Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Junos OS 22.2R1 for MX Series with MX-SPC3
Certificate Number: 2023/145
Bundesdruckerei Document Application withtamper-evident casing Version 2.6.1; FirmwareVersion 1.6.24-604, TOE Casing Version 0
None
name Junos OS 22.2R1 for MX Series with MX-SPC3 Bundesdruckerei Document Application withtamper-evident casing Version 2.6.1; FirmwareVersion 1.6.24-604, TOE Casing Version 0
category Network and Network-Related Devices and Systems Other Devices and Systems
scheme AU DE
not_valid_after 21.12.2028 30.01.2030
not_valid_before 21.12.2023 30.01.2025
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/AISEP_Certificate_2023_145_Junos%2022.2R1%20for%20MX%20series%20with%20MX-SPC3_EFT-T030_OS.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/AISEP-CC-CR-2023-EFT-T030-CR-V1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Juniper%20JunOS%2022.2R1%20MX%20Routers%20with%20MX-SPC3%201.1%201.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247b_pdf.pdf
manufacturer Juniper Networks, Inc. Bundesdruckerei GmbH
manufacturer_web https://www.juniper.net/ https://www.bundesdruckerei.de
security_level {} EAL3
dgst ddd51b9acf9f4543 df606f5845937bda
heuristics/cert_id Certificate Number: 2023/145
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 {}
heuristics/extracted_versions 22.2 2.6.1, 1.6.24
heuristics/scheme_data
  • category: Electronic ID documents
  • cert_id: BSI-DSZ-CC-1247-2025
  • certification_date: 30.01.2025
  • enhanced:
    • applicant: Bundesdruckerei GmbH Kommandantenstraße 18 10969 Berlin
    • assurance_level: EAL3
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247c_pdf.pdf?__blob=publicationFile&v=2
    • certification_date: 30.01.2025
    • description: The Target of Evaluation (TOE) is the Bundesdruckerei Document Application with tamper-evident casing 2.6.1. The Document Application is running on a Document Management Terminal (DMT). It is used to read the German Passport (ePass), to read and update the electronic data of the German Identity Card (“Personalausweis (PA)”) and electronic Resident Permit Card (“elektronischer Aufenthaltstitel (eAT)”) as well as to verify the document’s authenticity and the integrity of its data. The TOE is operated by governmental organisations, e.g. municipal office, police, government or other state approved agencies. The TOE is specifically applied in registration offices to allow card holders to verify that their ePass, PA or eAT is working correctly. In case of PA and eAT it is further possible to update the address information of the card holder, the card holder’s PIN for eID applications, and the community ID (“Gemeindeschlüssel”). In addition, the eID application functionality of the PA or eAT can be activated or deactivated. Additionally, the TOE ensures secure communication to external control software and provides a tamper-evident enclosure. Necessary protocols for the communication of the TOE with the electronic identity documents like the ePass, PA or eAT are described in [ICAO_9303], [TR-03110-1], [TR-03110-2], and [TR-03110-3].
    • entries: [frozendict({'id': 'BSI', 'description': 'Maintenance Report'}), frozendict({'id': 'BSI-DSZ-CC-1247-2025', 'description': 'Certificate'})]
    • evaluation_facility: TÜV Informationstechnik GmbH
    • expiration_date: 29.01.2030
    • product: Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1, Firmware Version 1.6.24-604, TOE Casing Version 0
    • protection_profile: Common Criteria Protection Profile for Document Management Terminal DMT-PP, BSI-CC-PP-0064-V2-2018, Version: 2.0, 2018-06-06, Federal Office for Information Security (BSI)
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247a_pdf.pdf?__blob=publicationFile&v=2
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247b_pdf.pdf?__blob=publicationFile&v=2
  • product: Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1, Firmware Version 1.6.24-604, TOE Casing …
  • subcategory: Software
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Hoheitliche_Dokumente-Software/1247.html
  • vendor: Bundesdruckerei GmbH
heuristics/protection_profiles 89f2a255423f4a20, 27e82aaf21b02155 {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/mod_vpngw_v1.1.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf {}
pdf_data/cert_filename AISEP_Certificate_2023_145_Junos 22.2R1 for MX series with MX-SPC3_EFT-T030_OS.pdf
pdf_data/cert_keywords/cc_cert_id
  • AU:
    • Certificate Number: 2023/145: 1
pdf_data/cert_keywords/cc_protection_profile_id
pdf_data/cert_keywords/cc_security_level
pdf_data/cert_keywords/cc_sar
pdf_data/cert_keywords/cc_sfr
pdf_data/cert_keywords/cc_claims
pdf_data/cert_keywords/vendor
pdf_data/cert_keywords/eval_facility
pdf_data/cert_keywords/symmetric_crypto
pdf_data/cert_keywords/asymmetric_crypto
pdf_data/cert_keywords/pq_crypto
pdf_data/cert_keywords/hash_function
pdf_data/cert_keywords/crypto_scheme
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_keywords/randomness
pdf_data/cert_keywords/cipher_mode
pdf_data/cert_keywords/ecc_curve
pdf_data/cert_keywords/crypto_engine
pdf_data/cert_keywords/tls_cipher_suite
pdf_data/cert_keywords/crypto_library
pdf_data/cert_keywords/vulnerability
pdf_data/cert_keywords/side_channel_analysis
pdf_data/cert_keywords/technical_report_id
pdf_data/cert_keywords/device_model
pdf_data/cert_keywords/tee_name
pdf_data/cert_keywords/os_name
pdf_data/cert_keywords/cplc_data
pdf_data/cert_keywords/ic_data_group
pdf_data/cert_keywords/standard_id
pdf_data/cert_keywords/javacard_version
pdf_data/cert_keywords/javacard_api_const
pdf_data/cert_keywords/javacard_packages
pdf_data/cert_keywords/certification_process
pdf_data/cert_metadata
  • /CreationDate: D:20240321153546+11'00'
  • /ModDate: D:20240321153546+11'00'
  • pdf_file_size_bytes: 160998
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename AISEP-CC-CR-2023-EFT-T030-CR-V1.0.pdf
pdf_data/report_frontpage
      pdf_data/report_keywords/cc_cert_id
      pdf_data/report_keywords/cc_protection_profile_id
      pdf_data/report_keywords/cc_security_level
      pdf_data/report_keywords/cc_sar
      pdf_data/report_keywords/cc_sfr
      pdf_data/report_keywords/cc_claims
      pdf_data/report_keywords/vendor
      pdf_data/report_keywords/eval_facility
      • Teron:
        • Teron Labs: 4
      pdf_data/report_keywords/symmetric_crypto
      pdf_data/report_keywords/asymmetric_crypto
      pdf_data/report_keywords/pq_crypto
      pdf_data/report_keywords/hash_function
      pdf_data/report_keywords/crypto_scheme
      pdf_data/report_keywords/crypto_protocol
      • IPsec:
        • IPsec: 2
      • SSH:
        • SSH: 3
        • SSHv2: 2
      • VPN:
        • VPN: 8
      pdf_data/report_keywords/randomness
      • RNG:
        • RBG: 1
      pdf_data/report_keywords/cipher_mode
      pdf_data/report_keywords/ecc_curve
      pdf_data/report_keywords/crypto_engine
      pdf_data/report_keywords/tls_cipher_suite
      pdf_data/report_keywords/crypto_library
      pdf_data/report_keywords/vulnerability
      pdf_data/report_keywords/side_channel_analysis
      pdf_data/report_keywords/technical_report_id
      pdf_data/report_keywords/device_model
      pdf_data/report_keywords/tee_name
      pdf_data/report_keywords/os_name
      pdf_data/report_keywords/cplc_data
      pdf_data/report_keywords/ic_data_group
      pdf_data/report_keywords/standard_id
      pdf_data/report_keywords/javacard_version
      pdf_data/report_keywords/javacard_api_const
      pdf_data/report_keywords/javacard_packages
      pdf_data/report_keywords/certification_process
      pdf_data/report_metadata
      pdf_data/st_filename Juniper JunOS 22.2R1 MX Routers with MX-SPC3 1.1 1.pdf
      pdf_data/st_keywords/cc_cert_id
      pdf_data/st_keywords/cc_protection_profile_id
      pdf_data/st_keywords/cc_security_level
      pdf_data/st_keywords/cc_sar
      • ADV:
        • ADV_FSP.1: 1
      • AGD:
        • AGD_OPE.1: 1
        • AGD_PRE.1: 1
      • ALC:
        • ALC_CMC.1: 1
        • ALC_CMS.1: 1
      • ASE:
        • ASE_CCL.1: 1
        • ASE_ECD.1: 1
        • ASE_INT.1: 1
        • ASE_OBJ.1: 1
        • ASE_REQ.1: 1
        • ASE_SPD.1: 1
        • ASE_TSS.1: 1
      • ATE:
        • ATE_IND.1: 1
      • AVA:
        • AVA_VAN: 1
        • AVA_VAN.1: 1
      pdf_data/st_keywords/cc_sfr
      • FAU:
        • FAU_GEN: 5
        • FAU_GEN.1: 8
        • FAU_GEN.2: 5
        • FAU_GEN.2.1: 1
        • FAU_STG.1: 5
        • FAU_STG.1.1: 1
        • FAU_STG.1.2: 1
        • FAU_STG_EXT: 2
        • FAU_STG_EXT.1: 4
        • FAU_STG_EXT.1.1: 1
        • FAU_STG_EXT.1.2: 1
        • FAU_STG_EXT.1.3: 1
      • FCS:
        • FCS_CKM: 12
        • FCS_CKM.1: 20
        • FCS_CKM.2: 16
        • FCS_CKM.2.1: 1
        • FCS_CKM.4: 12
        • FCS_CKM.4.1: 1
        • FCS_COP: 55
        • FCS_COP.1: 7
        • FCS_ITC: 1
        • FCS_NTP_EXT.1.4: 1
        • FCS_RBG_EXT: 2
        • FCS_RBG_EXT.1: 12
        • FCS_RBG_EXT.1.1: 2
        • FCS_RBG_EXT.1.2: 1
        • FCS_SSHS_EXT: 2
        • FCS_SSHS_EXT.1: 7
        • FCS_SSHS_EXT.1.1: 1
        • FCS_SSHS_EXT.1.2: 1
        • FCS_SSHS_EXT.1.3: 1
        • FCS_SSHS_EXT.1.4: 1
        • FCS_SSHS_EXT.1.5: 1
        • FCS_SSHS_EXT.1.6: 1
        • FCS_SSHS_EXT.1.7: 1
        • FCS_SSHS_EXT.1.8: 1
        • FCS_TLSC_EXT.2.3: 1
      • FIA:
        • FIA_AFL: 2
        • FIA_AFL.1: 10
        • FIA_AFL.1.1: 1
        • FIA_AFL.1.2: 1
        • FIA_PMG_EXT: 2
        • FIA_PMG_EXT.1: 6
        • FIA_PMG_EXT.1.1: 1
        • FIA_PSK_EXT.1: 5
        • FIA_PSK_EXT.1.1: 1
        • FIA_PSK_EXT.1.2: 1
        • FIA_PSK_EXT.1.3: 1
        • FIA_PSK_EXT.1.4: 1
        • FIA_UAU: 2
        • FIA_UAU.7: 5
        • FIA_UAU.7.1: 1
        • FIA_UAU_EXT: 2
        • FIA_UAU_EXT.2: 5
        • FIA_UAU_EXT.2.1: 1
        • FIA_UIA_EXT: 2
        • FIA_UIA_EXT.1: 11
        • FIA_UIA_EXT.1.1: 1
        • FIA_UIA_EXT.1.2: 1
        • FIA_UID.1: 3
      • FMT:
        • FMT_MOF: 20
        • FMT_MOF.1: 3
        • FMT_MTD: 13
        • FMT_MTD.1: 2
        • FMT_SMF: 20
        • FMT_SMF.1: 3
        • FMT_SMR: 2
        • FMT_SMR.1: 5
        • FMT_SMR.2: 12
        • FMT_SMR.2.1: 1
        • FMT_SMR.2.2: 1
        • FMT_SMR.2.3: 1
      • FPT:
        • FPT_APW_EXT: 2
        • FPT_APW_EXT.1: 5
        • FPT_APW_EXT.1.1: 1
        • FPT_APW_EXT.1.2: 1
        • FPT_FLS: 5
        • FPT_FLS.1: 2
        • FPT_SKP_EXT: 2
        • FPT_SKP_EXT.1: 5
        • FPT_SKP_EXT.1.1: 1
        • FPT_STM: 1
        • FPT_STM.1: 2
        • FPT_STM_EXT: 2
        • FPT_STM_EXT.1: 5
        • FPT_STM_EXT.1.1: 1
        • FPT_STM_EXT.1.2: 1
        • FPT_TST_EXT: 2
        • FPT_TST_EXT.1: 6
        • FPT_TST_EXT.1.1: 1
        • FPT_TST_EXT.3: 4
        • FPT_TST_EXT.3.1: 1
        • FPT_TST_EXT.3.2: 1
        • FPT_TUD_EXT: 2
        • FPT_TUD_EXT.1: 10
        • FPT_TUD_EXT.1.1: 1
        • FPT_TUD_EXT.1.2: 1
      • FTA:
        • FTA_SSL: 2
        • FTA_SSL.3: 7
        • FTA_SSL.4: 6
        • FTA_SSL_EXT: 2
        • FTA_SSL_EXT.1: 6
        • FTA_SSL_EXT.1.1: 1
        • FTA_TAB: 2
        • FTA_TAB.1: 9
      • FTP:
        • FTP_ITC: 3
        • FTP_ITC.1: 26
        • FTP_ITC.1.1: 1
        • FTP_ITC.1.2: 1
        • FTP_ITC.1.3: 1
        • FTP_ITC.2: 6
        • FTP_TRP: 9
        • FTP_TRP.1: 3
      pdf_data/st_keywords/cc_claims
      • A:
        • A.ADMIN_CREDENTIALS_SECURE: 1
        • A.CONNECTIONS: 2
        • A.LIMITED_FUNCTIONALITY: 1
        • A.NO_THRU_TRAFFIC_PROTECTION: 1
        • A.PHYSICAL_PROTECTION: 1
        • A.REGULAR_UPDATES: 1
        • A.RESIDUAL_INFORMATION: 1
        • A.TRUSTED_ADMINSTRATOR: 1
      • O:
        • O.ADDRESS_FILTERING: 1
        • O.AUTHENTICATION: 1
        • O.CRYPTOGRAPHIC_FUNCTIONS: 1
        • O.FAIL_SECURE: 1
        • O.PORT_FILTERING: 1
        • O.SYSTEM_MONITORING: 1
        • O.TOE_ADMINISTRATION: 1
      • OE:
        • OE.ADMIN_CREDENTIALS_SECURE: 1
        • OE.CONNECTIONS: 1
        • OE.NO_GENERAL_PURPOSE: 1
        • OE.NO_THRU_TRAFFIC_PROTECTION: 1
        • OE.PHYSICAL: 1
        • OE.RESIDUAL_INFORMATION: 1
        • OE.TRUSTED_ADMIN: 1
        • OE.UPDATES: 1
      • T:
        • T.DATA_INTEGRITY: 1
        • T.PASSWORD_CRACKING: 1
        • T.REPLAY_ATTACK: 1
        • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
        • T.SECURITY_FUNCTIONALITY_FAILURE: 1
        • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
        • T.UNDETECTED_ACTIVITY: 1
        • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
        • T.UPDATE_COMPROMISE: 1
        • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
        • T.WEAK_CRYPTOGRAPHY: 1
      pdf_data/st_keywords/vendor
      pdf_data/st_keywords/eval_facility
      pdf_data/st_keywords/symmetric_crypto
      • AES_competition:
        • AES:
          • AES: 35
          • AES-: 1
      • DES:
        • DES:
          • DES: 1
      • constructions:
        • MAC:
          • HMAC: 30
          • HMAC-SHA-256: 5
          • HMAC-SHA-384: 3
          • HMAC-SHA-512: 1
      pdf_data/st_keywords/asymmetric_crypto
      • ECC:
        • ECC:
          • ECC: 4
        • ECDH:
          • ECDH: 4
        • ECDSA:
          • ECDSA: 36
      • FF:
        • DH:
          • DH: 35
          • Diffie-Hellman: 7
      • RSA:
        • RSA 2048: 7
        • RSA 4096: 6
      pdf_data/st_keywords/pq_crypto
      pdf_data/st_keywords/hash_function
      • SHA:
        • SHA1:
          • SHA-1: 2
          • SHA1: 3
        • SHA2:
          • SHA-256: 12
          • SHA-384: 4
          • SHA-512: 3
      pdf_data/st_keywords/crypto_scheme
      • AEAD:
        • AEAD: 2
      • KA:
        • Key Agreement: 2
      • KEX:
        • Key Exchange: 4
        • Key exchange: 1
      • MAC:
        • MAC: 4
      pdf_data/st_keywords/crypto_protocol
      • IKE:
        • IKE: 57
        • IKEv1: 19
        • IKEv2: 17
      • IPsec:
        • IPsec: 40
      • SSH:
        • SSH: 112
        • SSHv2: 13
      • TLS:
        • DTLS:
          • DTLS: 1
        • SSL:
          • SSL: 3
        • TLS:
          • TLS: 3
      • VPN:
        • VPN: 37
      pdf_data/st_keywords/randomness
      • PRNG:
        • DRBG: 31
        • PRNG: 1
      • RNG:
        • RBG: 3
        • RNG: 1
      pdf_data/st_keywords/cipher_mode
      • CBC:
        • CBC: 16
      • CCM:
        • CCM: 1
      • CTR:
        • CTR: 4
      • GCM:
        • GCM: 12
      pdf_data/st_keywords/ecc_curve
      • NIST:
        • Curve P-256: 2
        • Curve P-384: 1
        • Curve P-521: 1
        • P-256: 36
        • P-384: 35
        • P-521: 27
        • prime256v1: 2
        • prime384v1: 1
      pdf_data/st_keywords/crypto_engine
      pdf_data/st_keywords/tls_cipher_suite
      pdf_data/st_keywords/crypto_library
      • OpenSSL:
        • OpenSSL: 7
      pdf_data/st_keywords/vulnerability
      pdf_data/st_keywords/side_channel_analysis
      • FI:
        • DFA: 1
      pdf_data/st_keywords/technical_report_id
      pdf_data/st_keywords/device_model
      pdf_data/st_keywords/tee_name
      • IBM:
        • SSC: 1
      pdf_data/st_keywords/os_name
      pdf_data/st_keywords/cplc_data
      pdf_data/st_keywords/ic_data_group
      pdf_data/st_keywords/standard_id
      • CC:
        • CCMB-2017-04-001: 1
        • CCMB-2017-04-002: 1
        • CCMB-2017-04-003: 1
      • FIPS:
        • FIPS 180-4: 5
        • FIPS 186-4: 5
        • FIPS 197: 5
        • FIPS 198-1: 5
        • FIPS PUB 186-4: 10
      • ISO:
        • ISO/IEC 14888-3: 1
        • ISO/IEC 18031:2011: 2
        • ISO/IEC 9796-2: 1
      • NIST:
        • NIST SP 800-56A: 2
        • SP 800-56: 1
      • PKCS:
        • PKCS #1: 1
      • RFC:
        • RFC 2409: 2
        • RFC 2460: 1
        • RFC 2986: 2
        • RFC 3526: 3
        • RFC 3602: 4
        • RFC 4106: 3
        • RFC 4109: 2
        • RFC 4251: 2
        • RFC 4252: 1
        • RFC 4253: 3
        • RFC 4254: 1
        • RFC 4301: 2
        • RFC 4303: 1
        • RFC 4306: 2
        • RFC 4443: 1
        • RFC 4868: 4
        • RFC 4945: 2
        • RFC 5077: 1
        • RFC 5114: 1
        • RFC 5280: 5
        • RFC 5282: 1
        • RFC 5656: 1
        • RFC 5996: 1
        • RFC 6668: 1
        • RFC 768: 1
        • RFC 791: 1
        • RFC 792: 1
        • RFC 793: 1
        • RFC2460: 1
        • RFC3526: 2
        • RFC5656: 1
        • RFC768: 1
        • RFC791: 1
        • RFC793: 1
      • X509:
        • X.509: 13
      pdf_data/st_keywords/javacard_version
      pdf_data/st_keywords/javacard_api_const
      pdf_data/st_keywords/javacard_packages
      pdf_data/st_keywords/certification_process
      • OutOfScope:
        • FTP) and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules which implement the underlying cryptographic services: 1
        • out of scope: 1
        • to any information exchange. Telnet, File Transfer Protocol (FTP) and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules which implement the underlying cryptographic services. The: 1
      pdf_data/st_metadata
      state/cert/convert_garbage True False
      state/cert/convert_ok True False
      state/cert/download_ok True False
      state/cert/extract_ok True False
      state/cert/pdf_hash Different Different
      state/cert/txt_hash Different Different
      state/report/convert_ok True False
      state/report/download_ok True False
      state/report/extract_ok True False
      state/report/pdf_hash Different Different
      state/report/txt_hash Different Different
      state/st/convert_ok True False
      state/st/download_ok True False
      state/st/extract_ok True False
      state/st/pdf_hash Different Different
      state/st/txt_hash Different Different