Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
NSCIB-CC-230855-CR
MultiApp V5.1 Java Card Virtual Machine Version 5.1 (ANSSI-CC-2023/45)
ANSSI-CC-2023/45
name Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300 MultiApp V5.1 Java Card Virtual Machine Version 5.1 (ANSSI-CC-2023/45)
category Mobility ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme NL FR
status archived active
not_valid_after 24.12.2024 13.11.2028
not_valid_before 24.12.2019 13.11.2023
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/cert%2019-230855.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certificat-CC-2023_45fr.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification%20Report%20NSCIB-CC-230855-CR.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ANSSI-CC-2023_45fr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/R0R28657_AWPKI_SDK_ST_V17p.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ANSSI-cible-CC-2023_45en.pdf
manufacturer Thales THALES DIS FRANCE SA
manufacturer_web https://www.thalesgroup.com/en/europe/france
security_level ADV_FSP.4, AVA_VAN.3, ALC_TAT.1, ADV_IMP.1, EAL3+, ADV_TDS.3 EAL7
dgst e9d6e407cf4641c8 357e465d8baf8302
heuristics/cert_id NSCIB-CC-230855-CR ANSSI-CC-2023/45
heuristics/cert_lab []
heuristics/extracted_sars ASE_INT.1, ALC_CMC.3, ALC_CMS.3, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ALC_TAT.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AVA_VAN.3, AGD_PRE.1, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, APE_SPD.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1 ALC_LCD.2, ASE_INT.1, ALC_DVS.2, ASE_ECD.1, ASE_SPD.1, ALC_CMS.5, AVA_VAN.5, ALC_DEL.1, ADV_FSP.6, ATE_FUN.2, ALC_TAT.3, AGD_OPE.1, AGD_PRE.1, ATE_IND.3, ADV_ARC.1, ALC_CMC.5, ADV_IMP.2, ASE_OBJ.2, ASE_TSS.2, ALC_FLR.2, ASE_REQ.2, ATE_DPT.4, ADV_INT.3, ASE_CCL.1, ADV_TDS.6, ATE_COV.3, ADV_SPM.1
heuristics/extracted_versions 1.0.1.300 5.1
heuristics/report_references/directly_referencing {} ANSSI-CC-2023/01, ANSSI-CC-2023/31
heuristics/report_references/indirectly_referencing {} ANSSI-CC-2023/01, ANSSI-CC-2023/31
heuristics/st_references/directly_referencing {} ANSSI-CC-2023/01
heuristics/st_references/indirectly_referencing {} ANSSI-CC-2023/01
maintenance_updates
pdf_data/cert_filename cert 19-230855.pdf Certificat-CC-2023_45fr.pdf
pdf_data/cert_keywords/cc_cert_id
  • NL:
    • CC-19-230855: 1
  • FR:
    • ANSSI-CC-2023/45: 2
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL2: 1
  • EAL:
    • EAL2: 1
    • EAL7: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.3: 1
pdf_data/cert_keywords/vendor
  • Gemalto:
    • Gemalto: 1
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • CEA-LETI:
    • CEA - LETI: 2
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191224095650+01'00'
  • /Creator: NL-ARN-SAL-C
  • /ModDate: D:20191224103746+01'00'
  • /Producer: KONICA MINOLTA bizhub C300i
  • pdf_file_size_bytes: 74925
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20231129170130+01'00'
  • /Creator: Acrobat PDFMaker 23 pour Word
  • /Keywords:
  • /ModDate: D:20231129170302+01'00'
  • /Producer: Adobe PDF Library 23.1.175
  • pdf_file_size_bytes: 130676
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 2
pdf_data/report_filename Certification Report NSCIB-CC-230855-CR.pdf ANSSI-CC-2023_45fr.pdf
pdf_data/report_frontpage
  • FR:
  • NL:
    • cert_id: NSCIB-CC-230855-CR
    • cert_item: Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
    • cert_lab: Brightsight
    • developer: Thales
  • FR:
  • NL:
pdf_data/report_keywords/cc_cert_id
  • NL:
    • NSCIB-CC-230855-CR: 11
  • FR:
    • ANSSI-CC-2023/01: 1
    • ANSSI-CC-2023/31: 1
    • ANSSI-CC-2023/45: 2
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0084-2014: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL3: 2
    • EAL3 augmented: 1
    • EAL4: 1
  • EAL:
    • EAL 7: 3
    • EAL2: 2
    • EAL6: 1
    • EAL7: 2
  • ITSEC:
    • ITSEC E6 Elevé: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 2
    • ADV_IMP: 1
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • ALC:
    • ALC_TAT.1: 2
  • AVA:
    • AVA_VAN.3: 2
  • AGD:
    • AGD_OPE: 5
    • AGD_PRE: 2
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
  • AVA:
    • AVA_VAN: 1
pdf_data/report_keywords/vendor
  • Gemalto:
    • Gemalto: 19
  • Huawei:
    • Huawei: 2
  • Samsung:
    • Samsung: 4
  • Thales:
    • Thales: 4
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • CEA-LETI:
    • CEA - LETI: 1
  • CESTI:
    • CESTI: 3
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 2
  • DES:
    • DES:
      • DES: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 3
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
    • Reverse engineering: 1
pdf_data/report_keywords/cplc_data
  • ICFab:
    • IC Fabricator: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
pdf_data/report_metadata
pdf_data/st_filename R0R28657_AWPKI_SDK_ST_V17p.pdf ANSSI-cible-CC-2023_45en.pdf
pdf_data/st_keywords/cc_cert_id
  • NL:
    • CC-1: 6
    • CC-2: 2
    • CC-3: 4
    • NSCIB-CC-230855: 1
  • FR:
    • ANSSI-CC-2023/01: 1
  • NL:
    • CC-1: 2
    • CC-2: 3
    • CC-3: 3
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-CC-PP-0084-: 1
    • BSI-CC-PP-0084-2014: 1
    • BSI-CC-PP-0099-V2-2020: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL3: 2
    • EAL3 augmented: 1
  • EAL:
    • EAL 6+: 1
    • EAL6: 1
    • EAL7: 36
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.3: 1
    • ALC_CMS.3: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 4
  • APE:
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 5
  • ADV:
    • ADV_ARC: 1
    • ADV_ARC.1: 6
    • ADV_FSP.1: 1
    • ADV_FSP.2: 1
    • ADV_FSP.4: 4
    • ADV_FSP.6: 5
    • ADV_IMP.1: 4
    • ADV_IMP.2: 5
    • ADV_INT.3: 2
    • ADV_SPM.1: 8
    • ADV_TDS.1: 2
    • ADV_TDS.3: 3
    • ADV_TDS.4: 1
    • ADV_TDS.6: 7
  • AGD:
    • AGD_OPE: 1
    • AGD_OPE.1: 6
    • AGD_PRE: 1
    • AGD_PRE.1: 6
  • ALC:
    • ALC_CMC.5: 4
    • ALC_CMS.5: 1
    • ALC_DEL.1: 2
    • ALC_DVS.2: 4
    • ALC_FLR.2: 1
    • ALC_LCD.1: 1
    • ALC_LCD.2: 3
    • ALC_TAT: 1
    • ALC_TAT.1: 2
    • ALC_TAT.3: 3
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
    • ASE_TSS.2: 1
  • ATE:
    • ATE_COV.1: 2
    • ATE_COV.3: 3
    • ATE_DPT.1: 1
    • ATE_DPT.4: 2
    • ATE_FUN.1: 3
    • ATE_FUN.2: 4
    • ATE_IND.3: 2
  • AVA:
    • AVA_VAN.5: 2
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 3
    • FCS_CKM.4: 3
    • FCS_COP: 9
    • FCS_COP.1: 4
  • FDP:
    • FDP_ACC: 4
    • FDP_ACC.1: 8
    • FDP_ACC.2: 3
    • FDP_ACF: 3
    • FDP_ACF.1: 12
    • FDP_IFC.1: 3
    • FDP_ITC: 9
    • FDP_ITC.1: 12
    • FDP_ITC.2: 3
    • FDP_RIP: 2
    • FDP_RIP.1: 1
  • FMT:
    • FMT_MSA.3: 8
  • FPT:
    • FPT_FLS.1: 3
    • FPT_FLS.1.1: 1
    • FPT_MUL: 5
    • FPT_MUL.1: 6
    • FPT_MUL.1.1: 2
    • FPT_MUL.1.2: 2
  • FAU:
    • FAU_ARP.1: 1
    • FAU_SAS.1: 1
  • FCO:
    • FCO_NRO: 1
  • FCS:
    • FCS_RNG: 1
    • FCS_RNG.1: 2
  • FDP:
    • FDP_ACC: 21
    • FDP_ACC.1: 7
    • FDP_ACC.2: 2
    • FDP_ACF: 17
    • FDP_ACF.1: 9
    • FDP_IFC: 16
    • FDP_IFC.1: 6
    • FDP_IFF: 11
    • FDP_IFF.1: 8
    • FDP_ITC: 2
    • FDP_ITT.1: 1
    • FDP_RIP: 9
    • FDP_ROL: 2
    • FDP_SDC.1: 1
    • FDP_SDI: 3
    • FDP_SDI.2: 1
    • FDP_UCT.1: 1
    • FDP_UIT: 2
    • FDP_UIT.1: 1
  • FIA:
    • FIA_API.1: 1
    • FIA_ATD: 2
    • FIA_UAU: 2
    • FIA_UID: 5
    • FIA_UID.1: 1
    • FIA_USB: 1
  • FMT:
    • FMT_LIM: 10
    • FMT_LIM.1: 1
    • FMT_LIM.2: 1
    • FMT_MSA: 61
    • FMT_MSA.1: 6
    • FMT_MSA.2: 2
    • FMT_MSA.3: 9
    • FMT_MTD: 9
    • FMT_MTD.1: 1
    • FMT_SMF: 18
    • FMT_SMF.1: 6
    • FMT_SMR: 19
    • FMT_SMR.1: 9
  • FPR:
    • FPR_UNO: 1
    • FPR_UNO.1: 1
  • FPT:
    • FPT_FLS: 10
    • FPT_FLS.1: 1
    • FPT_ITT: 2
    • FPT_ITT.1: 1
    • FPT_PHP: 3
    • FPT_PHP.3: 1
    • FPT_RCV: 2
    • FPT_TDC.1: 1
    • FPT_TST: 1
  • FRU:
    • FRU_FLT.2: 1
  • FTP:
    • FTP_ITC: 3
    • FTP_ITC.1: 1
    • FTP_TRP: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.PKI: 1
  • D:
    • D.ACO: 3
    • D.ACOR: 14
    • D.APP_ID: 2
    • D.AR: 13
    • D.AWPKI_SDK_: 2
    • D.AWPKI_SDK_I: 1
    • D.MOB_ID: 2
    • D.USER_ID: 2
    • D.XX: 1
  • O:
    • O.ACO: 1
    • O.ACO_SM: 1
  • OE:
    • OE.PKI: 1
  • T:
    • T.ACOR_ATT_: 3
    • T.ACOR_STOL: 1
  • A:
    • A.CAP_FILE: 3
    • A.VERIFICATION: 3
  • D:
    • D.API_DATA: 3
    • D.APP_CODE: 5
    • D.APP_C_DATA: 2
    • D.APP_I_DATA: 3
    • D.CRYPTO: 3
    • D.JCS_CODE: 3
    • D.JCS_DATA: 4
    • D.PIN: 4
    • D.SEC_DATA: 5
  • O:
    • O.APPLET: 2
    • O.ARRAY_VIEWS_CONFID: 4
    • O.ARRAY_VIEWS_INTEG: 2
    • O.ARRAY_VIEW_CONFID: 1
    • O.CODE_CAP_FILE: 3
    • O.FIREWALL: 15
    • O.GLOBAL_ARRAYS_INTEG: 4
    • O.JAVAOBJECT: 38
  • OE:
    • OE.ALARM: 11
    • OE.CAP_FILE: 4
    • OE.CARD-MANAGEMENT: 2
    • OE.CARD_MANAGEMENT: 10
    • OE.CODE-EVIDENCE: 11
    • OE.INSTALL: 4
    • OE.LOAD: 5
    • OE.NATIVE: 7
    • OE.OPERATE: 13
    • OE.REALLOCATION: 5
    • OE.SCP: 16
    • OE.SID: 8
    • OE.VERIFICATION: 25
  • OP:
    • OP.ARRAY_AASTORE: 3
    • OP.ARRAY_ACCESS: 7
    • OP.ARRAY_LENGTH: 3
    • OP.ARRAY_T_ALOAD: 3
    • OP.ARRAY_T_ASTORE: 3
    • OP.CREATE: 9
    • OP.DELETE_APPLET: 1
    • OP.DELETE_CAP_FILE: 1
    • OP.DELETE_CAP_FILE_APPLET: 1
    • OP.INSTANCE_FIELD: 6
    • OP.INVK_INTERFACE: 10
    • OP.INVK_VIRTUAL: 8
    • OP.JAVA: 6
    • OP.PUT: 8
    • OP.PUTFIELD: 1
    • OP.PUTSTATIC: 1
    • OP.THROW: 7
    • OP.TYPE_ACCESS: 7
  • OSP:
    • OSP.VERIFICATION: 3
  • R:
    • R.JAVA: 9
  • T:
    • T.CONFID-APPLI-DATA: 3
    • T.CONFID-JCS-CODE: 3
    • T.CONFID-JCS-DATA: 3
    • T.EXE-CODE: 6
    • T.INTEG-APPLI-CODE: 6
    • T.INTEG-APPLI-DATA: 6
    • T.INTEG-JCS-CODE: 3
    • T.INTEG-JCS-DATA: 3
    • T.NATIVE: 3
    • T.SID: 6
pdf_data/st_keywords/vendor
  • Gemalto:
    • Gemalto: 79
  • Thales:
    • Thales: 221
  • Infineon:
    • Infineon: 1
  • Thales:
    • Thales: 32
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
    • Rijndael:
      • Rijndael: 1
  • constructions:
    • MAC:
      • CMAC: 1
  • AES_competition:
    • AES:
      • AES: 1
  • DES:
    • DES:
      • DES: 1
  • constructions:
    • MAC:
      • HMAC: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDSA:
      • ECDSA: 27
  • ECC:
    • ECC:
      • ECC: 3
  • FF:
    • DH:
      • DH: 1
pdf_data/st_keywords/hash_function
  • PBKDF:
    • PBKDF2: 2
  • SHA:
    • SHA3:
      • SHA3: 1
pdf_data/st_keywords/crypto_protocol
  • PACE:
    • PACE: 2
pdf_data/st_keywords/randomness
  • RNG:
    • RNG: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • NIST P-256: 1
    • P-256: 1
    • secp256r1: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
  • other:
    • reverse engineering: 3
  • FI:
    • malfunction: 1
  • SCA:
    • physical probing: 1
pdf_data/st_keywords/tee_name
  • IBM:
    • SE: 2
pdf_data/st_keywords/cplc_data
  • ICFab:
    • IC Fabricator: 1
  • ICType:
    • IC Type: 1
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 1
    • FIPS186: 4
    • FIPS197: 1
  • RFC:
    • RFC2898: 2
  • BSI:
    • AIS31: 1
    • BSI-AIS31: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
pdf_data/st_keywords/javacard_version
  • JavaCard:
    • Java Card 3.1: 4
pdf_data/st_keywords/javacard_api_const
  • misc:
    • TYPE_ACCESS: 7
pdf_data/st_keywords/javacard_packages
  • com:
    • com.gemalto.belpic: 1
    • com.gemalto.javacard.eid: 1
    • com.gemalto.javacard.fido.ctap: 1
    • com.gemalto.javacard.iasclassic: 1
    • com.gemalto.javacard.mspnp: 1
    • com.gemalto.javacardx.gdp: 1
    • com.gemalto.moc.client: 1
    • com.gemalto.moc.server: 1
    • com.gemalto.mpcos: 1
    • com.gemalto.puredi: 1
    • com.gemalto.tacho: 1
  • javacard:
    • javacard.eid: 1
    • javacard.fido.ctap: 1
    • javacard.iasclassic: 1
    • javacard.mspnp: 1
  • javacardx:
    • javacardx.gdp: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Out of scope: 2
    • Out of scope User of Authentication service User of Authentication service using Mobile where Customer: 1
    • The agent who performs Customer Application and AWPKI SDK initialisation and administration. Out of scope Customer Application Server Administrator The agent who performs Customer server initialisation and: 1
  • OutOfScope:
    • • The DELETE and INSTALL APDU commands are out of scope of this SPM: 1
    • 1, are out of the scope of the SPM as they are linked to the applet loading or deletion that is out of scope of the SPM boundaries limited to VM opcodes The SFR FMT_MTD.3/JCRE is out of scope of the SPM: 1
    • and deletion; see #.DELETION and #.INSTALL). • The DELETE and INSTALL APDU commands are out of scope of this SPM. The list of registred applets’ AIDs is proven to be not modified during the execution: 1
    • as a null reference. Such a mechanism is implementation-dependent. The deletion of applets is out of scope of this SPM scope. In the case of an array type, fields are components of the array ([JVM], §2.14: 1
    • because AID registry is created during loading phase, which is also out of scope of the SPM (Hypothesis 2 of the SPM document [MAV51_SPM]). MultiApp V5.1: Security Target Java: 1
    • is also out of scope (Hypothesis 4 of the SPM document [MAV51_SPM]).. 3) S.CAP_FILE performing OP.ARRAY_AASTORE of the: 1
    • management functions: • Modify the Currently Active Context Note: the Selected Applet context is out of scope of the VM functionalities. It is a process that occurs prior to VM start The initial setting of: 1
    • out of scope: 8
    • the active context is not the same as the Selected Applet Context. Application note: This rule is out of scope of the SPM modelisation because CLEAR_ON_DESELECT objects can be created exclusively in the API: 1
pdf_data/st_metadata
  • /Author: F.GUERIN
  • /CreationDate: D:20191113150209+01'00'
  • /Creator: Microsoft® Word 2016
  • /ModDate: D:20191113150209+01'00'
  • /Producer: Microsoft® Word 2016
  • /Subject: AWPKI SDK
  • /Title: Security Target for
  • pdf_file_size_bytes: 1940693
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 45
  • /Author: OHAYON Franck
  • /CreationDate: D:20230606163814+02'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20230606163814+02'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • /Title: MultiApp V5.1: JCVM Security Target
  • pdf_file_size_bytes: 1232740
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 60
state/cert/convert_garbage True False
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different