Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
NSCIB-CC-230855-CR
Dencrypt Server System 5.0
CSEC2020003
name Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300 Dencrypt Server System 5.0
scheme NL SE
status archived active
not_valid_after 24.12.2024 09.07.2026
not_valid_before 24.12.2019 09.07.2021
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/cert%2019-230855.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/CCRA%20-%20Dencrypt%20Server%20System%205.0.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification%20Report%20NSCIB-CC-230855-CR.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification%20Report%20-%20Dencrypt%20Server%20System%205.0.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/R0R28657_AWPKI_SDK_ST_V17p.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ST%20-%20Dencrypt%20Server.pdf
manufacturer Thales Dencrypt A/S
manufacturer_web https://www.dencrypt.dk/
security_level ADV_FSP.4, AVA_VAN.3, ALC_TAT.1, ADV_IMP.1, EAL3+, ADV_TDS.3 EAL2, ALC_FLR.2
dgst e9d6e407cf4641c8 4733598d7e270be9
heuristics/cert_id NSCIB-CC-230855-CR CSEC2020003
heuristics/cert_lab []
heuristics/extracted_sars ASE_INT.1, ALC_CMC.3, ALC_CMS.3, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ALC_TAT.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AVA_VAN.3, AGD_PRE.1, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, APE_SPD.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1 ASE_INT.1, AVA_VAN.2, ADV_FSP.2, ASE_ECD.1, ASE_TSS.1, ASE_SPD.1, ALC_DEL.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.2, ADV_TDS.1, ATE_FUN.1, ATE_COV.1, ADV_ARC.1, ASE_OBJ.2, ALC_FLR.2, ASE_REQ.2, ALC_CMC.2, ATE_IND.2, ASE_CCL.1
heuristics/extracted_versions 1.0.1.300 5.0
pdf_data/cert_filename cert 19-230855.pdf CCRA - Dencrypt Server System 5.0.pdf
pdf_data/cert_keywords/cc_cert_id
  • NL:
    • CC-19-230855: 1
  • SE:
    • CSEC2020003: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL2: 1
  • EAL:
    • EAL 2: 2
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.3: 1
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 1
pdf_data/cert_keywords/vendor
  • Gemalto:
    • Gemalto: 1
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • atsec:
    • atsec: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191224095650+01'00'
  • /Creator: NL-ARN-SAL-C
  • /ModDate: D:20191224103746+01'00'
  • /Producer: KONICA MINOLTA bizhub C300i
  • pdf_file_size_bytes: 74925
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20210905105543+02'00'
  • /Creator: RICOH MP C4504ex
  • /ModDate: D:20210905111124+02'00'
  • /Producer: RICOH MP C4504ex
  • pdf_file_size_bytes: 871869
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename Certification Report NSCIB-CC-230855-CR.pdf Certification Report - Dencrypt Server System 5.0.pdf
pdf_data/report_frontpage
  • NL:
    • cert_id: NSCIB-CC-230855-CR
    • cert_item: Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
    • cert_lab: Brightsight
    • developer: Thales
  • NL:
pdf_data/report_keywords/cc_cert_id
  • NL:
    • NSCIB-CC-230855-CR: 11
  • SE:
    • CSEC2020003: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL3: 2
    • EAL3 augmented: 1
    • EAL4: 1
  • EAL:
    • EAL 2: 2
    • EAL 2 augmented: 1
    • EAL2: 1
    • EAL3: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 2
    • ADV_IMP: 1
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • ALC:
    • ALC_TAT.1: 2
  • AVA:
    • AVA_VAN.3: 2
  • ADV:
    • ADV_ARC.1: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 3
  • ASE:
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/report_keywords/cc_claims
  • A:
    • A.CROSS-SYSTEM: 1
    • A.FIREWALL: 1
    • A.LINK: 1
    • A.NETWORK: 1
    • A.NOEVIL: 1
    • A.PHYSICAL: 1
    • A.REVIEW: 1
    • A.TIME: 1
    • A.TRUSTANCHOR: 1
    • A.USER: 1
    • A.WORKSTATION: 1
  • OSP:
    • OSP.ACCOUNT: 1
    • OSP.CA: 1
    • OSP.CLIENTKEY: 1
    • OSP.MANAGE: 1
    • OSP.PROVISIONING: 1
    • OSP.SERVICE: 1
    • OSP.TUNNEL: 1
  • T:
    • T.BRIDGE: 1
    • T.COMMUNICATION: 1
    • T.MASQUERADE: 1
    • T.UNAUTH: 1
    • T.UNDETECTED: 1
pdf_data/report_keywords/vendor
  • Gemalto:
    • Gemalto: 19
  • Huawei:
    • Huawei: 2
  • Samsung:
    • Samsung: 4
  • Thales:
    • Thales: 4
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • atsec:
    • atsec: 5
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 2
  • AES_competition:
    • AES:
      • AES: 1
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 3
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 1
  • TLS:
    • TLS:
      • TLS: 20
      • TLS 1.2: 2
  • VPN:
    • VPN: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
    • Reverse engineering: 1
pdf_data/report_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • ISO:
    • ISO/IEC 17025: 2
pdf_data/report_metadata
  • /Author: MAAVA
  • /CreationDate: D:20210712153905+02'00'
  • /ModDate: D:20210712153905+02'00'
  • /Producer: Microsoft: Print To PDF
  • /Title: Microsoft Word - Dencrypt_Server_5.0_Certification Report
  • pdf_file_size_bytes: 974794
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 20
pdf_data/st_filename R0R28657_AWPKI_SDK_ST_V17p.pdf ST - Dencrypt Server.pdf
pdf_data/st_keywords/cc_cert_id
  • NL:
    • CC-1: 6
    • CC-2: 2
    • CC-3: 4
    • NSCIB-CC-230855: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL3: 2
    • EAL3 augmented: 1
  • EAL:
    • EAL2: 7
    • EAL2 augmented: 1
    • EAL4+: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.3: 1
    • ALC_CMS.3: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 4
  • APE:
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 5
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.2: 1
    • ADV_TDS.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.2: 1
    • ALC_CMS.2: 1
    • ALC_DEL.1: 1
    • ALC_FLR.2: 4
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.2: 1
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 3
    • FCS_CKM.4: 3
    • FCS_COP: 9
    • FCS_COP.1: 4
  • FDP:
    • FDP_ACC: 4
    • FDP_ACC.1: 8
    • FDP_ACC.2: 3
    • FDP_ACF: 3
    • FDP_ACF.1: 12
    • FDP_IFC.1: 3
    • FDP_ITC: 9
    • FDP_ITC.1: 12
    • FDP_ITC.2: 3
    • FDP_RIP: 2
    • FDP_RIP.1: 1
  • FMT:
    • FMT_MSA.3: 8
  • FPT:
    • FPT_FLS.1: 3
    • FPT_FLS.1.1: 1
    • FPT_MUL: 5
    • FPT_MUL.1: 6
    • FPT_MUL.1.1: 2
    • FPT_MUL.1.2: 2
  • FAU:
    • FAU_GEN: 4
    • FAU_GEN.1: 8
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_SAR.1: 9
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 4
    • FAU_SAR.2.1: 1
    • FAU_STG.2: 5
    • FAU_STG.2.1: 1
    • FAU_STG.2.2: 1
    • FAU_STG.2.3: 1
  • FCS:
    • FCS_CKM: 52
    • FCS_CKM.1: 18
    • FCS_CKM.1.1: 2
    • FCS_CKM.2: 10
    • FCS_CKM.2.1: 3
    • FCS_CKM.4: 24
    • FCS_CKM.4.1: 1
    • FCS_COP: 95
    • FCS_COP.1: 2
    • FCS_COP.1.1: 6
    • FCS_RBG_EXT.1: 12
    • FCS_RNG: 2
    • FCS_RNG.1: 18
    • FCS_RNG.1.1: 2
    • FCS_RNG.1.2: 2
    • FCS_SSHS_EXT: 2
    • FCS_SSHS_EXT.1: 13
    • FCS_SSHS_EXT.1.1: 2
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 2
    • FCS_SSHS_EXT.1.4: 2
    • FCS_SSHS_EXT.1.5: 2
    • FCS_SSHS_EXT.1.6: 2
    • FCS_SSHS_EXT.1.7: 2
    • FCS_SSHS_EXT.1.8: 2
    • FCS_TLSC_EXT: 2
    • FCS_TLSC_EXT.1: 7
    • FCS_TLSC_EXT.1.1: 3
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 10
    • FCS_TLSC_EXT.2.1: 2
    • FCS_TLSC_EXT.2.2: 2
    • FCS_TLSC_EXT.2.3: 2
    • FCS_TLSC_EXT.2.4: 2
    • FCS_TLSC_EXT.2.5: 2
    • FCS_TLSS_EXT: 3
    • FCS_TLSS_EXT.1: 17
    • FCS_TLSS_EXT.1.1: 4
    • FCS_TLSS_EXT.1.2: 2
    • FCS_TLSS_EXT.1.3: 2
    • FCS_TLSS_EXT.2: 19
    • FCS_TLSS_EXT.2.1: 4
    • FCS_TLSS_EXT.2.2: 2
    • FCS_TLSS_EXT.2.3: 2
    • FCS_TLSS_EXT.2.4: 3
    • FCS_TLSS_EXT.2.5: 2
    • FCS_TLSS_EXT.2.6: 2
    • FCS_TLS_EXT.1.1: 2
  • FDP:
    • FDP_ACC: 1
    • FDP_ACC.1: 1
    • FDP_ACF: 1
    • FDP_IFC.1: 1
    • FDP_ITC.1: 10
    • FDP_ITC.2: 19
    • FDP_ITC.2.1: 1
    • FDP_ITC.2.2: 1
    • FDP_ITC.2.3: 1
    • FDP_ITC.2.4: 1
    • FDP_ITC.2.5: 1
  • FIA:
    • FIA_UAU.2: 7
    • FIA_UAU.2.1: 1
    • FIA_UAU.4: 4
    • FIA_UAU.4.1: 1
    • FIA_UID.1: 1
    • FIA_UID.2: 7
    • FIA_UID.2.1: 1
  • FMT:
    • FMT_MTD: 1
    • FMT_MTD.1: 5
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 7
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 6
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_STM.1: 1
    • FPT_TDC.1: 1
  • FTP:
    • FTP_ITC.1: 21
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 2
pdf_data/st_keywords/cc_claims
  • A:
    • A.PKI: 1
  • D:
    • D.ACO: 3
    • D.ACOR: 14
    • D.APP_ID: 2
    • D.AR: 13
    • D.AWPKI_SDK_: 2
    • D.AWPKI_SDK_I: 1
    • D.MOB_ID: 2
    • D.USER_ID: 2
    • D.XX: 1
  • O:
    • O.ACO: 1
    • O.ACO_SM: 1
  • OE:
    • OE.PKI: 1
  • T:
    • T.ACOR_ATT_: 3
    • T.ACOR_STOL: 1
  • A:
    • A.CROSS-SYSTEM: 3
    • A.FIREWALL: 2
    • A.LINK: 3
    • A.NETWORK: 3
    • A.NOEVIL: 2
    • A.PHYSICAL: 3
    • A.REVIEW: 2
    • A.TIME: 3
    • A.TRUSTANCHOR: 2
    • A.USER: 3
    • A.WORKSTATION: 2
  • O:
    • O.ACCESS: 5
    • O.AUDIT: 8
    • O.BRDIGE: 1
    • O.BRIDGE: 4
    • O.CA: 5
    • O.CHANNEL: 6
    • O.CLIENTKEY: 5
    • O.MANAGE: 5
    • O.PROVISIONING: 6
    • O.PUSH: 5
    • O.REMOTE: 5
    • O.REVIEW: 6
    • O.SERVICE: 5
    • O.TUNNEL: 5
  • OE:
    • OE.CROSS-SYSTEM: 3
    • OE.FIREWALL: 3
    • OE.LINK: 5
    • OE.NETWORK: 3
    • OE.NOEVIL: 3
    • OE.PHYSICAL: 3
    • OE.REVIEW: 5
    • OE.TIME: 6
    • OE.TRUSTANCHOR: 4
    • OE.USER: 3
    • OE.WORKSTATION: 3
  • OSP:
    • OSP.ACCOUNT: 2
    • OSP.CA: 3
    • OSP.CLIENTKEY: 2
    • OSP.MANAGE: 3
    • OSP.PROVISIONING: 3
    • OSP.SERVICE: 2
    • OSP.TUNNEL: 3
  • T:
    • T.BRIDGE: 3
    • T.COMMUNICATION: 3
    • T.MASQUERADE: 2
    • T.UNAUTH: 3
    • T.UNDETECTED: 2
pdf_data/st_keywords/vendor
  • Gemalto:
    • Gemalto: 79
  • Thales:
    • Thales: 221
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
    • Rijndael:
      • Rijndael: 1
  • constructions:
    • MAC:
      • CMAC: 1
  • AES_competition:
    • AES:
      • AES: 26
      • AES-256: 6
  • constructions:
    • MAC:
      • HMAC: 1
      • HMAC-SHA-384: 1
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDSA:
      • ECDSA: 27
  • ECC:
    • ECDH:
      • ECDHE: 1
  • FF:
    • DH:
      • DH: 2
      • Diffie-Hellman: 8
  • RSA:
    • RSA 4096: 2
pdf_data/st_keywords/hash_function
  • PBKDF:
    • PBKDF2: 2
  • SHA:
    • SHA2:
      • SHA384: 1
      • SHA512: 2
pdf_data/st_keywords/crypto_scheme
  • MAC:
    • MAC: 5
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 73
    • SSHv2: 1
  • TLS:
    • DTLS:
      • DTLS: 2
    • SSL:
      • SSL: 9
      • SSL 2.0: 4
      • SSL 3.0: 4
    • TLS:
      • TLS: 147
      • TLS 1.0: 4
      • TLS 1.1: 8
      • TLS 1.2: 20
      • TLS v1.0: 2
      • TLS v1.2: 1
  • VPN:
    • VPN: 2
pdf_data/st_keywords/randomness
  • RNG:
    • RNG: 11
pdf_data/st_keywords/cipher_mode
  • CFB:
    • CFB: 2
  • GCM:
    • GCM: 7
pdf_data/st_keywords/ecc_curve
  • NIST:
    • NIST P-256: 1
    • P-256: 1
    • secp256r1: 1
  • NIST:
    • secp256r1: 4
    • secp384r1: 9
    • secp521r1: 4
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 4
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 9
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
  • other:
    • reverse engineering: 3
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 1
    • FIPS186: 4
    • FIPS197: 1
  • RFC:
    • RFC2898: 2
  • CC:
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS 140-2: 1
    • FIPS PUB 186-4: 2
    • FIPS186-4: 2
    • FIPS197: 4
  • NIST:
    • NIST SP 800-38A: 2
    • NIST SP 800-38D: 3
    • NIST SP 800-56A: 1
  • PKCS:
    • PKCS #1: 2
  • RFC:
    • RFC 2818: 3
    • RFC 4253: 5
    • RFC 4346: 4
    • RFC 5246: 7
    • RFC 5280: 2
    • RFC 5289: 3
    • RFC 5647: 1
    • RFC 6125: 5
    • RFC3261: 1
    • RFC3711: 1
    • RFC4252: 5
    • RFC4253: 8
    • RFC5246: 2
    • RFC5289: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Out of scope: 2
    • Out of scope User of Authentication service User of Authentication service using Mobile where Customer: 1
    • The agent who performs Customer Application and AWPKI SDK initialisation and administration. Out of scope Customer Application Server Administrator The agent who performs Customer server initialisation and: 1
  • OutOfScope:
    • indicated as “REQUIRED” but not listed in the later elements of this component are implemented is out of scope of the evaluation activity for this requirement. RFC 5647 only applies to the RFC compliant: 1
    • out of scope: 1
pdf_data/st_metadata
  • /Author: F.GUERIN
  • /CreationDate: D:20191113150209+01'00'
  • /Creator: Microsoft® Word 2016
  • /ModDate: D:20191113150209+01'00'
  • /Producer: Microsoft® Word 2016
  • /Subject: AWPKI SDK
  • /Title: Security Target for
  • pdf_file_size_bytes: 1940693
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 45
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different