Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
FortiManager Appliances running Firmware 5.2.4
383-4-359
Cybertrust UniCERT v5.2.1
Certificate Number: 2006/39
name FortiManager Appliances running Firmware 5.2.4 Cybertrust UniCERT v5.2.1
category Network and Network-Related Devices and Systems Products for Digital Signatures
scheme CA AU
not_valid_after 11.07.2021 13.07.2017
not_valid_before 11.07.2016 25.10.2006
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-359%20ct%20v1.0e.docx
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-359%20CR%20v1.0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/EFAT028_Certification_Report_V1.0.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-359%20ST_NDPP_US_FortiManager_v1_0.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Cybertrust_UniCERT_5.2.1_ST.pdf
manufacturer Fortinet, Inc. Cybertrust
manufacturer_web https://www.fortinet.com/ https://www.cybertrust.com/
security_level {} EAL4+, ALC_FLR.2
dgst edf97c0da86bc11a 6780328fff5788c0
heuristics/cert_id 383-4-359 Certificate Number: 2006/39
heuristics/cpe_matches cpe:2.3:a:fortinet:fortimanager:5.2.4:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2018-1354, CVE-2018-1351, CVE-2020-9289, CVE-2021-36170, CVE-2021-32589, CVE-2021-32597, CVE-2021-24016, CVE-2018-13375, CVE-2019-17654, CVE-2018-1353, CVE-2019-17657, CVE-2021-24017, CVE-2018-1355, CVE-2018-1360 {}
heuristics/extracted_sars AVA_VAN.1, ASE_TSS.1, ATE_IND.1, ASE_CCL.1, ADV_FSP.1, AGD_OPE.1, ASE_INT.1, AGD_PRE.1, ASE_ECD.1, ALC_CMS.1, ALC_CMC.1, ASE_OBJ.2, ASE_REQ.2 ALC_TAT.1, ALC_FLR.2, ATE_DPT.1, AVA_VLA.2, ASE_REQ.1, ATE_COV.2, ADV_LLD.1, ASE_DES.1, ADV_RCR.1, AVA_SOF.1, AVA_MSU.2, ADV_HLD.2, ATE_IND.2, ASE_TSS.1, ASE_INT.1, ADV_FSP.2, AGD_USR.1, ALC_LCD.1, ADV_SPM.1, ASE_ENV.1, ASE_OBJ.1, ASE_SRE.1, ASE_PPC.1, AGD_ADM.1, ATE_FUN.1, ADV_IMP.1, ALC_DVS.1, AGD_AGD.1
heuristics/extracted_versions 5.2.4 5.2.1
heuristics/protection_profiles ac9abe3d5c5a31f0 {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp_nd_v1.1.pdf {}
pdf_data/cert_filename 383-4-359 ct v1.0e.docx
pdf_data/report_filename 383-4-359 CR v1.0.pdf EFAT028_Certification_Report_V1.0.pdf
pdf_data/report_frontpage
  • CA:
  • CA:
pdf_data/report_keywords/cc_cert_id
  • CA:
    • 383-4-359: 1
  • AU:
    • Certificate Number: 2006/39: 1
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL4: 2
    • EAL4+: 6
pdf_data/report_keywords/cc_sar
  • ALC:
    • ALC_FLR: 1
    • ALC_FLR.2: 3
pdf_data/report_keywords/vendor
  • Cisco:
    • Cisco: 1
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • 3DES: 3
    • DES:
      • DES: 1
pdf_data/report_keywords/asymmetric_crypto
  • FF:
    • DSA:
      • DSA: 3
pdf_data/report_keywords/hash_function
  • MD:
    • MD5:
      • MD5: 3
  • SHA:
    • SHA1:
      • SHA-1: 4
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 3
  • VPN:
    • VPN: 1
pdf_data/report_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 4
  • ISO:
    • ISO/IEC 17025:2005: 1
  • CC:
    • CCIMB-99-031: 1
    • CCIMB-99-032: 1
    • CCIMB-99-033: 1
  • PKCS:
    • PKCS#11: 3
    • PKCS#12: 2
    • PKCS#7: 1
  • X509:
    • X.509: 3
pdf_data/report_metadata
  • /Author: White, Debra E.
  • /Company: CSEC
  • /CreationDate: D:20160906142349-04'00'
  • /Creator: Acrobat PDFMaker 11 for Word
  • /ModDate: D:20160906142413-04'00'
  • /Producer: Adobe PDF Library 11.0
  • /SourceModified: D:20160906182312
  • /Title: 383-4-XXX CR v0.1
  • pdf_file_size_bytes: 414359
  • pdf_hyperlinks: mailto:[email protected]
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 16
  • /CreationDate: D:20061222014212+11'00'
  • /Creator: AdobePS5.dll Version 5.2
  • /ModDate: D:20061222014212+11'00'
  • /Producer: Acrobat Distiller 5.0.5 (Windows)
  • /Title: Microsoft Word - EFAT028 Certification Report V1.0.doc
  • pdf_file_size_bytes: 184977
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 25
pdf_data/st_filename 383-4-359 ST_NDPP_US_FortiManager_v1_0.pdf Cybertrust_UniCERT_5.2.1_ST.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 6
    • EAL 4 augmented: 1
    • EAL 4+: 1
    • EAL4: 8
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ACM:
    • ACM_AUT: 1
    • ACM_AUT.1: 10
    • ACM_CAP: 1
    • ACM_CAP.4: 18
    • ACM_SCP: 1
    • ACM_SCP.2: 6
  • ADO:
    • ADO_DEL: 1
    • ADO_DEL.2: 9
    • ADO_IGS.1: 8
  • ADV:
    • ADV_FSP.2: 9
    • ADV_HLD: 1
    • ADV_HLD.2: 12
    • ADV_IMP.1: 6
    • ADV_LLD: 1
    • ADV_LLD.1: 13
    • ADV_RCR: 1
    • ADV_RCR.1: 4
    • ADV_SPM: 1
    • ADV_SPM.1: 10
  • AGD:
    • AGD_ADM: 1
    • AGD_ADM.1: 15
    • AGD_AGD.1: 1
    • AGD_USR: 1
    • AGD_USR.1: 13
  • ALC:
    • ALC_DVS.1: 7
    • ALC_FLR: 2
    • ALC_FLR.2: 19
    • ALC_LCD.1: 8
    • ALC_TAT.1: 9
  • ASE:
    • ASE_DES.1: 2
    • ASE_ENV.1: 2
    • ASE_INT.1: 2
    • ASE_OBJ.1: 2
    • ASE_PPC.1: 2
    • ASE_REQ.1: 2
    • ASE_SRE.1: 2
    • ASE_TSS.1: 2
  • ATE:
    • ATE_COV.2: 7
    • ATE_DPT.1: 6
    • ATE_FUN.1: 11
    • ATE_IND.2: 7
  • AVA:
    • AVA_MSU: 1
    • AVA_MSU.2: 9
    • AVA_SOF.1: 6
    • AVA_VLA: 1
    • AVA_VLA.2: 10
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_GEN: 7
    • FAU_GEN.1: 5
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 4
    • FAU_GEN.2.1: 1
    • FAU_STG: 2
    • FAU_STG.1: 1
    • FAU_STG_EXT: 2
    • FAU_STG_EXT.1: 8
    • FAU_STG_EXT.1.1: 2
  • FCS:
    • FCS_CKM: 2
    • FCS_CKM.1: 6
    • FCS_CKM.1.1: 3
    • FCS_CKM.4: 1
    • FCS_CKM_EXT: 1
    • FCS_CKM_EXT.4: 9
    • FCS_CKM_EXT.4.1: 2
    • FCS_COP.1: 23
    • FCS_COP.1.1: 4
    • FCS_RBG_EXT.1: 9
    • FCS_RBG_EXT.1.1: 2
    • FCS_RBG_EXT.1.2: 2
    • FCS_TLS_EXT.1: 11
    • FCS_TLS_EXT.1.1: 2
  • FDP:
    • FDP_ITC.1: 1
    • FDP_ITC.2: 1
    • FDP_RIP.2: 4
    • FDP_RIP.2.1: 1
  • FIA:
    • FIA_PMG_EXT: 1
    • FIA_PMG_EXT.1: 8
    • FIA_PMG_EXT.1.1: 2
    • FIA_SOS: 1
    • FIA_UAU: 3
    • FIA_UAU.1: 5
    • FIA_UAU.7: 5
    • FIA_UAU.7.1: 1
    • FIA_UAU_EXT: 1
    • FIA_UAU_EXT.2: 9
    • FIA_UAU_EXT.2.1: 2
    • FIA_UIA_EXT: 1
    • FIA_UIA_EXT.1: 10
    • FIA_UIA_EXT.1.1: 2
    • FIA_UIA_EXT.1.2: 2
    • FIA_UID: 1
    • FIA_UID.1: 2
  • FMT:
    • FMT_MTD.1: 5
    • FMT_MTD.1.1: 1
    • FMT_SMF.1: 5
    • FMT_SMF.1.1: 1
    • FMT_SMR.2: 5
    • FMT_SMR.2.1: 1
    • FMT_SMR.2.2: 1
    • FMT_SMR.2.3: 1
  • FPT:
    • FPT_APW_EXT.1: 8
    • FPT_APW_EXT.1.1: 2
    • FPT_APW_EXT.1.2: 2
    • FPT_PTD: 3
    • FPT_SKP_EXT.1: 8
    • FPT_SKP_EXT.1.1: 2
    • FPT_SSP.1: 1
    • FPT_SSP.2: 1
    • FPT_STM.1: 3
    • FPT_STM.1.1: 1
    • FPT_TST: 1
    • FPT_TST.1: 1
    • FPT_TST_EXT: 2
    • FPT_TST_EXT.1: 7
    • FPT_TST_EXT.1.1: 2
    • FPT_TUD_EXT.1: 6
    • FPT_TUD_EXT.1.1: 2
    • FPT_TUD_EXT.1.2: 2
    • FPT_TUD_EXT.1.3: 2
  • FTA:
    • FTA_SSL: 1
    • FTA_SSL.3: 3
    • FTA_SSL.3.1: 1
    • FTA_SSL.4: 4
    • FTA_SSL.4.1: 1
    • FTA_SSL_EXT.1: 8
    • FTA_SSL_EXT.1.1: 2
    • FTA_TAB.1: 7
    • FTA_TAB.1.1: 1
  • FTP:
    • FTP_ITC.1: 5
    • FTP_ITC.1.1: 1
    • FTP_ITC.1.2: 1
    • FTP_ITC.1.3: 1
    • FTP_TRP.1: 4
    • FTP_TRP.1.1: 1
    • FTP_TRP.1.2: 1
    • FTP_TRP.1.3: 1
  • FAU:
    • FAU_GEN.1: 14
    • FAU_GEN.1.1: 1
    • FAU_GEN.1.2: 1
    • FAU_GEN.2: 9
    • FAU_GEN.2.1: 1
    • FAU_SAR.1: 9
    • FAU_SAR.1.1: 1
    • FAU_SAR.1.2: 1
    • FAU_SAR.2: 7
    • FAU_SAR.2.1: 1
    • FAU_SAR.3: 8
    • FAU_SAR.3.1: 1
    • FAU_STG.1: 7
    • FAU_STG.1.1: 1
    • FAU_STG.1.2: 1
  • FCO:
    • FCO_NRO.2: 9
    • FCO_NRO.2.1: 1
    • FCO_NRO.2.2: 1
    • FCO_NRO.2.3: 1
  • FCS:
    • FCS_CKM: 7
    • FCS_CKM.1: 22
    • FCS_CKM.1.1: 1
    • FCS_CKM.2: 9
    • FCS_CKM.2.1: 2
    • FCS_CKM.3: 12
    • FCS_CKM.3.1: 1
    • FCS_CKM.4: 28
    • FCS_CKM.4.1: 1
    • FCS_COP: 90
    • FCS_COP.1: 10
    • FCS_COP.1.1: 2
  • FDP:
    • FDP_ACC.1: 30
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 23
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_DAU: 24
    • FDP_DAU.2: 16
    • FDP_DAU.2.1: 1
    • FDP_DAU.2.2: 1
    • FDP_IFC.1: 23
    • FDP_IFC.1.1: 1
    • FDP_IFF.1: 21
    • FDP_IFF.1.1: 1
    • FDP_IFF.1.2: 1
    • FDP_IFF.1.3: 1
    • FDP_IFF.1.4: 1
    • FDP_IFF.1.5: 1
    • FDP_IFF.1.6: 1
    • FDP_ITC.1: 16
    • FDP_ITC.1.1: 1
    • FDP_ITC.1.2: 1
    • FDP_ITC.1.3: 1
    • FDP_ITT.1: 12
    • FDP_ITT.1.1: 1
    • FDP_ITT.3: 12
    • FDP_ITT.3.1: 1
    • FDP_RIP.1: 6
    • FDP_RIP.1.1: 1
  • FIA:
    • FIA_ATD.1: 9
    • FIA_ATD.1.1: 1
    • FIA_SOS.1: 13
    • FIA_SOS.1.1: 1
    • FIA_UAU: 45
    • FIA_UAU.1: 11
    • FIA_UAU.1.1: 1
    • FIA_UAU.1.2: 1
    • FIA_UAU.2: 2
    • FIA_UID: 47
    • FIA_UID.1: 32
    • FIA_UID.1.1: 1
    • FIA_UID.1.2: 1
    • FIA_UID.2: 2
    • FIA_USB.1: 11
    • FIA_USB.1.1: 1
  • FMT:
    • FMT_MOF.1: 19
    • FMT_MOF.1.1: 1
    • FMT_MSA: 1
    • FMT_MSA.1: 17
    • FMT_MSA.1.1: 1
    • FMT_MSA.2: 32
    • FMT_MSA.2.1: 1
    • FMT_MSA.3: 12
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_MTD.1: 18
    • FMT_MTD.1.1: 1
    • FMT_MTD.2: 6
    • FMT_MTD.2.1: 1
    • FMT_MTD.2.2: 1
    • FMT_REV.1: 11
    • FMT_REV.1.1: 1
    • FMT_REV.1.2: 1
    • FMT_SAE: 1
    • FMT_SAE.1: 12
    • FMT_SAE.1.1: 1
    • FMT_SAE.1.2: 1
    • FMT_SMF.1: 12
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 27
    • FMT_SMR.1.1: 1
    • FMT_SMR.1.2: 1
  • FPT:
    • FPT_ITC: 10
    • FPT_ITC.1: 1
    • FPT_ITI.1: 12
    • FPT_ITI.1.1: 1
    • FPT_ITI.1.2: 1
    • FPT_ITT: 10
    • FPT_ITT.1: 12
    • FPT_ITT.1.1: 1
    • FPT_PHP.1: 2
    • FPT_PHP.1.1: 1
    • FPT_PHP.1.2: 1
    • FPT_SAE: 1
    • FPT_SSP: 2
    • FPT_SSP.1: 5
    • FPT_SSP.1.1: 1
    • FPT_STM.1: 5
  • FTP:
    • FTP_ITC.1: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.NO_GENERAL_PURPOSE: 1
    • A.PHYSICAL: 1
    • A.TRUSTED_ADMIN: 1
  • O:
    • O.DISPLAY_BANNER: 1
    • O.PROTECTED_COMMUNICA: 1
    • O.RESIDUAL_INFORMATION_: 1
    • O.SESSION_LOCK: 1
    • O.SYSTEM_MONITORING: 1
    • O.TOE_ADMINISTRATION: 1
    • O.TSF_SELF_TEST: 1
    • O.VERIFIABLE_UPDATES: 1
  • OE:
    • OE.NO_GENERAL_PURPOSE: 1
    • OE.PHYSICAL: 1
    • OE.TRUSTED_ADMIN: 1
  • T:
    • T.ADMIN_ERROR: 1
    • T.TSF_FAILURE: 1
    • T.UNAUTHORIZED_ACCESS: 1
    • T.UNAUTHORIZED_UPDATE: 1
    • T.UNDETECTED_ACTIONS: 1
    • T.USER_DATA_REUSE: 1
  • A:
    • A.CPS: 3
  • O:
    • O.CPS: 3
  • OE:
    • OE.CPS: 3
pdf_data/st_keywords/vendor
  • Cisco:
    • Cisco: 3
  • Microsoft:
    • Microsoft: 1
  • Oberthur:
    • Oberthur Card Systems: 1
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 11
      • AES-128: 3
      • AES128: 1
      • AES256: 1
  • DES:
    • 3DES:
      • 3DES: 1
  • constructions:
    • MAC:
      • CMAC: 1
      • HMAC: 4
  • DES:
    • 3DES:
      • 3DES: 5
    • DES:
      • DES: 2
pdf_data/st_keywords/asymmetric_crypto
  • FF:
    • DH:
      • DH: 5
      • Diffie-Hellman: 2
  • ECC:
    • ECDSA:
      • ECDSA: 1
  • FF:
    • DSA:
      • DSA: 20
  • RSA:
    • RSA 1024: 8
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA1:
      • SHA-1: 4
    • SHA2:
      • SHA-256: 2
      • SHA256: 3
  • MD:
    • MD5:
      • MD5: 14
  • SHA:
    • SHA1:
      • SHA-1: 35
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
pdf_data/st_keywords/crypto_protocol
  • IPsec:
    • IPsec: 1
  • SSH:
    • SSH: 2
  • TLS:
    • SSL:
      • SSL: 1
    • TLS:
      • TLS: 31
      • TLS 1.0: 1
      • TLS 1.1: 4
      • TLS 1.2: 3
  • TLS:
    • SSL:
      • SSL: 2
  • VPN:
    • VPN: 4
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 5
  • RNG:
    • RBG: 5
    • RNG: 2
pdf_data/st_keywords/cipher_mode
  • CBC:
    • CBC: 2
  • CTR:
    • CTR: 2
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_CBC_SHA: 2
    • TLS_DHE_RSA_WITH_AES_256_CBC_SHA: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_RSA_WITH_AES_128_CBC_SHA: 4
    • TLS_RSA_WITH_AES_128_CBC_SHA256: 1
    • TLS_RSA_WITH_AES_256_CBC_SHA: 1
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • physical tampering: 4
pdf_data/st_keywords/standard_id
  • FIPS:
    • FIPS 140-2: 12
    • FIPS 186-2: 1
    • FIPS 186-3: 1
    • FIPS PUB 140-2: 2
    • FIPS PUB 186-2: 3
    • FIPS PUB 186-3: 3
    • FIPS PUB 197: 2
  • NIST:
    • NIST SP 800-38A: 1
    • NIST SP 800-56B: 1
    • NIST SP 800-90A: 2
    • NIST SP 800-90B: 1
    • SP 800-56B: 1
  • PKCS:
    • PKCS#1: 1
  • RFC:
    • RFC 2346: 1
    • RFC 2818: 2
    • RFC 4346: 3
    • RFC 5246: 3
  • FIPS:
    • FIPS 180: 1
    • FIPS 186: 1
    • FIPS 46-3: 1
  • ISO:
    • ISO/IEC 15408: 4
  • PKCS:
    • PKCS #11: 1
    • PKCS #7: 1
    • PKCS 1: 1
    • PKCS#11: 4
    • PKCS#12: 5
    • PKCS#7: 3
    • PKCS11: 4
    • PKCS12: 3
    • PKCS7: 3
  • RFC:
    • RFC 13: 1
    • RFC1321: 6
    • RFC3280: 1
  • X509:
    • X.509: 52
pdf_data/st_keywords/javacard_packages
  • java:
    • java.dll: 1
    • java.exe: 1
    • java.js: 4
    • java.policy: 1
    • java.security: 1
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • The assessment of the algorithmic strength used by these functions is out of scope of the evaluation, being assessed by the National Authority: 1
    • are cryptographic in nature and therefore the assessment of their algorithmic strength is out of scope of the evaluation, being assessed by the National Authority. However one mechanism does require a: 1
    • out of scope: 4
    • protocol handlers: Web Handler, email Handler, SCEP Handler, and CMP Handler (the CMP Handler is out of scope of the evaluation.) · Web RA Operator (WebRAO) The relationship between these components is shown: 1
    • the CMP Handler is out of scope of the evaluation: 1
    • to cryptographic SFRs). The assessment of the algorithmic strength used by these functions is out of scope of the evaluation, being assessed by the National Authority. However one mechanism does require a: 1
    • users who have no role in the PKI, but have certificates issued by the PKI. Their activities are out of scope of the evaluation. 9.3 Information Flow Control Policy This ST contains one information flow: 1
pdf_data/st_metadata
  • /CreationDate: D:20061222014648+11'00'
  • /Creator: AdobePS5.dll Version 5.2
  • /ModDate: D:20061222014648+11'00'
  • /Producer: Acrobat Distiller 5.0.5 (Windows)
  • /Title: Microsoft Word - Baltimore UniCERT 5 Security Target v5.0ab2.doc
  • pdf_file_size_bytes: 1406278
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 266
state/cert/convert_garbage True False
state/cert/download_ok True False
state/cert/pdf_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different