/tee_name
pdf_data/st_keywords/os_name
pdf_data/st_keywords/cplc_data
pdf_data/st_keywords/ic_data_group
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-1: 1
    • FIPS 180-2: 2
    • FIPS140-1: 1
  • RFC:
    • RFC 4345: 3
pdf_data/st_keywords/javacard_version
pdf_data/st_keywords/javacard_api_const
pdf_data/st_keywords/javacard_packages
pdf_data/st_keywords/certification_process
pdf_data/st_metadata
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/convert_ok False True
state/st/download_ok False True
state/st/extract_ok False True
state/st/pdf_hash Different Different
state/st/txt_hash Different Different