Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
NSCIB-CC-230855-CR
Citrix ADC (MPX FIPS and VPX FIPS) Version 12.1
CCEVS-VR-11225-2022
name Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300 Citrix ADC (MPX FIPS and VPX FIPS) Version 12.1
category Mobility Network and Network-Related Devices and Systems
scheme NL US
not_valid_after 24.12.2024 26.01.2024
not_valid_before 24.12.2019 26.01.2022
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/cert%2019-230855.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11225-ci.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Certification%20Report%20NSCIB-CC-230855-CR.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11225-vr.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/R0R28657_AWPKI_SDK_ST_V17p.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11225-st.pdf
manufacturer Thales Citrix Systems, Inc.
manufacturer_web https://www.citrix.com
security_level ADV_FSP.4, AVA_VAN.3, ALC_TAT.1, ADV_IMP.1, EAL3+, ADV_TDS.3 {}
dgst e9d6e407cf4641c8 f941ae49c8ac76f2
heuristics/cert_id NSCIB-CC-230855-CR CCEVS-VR-11225-2022
heuristics/cert_lab US
heuristics/extracted_sars ASE_INT.1, ALC_CMC.3, ALC_CMS.3, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ALC_TAT.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AVA_VAN.3, AGD_PRE.1, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, APE_SPD.1, ADV_FSP.4, ATE_IND.2, ASE_CCL.1 ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, ASE_CLL.1, ASE_REQ.1, AGD_OPE.1, ASE_ECD.1, AGD_PRE.1
heuristics/extracted_versions 1.0.1.300 12.1
heuristics/scheme_data
  • category: Network Device
  • certification_date: 26.01.2022
  • evaluation_facility: Acumen Security
  • expiration_date: 26.01.2024
  • id: CCEVS-VR-VID11225
  • product: Citrix ADC (MPX FIPS and VPX FIPS) Version 12.1
  • scheme: US
  • url: https://www.niap-ccevs.org/product/11225
  • vendor: Citrix Systems Inc.
heuristics/protection_profiles {} 89f2a255423f4a20
protection_profile_links {} https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_ND_V2.2E.pdf
pdf_data/cert_filename cert 19-230855.pdf st_vid11225-ci.pdf
pdf_data/cert_keywords/cc_cert_id
  • NL:
    • CC-19-230855: 1
  • US:
    • CCEVS-VR-VID11225-2022: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL2: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • ALC:
    • ALC_TAT.1: 1
  • AVA:
    • AVA_VAN.3: 1
pdf_data/cert_keywords/vendor
  • Gemalto:
    • Gemalto: 1
  • Thales:
    • Thales: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • Acumen:
    • Acumen Security: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /CreationDate: D:20191224095650+01'00'
  • /Creator: NL-ARN-SAL-C
  • /ModDate: D:20191224103746+01'00'
  • /Producer: KONICA MINOLTA bizhub C300i
  • pdf_file_size_bytes: 74925
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /CreationDate: D:20220125185236-05'00'
  • /ModDate: D:20220125185236-05'00'
  • /Producer: iText 2.1.0 (by lowagie.com)
  • pdf_file_size_bytes: 180294
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename Certification Report NSCIB-CC-230855-CR.pdf st_vid11225-vr.pdf
pdf_data/report_frontpage
  • NL:
    • cert_id: NSCIB-CC-230855-CR
    • cert_item: Gemalto Advanced Whitebox PKI SDK for Android v1.0.1.300
    • cert_lab: Brightsight
    • developer: Thales
  • US:
  • NL:
  • US:
    • cert_id: CCEVS-VR-11225-2022
    • cert_item: for the Citrix ADC (MPX FIPS and VPX FIPS) Version 12.1
    • cert_lab: US NIAP
pdf_data/report_keywords/cc_cert_id
  • NL:
    • NSCIB-CC-230855-CR: 11
  • US:
    • CCEVS-VR-11225-2022: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL 3 augmented: 1
    • EAL3: 2
    • EAL3 augmented: 1
    • EAL4: 1
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.4: 2
    • ADV_IMP: 1
    • ADV_IMP.1: 2
    • ADV_TDS.3: 2
  • ALC:
    • ALC_TAT.1: 2
  • AVA:
    • AVA_VAN.3: 2
pdf_data/report_keywords/vendor
  • Gemalto:
    • Gemalto: 19
  • Huawei:
    • Huawei: 2
  • Samsung:
    • Samsung: 4
  • Thales:
    • Thales: 4
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • Acumen:
    • Acumen Security: 4
pdf_data/report_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 2
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECDSA:
      • ECDSA: 3
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 3
    • SSHv2: 1
  • TLS:
    • SSL:
      • SSL: 3
    • TLS:
      • TLS: 5
  • VPN:
    • VPN: 2
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
    • Reverse engineering: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 1
pdf_data/report_metadata
  • /Author: ppatin
  • /CreationDate: D:20220125182512-05'00'
  • /Creator: Microsoft® Word for Microsoft 365
  • /ModDate: D:20220125182512-05'00'
  • /Producer: Microsoft® Word for Microsoft 365
  • pdf_file_size_bytes: 295296
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 21
pdf_data/st_filename R0R28657_AWPKI_SDK_ST_V17p.pdf st_vid11225-st.pdf
pdf_data/st_keywords/cc_cert_id
  • NL:
    • CC-1: 6
    • CC-2: 2
    • CC-3: 4
    • NSCIB-CC-230855: 1
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 3: 1
    • EAL3: 2
    • EAL3 augmented: 1
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 4
    • ADV_IMP.1: 4
    • ADV_TDS.3: 4
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.3: 1
    • ALC_CMS.3: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 4
  • APE:
    • APE_SPD.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 5
  • ADV:
    • ADV_FSP.1: 2
  • AGD:
    • AGD_OPE.1: 2
    • AGD_PRE.1: 2
  • ALC:
    • ALC_CMC.1: 2
    • ALC_CMS.1: 2
  • ASE:
    • ASE_CLL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 2
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 2
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM.1: 3
    • FCS_CKM.4: 3
    • FCS_COP: 9
    • FCS_COP.1: 4
  • FDP:
    • FDP_ACC: 4
    • FDP_ACC.1: 8
    • FDP_ACC.2: 3
    • FDP_ACF: 3
    • FDP_ACF.1: 12
    • FDP_IFC.1: 3
    • FDP_ITC: 9
    • FDP_ITC.1: 12
    • FDP_ITC.2: 3
    • FDP_RIP: 2
    • FDP_RIP.1: 1
  • FMT:
    • FMT_MSA.3: 8
  • FPT:
    • FPT_FLS.1: 3
    • FPT_FLS.1.1: 1
    • FPT_MUL: 5
    • FPT_MUL.1: 6
    • FPT_MUL.1.1: 2
    • FPT_MUL.1.2: 2
  • FAU:
    • FAU_GEN.1: 4
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 3
    • FAU_GEN.2.1: 1
    • FAU_STG_EXT.1: 4
    • FAU_STG_EXT.1.1: 1
    • FAU_STG_EXT.1.2: 1
    • FAU_STG_EXT.1.3: 1
  • FCS:
    • FCS_CKM: 1
    • FCS_CKM.1: 6
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 4
    • FCS_CKM.2.1: 1
    • FCS_CKM.4: 4
    • FCS_CKM.4.1: 1
    • FCS_COP: 22
    • FCS_COP.1: 4
    • FCS_NTP_EXT.1: 1
    • FCS_NTP_EXT.1.4: 1
    • FCS_RBG_EXT.1: 5
    • FCS_RBG_EXT.1.1: 1
    • FCS_RBG_EXT.1.2: 1
    • FCS_SSHS_EXT.1: 6
    • FCS_SSHS_EXT.1.1: 1
    • FCS_SSHS_EXT.1.2: 1
    • FCS_SSHS_EXT.1.3: 1
    • FCS_SSHS_EXT.1.4: 1
    • FCS_SSHS_EXT.1.5: 1
    • FCS_SSHS_EXT.1.6: 1
    • FCS_SSHS_EXT.1.7: 1
    • FCS_SSHS_EXT.1.8: 1
    • FCS_TLSC_EXT.1: 5
    • FCS_TLSC_EXT.1.1: 1
    • FCS_TLSC_EXT.1.2: 1
    • FCS_TLSC_EXT.1.3: 1
    • FCS_TLSC_EXT.1.4: 1
    • FCS_TLSC_EXT.2: 1
    • FCS_TLSC_EXT.2.3: 1
    • FCS_TLSS_EXT.1: 3
  • FIA:
    • FIA_AFL.1: 8
    • FIA_AFL.1.1: 1
    • FIA_AFL.1.2: 1
    • FIA_PMG_EXT.1: 4
    • FIA_PMG_EXT.1.1: 1
    • FIA_UAU.7: 3
    • FIA_UAU.7.1: 2
    • FIA_UAU_EXT.2: 3
    • FIA_UAU_EXT.2.1: 1
    • FIA_UIA_EXT.1: 4
    • FIA_UIA_EXT.1.1: 1
    • FIA_UIA_EXT.1.2: 1
  • FMT:
    • FMT_MOF: 4
    • FMT_MOF.1: 1
    • FMT_MTD: 4
    • FMT_MTD.1: 1
    • FMT_SMF.1: 4
    • FMT_SMF.1.1: 1
    • FMT_SMR.2: 4
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 3
    • FPT_APW_EXT.1.1: 1
    • FPT_APW_EXT.1.2: 1
    • FPT_SKP_EXT.1: 4
    • FPT_SKP_EXT.1.1: 1
    • FPT_STM_EXT.1: 5
    • FPT_STM_EXT.1.1: 1
    • FPT_STM_EXT.1.2: 1
    • FPT_TST_EXT.1: 4
    • FPT_TST_EXT.1.1: 1
    • FPT_TUD_EXT.1: 4
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
  • FTA:
    • FTA_SSL.3: 4
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 3
    • FTA_SSL_EXT.1.1: 1
    • FTA_TAB.1: 6
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_APW_EXT.1: 1
    • FTP_ITC.1: 7
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP: 4
    • FTP_TRP.1: 3
pdf_data/st_keywords/cc_claims
  • A:
    • A.PKI: 1
  • D:
    • D.ACO: 3
    • D.ACOR: 14
    • D.APP_ID: 2
    • D.AR: 13
    • D.AWPKI_SDK_: 2
    • D.AWPKI_SDK_I: 1
    • D.MOB_ID: 2
    • D.USER_ID: 2
    • D.XX: 1
  • O:
    • O.ACO: 1
    • O.ACO_SM: 1
  • OE:
    • OE.PKI: 1
  • T:
    • T.ACOR_ATT_: 3
    • T.ACOR_STOL: 1
  • A:
    • A.ADMIN_CREDENTIALS_SECURE: 1
    • A.LIMITED_FUNCTIONALITY: 1
    • A.NO_THRU_TRAFFIC_PROTECTION: 1
    • A.PHYSICAL_PROTECTION: 1
    • A.REGULAR_UPDATES: 1
    • A.RESIDUAL_INFORMATION: 1
    • A.TRUSTED_ADMINISTRATOR: 1
    • A.VS_CORRECT_CONFIGURATION: 1
    • A.VS_ISOLATION: 1
    • A.VS_REGULAR_UPDATES: 1
    • A.VS_TRUSTED_ADMINISTRATOR: 1
  • OE:
    • OE.ADMIN_CREDENTIALS_SECURE: 1
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.NO_THRU_TRAFFIC_PROTECTION: 1
    • OE.PHYSICAL: 1
    • OE.RESIDUAL_INFORMATION: 1
    • OE.TRUSTED_ADMN: 1
    • OE.UPDATES: 1
    • OE.VM_CONFIGURATION: 1
  • T:
    • T.PASSWORD_CRACKING: 1
    • T.SECURITY_FUNCTIONALITY_COMPROMISE: 1
    • T.SECURITY_FUNCTIONALITY_FAILURE: 1
    • T.UNAUTHORIZED_ADMINISTRATOR_ACCESS: 1
    • T.UNDETECTED_ACTIVITY: 1
    • T.UNTRUSTED_COMMUNICATION_CHANNELS: 1
    • T.UPDATE_COMPROMISE: 1
    • T.WEAK_AUTHENTICATION_ENDPOINTS: 1
    • T.WEAK_CRYPTOGRAPHY: 1
pdf_data/st_keywords/vendor
  • Gemalto:
    • Gemalto: 79
  • Thales:
    • Thales: 221
pdf_data/st_keywords/eval_facility
  • Acumen:
    • Acumen Security: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 5
    • Rijndael:
      • Rijndael: 1
  • constructions:
    • MAC:
      • CMAC: 1
  • AES_competition:
    • AES:
      • AES: 7
      • AES-128: 3
      • AES-256: 4
      • AES256: 2
  • constructions:
    • MAC:
      • HMAC: 3
      • HMAC-SHA-256: 2
      • HMAC-SHA-512: 1
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDSA:
      • ECDSA: 27
  • ECC:
    • ECC:
      • ECC: 2
    • ECDSA:
      • ECDSA: 2
pdf_data/st_keywords/hash_function
  • PBKDF:
    • PBKDF2: 2
  • PBKDF:
    • PBKDF2: 2
  • SHA:
    • SHA1:
      • SHA-1: 5
    • SHA2:
      • SHA-256: 8
      • SHA-384: 3
      • SHA-512: 5
      • SHA256: 2
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
  • KEX:
    • Key exchange: 2
  • MAC:
    • MAC: 7
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 58
    • SSHv2: 3
  • TLS:
    • DTLS:
      • DTLS: 1
    • SSL:
      • SSL: 4
    • TLS:
      • TLS: 37
      • TLS 1.1: 3
      • TLS 1.2: 3
      • TLS v1.1: 1
  • VPN:
    • VPN: 2
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 7
  • RNG:
    • RBG: 1
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 5
  • CTR:
    • CTR: 4
  • GCM:
    • GCM: 4
pdf_data/st_keywords/ecc_curve
  • NIST:
    • NIST P-256: 1
    • P-256: 1
    • secp256r1: 1
  • NIST:
    • P-256: 8
    • P-384: 8
    • P-521: 8
    • secp256r1: 2
    • secp384r1: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384: 2
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA: 2
    • TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384: 2
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 2
    • TLS_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 2
    • TLS_RSA_WITH_AES_128_GCM_SHA256: 2
    • TLS_RSA_WITH_AES_256_CBC_SHA: 2
    • TLS_RSA_WITH_AES_256_GCM_SHA384: 2
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • malfunction: 1
  • other:
    • reverse engineering: 3
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
    • CCMB-2017-04-004: 1
  • FIPS:
    • FIPS PUB 186-4: 1
    • FIPS186: 4
    • FIPS197: 1
  • RFC:
    • RFC2898: 2
  • FIPS:
    • FIPS 140-2: 1
    • FIPS 186-4: 1
    • FIPS PUB 186-4: 6
  • ISO:
    • ISO/IEC 10118-: 1
    • ISO/IEC 14888-3: 1
    • ISO/IEC 18031:2011: 3
    • ISO/IEC 9796-2: 1
    • ISO/IEC 9797-: 1
  • NIST:
    • SP 800-56A: 1
    • SP 800-90A: 1
  • PKCS:
    • PKCS #1: 1
  • RFC:
    • RFC 3268: 2
    • RFC 3447: 1
    • RFC 4253: 1
    • RFC 4346: 2
    • RFC 4492: 8
    • RFC 5077: 1
    • RFC 5246: 6
    • RFC 5280: 4
    • RFC 5288: 4
    • RFC 5289: 9
    • RFC 6125: 1
  • X509:
    • X.509: 9
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • Out of scope: 2
    • Out of scope User of Authentication service User of Authentication service using Mobile where Customer: 1
    • The agent who performs Customer Application and AWPKI SDK initialisation and administration. Out of scope Customer Application Server Administrator The agent who performs Customer server initialisation and: 1
pdf_data/st_metadata
  • /Author: F.GUERIN
  • /CreationDate: D:20191113150209+01'00'
  • /Creator: Microsoft® Word 2016
  • /ModDate: D:20191113150209+01'00'
  • /Producer: Microsoft® Word 2016
  • /Subject: AWPKI SDK
  • /Title: Security Target for
  • pdf_file_size_bytes: 1940693
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 45
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different