Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Juniper Junos OS 20.2R1 for SRX345, SRX345-DUAL-AC, SRX380 and SRX1500
Certificate Number: 2020/131
secunet konnektor 2.1.0, Version 5.0.5:2.1.0
BSI-DSZ-CC-1128-V4-2022
name Juniper Junos OS 20.2R1 for SRX345, SRX345-DUAL-AC, SRX380 and SRX1500 secunet konnektor 2.1.0, Version 5.0.5:2.1.0
category Network and Network-Related Devices and Systems Key Management Systems
scheme AU DE
not_valid_after 11.01.2026 07.04.2027
not_valid_before 11.01.2021 08.04.2022
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/EFT-T013%20Cert%202020_131_OS.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1128V4c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/EFT-T013-Certification%20Report%20V1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1128V4a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Juniper%20JunOS%2020.2R1%20SRX345,%20SRX345-DUAL-AC,%20SRX380,%20SRX1500%20SecurityTarget%20v1.4.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1128V4b_pdf.pdf
manufacturer Juniper Networks, Inc. Secunet Security Networks AG
manufacturer_web https://www.juniper.net/ https://www.secunet.com/en/
security_level {} ADV_FSP.4, AVA_VAN.5, ALC_FLR.2, ADV_IMP.1, ALC_TAT.1, EAL3+, ADV_TDS.3
dgst e8ade97b41f4ead3 e7f32273d0c69183
heuristics/cert_id Certificate Number: 2020/131 BSI-DSZ-CC-1128-V4-2022
heuristics/cert_lab [] BSI
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, AGD_PRE.1 AGD_PRE.1, ALC_TAT.1, ALC_CMS.4, AVA_VAN.5, ALC_DEL.1, ADV_FSP.4, AGD_OPE.1, ADV_ARC.1, ADV_TDS.3, ATE_DPT.1, ALC_FLR.2, ADV_IMP.1
heuristics/extracted_versions 20.2 5.0.5, 2.1.0
heuristics/report_references/directly_referenced_by {} BSI-DSZ-CC-1128-V5-2022
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-1128-V3-2021
heuristics/report_references/indirectly_referenced_by {} BSI-DSZ-CC-1128-V5-2022
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-1128-V3-2021, BSI-DSZ-CC-1044-V2-2019, BSI-DSZ-CC-1044-2019
heuristics/scheme_data
  • category: eHealth
  • cert_id: BSI-DSZ-CC-1128-V6-2023
  • certification_date: 19.10.2023
  • enhanced:
    • applicant: secunet Security Networks AG Kurfürstenstraße 58 45138 Essen
    • assurance_level: EAL3,AVA_VAN.5,ALC_TAT.1,ALC_FLR.2,ADV_TDS.3,ADV_IMP.1,ADV_FSP.4
    • cert_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1128V6c_pdf.pdf?__blob=publicationFile&v=1
    • certification_date: 19.10.2023
    • description: The Target of evaluation (TOE) is a pure software TOE consisting of the net connector (Netzkonnektor) as specified in the protection Profile BSI-CC-PP-0097. The net connectorincludes the security functionality of a firewall and a VPN client as well as a NTP Server, a name service (DNS) and a DHCP service. It also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the connektor and it is delivered pre-installed on exactly one hardware configuration which includes two instances of the net connector which are installed on two separate circuit boards.
    • entries: [frozendict({'id': 'BSI-DSZ-CC-1128-V6-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1128-V6-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1128-V6-2023 (Ausstellungsdatum / Certification Date 19.10.2023, gültig bis / valid until 18.10.2028)', 'description': 'Hardware'}), frozendict({'id': 'BSI-DSZ-CC-1128-V5-2022-MA-01 (Ausstellungsdatum / Certification Date 21.11.2022) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1128-V5-2022 (Ausstellungsdatum / Certification Date 09.09.2022, gültig bis / valid until 08.09.2027)', 'description': 'Hardware'}), frozendict({'id': 'BSI-DSZ-CC-1128-V4-2022 (Ausstellungsdatum / Certification Date 08.04.2022, gültig bis / valid until 07.04.2027)', 'description': 'Server'}), frozendict({'id': 'BSI-DSZ-CC-1128-V3-2021 (Ausstellungsdatum / Certification Date 16.07.2021, gültig bis / valid until 15.07.2026)', 'description': 'Certificate'}), frozendict({'id': 'BSI-DSZ-CC-1128-V2-2020 (06.11.2020) Zertifizierungsreport / Certification Report', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC- 1128-2019-MA-01 (10.06.2020)', 'description': '-instances of the net-connector which are installed on two separate circuit boards.'}), frozendict({'id': 'BSI-DSZ-CC-1128-2019 (20.12.2019) Zertifizierungsreport / Certification Report', 'description': 'Certificate'})]
    • evaluation_facility: SRC Security Research & Consulting GmbH
    • expiration_date: 18.10.2028
    • product: secunet konnektor 2.1.0, Version 5.50.1:2.1.0
    • protection_profile: Common Criteria Schutzprofil (Protection Profile) Schutzprofil 1: Anforderungen an den Netzkonnektor, Version 1.6.6, BSI-CC-PP-0097-V2-2020-MA-01 vom 15.04.2021
    • report_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1128V6a_pdf.pdf?__blob=publicationFile&v=1
    • target_link: https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1128V6b_pdf.pdf?__blob=publicationFile&v=1
  • product: secunet konnektor 2.1.0, Version 5.50.1:2.1.0
  • subcategory: Software
  • url: https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1128_1128V2_1128V3_1128V4_1128V5_1128V6.html
  • vendor: secunet Security Networks AG
heuristics/protection_profiles cf18fa171ef6e928, fa0610a54305df78 19e2d2b1593c97a5
maintenance_updates
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.1.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/MOD_CPP_FW_v1.3.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/MOD_VPNGW_V1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0097V2b_pdf.pdf
pdf_data/cert_filename EFT-T013 Cert 2020_131_OS.pdf 1128V4c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1128-V4-2022: 1
pdf_data/cert_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0097-: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 2: 1
    • EAL 3: 1
    • EAL 4: 1
    • EAL 5: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.5: 1
pdf_data/cert_keywords/crypto_protocol
  • VPN:
    • VPN: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20210113153231+10'00'
  • /Creator: ACA75941.dpe.protected.mil.au
  • /ModDate: D:20210113153712+11'00'
  • /Producer: KONICA MINOLTA bizhub C308
  • /Title: SACA75941.d21011315320
  • pdf_file_size_bytes: 112707
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informtionstechnik
  • /CreationDate: D:20220411134611+02'00'
  • /Creator: Writer
  • /Keywords: "Common Criteria, Certification, Zertifizierung, eHealth, Konnektor"
  • /ModDate: D:20220414110436+02'00'
  • /Producer: LibreOffice 6.3
  • /Subject: Zertifikat BSI-DSZ-CC-1128-V4-2022
  • /Title: Zertifikat BSI-DSZ-CC-1128-V4-2022
  • pdf_file_size_bytes: 396001
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename EFT-T013-Certification Report V1.0.pdf 1128V4a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
    • cert_id: BSI-DSZ-CC-1128-V4-2022
    • cert_item: secunet konnektor 2.1.0, Version 5.0.5:2.1.0
    • cert_lab: BSI
    • developer: secunet Security Networks AG
    • match_rules: ['(BSI-DSZ-CC-.+?) zu (.+?) der (.*)']
pdf_data/report_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1128-V3-2021: 2
    • BSI-DSZ-CC-1128-V4-2021: 1
    • BSI-DSZ-CC-1128-V4-2022: 17
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0097-: 1
    • BSI-CC-PP-0097-2021: 1
    • BSI-CC-PP-0097-V2-2020-MA-: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 3: 4
    • EAL 4: 4
    • EAL 5: 1
    • EAL 5+: 1
    • EAL 6: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • ALC:
    • ALC_CMS: 1
    • ALC_CMS.4: 1
    • ALC_FLR: 3
    • ALC_FLR.2: 4
    • ALC_TAT.1: 4
  • AVA:
    • AVA_ACC: 1
    • AVA_VAN.5: 6
pdf_data/report_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 5
    • FCS_CKM.1: 1
    • FCS_COP: 11
  • FDP:
    • FDP_ITC: 2
    • FDP_UIT: 2
  • FPT:
    • FPT_TDC: 9
  • FTP:
    • FTP_ITC: 3
    • FTP_TRP: 1
pdf_data/report_keywords/cc_claims
  • OE:
    • OE.NK: 4
pdf_data/report_keywords/eval_facility
  • Teron:
    • Teron Labs: 5
  • SRC:
    • SRC Security Research & Consulting: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 9
  • constructions:
    • MAC:
      • HMAC: 12
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 3
    • ECDH:
      • ECDH: 3
    • ECDSA:
      • ECDSA: 6
  • FF:
    • DH:
      • DH: 7
      • Diffie-Hellman: 3
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 1
    • SHA2:
      • SHA-256: 5
      • SHA-512: 1
pdf_data/report_keywords/crypto_scheme
  • KEX:
    • Key Exchange: 1
  • AEAD:
    • AEAD: 1
  • KEX:
    • Key Exchange: 4
pdf_data/report_keywords/crypto_protocol
  • IKE:
    • IKE: 3
  • IPsec:
    • IPsec: 8
  • SSH:
    • SSH: 3
    • SSHv2: 2
  • VPN:
    • VPN: 12
  • IKE:
    • IKE: 3
    • IKEv2: 9
  • IPsec:
    • IPsec: 8
  • TLS:
    • TLS:
      • TLS: 35
      • TLS v1.2: 7
      • TLSv1.2: 1
  • VPN:
    • VPN: 8
pdf_data/report_keywords/randomness
  • RNG:
    • RBG: 2
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
  • GCM:
    • GCM: 5
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
    • BSI TR-03116-1: 1
    • BSI TR-03154: 1
    • BSI TR-03155: 1
    • BSI TR-03157: 2
pdf_data/report_keywords/os_name
  • STARCOS:
    • STARCOS 3: 2
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 20: 2
    • AIS 32: 1
    • AIS 34: 2
  • FIPS:
    • FIPS 180-4: 8
    • FIPS 197: 3
    • FIPS PUB 180-4: 1
    • FIPS180-4: 5
    • FIPS186-4: 2
    • FIPS197: 1
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • NIST:
    • SP 800-38D: 1
  • PKCS:
    • PKCS#1: 3
    • PKCS#12: 1
  • RFC:
    • RFC 2104: 1
    • RFC 3268: 1
    • RFC 7027: 1
    • RFC-2104: 3
    • RFC-2404: 2
    • RFC-3268: 3
    • RFC-3526: 1
    • RFC-3602: 2
    • RFC-4301: 2
    • RFC-4303: 2
    • RFC-4492: 2
    • RFC-4868: 1
    • RFC-4880: 1
    • RFC-5116: 1
    • RFC-5246: 4
    • RFC-5289: 1
    • RFC-5639: 2
    • RFC-6931: 1
    • RFC-7296: 2
    • RFC-8017: 5
    • RFC2104: 1
    • RFC2404: 1
    • RFC3268: 1
    • RFC3526: 2
    • RFC3602: 1
    • RFC4055: 1
    • RFC4301: 1
    • RFC4303: 1
    • RFC4346: 1
    • RFC4868: 1
    • RFC4880: 1
    • RFC5246: 1
    • RFC5280: 1
    • RFC5289: 1
    • RFC5996: 1
    • RFC7027: 1
    • RFC7292: 1
    • RFC7296: 3
    • RFC8017: 3
  • X509:
    • X.509: 1
pdf_data/report_metadata
pdf_data/st_filename Juniper JunOS 20.2R1 SRX345, SRX345-DUAL-AC, SRX380, SRX1500 SecurityTarget v1.4.pdf 1128V4b_pdf.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-1128-V4-2021: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0097: 4
    • BSI-CC-PP-0097“: 2
    • BSI-CC-PP-0098: 6
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL3: 14
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC: 2
    • ADV_ARC.1: 1
    • ADV_FSP.4: 7
    • ADV_IMP.1: 9
    • ADV_TDS.1: 1
    • ADV_TDS.2: 2
    • ADV_TDS.3: 7
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 13
    • AGD_PRE.1: 1
  • ALC:
    • ALC_DEL.1: 5
    • ALC_FLR.2: 6
    • ALC_TAT.1: 8
  • ATE:
    • ATE_DPT.1: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.5: 11
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 8
    • FAU_GEN.1: 13
    • FAU_GEN.2: 5
    • FAU_GEN.2.1: 1
    • FAU_STG.1: 5
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
    • FAU_STG_EXT: 2
    • FAU_STG_EXT.1: 4
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 9
    • FCS_CKM.1: 21
    • FCS_CKM.2: 20
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 13
    • FCS_CKM.4.1: 1
    • FCS_COP: 37
    • FCS_COP.1: 7
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT: 2
    • FCS_RBG_EXT.1: 9
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 2
    • FCS_RGB_EXT.1: 1
    • FCS_SSHC_EXT.1.1: 2
    • FCS_SSHC_EXT.1.5: 3
    • FCS_SSHC_EXT.1.7: 1
    • FCS_SSHC_EXT.1.9: 1
    • FCS_SSHS_EXT: 2
    • FCS_SSHS_EXT.1: 8
    • FCS_SSHS_EXT.1.1: 3
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 4
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 2
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.1.1: 4
    • FCS_TLSC_EXT.2.1: 1
    • FCS_TLSS_EXT: 1
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.2.2: 1
    • FCS_TLSS_EXT.2.4: 1
    • FCS_TLSS_EXT.2.5: 1
  • FDP:
    • FDP_RIP: 2
    • FDP_RIP.2: 5
    • FDP_RIP.2.1: 1
  • FIA:
    • FIA_AFL: 2
    • FIA_AFL.1: 12
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT: 2
    • FIA_PMG_EXT.1: 5
    • FIA_PMG_EXT.1.1: 1
    • FIA_PSK_EXT.1: 5
    • FIA_PSK_EXT.1.1: 1
    • FIA_PSK_EXT.1.2: 1
    • FIA_PSK_EXT.1.3: 1
    • FIA_PSK_EXT.1.4: 1
    • FIA_UAU: 2
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 2
    • FIA_UAU_EXT.2: 6
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT: 2
    • FIA_UIA_EXT.1: 11
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
    • FIA_UID.1: 3
  • FMT:
    • FMT_MOF: 20
    • FMT_MOF.1: 3
    • FMT_MTD: 13
    • FMT_MTD.1: 2
    • FMT_SMF: 27
    • FMT_SMF.1: 6
    • FMT_SMR: 2
    • FMT_SMR.1: 5
    • FMT_SMR.2: 12
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT: 2
    • FPT_APW_EXT.1: 6
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_FLS: 5
    • FPT_FLS.1: 2
    • FPT_ITT.1: 1
    • FPT_SKP_EXT: 2
    • FPT_SKP_EXT.1: 5
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM: 1
    • FPT_STM.1: 4
    • FPT_STM_EXT: 2
    • FPT_STM_EXT.1: 5
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT: 3
    • FPT_TST_EXT.1: 6
    • FPT_TST_EXT.1.1: 1
    • FPT_TST_EXT.3: 3
    • FPT_TST_EXT.3.1: 1
    • FPT_TST_EXT.3.2: 1
    • FPT_TUD_EXT: 2
    • FPT_TUD_EXT.1: 11
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL: 2
    • FTA_SSL.3: 10
    • FTA_SSL.4: 6
    • FTA_SSL_EXT: 2
    • FTA_SSL_EXT.1: 7
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB: 2
    • FTA_TAB.1: 9
  • FTP:
    • FTP_ITC: 3
    • FTP_ITC.1: 28
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_ITC.2: 6
    • FTP_TRP: 9
    • FTP_TRP.1: 3
    • FTP_TUD.1: 1
  • FAU:
    • FAU_GEN: 16
    • FAU_GEN.1: 5
    • FAU_GEN.2: 1
    • FAU_STG: 2
  • FCS:
    • FCS_CKM: 86
    • FCS_CKM.1: 14
    • FCS_CKM.2: 6
    • FCS_CKM.4: 13
    • FCS_COP: 77
    • FCS_COP.1: 12
  • FDP:
    • FDP_ACC: 11
    • FDP_ACC.1: 7
    • FDP_ACF: 5
    • FDP_ACF.1: 5
    • FDP_ETC: 8
    • FDP_ETC.2: 4
    • FDP_IFC: 18
    • FDP_IFC.1: 7
    • FDP_IFF: 20
    • FDP_IFF.1: 20
    • FDP_ITC: 16
    • FDP_ITC.1: 15
    • FDP_ITC.2: 17
    • FDP_RIP: 6
    • FDP_RIP.1: 1
    • FDP_UIT: 6
    • FDP_UIT.1: 2
  • FIA:
    • FIA_UAU: 11
    • FIA_UAU.1: 2
    • FIA_UID: 9
    • FIA_UID.1: 5
  • FMT:
    • FMT_MOF: 12
    • FMT_MOF.1: 1
    • FMT_MSA: 40
    • FMT_MSA.1: 2
    • FMT_MSA.3: 7
    • FMT_MTD: 7
    • FMT_MTD.1: 2
    • FMT_SMF: 19
    • FMT_SMF.1: 4
    • FMT_SMR.1: 28
    • FMT_SMR.1.1: 1
  • FPT:
    • FPT_EMS: 16
    • FPT_EMS.1: 7
    • FPT_EMS.1.1: 2
    • FPT_EMS.1.2: 2
    • FPT_STM: 11
    • FPT_STM.1: 2
    • FPT_TDC: 22
    • FPT_TDC.1: 6
    • FPT_TST: 7
    • FPT_TST.1: 3
  • FTP:
    • FTP_ITC: 41
    • FTP_ITC.1: 21
    • FTP_TRP: 13
    • FTP_TRP.1: 6
pdf_data/st_keywords/cc_claims
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.CONNECTIONS: 3
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINSTRATOR: 1
  • O:
    • O.ADDRESS_FILTERING: 1
    • O.AUTHENTICATION: 1
    • O.CRYPTOGRAPHIC_FUNCTIONS: 1
    • O.FAIL_SECURE: 1
    • O.IPS_ANALYZE: 1
    • O.IPS_REACT: 1
    • O.PORT_FILTERING: 1
    • O.RESIDUAL_INFORMATION: 1
    • O.STATEFUL_TRAFFIC_FILTERING: 1
    • O.SYSTEM_MONITORING: 2
    • O.TOE_ADMINISTRATION: 2
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.CONNECTIONS: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 3
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMIN: 1
    • OE.UPDATES: 1
  • T:
    • T.DATA_INTEGRITY: 1
    • T.MALICIOUS_TRAFFIC: 1
    • T.NETWORK_DOS: 1
    • T.PASSWORD_CRACKING: 1
    • T.REPLAY_ATTACK: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
  • A:
    • A.NK: 63
  • O:
    • O.NK: 190
  • OE:
    • OE.NK: 169
  • OSP:
    • OSP.NK: 22
  • T:
    • T.NK: 154
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 31
      • AES-: 3
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 13
      • HMAC-SHA-256: 6
      • HMAC-SHA-512: 1
  • AES_competition:
    • AES:
      • AES: 23
      • AES-128: 3
      • AES-256: 2
    • HPC:
      • HPC: 1
  • constructions:
    • MAC:
      • HMAC: 33
      • HMAC-SHA-256: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 6
    • ECDH:
      • ECDH: 8
    • ECDSA:
      • ECDSA: 23
  • FF:
    • DH:
      • DH: 22
      • Diffie-Hellman: 7
  • RSA:
    • RSA 2048: 6
    • RSA 4096: 3
  • ECC:
    • ECC:
      • ECC: 5
    • ECDSA:
      • ECDSA: 4
  • FF:
    • DH:
      • Diffie-Hellman: 1
  • RSA:
    • RSA 2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 2
      • SHA1: 2
    • SHA2:
      • SHA-256: 13
      • SHA-384: 4
      • SHA-512: 1
  • SHA:
    • SHA1:
      • SHA-1: 5
    • SHA2:
      • SHA-2: 2
      • SHA-256: 6
pdf_data/st_keywords/crypto_scheme
  • AEAD:
    • AEAD: 2
  • KEX:
    • Key Exchange: 4
    • Key exchange: 1
  • MAC:
    • MAC: 3
  • KEX:
    • Key Exchange: 4
  • MAC:
    • MAC: 1
pdf_data/st_keywords/crypto_protocol
  • IKE:
    • IKE: 46
    • IKEv1: 19
    • IKEv2: 17
  • IPsec:
    • IPsec: 33
  • SSH:
    • SSH: 111
    • SSHv2: 12
  • TLS:
    • SSL:
      • SSL: 6
    • TLS:
      • TLS: 2
      • TLS1.1: 1
      • TLS1.2: 1
  • VPN:
    • VPN: 31
  • IKE:
    • IKE: 22
    • IKEv2: 8
  • IPsec:
    • IPsec: 31
  • TLS:
    • SSL:
      • SSL: 2
    • TLS:
      • TLS: 147
      • TLS 1.2: 2
      • TLS 1.3: 2
  • VPN:
    • VPN: 59
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 16
    • PRNG: 1
  • RNG:
    • RBG: 3
    • RNG: 6
  • RNG:
    • RNG: 14
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 16
  • CCM:
    • CCM: 1
  • CTR:
    • CTR: 5
  • GCM:
    • GCM: 7
  • CBC:
    • CBC: 3
  • GCM:
    • GCM: 4
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 36
    • P-384: 28
    • P-521: 8
  • Brainpool:
    • brainpoolP256r1: 2
    • brainpoolP384r1: 1
  • NIST:
    • P-256: 2
    • P-384: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 3
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 3
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 3
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 3
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 3
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 3
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 3
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 3
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384132: 1
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 5
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 2
  • SCA:
    • side channel: 1
pdf_data/st_keywords/technical_report_id
  • BSI:
    • BSI TR-03111: 2
    • BSI TR-03116-1: 2
    • BSI TR-03144: 1
pdf_data/st_keywords/os_name
  • STARCOS:
    • STARCOS 3: 2
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS 180-4: 5
    • FIPS 186-4: 5
    • FIPS 197: 5
    • FIPS 198-1: 5
    • FIPS PUB 186-4: 9
  • ISO:
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 2
    • ISO/IEC 9796-2: 1
  • NIST:
    • NIST SP 800-56A: 2
    • SP 800-135: 2
    • SP 800-38A: 2
    • SP 800-38D: 2
    • SP 800-56: 3
    • SP 800-90A: 2
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 2409: 2
    • RFC 2460: 2
    • RFC 2463: 1
    • RFC 2986: 2
    • RFC 3513: 2
    • RFC 3526: 2
    • RFC 3602: 3
    • RFC 4106: 2
    • RFC 4109: 2
    • RFC 4251: 2
    • RFC 4252: 1
    • RFC 4253: 3
    • RFC 4254: 1
    • RFC 4301: 2
    • RFC 4303: 1
    • RFC 4306: 2
    • RFC 4443: 1
    • RFC 4868: 4
    • RFC 4945: 2
    • RFC 5280: 5
    • RFC 5282: 1
    • RFC 5656: 1
    • RFC 5735: 2
    • RFC 5996: 1
    • RFC 6668: 1
    • RFC 768: 2
    • RFC 791: 2
    • RFC 792: 2
    • RFC 793: 2
    • RFC 959: 1
    • RFC2460: 1
    • RFC3526: 2
    • RFC5656: 1
    • RFC768: 1
    • RFC791: 1
    • RFC793: 1
  • X509:
    • X.509: 10
  • CC:
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS 180-4: 1
    • FIPS 197: 2
    • FIPS PUB 180-4: 5
    • FIPS PUB 186-4: 2
  • PKCS:
    • PKCS #12: 1
    • PKCS#1: 2
    • PKCS#12: 2
  • RFC:
    • RFC 1323: 1
    • RFC 2104: 2
    • RFC 2131: 2
    • RFC 2132: 2
    • RFC 2401: 1
    • RFC 2402: 1
    • RFC 2404: 2
    • RFC 2406: 2
    • RFC 2460: 1
    • RFC 2560: 1
    • RFC 2663: 1
    • RFC 3268: 1
    • RFC 3526: 1
    • RFC 3602: 3
    • RFC 4055: 2
    • RFC 4301: 5
    • RFC 4302: 2
    • RFC 4303: 6
    • RFC 4330: 1
    • RFC 4868: 2
    • RFC 5246: 4
    • RFC 5280: 1
    • RFC 5289: 2
    • RFC 5639: 3
    • RFC 5905: 1
    • RFC 7027: 1
    • RFC 7296: 7
    • RFC 791: 1
    • RFC 793: 1
    • RFC 8017: 3
    • RFC 8422: 2
    • RFC 8446: 1
    • RFC 958: 1
    • RFC-5639: 1
    • RFC-7027: 1
    • RFC7296: 1
  • X509:
    • X.509: 16
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • FTP) and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules which implement the underlying cryptographic services: 1
    • out of scope: 1
    • to any information exchange. Telnet, File Transfer Protocol (FTP) and Secure Socket Layer (SSL) are out of scope. The TOE includes cryptographic modules which implement the underlying cryptographic services. The: 1
pdf_data/st_metadata
  • /Author: AnanthaKandiah
  • /CreationDate: D:20201105164628+11'00'
  • /ModDate: D:20201105164628+11'00'
  • /Producer: Microsoft: Print To PDF
  • /Title: Microsoft Word - Juniper JunOS 20.2R1 SRX345, SRX345-DUAL-AC, SRX380, SRX1500 SecurityTarget v1.4.docx
  • pdf_file_size_bytes: 2301192
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 91
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different