Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Hewlett Packard Enterprise ArcSight Enterprise Security Manager (ESM) v6.9.1c
ISCB-5-RPT-C076-CR-v1
Remote Communication Gate A Version: Machine Code (First 4 characters): D459, Firmware Version: A1.18-C1.14-P1.12-K1.04
JISEC-CC-CRP-C0277
name Hewlett Packard Enterprise ArcSight Enterprise Security Manager (ESM) v6.9.1c Remote Communication Gate A Version: Machine Code (First 4 characters): D459, Firmware Version: A1.18-C1.14-P1.12-K1.04
scheme MY JP
not_valid_after 14.12.2021 01.11.2015
not_valid_before 14.12.2016 22.10.2010
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C076-CR-v1.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/c0277_erpt.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/HPE%20ArcSight%20ESM%20ST.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/c0277_est.pdf
manufacturer Hewlett Packard Enterprise Ricoh Company, Ltd.
manufacturer_web https://www.hpe.com/ https://www.ricoh.com/
security_level EAL2 EAL3
dgst e77512aeb71ff153 abdd4db80056ee35
heuristics/cert_id ISCB-5-RPT-C076-CR-v1 JISEC-CC-CRP-C0277
heuristics/cpe_matches cpe:2.3:a:hp:arcsight_enterprise_security_manager:6.9.1c:*:*:*:*:*:*:*, cpe:2.3:a:hp:arcsight_enterprise_security_manager:6.9.1c:p1:*:*:*:*:*:*, cpe:2.3:a:hp:arcsight_enterprise_security_manager:6.9.1c:p3:*:*:*:*:*:*, cpe:2.3:a:hp:arcsight_enterprise_security_manager:6.9.1c:p2:*:*:*:*:*:* {}
heuristics/related_cves CVE-2017-13986, CVE-2017-14356, CVE-2017-13990, CVE-2017-13988, CVE-2017-13987, CVE-2017-14357, CVE-2017-14358, CVE-2017-13991, CVE-2017-13989 {}
heuristics/extracted_sars ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ALC_CMS.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ASE_ECD.1, AVA_VAN.2, ADV_TDS.1, ASE_SPD.1, ALC_CMC.2, ADV_FSP.2, ATE_COV.1, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1 ASE_CCL.1, ATE_FUN.1, ASE_OBJ.2, ASE_INT.1, ASE_REQ.2, AGD_PRE.1, ATE_IND.2, ATE_DPT.1, ASE_ECD.1, AVA_VAN.2, ADV_FSP.3, ALC_LCD.1, ASE_SPD.1, ATE_COV.2, ALC_CMC.3, ADV_TDS.2, ALC_DVS.1, ALC_CMS.3, AGD_OPE.1, ALC_DEL.1, ASE_TSS.1, ADV_ARC.1
heuristics/extracted_versions 6.9.1 1.04, 1.12, 1.14, 1.18
heuristics/scheme_data
  • cert_no: 2016-005-C076
  • certification_date: 14.12.2016
  • developer: Hewlett Packard Enterprise (HPE)
  • enhanced:
    • assurance_level: EAL2
    • category: Network and Network-Related Devices and Systems
    • cert_id: C076
    • certification_date: 14.12.2016
    • developer: Lee IvyEngineering Director, ArcSightHewlett Packard Enterprise Security Products [email protected]: 650-265-3457Mobile: 408-386-17001160 Enterprise Way (Moffett Towers Building G, 7th Floor),Sunnyvale CA 94089
    • expiration_date: 14.12.2021
    • mutual_recognition: CCRA
    • product: Hewlett Packard Enterprise ArcSight Enterprise Security Manager (ESM)
    • report_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C076/ISCB-5-RPT-C076-CR-v1.pdf
    • scope: ArcSight ESM is a Security Information and Event Management (SIEM) solution that combines event correlation and security analytics to identify and prioritize threats in real time and remediate incidents early. It is able to concentrate, normalize, analyze, and report the results of its analysis of security event data generated by various Intrusion Detection System (IDS) sensors and scanners in the operational environment. ArcSight ESM provides authorized users with capabilities to monitor events, correlate events for in-depth investigation and analysis, and resolve events with automated escalation procedures and actions. The following security functions are implemented by the TOE: Security Audit Identification adn Authentication Security Management Protection of the TSF Trusted Path/Channels Intrusion Detection System
    • status: Archive
    • target_link: https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C076/HPE%20ArcSight%20ESM%20ST.pdf
    • type: Security Information and Event Management (SIEM)
  • expiration_date: 14.12.2021
  • level: EAL2
  • product: Hewlett Packard Enterprise ArcSight Enterprise Security Manager (ESM)
  • recognition: CCRA
  • url: https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/archived-certified-products-and-systems/submission-view/110
  • cert_id: JISEC-CC-CRP-C0277
  • certification_date: 01.10.2010
  • claim: EAL3
  • enhanced:
    • assurance_level: EAL3
    • cc_version: 3.1
    • cert_link: https://www.ipa.go.jp/en/security/c0277_eimg.pdf
    • description: PRODUCT DESCRIPTION Description of TOE This TOE is a communication device that enables digital MFPs and printers (hereafter "devices") to be connected to the communication server (hereafter "CS") in the maintenance center. Functions this TOE can provide include notification of device troubles (service call function), automatic counter checking of prints (device counter collection function), automatic ordering of supplies such as toner (supply call function), and device firmware updating. It also provides Web-based user interface functions for TOE operations. TOE security functionality The major security functions this TOE can provide are as follows: - Communication data protection function between the TOE and the device for the service This function is used for communication between the TOE and devices for the service if the service call function, the device counter collection function, and the supply call function are enabled. The communication data between the TOE and the Ricoh device will be secured, and the data tampering will be detected by using a SSL protocol. - Communication data protection function between the TOE and the CS The TOE specifies only the CS as the communication destination via Internet. The communication data between the TOE and the CS will be secured, and the data tampering will be detected by using a SSL protocol. - Communication data protection function between the TOE and computers This function is applied to data communication between the TOE and computers if Web-based functions are enabled. The communication data will be secured by using a SSL protocol. - User identification and authentication function The TOE identifies and authenticates users who access Web-based user interface functions. - Access control function This function restricts user access according to specified user roles. - RC Gate firmware verification function This function enables the TOE to check that the firmware (applications, shared parts of firmware, platforms, and the operating system) is genuine. - Security management function This function provides TOE management methods for the Administrator only.
    • evaluation_facility: Electronic Commerce Security Technology Laboratory Inc. Evaluation Center
    • product: Remote Communication Gate A
    • product_type: Appliance for remote service
    • report_link: https://www.ipa.go.jp/en/security/c0277_erpt.pdf
    • target_link: https://www.ipa.go.jp/en/security/c0277_est.pdf
    • toe_version: Machine Code (First 4 characters) :D459 Firmware Version :A1.18-C1.14-P1.12-K1.04
    • vendor: RICOH COMPANY, LTD.
  • expiration_date: 01.11.2015
  • supplier: RICOH COMPANY, LTD.
  • toe_japan_name: Remote Communication Gate A Machine Code (First 4 characters) :D459 Firmware Version :A1.18-C1.14-P1.12-K1.04
  • toe_overseas_link: https://www.ipa.go.jp/en/security/jisec/software/certified-cert/c0277_it0287.html
  • toe_overseas_name: Remote Communication Gate A Machine Code (First 4 characters) :D459 Firmware Version :A1.18-C1.14-P1.12-K1.04
maintenance_updates
pdf_data/report_filename ISCB-5-RPT-C076-CR-v1.pdf c0277_erpt.pdf
pdf_data/report_keywords/cc_cert_id
  • MY:
    • ISCB-5-RPT-C076-CR-v1: 29
  • JP:
    • CRP-C0277-01: 1
    • Certification No. C0277: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 2: 3
    • EAL2: 5
  • EAL:
    • EAL3: 4
pdf_data/report_keywords/cc_sar
  • ATE:
    • ATE_IND.2: 2
  • AVA:
    • AVA_VAN.2: 2
pdf_data/report_keywords/cc_sfr
  • FAU:
    • FAU_GEN.1.1: 2
    • FAU_GEN.1.2: 2
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2.1: 1
    • FAU_SAR.3.1: 1
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
  • FIA:
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD.1.1: 1
    • FIA_SOS.1.1: 1
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MOF.1.1: 1
    • FMT_MTD.1.1: 2
    • FMT_SMF.1.1: 1
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITT.1.1: 1
  • FTA:
    • FTA_SSL.4.1: 2
  • FTP:
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.ADMINSHIP: 2
    • A.CE: 1
    • A.DEVICE: 1
    • A.NETWORK: 2
    • A.TOE_ADMIN: 1
  • T:
    • T.ACCESS: 2
    • T.FAKE_CS: 2
    • T.INTERNET: 2
pdf_data/report_keywords/eval_facility
  • Leidos:
    • Leidos: 1
pdf_data/report_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS v1.0: 1
      • TLS v1.1: 1
      • TLS v1.2: 1
  • TLS:
    • SSL:
      • SSL: 26
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 3
  • ISO:
    • ISO/IEC 18045: 2
    • ISO/IEC15408: 2
  • CC:
    • CCMB-2009-07-001: 2
    • CCMB-2009-07-002: 2
    • CCMB-2009-07-003: 2
    • CCMB-2009-07-004: 2
pdf_data/report_metadata
  • /Author: IPA/JISEC
  • /Company: IPA
  • /CreationDate: D:20110411121028+09'00'
  • /Creator: Word 用 Acrobat PDFMaker 8.1
  • /Manager: IPA
  • /ModDate: D:20110411121032+09'00'
  • /Producer: Acrobat Distiller 8.2.3 (Windows)
  • /Title: CRP-e
  • pdf_file_size_bytes: 213268
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 36
pdf_data/st_filename HPE ArcSight ESM ST.pdf c0277_est.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 2: 3
    • EAL2: 1
  • EAL:
    • EAL3: 7
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 10
    • ADV_FSP: 1
    • ADV_FSP.2: 11
    • ADV_TDS: 1
    • ADV_TDS.1: 11
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 10
    • AGD_PRE: 1
    • AGD_PRE.1: 6
  • ALC:
    • ALC_CMC: 1
    • ALC_CMC.2: 8
    • ALC_CMS: 1
    • ALC_CMS.2: 6
    • ALC_DEL: 1
    • ALC_DEL.1: 5
  • ASE:
    • ASE_CCL: 1
    • ASE_CCL.1: 14
    • ASE_ECD: 1
    • ASE_ECD.1: 10
    • ASE_INT: 1
    • ASE_INT.1: 12
    • ASE_OBJ: 1
    • ASE_OBJ.2: 10
    • ASE_REQ: 1
    • ASE_REQ.2: 13
    • ASE_SPD: 1
    • ASE_SPD.1: 7
    • ASE_TSS: 1
    • ASE_TSS.1: 5
  • ATE:
    • ATE_COV: 1
    • ATE_COV.1: 4
    • ATE_FUN: 1
    • ATE_FUN.1: 8
    • ATE_IND: 1
    • ATE_IND.2: 7
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.2: 7
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.3: 1
    • ADV_TDS.2: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.3: 1
    • ALC_CMS.3: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 3
    • FAU_GEN.1: 8
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_SAR: 9
    • FAU_SAR.1: 10
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 4
    • FAU_SAR.2.1: 1
    • FAU_SAR.3: 5
    • FAU_SAR.3.1: 1
    • FAU_STG: 3
    • FAU_STG.1: 4
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
  • FCS:
    • FCS_COP.1: 2
    • FCS_COP.1.1: 1
  • FIA:
    • FIA_AFL: 3
    • FIA_AFL.1: 5
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD: 3
    • FIA_ATD.1: 4
    • FIA_ATD.1.1: 1
    • FIA_SOS: 3
    • FIA_SOS.1: 5
    • FIA_SOS.1.1: 1
    • FIA_UAU: 6
    • FIA_UAU.1: 9
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.5: 4
    • FIA_UAU.5.1: 1
    • FIA_UAU.5.2: 1
    • FIA_UID: 2
    • FIA_UID.1: 10
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
  • FMT:
    • FMT_MOF: 2
    • FMT_MOF.1: 6
    • FMT_MOF.1.1: 1
    • FMT_MTD.1: 8
    • FMT_MTD.1.1: 2
    • FMT_SMF: 2
    • FMT_SMF.1: 9
    • FMT_SMF.1.1: 1
    • FMT_SMR: 2
    • FMT_SMR.1: 7
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITT: 3
    • FPT_ITT.1: 5
    • FPT_ITT.1.1: 1
    • FPT_STM.1: 3
  • FTA:
    • FTA_SSL: 3
    • FTA_SSL.4: 5
    • FTA_SSL.4.1: 1
  • FTP:
    • FTP_ITC: 2
    • FTP_ITC.1: 6
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 3
    • FTP_TRP.1: 5
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FDP:
    • FDP_ACC.1: 8
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 9
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
  • FIA:
    • FIA_AFL.1: 6
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_ATD.1: 7
    • FIA_ATD.1.1: 1
    • FIA_SOS.1: 6
    • FIA_SOS.1.1: 1
    • FIA_UAU.1: 2
    • FIA_UAU.2: 7
    • FIA_UAU.2.1: 1
    • FIA_UAU.6: 6
    • FIA_UAU.6.1: 1
    • FIA_UID.1: 4
    • FIA_UID.2: 7
    • FIA_UID.2.1: 1
    • FIA_USB.1: 6
    • FIA_USB.1.1: 1
    • FIA_USB.1.2: 1
    • FIA_USB.1.3: 1
  • FMT:
    • FMT_MSA.3: 5
    • FMT_MTD.1: 6
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 9
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_STM.1: 1
    • FPT_STM.1.1: 1
    • FPT_TST.1: 6
    • FPT_TST.1.1: 1
    • FPT_TST.1.2: 1
    • FPT_TST.1.3: 1
  • FTA:
    • FTA_SSL.3: 6
    • FTA_SSL.3.1: 1
  • FTP:
    • FTP_ITC.1: 14
    • FTP_ITC.1.1: 2
    • FTP_ITC.1.2: 2
    • FTP_ITC.1.3: 2
    • FTP_TRP.1: 6
    • FTP_TRP.1.1: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.MANAGE: 2
    • A.PLATFORM: 2
    • A.PROTECT: 3
  • O:
    • O.ANALYZER: 7
    • O.AUDIT: 5
    • O.AUDIT_REVIEW: 4
    • O.I_AND_A: 4
    • O.PASSWORD_CONTROLS: 4
    • O.PROTECTED: 1
    • O.PROTECTED_COMMS: 2
    • O.RESPONSE: 4
    • O.REVIEW: 3
    • O.SECURITY_MANAGEMENT: 4
    • O.STORAGE: 3
    • O.THROTTLE: 4
  • OE:
    • OE.PERSONNEL: 2
    • OE.PHYSICAL: 2
    • OE.PLATFORM: 2
    • OE.SENSORS: 3
    • OE.TIME: 3
  • T:
    • T.BRUTE_FORCE: 3
    • T.INTEGRITY_COMPROMISE: 2
    • T.NETWORK_COMPROMISE: 3
    • T.NO_ACCOUNTABILITY: 2
    • T.UNAUTHORIZED_ACCESS: 2
    • T.UNAUTHORIZED_ACTIVITY: 3
    • T.UNDETECTED_THREATS: 2
  • A:
    • A.ADMINSHIP: 3
    • A.CE: 3
    • A.DEVICE: 3
    • A.NETWORK: 3
    • A.TOE_ADMIN: 3
  • O:
    • O.ACCESS: 9
    • O.COM_ATR_DEVICE: 10
    • O.COM_CS: 8
    • O.COM_OPERATOR: 7
    • O.GENUINE: 6
  • OE:
    • OE.ADMIN: 3
    • OE.CE: 3
    • OE.DEVICE: 3
    • OE.NETWORK: 4
    • OE.SUPER: 4
  • T:
    • T.ACCESS: 2
    • T.FAKE_CS: 2
    • T.INTERNET: 2
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 1
pdf_data/st_keywords/crypto_protocol
  • TLS:
    • TLS:
      • TLS: 6
      • TLS v1.0: 4
      • TLS v1.1: 4
      • TLS v1.2: 2
  • TLS:
    • SSL:
      • SSL: 7
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 1
    • TLS_RSA_WITH_3DES_EDE_CBC_SHA: 1
    • TLS_RSA_WITH_AES_128_CBC_SHA: 1
pdf_data/st_keywords/crypto_library
  • NSS:
    • NSS: 1
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 3
  • RFC:
    • RFC 2246: 1
  • X509:
    • X.509: 1
  • CC:
    • CCMB-2009-07-001: 1
    • CCMB-2009-07-002: 1
    • CCMB-2009-07-003: 1
pdf_data/st_metadata
  • /Author: Apted, Tony J. [RA]
  • /CreationDate: D:20161215092549+00'00'
  • /Creator: Microsoft Word
  • /ModDate: D:20161215092549+00'00'
  • /Subject: Security Target
  • /Title: HPE ArcSight ESM
  • pdf_file_size_bytes: 1391138
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 47
  • /Author: ui
  • /Company:
  • /CreationDate: D:20110411120858+09'00'
  • /Creator: Word 用 Acrobat PDFMaker 8.1
  • /ModDate: D:20110411120902+09'00'
  • /Producer: Acrobat Distiller 8.2.3 (Windows)
  • /Title:
  • pdf_file_size_bytes: 203391
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: True
  • pdf_number_of_pages: 41
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different