Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
CyberArk Privileged Access Manager – Digital Vault Server v14.0.0.40
NSCIB-CC-2400013-01-CR
NAVICS MLS Boundary Protection System Operational Software 01.00
BSI-DSZ-CC-1123-2023
name CyberArk Privileged Access Manager – Digital Vault Server v14.0.0.40 NAVICS MLS Boundary Protection System Operational Software 01.00
category Access Control Devices and Systems Network and Network-Related Devices and Systems
scheme NL DE
not_valid_after 03.07.2029 13.03.2028
not_valid_before 03.07.2024 13.03.2023
cert_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400013-01-Cert.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1123c_pdf.pdf
report_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400013-01-CR.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1123a_pdf.pdf
st_link https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/NSCIB-CC-2400013-01-ST_1.8.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1123b_pdf.pdf
manufacturer CyberArk Software, Ltd Rohde&Schwarz SIT GmbH
manufacturer_web https://www.cyberark.com/ https://rohde-schwaz.com
security_level ASE_SPD.1, ATE_IND.1, ALC_CMS.1, ASE_INT.1, AGD_OPE.1, ALC_CMC.1, ADV_FSP.1, ASE_ECD.1, ASE_TSS.1, ASE_CCL.1, AGD_PRE.1, AVA_VAN.1 EAL4+, AVA_VAN.4
dgst f4123aeccf86806e b2dc6148fc77cdc3
heuristics/cert_id NSCIB-CC-2400013-01-CR BSI-DSZ-CC-1123-2023
heuristics/cert_lab BSI
heuristics/cpe_matches cpe:2.3:a:cyberark:privileged_access_manager:14.0:*:*:*:*:*:*:* {}
heuristics/related_cves CVE-2024-54840 {}
heuristics/extracted_sars ASE_TSS.1, ADV_FSP.1, ALC_CMC.1, ASE_INT.1, ASE_SPD.1, ASE_OBJ.1, AVA_VAN.1, ATE_IND.1, ALC_CMS.1, AGD_OPE.1, ASE_REQ.1, ASE_CCL.1, ASE_ECD.1, ALC_TSU_EXT.1, AGD_PRE.1 ASE_INT.1, ALC_CMC.4, ASE_ECD.1, ADV_IMP.1, ATE_COV.2, ASE_TSS.1, ALC_TAT.1, ASE_SPD.1, ALC_DEL.1, ALC_LCD.1, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ATE_FUN.1, ADV_ARC.1, ASE_OBJ.2, ADV_TDS.3, ATE_DPT.1, ASE_REQ.2, ALC_DVS.1, ADV_FSP.4, ATE_IND.2, AVA_VAN.4, ASE_CCL.1
heuristics/extracted_versions 14.0.0.40 01.00
heuristics/scheme_data
heuristics/protection_profiles 90c116e62a19bc4d, c40ae795865a0dba {}
protection_profile_links https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_APP_V1.4.pdf, https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PKG_TLS_V1.1.pdf {}
pdf_data/cert_filename NSCIB-CC-2400013-01-Cert.pdf 1123c_pdf.pdf
pdf_data/cert_keywords/cc_cert_id
  • NL:
    • NSCIB-2400013-01: 1
    • NSCIB-CC-2400013-01: 1
  • DE:
    • BSI-DSZ-CC-1123-2023: 1
pdf_data/cert_keywords/cc_security_level
  • EAL:
    • EAL2: 1
    • EAL4: 1
  • EAL:
    • EAL 2: 1
    • EAL 4: 2
    • EAL 4 augmented: 1
pdf_data/cert_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_FLR: 1
    • ALC_FLR.3: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_SPD.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ALC:
    • ALC_FLR: 1
  • AVA:
    • AVA_VAN.4: 1
pdf_data/cert_keywords/eval_facility
  • BrightSight:
    • Brightsight: 1
  • SGS:
    • SGS: 1
    • SGS Brightsight: 1
pdf_data/cert_keywords/standard_id
  • ISO:
    • ISO/IEC 15408-1: 2
    • ISO/IEC 18045: 4
    • ISO/IEC 18045:2008: 1
  • ISO:
    • ISO/IEC 15408: 2
    • ISO/IEC 18045: 2
pdf_data/cert_metadata
  • /Author: brian
  • /CreationDate: D:20240717191034+01'00'
  • /Creator: Microsoft® Word 2021
  • /ModDate: D:20240717191034+01'00'
  • /Producer: Microsoft® Word 2021
  • /Title: NSCIB Certificate
  • pdf_file_size_bytes: 127943
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /Keywords: "Common Criteria, Certification, Zertifizierung, bidirectional stateless packet filtering gateway, NAVICS MLS"
  • /Subject: Common Criteria, Certification, Zertifizierung, bidirectional stateless packet filtering gateway, NAVICS MLS
  • /Title: Certificate BSI-DSZ-CC-1123-2023
  • pdf_file_size_bytes: 228950
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
pdf_data/report_filename NSCIB-CC-2400013-01-CR.pdf 1123a_pdf.pdf
pdf_data/report_frontpage
  • DE:
  • NL:
    • cert_id: NSCIB-CC-2400013-01-CR
    • cert_item: CyberArk Privileged Access Manager – Digital Vault Server v14.0.0.40
    • cert_lab: SGS Brightsight B.V.
    • developer: CyberArk Software Ltd
  • DE:
    • cert_id: BSI-DSZ-CC-1123-2023
    • cert_item: NAVICS MLS Boundary Protection System Operational Software V01.00
    • cert_lab: BSI
    • developer: ROHDE & SCHWARZ SIT GmbH
    • match_rules: ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)']
  • NL:
pdf_data/report_keywords/cc_cert_id
  • NL:
    • NSCIB-2400013-01: 1
    • NSCIB-CC-2400013-01-CR: 12
  • DE:
    • BSI-DSZ-CC-1123-2023: 12
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL4: 1
  • EAL:
    • EAL 1: 1
    • EAL 2: 3
    • EAL 4: 8
    • EAL 4 augmented: 3
pdf_data/report_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_SPD.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN: 1
    • AVA_VAN.1: 1
  • ALC:
    • ALC_FLR: 3
  • AVA:
    • AVA_VAN.4: 5
pdf_data/report_keywords/eval_facility
  • BrightSight:
    • Brightsight: 2
  • SGS:
    • SGS: 2
    • SGS Brightsight: 2
  • DFKI:
    • DFKI: 2
pdf_data/report_keywords/symmetric_crypto
  • constructions:
    • MAC:
      • CMAC: 11
pdf_data/report_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 3
pdf_data/report_keywords/crypto_protocol
  • SSH:
    • SSH: 2
  • TLS:
    • TLS:
      • TLS: 3
      • TLS v1.2: 1
pdf_data/report_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 1
pdf_data/report_keywords/side_channel_analysis
  • other:
    • JIL: 1
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7148: 1
    • BSI TR-02102: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 1: 1
    • AIS 32: 1
  • FIPS:
    • FIPS PUB 197: 2
  • ISO:
    • ISO/IEC 15408: 4
    • ISO/IEC 17065: 2
    • ISO/IEC 18045: 4
  • NIST:
    • NIST SP 800-38B: 2
pdf_data/report_keywords/certification_process
  • OutOfScope:
    • following proprietary or non-standard algorithms, protocols and implementations: none, which are out of scope as there are no security claims relating to these. Page: 11/12 of report number: 1
    • out of scope: 1
  • ConfidentialDocument:
    • MLS Software V01.00 – ETR Summary, Deutsches Forschungszentrum für Künstliche Intelligenz GmbH (confidential document) [8] Configuration list for the TOE, Version 47.00, 29 November 2022, Configuration List NAVICS MLS: 1
    • Protection, Part Number 5416.2878.92 (confidential document) [9] Guidance documentation for the TOE: • R&S TF5900M Trusted Filter IP User Manual, Version 06: 1
    • being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification: 1
  • OutOfScope:
    • out of scope: 1
    • the final product is shipped to the operator. This shipment and further installation is out of scope for this certification. 3. Security Policy The Security Policy is expressed by the set of Security: 1
pdf_data/report_metadata
pdf_data/st_filename NSCIB-CC-2400013-01-ST_1.8.pdf 1123b_pdf.pdf
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 4: 1
    • EAL 4 augmented: 1
    • EAL4: 4
    • EAL4 augmented: 3
pdf_data/st_keywords/cc_sar
  • ADV:
    • ADV_FSP.1: 1
  • AGD:
    • AGD_OPE.1: 1
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.1: 1
    • ALC_CMS.1: 1
    • ALC_TSU_EXT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.1: 1
    • ASE_REQ.1: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_IND.1: 1
  • AVA:
    • AVA_VAN.1: 1
  • ADV:
    • ADV_ARC.1: 1
    • ADV_FSP.4: 1
    • ADV_IMP.1: 1
    • ADV_TDS.3: 1
  • AGD:
    • AGD_OPE.1: 3
    • AGD_PRE.1: 1
  • ALC:
    • ALC_CMC.4: 1
    • ALC_CMS.4: 1
    • ALC_DEL.1: 1
    • ALC_DVS.1: 1
    • ALC_LCD.1: 1
    • ALC_TAT.1: 1
  • ASE:
    • ASE_CCL.1: 1
    • ASE_ECD.1: 1
    • ASE_INT.1: 1
    • ASE_OBJ.2: 1
    • ASE_REQ.2: 1
    • ASE_SPD.1: 1
    • ASE_TSS.1: 1
  • ATE:
    • ATE_COV.2: 1
    • ATE_DPT.1: 1
    • ATE_FUN.1: 1
    • ATE_IND.2: 1
  • AVA:
    • AVA_VAN.3: 2
    • AVA_VAN.4: 6
pdf_data/st_keywords/cc_sfr
  • FCS:
    • FCS_CKM: 3
    • FCS_CKM.1: 1
    • FCS_CKM.2: 2
    • FCS_CKM.2.1: 1
    • FCS_CKM_EXT.1: 3
    • FCS_CKM_EXT.1.1: 1
    • FCS_COP: 13
    • FCS_COP.1: 4
    • FCS_RBG_EXT.1: 3
    • FCS_RBG_EXT.1.1: 1
    • FCS_STO_EXT.1: 4
    • FCS_STO_EXT.1.1: 1
    • FCS_TLSS_EXT: 1
    • FCS_TLSS_EXT.1: 1
    • FCS_TLSS_EXT.1.1: 2
    • FCS_TLSS_EXT.1.2: 1
    • FCS_TLSS_EXT.1.3: 1
    • FCS_TLS_EXT.1: 3
    • FCS_TLS_EXT.1.1: 1
  • FDP:
    • FDP_DAR_EXT.1: 2
    • FDP_DAR_EXT.1.1: 1
    • FDP_DEC_EXT.1: 4
    • FDP_DEC_EXT.1.1: 1
    • FDP_DEC_EXT.1.2: 1
    • FDP_NET_EXT.1: 3
    • FDP_NET_EXT.1.1: 1
  • FMT:
    • FMT_CFG_EXT.1: 3
    • FMT_CFG_EXT.1.1: 1
    • FMT_CFG_EXT.1.2: 1
    • FMT_MEC_EXT.1: 3
    • FMT_MEC_EXT.1.1: 1
    • FMT_SMF.1: 3
    • FMT_SMF.1.1: 1
  • FPR:
    • FPR_ANO_EXT.1: 3
    • FPR_ANO_EXT.1.1: 1
  • FPT:
    • FPT_AEX_EXT.1: 3
    • FPT_AEX_EXT.1.1: 1
    • FPT_AEX_EXT.1.2: 1
    • FPT_AEX_EXT.1.3: 2
    • FPT_AEX_EXT.1.4: 1
    • FPT_AEX_EXT.1.5: 2
    • FPT_API_EXT.1: 3
    • FPT_API_EXT.1.1: 1
    • FPT_IDV_EXT.1: 3
    • FPT_IDV_EXT.1.1: 1
    • FPT_LIB_EXT.1: 3
    • FPT_LIB_EXT.1.1: 1
    • FPT_TUD_EXT: 1
    • FPT_TUD_EXT.1: 2
    • FPT_TUD_EXT.1.1: 1
    • FPT_TUD_EXT.1.2: 1
    • FPT_TUD_EXT.1.3: 1
    • FPT_TUD_EXT.1.4: 1
    • FPT_TUD_EXT.1.5: 1
    • FPT_TUD_EXT.2: 2
    • FPT_TUD_EXT.2.1: 1
    • FPT_TUD_EXT.2.2: 2
    • FPT_TUD_EXT.2.3: 1
  • FTP:
    • FTP_DIT_EXT.1: 3
    • FTP_DIT_EXT.1.1: 2
  • FCS:
    • FCS_CKM.1: 1
    • FCS_CKM.4: 4
    • FCS_COP.1: 9
    • FCS_COP.1.1: 1
  • FDP:
    • FDP_ACC.1: 2
    • FDP_IFC.1: 38
    • FDP_IFC.1.1: 3
    • FDP_IFF.1: 32
    • FDP_IFF.1.1: 3
    • FDP_IFF.1.2: 3
    • FDP_IFF.1.3: 3
    • FDP_IFF.1.4: 3
    • FDP_IFF.1.5: 4
    • FDP_ITC: 1
    • FDP_ITC.1: 11
    • FDP_ITC.1.1: 1
    • FDP_ITC.1.2: 1
    • FDP_ITC.1.3: 1
    • FDP_ITC.2: 3
    • FDP_ITT.1: 1
    • FDP_ITT.2: 8
    • FDP_ITT.2.1: 1
    • FDP_ITT.2.2: 1
    • FDP_ITT.4: 1
  • FMT:
    • FMT_MSA.3: 8
    • FMT_SMF.1: 19
    • FMT_SMF.1.1: 3
  • FPT:
    • FPT_FLS.1: 1
    • FPT_RCV.1: 7
    • FPT_RCV.1.1: 1
    • FPT_TDC.1: 1
pdf_data/st_keywords/cc_claims
  • A:
    • A.PLATFORM: 3
    • A.PROPER_ADMIN: 3
    • A.PROPER_USER: 3
  • O:
    • O.INTEGRITY: 3
    • O.MANAGEMENT: 5
    • O.PROTECTED_COMMS: 5
    • O.PROTECTED_STORAG: 1
    • O.PROTECTED_STORAGE: 2
    • O.QUALITY: 5
  • OE:
    • OE.PLATFORM: 3
    • OE.PROPER_ADMIN: 3
    • OE.PROPER_USER: 3
  • T:
    • T.LOCAL_ATTACK: 2
    • T.NETWORK_ATTACK: 5
    • T.NETWORK_EAVES: 1
    • T.NETWORK_EAVESDROP: 3
    • T.PHYSICAL_ACCESS: 2
  • A:
    • A.H: 1
    • A.HIGHNETWORKSECURITY: 2
    • A.T: 2
    • A.TRUSTEDADMINISTRATORS: 2
    • A.TRUSTEDUSERS: 2
  • OE:
    • OE.HIGHNETWORKSECURITY: 5
    • OE.PROTECTEDTRANSMISSION: 3
    • OE.SECUREPLATFORM: 4
    • OE.SECURERULES: 5
    • OE.TRUSTEDADMINISTRATORS: 3
    • OE.TRUSTEDUSERS: 3
  • OT:
    • OT.S: 1
    • OT.SECURESTATE: 3
    • OT.T: 2
    • OT.TRUSTEDFILTERMANAGEMENT: 5
    • OT.TRUSTEDFILTERVOICE: 4
    • OT.V: 1
    • OT.VOICETERMINAL: 3
  • T:
    • T.D: 1
    • T.DISCLOSURE: 2
    • T.M: 1
    • T.MANIPULATION: 2
pdf_data/st_keywords/vendor
  • Microsoft:
    • Microsoft: 2
pdf_data/st_keywords/eval_facility
  • Lightship:
    • Lightship Security: 1
  • DFKI:
    • DFKI: 20
pdf_data/st_keywords/symmetric_crypto
  • AES_competition:
    • AES:
      • AES: 4
  • constructions:
    • MAC:
      • HMAC: 4
      • HMAC-SHA-256: 2
      • HMAC-SHA-384: 2
      • HMAC-SHA-512: 2
  • AES_competition:
    • AES:
      • AES: 6
      • AES-256: 2
  • constructions:
    • MAC:
      • CMAC: 51
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 2
    • ECDH:
      • ECDHE: 3
    • ECDSA:
      • ECDSA: 1
  • FF:
    • DH:
      • DHE: 2
      • Diffie-Hellman: 1
  • RSA:
    • RSA 2048: 1
pdf_data/st_keywords/hash_function
  • SHA:
    • SHA2:
      • SHA-256: 2
      • SHA-384: 2
      • SHA-512: 2
      • SHA256: 3
      • SHA384: 3
      • SHA512: 3
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key agreement: 1
  • KEX:
    • Key Exchange: 1
pdf_data/st_keywords/crypto_protocol
  • SSH:
    • SSH: 3
  • TLS:
    • SSL:
      • SSL: 1
      • SSL 2.0: 1
      • SSL 3.0: 1
    • TLS:
      • TLS: 39
      • TLS 1.0: 1
      • TLS 1.1: 2
      • TLS 1.2: 1
      • TLS v1.2: 1
      • TLSv1.2: 1
pdf_data/st_keywords/randomness
  • PRNG:
    • DRBG: 8
pdf_data/st_keywords/cipher_mode
  • CTR:
    • CTR: 1
pdf_data/st_keywords/ecc_curve
  • NIST:
    • P-256: 2
    • P-384: 2
    • secp256r1: 1
    • secp384r1: 1
pdf_data/st_keywords/tls_cipher_suite
  • TLS:
    • TLS_DHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_DHE_RSA_WITH_AES_256_GCM_SHA384: 3
    • TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384: 1
    • TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256: 1
    • TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384: 5
pdf_data/st_keywords/crypto_library
  • OpenSSL:
    • OpenSSL: 3
pdf_data/st_keywords/standard_id
  • CC:
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 186-4: 4
  • NIST:
    • NIST SP 800-38A: 1
    • NIST SP 800-38D: 1
    • SP 800-90: 1
  • RFC:
    • RFC 5246: 1
    • RFC 5288: 2
    • RFC 5289: 2
    • RFC 7919: 1
  • CC:
    • CCMB-2017-04-001: 1
    • CCMB-2017-04-002: 1
    • CCMB-2017-04-003: 1
  • FIPS:
    • FIPS PUB 197: 4
  • NIST:
    • NIST SP 800-38B: 4
pdf_data/st_metadata
  • /Author: Jöckel Teresa 11SI-GS1
  • /Title: Security Target NAVICS MLS Boundary Protection System Operational Software
  • pdf_file_size_bytes: 1276404
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 45
state/cert/pdf_hash Different Different
state/cert/txt_hash Different Different
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/pdf_hash Different Different
state/st/txt_hash Different Different