Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Bundesdruckerei Document Application withtamper-evident casing Version 2.6.1; FirmwareVersion 1.6.24-604, TOE Casing Version 0
BSI-DSZ-CC-1247-2025
secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
BSI-DSZ-CC-1044-V9-2026
name Bundesdruckerei Document Application withtamper-evident casing Version 2.6.1; FirmwareVersion 1.6.24-604, TOE Casing Version 0 secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
not_valid_after 29.01.2030 23.02.2031
not_valid_before 30.01.2025 24.02.2026
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247c_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247a_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1247b_pdf.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9b_pdf.pdf
manufacturer Bundesdruckerei GmbH Secunet Security Networks AG
manufacturer_web https://www.bundesdruckerei.de https://www.secunet.com/en/
security_level EAL3 ALC_FLR.2, ALC_TAT.1, ADV_FSP.4, ADV_TDS.3, AVA_VAN.5, ADV_IMP.1, EAL3+
dgst df606f5845937bda 52226eebf57c42fc
heuristics/cert_id BSI-DSZ-CC-1247-2025 BSI-DSZ-CC-1044-V9-2026
heuristics/extracted_sars AGD_OPE.1, ALC_DEL.1, ATE_FUN.1, ASE_CCL.1, AVA_VAN.5, ASE_TSS.1, ASE_INT.1, ADV_ARC.1, ASE_REQ.2, ATE_COV.2, ALC_CMC.3, ALC_LCD.1, ADV_TDS.2 ALC_DEL.1, ATE_FUN.1, AVA_VAN.5, ASE_INT.1, ADV_FSP.4, ADV_TDS.3, AGD_OPE.1, ASE_CCL.1, ADV_ARC.1, ATE_COV.2, ASE_SPD.1, ATE_IND.2, ALC_CMC.4, ALC_TAT.1, ATE_DPT.1, ASE_ECD.1, ALC_CMS.3, AGD_PRE.1, ALC_DVS.1, ALC_FLR.2, ASE_TSS.1, ADV_IMP.1, ASE_REQ.2, ALC_LCD.1, ASE_OBJ.2
heuristics/extracted_versions 1.6.24, 2.6.1 2.1.0, 2.0.0, 2.1, 6.0.8
heuristics/report_references/directly_referencing BSI-DSZ-CC-1215-2023 BSI-DSZ-CC-1044-V8-2025
heuristics/report_references/indirectly_referencing BSI-DSZ-CC-1181-2021, BSI-DSZ-CC-1215-2023, BSI-DSZ-CC-1161-2020, BSI-DSZ-CC-1093, BSI-DSZ-CC-1125-2019 BSI-DSZ-CC-1044-V7-2023, BSI-DSZ-CC-1044-V8-2025
heuristics/scheme_data
  • category: Electronic ID documents
  • cert_id: BSI-DSZ-CC-1247-2025
  • certification_date: 30.01.2025
  • enhanced:
    • applicant: Bundesdruckerei GmbH Kommandantenstraße 18 10969 Berlin
    • assurance_level: EAL3
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247c_pdf.pdf?__blob=publicationFile&v=2
    • certification_date: 30.01.2025
    • description: The Target of Evaluation (TOE) is the Bundesdruckerei Document Application with tamper-evident casing 2.6.1. The Document Application is running on a Document Management Terminal (DMT). It is used to read the German Passport (ePass), to read and update the electronic data of the German Identity Card (“Personalausweis (PA)”) and electronic Resident Permit Card (“elektronischer Aufenthaltstitel (eAT)”) as well as to verify the document’s authenticity and the integrity of its data. The TOE is operated by governmental organisations, e.g. municipal office, police, government or other state approved agencies. The TOE is specifically applied in registration offices to allow card holders to verify that their ePass, PA or eAT is working correctly. In case of PA and eAT it is further possible to update the address information of the card holder, the card holder’s PIN for eID applications, and the community ID (“Gemeindeschlüssel”). In addition, the eID application functionality of the PA or eAT can be activated or deactivated. Additionally, the TOE ensures secure communication to external control software and provides a tamper-evident enclosure. Necessary protocols for the communication of the TOE with the electronic identity documents like the ePass, PA or eAT are described in [ICAO_9303], [TR-03110-1], [TR-03110-2], and [TR-03110-3].
    • entries: [frozendict({'id': 'BSI', 'description': 'The changes are mainly related to an update of life cycle security aspects by including a production site. Additionally a production test functionality has been changed, the seals have been updated to a new Bundesdruckerei GmbH Logo including a respective update of AGD and a minor change in the ST. Configuration Management procedures required a change in the product identifier. Therefore the version number changed from "Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1, Firmware Version 2.0.4-612, TOE Casing Version 0" to "Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1; Firmware Version 2.0.8-616, TOE Casing Version 0".'}), frozendict({'id': 'BSI', 'description': 'Maintenance Report'}), frozendict({'id': 'BSI-DSZ-CC-1247-2025', 'description': 'Certificate'})]
    • evaluation_facility: TÜV Informationstechnik GmbH
    • expiration_date: 29.01.2030
    • product: Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1, Firmware Version 1.6.24-604, TOE Casing Version 0
    • protection_profile: Common Criteria Protection Profile for Document Management Terminal DMT-PP, BSI-CC-PP-0064-V2-2018, Version: 2.0, 2018-06-06, Federal Office for Information Security (BSI)
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247a_pdf.pdf?__blob=publicationFile&v=2
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1247b_pdf.pdf?__blob=publicationFile&v=2
  • product: Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1, Firmware Version 1.6.24-604, TOE Casing …
  • subcategory: Software
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Hoheitliche_Dokumente-Software/1247.html
  • vendor: Bundesdruckerei GmbH
  • category: eHealth
  • cert_id: BSI-DSZ-CC-1044-V9-2026
  • certification_date: 24.02.2026
  • enhanced:
    • applicant: secunet Security Networks AG Kurfürstenstraße 58 45138 Essen
    • assurance_level: EAL3,AVA_VAN.5,ALC_TAT.1,ALC_FLR.2,ADV_TDS.3,ADV_IMP.1,ADV_FSP.4
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9c_pdf.pdf?__blob=publicationFile&v=2
    • certification_date: 24.02.2026
    • description: Target of evaluation (TOE) is the product secunet konnektor 2.0.0 provided by secunet Security Networks AG. The TOE is a pure software TOE consisting of the Netzkonnektor as specified in the protection profile Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097, Version 1.5, 27.04.2018, Bundesamt für Sicherheit in der Informationstechnik (BSI)
    • entries: [frozendict({'id': 'BSI-DSZ-CC-1044-V9-2026 (Ausstellungsdatum / Certification Date 24.02.2026, gültig bis / valid until 23.02.2031)', 'description': ') is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations'}), frozendict({'id': 'BSI-DSZ-CC-1044-V8-2025 (Ausstellungsdatum / Certification Date 10.06.2025, gültig bis / valid until 09.06.2030)', 'description': ') is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023 (Ausstellungsdatum / Certification Date 19.10.2023, gültig bis / valid until 18.10.2028)', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V6-2022-MA-01 (Ausstellungsdatum / Certification Date 21.11.2022) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V6-2022 (Ausstellungsdatum / Certification Date 09.09.2022, gültig bis / valid until 08.09.2027)', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V5-2022 (Ausstellungsdatum / Certification Date 08.04.2022, gültig bis / valid until 07.04.2027)', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V4-2021 (Ausstellungsdatum / Certification Date 16.07.2021, gültig bis / valid until 15.07.2026)', 'description': ')'}), frozendict({'id': 'BSI-DSZ-CC-1044-V3-2020 (Ausstellungsdatum / Certification Date 06.11.2020, gültig bis / valid until 05.11.2025)', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V2-2019-MA-01 (Ausstellungsdatum / Certification Date 10.06.2020) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration."'}), frozendict({'id': 'BSI-DSZ-CC-1044-V2-2019 (Ausstellungsdatum / Certification Date 13.11.2019, gültig bis / valid until 12.11.2024)', 'description': 'Certificate'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019-MA-02 (Ausstellungsdatum / Certification Date 19.09.2019) Maintanance Report', 'description': 'Maintanance Report'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019_MA-01 (Ausstellungsdatum / Certification Date 06.06.2019) Maintenance Report', 'description': 'The change compared to the certified product was made at the level of adjustment of the guidance document.'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019 (Ausstellungsdatum / Certification Date 25.01.2019, gültig bis / valid until 24.01.2024) Zertifizierungsreport / Certification Report', 'description': 'Certificate'})]
    • evaluation_facility: SRC Security Research & Consulting GmbH
    • expiration_date: 23.02.2031
    • product: secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
    • protection_profile: Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097-V2-2020-MA-02, Version 1.6.7, vom 15.03.2023
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9a_pdf.pdf?__blob=publicationFile&v=2
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9b_pdf.pdf?__blob=publicationFile&v=3
  • product: secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
  • subcategory: Software
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1044.html
  • vendor: secunet Security Networks AG
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-1044-V2-2019, BSI-DSZ-CC-1044-V5-2022, BSI-DSZ-CC-1044-V4-2021, BSI-DSZ-CC-1044-2019, BSI-DSZ-CC-1135-2020, BSI-DSZ-CC-1209-V2-2025, BSI-DSZ-CC-1044-V6-2022, BSI-DSZ-CC-1044-V7-2023, BSI-DSZ-CC-1044-V8-2025
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-1044-V2-2019, BSI-DSZ-CC-1044-V5-2022, BSI-DSZ-CC-1044-V4-2021, BSI-DSZ-CC-1044-2019, BSI-DSZ-CC-1135-2020, BSI-DSZ-CC-1209-V2-2025, BSI-DSZ-CC-1044-V6-2022, BSI-DSZ-CC-1190-2022, BSI-DSZ-CC-1044-V7-2023, BSI-DSZ-CC-1174-2021, BSI-DSZ-CC-1157-2020, BSI-DSZ-CC-1218-2023, BSI-DSZ-CC-1184-2022, BSI-DSZ-CC-1163-2021, BSI-DSZ-CC-1044-V8-2025
heuristics/protection_profiles {} 19e2d2b1593c97a5
maintenance_updates
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0097V2b_pdf.pdf
pdf_data/cert_filename 1247c_pdf.pdf 1044V9c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1247-2025: 1
  • DE:
    • BSI-DSZ-CC-1044-V9-2026: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0064-: 1
  • BSI:
    • BSI-CC-PP-0097-V2-2020-MA-02: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 3: 1
    • EAL 4: 1
  • EAL:
    • EAL 2: 1
    • EAL 3: 1
    • EAL 4: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/report_filename 1247a_pdf.pdf 1044V9a_pdf.pdf
pdf_data/report_frontpage
  • DE:
    • cc_security_level: Common Criteria Part 3 extended EAL 3 valid until: 29 January 2030
    • cc_version: PP conformant Common Criteria Part 2 extended
    • cert_id: BSI-DSZ-CC-1247-2025
    • cert_item: Bundesdruckerei Document Application with tamper-evident casing Version 2.6.1; Firmware Version 1.6.24-604, TOE Casing Version 0
    • cert_lab: BSI
    • developer: Bundesdruckerei GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
    • ref_protection_profiles: Common Criteria Protection Profile for Document Management Terminal DMT-PP, BSI-CC-PP-0064- V2-2018, Version: 2.0, 2018-06-06, Federal Office for Information Security (BSI
  • DE:
    • cert_id: BSI-DSZ-CC-1044-V9-2026
    • cert_item: secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0
    • cert_lab: BSI
    • developer: secunet Security Networks AG
    • match_rules: ['(BSI-DSZ-CC-.+?) zu (.+?) der (.*)']
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1215-2023: 2
    • BSI-DSZ-CC-1247-2025: 15
  • DE:
    • BSI-DSZ-CC-1044-V8-: 1
    • BSI-DSZ-CC-1044-V8-2025: 2
    • BSI-DSZ-CC-1044-V9-2026: 18
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0064-: 1
    • BSI-CC-PP-0064-V2-2018: 2
  • BSI:
    • BSI-CC-PP-0097-2021: 1
    • BSI-CC-PP-0097-V2-2020-MA-02: 2
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 3: 3
    • EAL 4: 2
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 3: 4
    • EAL 4: 4
    • EAL 5: 1
    • EAL 5+: 1
    • EAL 6: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
  • ALC:
    • ALC_FLR: 3
  • ATE:
    • ATE_FUN: 1
    • ATE_IND: 4
  • AVA:
    • AVA_VAN: 2
  • ADV:
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • ALC:
    • ALC_CMS: 1
    • ALC_CMS.4: 1
    • ALC_FLR: 3
    • ALC_FLR.2: 4
    • ALC_TAT.1: 4
  • AVA:
    • AVA_VAN.5: 6
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1: 1
  • FIA:
    • FIA_API.1: 1
    • FIA_UAU.2: 1
    • FIA_UAU.4: 1
    • FIA_UAU.5: 1
    • FIA_UAU.6: 1
    • FIA_UID.2: 1
  • FMT:
    • FMT_MTD: 3
    • FMT_SMF.1: 1
    • FMT_SMR.1: 1
  • FPT:
    • FPT_PHP: 1
  • FTP:
    • FTP_TRP: 1
  • FDP:
    • FDP_ITC: 2
    • FDP_UIT: 2
pdf_data/report_keywords/cc_claims
  • OE:
    • OE.NK: 4
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 3
  • SRC:
    • SRC Security Research & Consulting: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
      • AES-: 1
  • DES:
    • 3DES:
      • 3DES: 4
    • DES:
      • DES: 2
  • constructions:
    • MAC:
      • CMAC: 2
  • AES_competition:
    • AES:
      • AES: 8
      • AES-: 1
      • AES-128: 1
      • AES-256: 1
  • constructions:
    • MAC:
      • HMAC: 10
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 7
  • ECC:
    • ECC:
      • ECC: 4
    • ECDH:
      • ECDH: 5
    • ECDSA:
      • ECDSA: 14
  • FF:
    • DH:
      • DH: 7
      • Diffie-Hellman: 4
  • RSA:
    • RSA-2048: 1
    • RSA-3072: 1
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA1: 2
    • SHA2:
      • SHA224: 1
      • SHA256: 6
      • SHA384: 2
      • SHA512: 1
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-2: 1
      • SHA-256: 8
      • SHA-384: 3
      • SHA256: 2
pdf_data/report_keywords/crypto_scheme
  • MAC:
    • MAC: 6
  • AEAD:
    • AEAD: 1
  • KEX:
    • Key Exchange: 6
pdf_data/report_keywords/crypto_protocol
  • PACE:
    • PACE: 9
  • SSH:
    • SSH: 5
  • TLS:
    • TLS:
      • TLS: 2
      • TLS 1.3: 1
  • IKE:
    • IKE: 3
    • IKEv2: 13
  • IPsec:
    • IPsec: 9
  • TLS:
    • TLS:
      • TLS: 22
      • TLS v1.2: 7
      • TLSv1.2: 1
  • VPN:
    • VPN: 13
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 6
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 6
  • CBC:
    • CBC: 1
  • GCM:
    • GCM: 8
pdf_data/report_keywords/ecc_curve
  • NIST:
    • NIST P-256: 4
    • P-256: 4
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
  • BSI:
    • BSI 7148: 1
    • BSI TR-03111: 2
    • BSI TR-03116-1: 1
    • BSI TR-03154: 1
    • BSI TR-03155: 1
pdf_data/report_keywords/os_name
  • STARCOS:
    • STARCOS 3: 2
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 20: 1
    • AIS 32: 1
    • AIS 38: 1
    • AIS48: 1
  • FIPS:
    • FIPS 197: 8
    • FIPS PUB 46-3: 2
    • FIPS180-4: 8
    • FIPS186-2: 6
    • FIPS186-4: 1
    • FIPS197: 1
  • ICAO:
    • ICAO: 2
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 15946-: 6
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 9797-: 2
  • RFC:
    • RFC5246: 1
    • RFC8446: 1
  • BSI:
    • AIS 20: 2
    • AIS 32: 1
    • AIS 34: 2
  • FIPS:
    • FIPS 180-4: 10
    • FIPS 186-4: 1
    • FIPS 197: 4
    • FIPS PUB 180-4: 1
    • FIPS180-4: 5
    • FIPS186-4: 6
    • FIPS197: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • PKCS:
    • PKCS#1: 3
    • PKCS#12: 1
  • RFC:
    • RFC 2104: 1
    • RFC 3268: 1
    • RFC 7027: 1
    • RFC-2104: 3
    • RFC-2404: 1
    • RFC-3268: 3
    • RFC-3526: 1
    • RFC-3602: 2
    • RFC-4106: 1
    • RFC-4301: 3
    • RFC-4303: 3
    • RFC-4492: 2
    • RFC-4868: 1
    • RFC-4880: 1
    • RFC-5116: 1
    • RFC-5246: 4
    • RFC-5289: 1
    • RFC-5639: 5
    • RFC-6931: 1
    • RFC-6954: 2
    • RFC-7296: 3
    • RFC-8017: 3
    • RFC-8247: 1
    • RFC2104: 1
    • RFC2404: 1
    • RFC3268: 1
    • RFC3526: 2
    • RFC3602: 1
    • RFC4055: 1
    • RFC4106: 1
    • RFC4301: 1
    • RFC4303: 1
    • RFC4346: 1
    • RFC4868: 1
    • RFC4880: 1
    • RFC5246: 1
    • RFC5280: 1
    • RFC5289: 1
    • RFC5639: 2
    • RFC5996: 1
    • RFC7027: 1
    • RFC7292: 1
    • RFC7296: 3
    • RFC8017: 3
    • RFC8247: 1
  • X509:
    • X.509: 1
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • Technical Report, Version 2, 2024-12-09, 1247_ETR_241209_v2, TÜV Informationstechnik GmbH, (confidential document) [8] Common Criteria Protection Profile for Document Management Terminal DMT-PP: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
    • list for the TOE, Version 1.46, 2024-12-09, ALC_CMS_DMT_V1.46.xlsx, Bundesdruckerei GmbH (confidential document) [10] Guidance documentation for the TOE, Version 1.232, 2024-06-20, VISOTEC® V- ÄNDERUNGSTERMINAL: 1
pdf_data/report_metadata
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /Keywords: "Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026"
  • /Subject: Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026
  • /Title: Zertifizierungsreport BSI-DSZ-CC-1044-V9-2026
  • pdf_file_size_bytes: 411320
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 35
pdf_data/st_filename 1247b_pdf.pdf 1044V9b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1247: 1
  • DE:
    • BSI-DSZ-CC-1044-: 1
    • BSI-DSZ-CC-1044-2019: 1
    • BSI-DSZ-CC-1044-V2-2019: 1
    • BSI-DSZ-CC-1044-V3-: 1
    • BSI-DSZ-CC-1044-V4-2021: 1
    • BSI-DSZ-CC-1044-V5-2022: 1
    • BSI-DSZ-CC-1044-V6-2022: 1
    • BSI-DSZ-CC-1044-V7-2023: 1
    • BSI-DSZ-CC-1044-V7-2023-MA-01: 1
    • BSI-DSZ-CC-1044-V7-2023-MA-02: 3
    • BSI-DSZ-CC-1044-V8-: 1
    • BSI-DSZ-CC-1044-V8-2025: 1
    • BSI-DSZ-CC-1128: 1
    • BSI-DSZ-CC-1128-: 2
    • BSI-DSZ-CC-1128-V5-: 1
    • BSI-DSZ-CC-1128-V6-: 1
    • BSI-DSZ-CC-1135-2020: 1
    • BSI-DSZ-CC-1209: 1
    • BSI-DSZ-CC-1209-2023: 3
    • BSI-DSZ-CC-1209-V2-2025: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0064-: 1
    • BSI-CC-PP-0064-V2-2018: 3
  • BSI:
    • BSI-CC-PP-0082-V4: 1
    • BSI-CC-PP-0097: 3
    • BSI-CC-PP-0098: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 3: 4
    • EAL3: 1
    • EAL4+: 2
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL 3+: 84
    • EAL3: 1
    • EAL5+: 1
    • EAL6: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_TDS.2: 1
  • AGD:
    • AGD_OPE.1: 1
  • ALC:
    • ALC_CMC.3: 1
    • ALC_DEL.1: 1
    • ALC_LCD.1: 1
  • APE:
    • APE_ECD: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_INT.1: 1
    • ASE_REQ.2: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_FUN.1: 1
  • AVA:
    • AVA_VAN.2: 1
    • AVA_VAN.5: 2
  • ADV:
    • ADV_ARC: 2
    • ADV_ARC.1: 1
    • ADV_FSP: 1
    • ADV_FSP.4: 3
    • ADV_IMP: 3
    • ADV_IMP.1: 3
    • ADV_TDS: 4
    • ADV_TDS.3: 3
  • AGD:
    • AGD_ADV: 3
    • AGD_DEL: 4
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC: 3
    • ALC_CMC.3: 2
    • ALC_CMC.4: 2
    • ALC_CMC_SIE: 1
    • ALC_CMS: 5
    • ALC_CMS.3: 2
    • ALC_CMS_SIE: 1
    • ALC_DEL: 2
    • ALC_DEL.1: 4
    • ALC_DVS: 3
    • ALC_DVS.1: 4
    • ALC_DVS_SIE: 1
    • ALC_FLR: 1
    • ALC_FLR.2: 6
    • ALC_LCD: 3
    • ALC_LCD.1: 4
    • ALC_LCD_SIE: 1
    • ALC_MOR: 1
    • ALC_TAT: 5
    • ALC_TAT.1: 6
    • ALC_TAT_SIE: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 2
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV: 2
    • ATE_COV.2: 1
    • ATE_DPT: 1
    • ATE_DPT.1: 1
    • ATE_FUN: 8
    • ATE_FUN.1: 1
    • ATE_IMP: 3
    • ATE_IND: 5
    • ATE_IND.2: 1
    • ATE_IND_DEV: 2
  • AVA:
    • AVA_ACC: 3
    • AVA_CCA: 2
    • AVA_VAN: 1
    • AVA_VAN.3: 1
    • AVA_VAN.5: 6
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 1
    • FAU_GEN.1: 5
    • FAU_GEN.1.1: 3
    • FAU_GEN.1.2: 2
  • FCS:
    • FCS_CKM: 13
    • FCS_CKM.1: 15
    • FCS_CKM.4: 5
    • FCS_CKM.4.1: 1
    • FCS_COP: 29
    • FCS_COP.1: 25
    • FCS_RNG: 3
    • FCS_RNG.1: 6
    • FCS_RNG.1.1: 1
    • FCS_RNG.1.2: 1
  • FDP:
    • FDP_RIP.1: 4
    • FDP_RIP.1.1: 1
  • FIA:
    • FIA_API: 1
    • FIA_API.1: 6
    • FIA_API.1.1: 1
    • FIA_UAU.1: 3
    • FIA_UAU.2: 6
    • FIA_UAU.2.1: 1
    • FIA_UAU.4: 5
    • FIA_UAU.4.1: 1
    • FIA_UAU.5: 4
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UAU.6: 4
    • FIA_UAU.6.1: 1
    • FIA_UID.1: 2
    • FIA_UID.2: 6
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MTD: 22
    • FMT_MTD.1: 5
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 5
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_PHP: 4
    • FPT_PHP.1: 2
  • FTP:
    • FTP_TRP: 4
    • FTP_TRP.1: 3
    • FTP_TRP.1.2: 1
  • FCS:
    • FCS_CKM: 6
    • FCS_CKM.1: 1
    • FCS_COP: 14
  • FDP:
    • FDP_ACF: 2
    • FDP_ITC: 2
    • FDP_ITC.2: 1
    • FDP_UIT: 2
  • FMT:
    • FMT_MTD.1: 1
  • FPT:
    • FPT_TDC: 10
  • FTP:
    • FTP_ITC: 3
    • FTP_TRP: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.PKI: 4
  • OE:
    • OE.PKI: 4
  • OSP:
    • OSP.RNG: 4
  • R:
    • R.CRL: 3
  • OE:
    • OE.NK: 17
pdf_data/st_keywords/vendor
  • GD:
    • Giesecke & Devrient: 1
    • Giesecke+Devrient: 1
pdf_data/st_keywords/eval_facility
  • DeutscheTelekom:
    • Deutsche Telekom Security: 1
  • SRC:
    • SRC Security Research & Consulting: 112
  • TSystems:
    • T-Systems International: 1
  • atsec:
    • atsec: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 8
    • E2:
      • E2: 1
  • DES:
    • 3DES:
      • 3DES: 4
      • Triple-DES: 4
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • CMAC: 2
      • KMAC: 1
  • AES_competition:
    • AES:
      • AES: 10
      • AES-: 2
      • AES-128: 2
  • constructions:
    • MAC:
      • HMAC: 10
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 2
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 1
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 1
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 5
    • ECDSA:
      • ECDSA: 15
  • FF:
    • DH:
      • DH: 7
      • Diffie-Hellman: 4
  • RSA:
    • RSA-2048: 1
    • RSA-3072: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 7
      • SHA1: 2
    • SHA2:
      • SHA-224: 2
      • SHA-256: 5
      • SHA-384: 2
      • SHA-512: 2
      • SHA256: 2
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-2: 1
      • SHA-256: 7
      • SHA-384: 1
      • SHA256: 1
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 12
  • AEAD:
    • AEAD: 1
  • KEX:
    • Key Exchange: 3
pdf_data/st_keywords/crypto_protocol
  • PACE:
    • PACE: 27
  • TLS:
    • TLS:
      • TLS: 2
      • TLS 1.2: 2
      • TLS1.2: 6
  • IKE:
    • IKE: 4
    • IKEv2: 14
  • IPsec:
    • IPsec: 16
  • SSH:
    • SSH: 1
  • TLS:
    • TLS:
      • TLS: 49
      • TLS 1.2: 2
      • TLS v1.2: 6
  • VPN:
    • VPN: 25
pdf_data/st_keywords/randomness
  • RNG:
    • RNG: 25
  • PRNG:
    • DRBG: 1
  • RNG:
    • RNG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 4
  • CBC:
    • CBC: 1
  • GCM:
    • GCM: 7
pdf_data/st_keywords/ecc_curve
  • Brainpool:
    • brainpoolP224r1: 1
    • brainpoolP256r1: 1
    • brainpoolP384r1: 1
    • brainpoolP512r1: 1
  • NIST:
    • NIST P-384: 1
    • P-256: 2
    • P-384: 1
    • secp256r1: 4
    • secp384r1: 4
    • secp521r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 1
pdf_data/st_keywords/crypto_library
  • BouncyCastle:
    • BouncyCastle: 1
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • physical tampering: 5
  • other:
    • JIL: 8
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI 07: 1
    • BSI 09: 1
    • BSI 10: 2
    • BSI 11: 1
    • BSI 17: 1
    • BSI 27: 1
    • BSI TR-03116-1: 1
    • BSI TR-03154: 1
    • BSI TR-03155: 1
    • BSI TR-03157: 2
pdf_data/st_keywords/os_name
  • STARCOS:
    • STARCOS: 2
    • STARCOS 3: 7
pdf_data/st_keywords/ic_data_group
  • EF:
    • EF.COM: 2
    • EF.DG1: 2
    • EF.DG13: 1
    • EF.DG16: 2
    • EF.DG2: 1
    • EF.DG3: 2
    • EF.DG4: 2
    • EF.DG5: 1
    • EF.SOD: 2
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS31: 2
  • FIPS:
    • FIPS 180-4: 2
    • FIPS 186-2: 1
    • FIPS 186-4: 1
    • FIPS PUB 197: 1
    • FIPS180-4: 3
    • FIPS186-2: 2
    • FIPS186-4: 3
    • FIPS197: 2
  • ICAO:
    • ICAO: 13
  • ISO:
    • ISO/IEC 14443: 2
    • ISO/IEC 7816-4: 1
  • RFC:
    • RFC3369: 1
    • RFC5280: 1
  • BSI:
    • AIS 19: 2
    • AIS 32: 1
    • AIS 34: 1
    • AIS14: 1
    • AIS19: 1
    • AIS20: 2
    • AIS32: 1
    • AIS34: 1
  • CC:
    • CCMB-2017-04-001: 2
    • CCMB-2017-04-002: 2
    • CCMB-2017-04-003: 2
  • FIPS:
    • FIPS 180-4: 14
    • FIPS 197: 4
    • FIPS PUB 180-4: 2
    • FIPS180-4: 1
    • FIPS186-4: 6
    • FIPS197: 1
  • NIST:
    • NIST SP 800-90A: 2
  • PKCS:
    • PKCS #12: 1
    • PKCS#1: 3
    • PKCS#12: 2
    • PKCS12: 1
  • RFC:
    • RFC 2045: 1
    • RFC 2046: 1
    • RFC 2047: 1
    • RFC 2048: 1
    • RFC 2049: 1
    • RFC 2104: 1
    • RFC 2131: 1
    • RFC 2404: 2
    • RFC 3268: 1
    • RFC 3447: 1
    • RFC 3526: 1
    • RFC 3602: 1
    • RFC 4055: 1
    • RFC 4301: 1
    • RFC 4303: 1
    • RFC 4346: 1
    • RFC 4492: 1
    • RFC 4868: 2
    • RFC 5083: 1
    • RFC 5084: 1
    • RFC 5246: 1
    • RFC 5280: 1
    • RFC 5289: 1
    • RFC 5652: 1
    • RFC 5751: 1
    • RFC 5996: 1
    • RFC 7296: 1
    • RFC 8017: 1
    • RFC-2104: 3
    • RFC-2404: 1
    • RFC-3268: 3
    • RFC-3526: 2
    • RFC-3602: 2
    • RFC-4106: 1
    • RFC-4301: 3
    • RFC-4303: 3
    • RFC-4492: 2
    • RFC-4868: 1
    • RFC-4880: 1
    • RFC-5116: 1
    • RFC-5246: 4
    • RFC-5289: 1
    • RFC-5639: 6
    • RFC-6931: 1
    • RFC-6954: 2
    • RFC-7296: 5
    • RFC-8017: 5
    • RFC2104: 1
    • RFC2131: 1
    • RFC2404: 1
    • RFC3268: 1
    • RFC3279: 1
    • RFC3526: 1
    • RFC3602: 1
    • RFC4055: 2
    • RFC4106: 1
    • RFC4301: 1
    • RFC4303: 1
    • RFC4346: 1
    • RFC4868: 1
    • RFC4880: 1
    • RFC5083: 1
    • RFC5084: 1
    • RFC5116: 1
    • RFC5246: 1
    • RFC5280: 2
    • RFC5289: 1
    • RFC5639: 6
    • RFC5652: 1
    • RFC5751: 1
    • RFC5996: 1
    • RFC7027: 2
    • RFC7292: 1
    • RFC7296: 1
    • RFC8017: 1
  • X509:
    • X.509: 7
pdf_data/st_keywords/javacard_packages
  • com:
    • com.com: 1
pdf_data/st_metadata
  • /Author: Alexander Haferland
  • /Keywords: CC, ST, Common Criteria, Security Target, Inspection System, PA, eAT, ePass
  • /Subject: Security Target
  • /Title: Bundesdruckerei Document Application Common Criteria Evaluation
  • pdf_file_size_bytes: 1424956
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 91
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different