Comparing certificates Experimental feature

You are comparing two certificates. By default, only differing attributes are shown. Use the button below to show/hide all attributes.

Showing only differing attributes.
Canon iR4570/iR3570/iR2870/iR2270 Series iR Security Kit-B2 Version 2.03
JISEC-CC-CRP-C0036
Infineon Smart Card IC (Security Controller) SLE66CLX1600PEM / m1590-a12, SLE66CLX1600PE / m1596-a12, SLE66CLX1600PES / m1597-a12,SLE66CX1600PE / m1598-a12, SLE66CLX1440PEM / m2090-a12, SLE66CLX1440PE / m2091-a12, SLE66CLX1440PES / m2092-a12, SLE66CX1440PE / m2093-a12, SLE66CLX1280PEM / m2094-a12, SLE66CLX1280PE / m2095-a12, SLE66CLX1280PES / m2096-a12, SLE66CX1280PE / m2097-a12 all optional with RSA2048 V1.5 and ECC V1.1 and all with specific IC dedicated software
BSI-DSZ-CC-0523-2008
name Canon iR4570/iR3570/iR2870/iR2270 Series iR Security Kit-B2 Version 2.03 Infineon Smart Card IC (Security Controller) SLE66CLX1600PEM / m1590-a12, SLE66CLX1600PE / m1596-a12, SLE66CLX1600PES / m1597-a12,SLE66CX1600PE / m1598-a12, SLE66CLX1440PEM / m2090-a12, SLE66CLX1440PE / m2091-a12, SLE66CLX1440PES / m2092-a12, SLE66CX1440PE / m2093-a12, SLE66CLX1280PEM / m2094-a12, SLE66CLX1280PE / m2095-a12, SLE66CLX1280PES / m2096-a12, SLE66CX1280PE / m2097-a12 all optional with RSA2048 V1.5 and ECC V1.1 and all with specific IC dedicated software
category Other Devices and Systems ICs, Smart Cards and Smart Card-Related Devices and Systems
scheme JP DE
not_valid_after 07.10.2013 01.09.2019
not_valid_before 09.09.2005 06.11.2008
report_link https://www.commoncriteriaportal.org/files/epfiles/c0036_ecvr.pdf https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0523a.pdf
st_link https://www.commoncriteriaportal.org/files/epfiles/ https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0523b.pdf
manufacturer Canon Inc. Infineon Technologies AG
manufacturer_web https://www.infineon.com/
security_level EAL3 EAL5+, AVA_MSU.3, ALC_DVS.2, AVA_VLA.4
dgst fd7107359fa94ec9 4befd70d36bd82c3
heuristics/cert_id JISEC-CC-CRP-C0036 BSI-DSZ-CC-0523-2008
heuristics/indirect_transitive_cves {} CVE-2021-3011
heuristics/extracted_sars {} ALC_LCD.2, AGD_USR.1, ALC_DVS.2, AVA_SOF.1, ATE_COV.2, ATE_DPT.2, AGD_ADM.1, ADV_INT.1, ADV_RCR.2, ATE_FUN.1, ADV_IMP.2, ALC_TAT.2, ADV_HLD.3, AVA_VLA.4, ADV_SPM.3, ATE_IND.2, ADV_LLD.1, ADV_FSP.3, AVA_CCA.1, AVA_MSU.3
heuristics/extracted_versions 2.03 1.5, 1.1
heuristics/report_references/directly_referenced_by {} ANSSI-CC-2011/13, ANSSI-CC-2011/16, ANSSI-CC-2011/12, ANSSI-CC-2011/80, ANSSI-CC-2011/79, BSI-DSZ-CC-0630-2010, BSI-DSZ-CC-0593-2009, ANSSI-CC-2011/10
heuristics/report_references/directly_referencing {} BSI-DSZ-CC-0482-2008, BSI-DSZ-CC-0322-2005
heuristics/report_references/indirectly_referenced_by {} ANSSI-CC-2011/13, ANSSI-CC-2011/16, ANSSI-CC-2011/12, ANSSI-CC-2011/80, BSI-DSZ-CC-0784-2013, ANSSI-CC-2011/79, BSI-DSZ-CC-0630-2010, BSI-DSZ-CC-0593-2009, ANSSI-CC-2011/10
heuristics/report_references/indirectly_referencing {} BSI-DSZ-CC-0322-2005, BSI-DSZ-CC-0482-2008, BSI-DSZ-CC-0169-2002, BSI-DSZ-CC-0399-2007, BSI-DSZ-CC-0266-2005, BSI-DSZ-CC-0223-2003
heuristics/scheme_data
  • cert_id: JISEC-CC-CRP-C0036
  • certification_date: 01.01.2006
  • claim: EAL3
  • enhanced:
    • assurance_level: EAL3
    • cert_link: https://www.ipa.go.jp/en/security/c0036_eimg.pdf
    • description: PRODUCT DESCRIPTION This product is a software program to be installed for use on the Canon iR4570/iR3570/iR2870/iR2270 -series multifunction products (hereafter referred to collectively as the “multifunction product”). The multifunction product is a digital copier that offers the combined functionality of Copy, Send (Universal Send), Fax Reception, Mail Box, Print, Remote UI (a Web browser interface for operating the multifunction product), plus many others. When the Copy, Send (Universal Send), Fax Reception (fax/I-fax reception) or Print function is used, temporary image data is created on the hard drive of the multifunction product. Also, when the Mail Box function is used (for document storage) or the Fax Reception function is used (for “in-memory reception” of faxes/I-faxes or forwarding of faxes/I-faxes), image data is stored in the receiving inbox that is on the multifunction product. Furthermore, when the Remote UI function is used, image data is exchanged over the network between the Web browser on the user's PC and the multifunction product. By installing this product, security enhancements are added to the multifunction product, helping counter the threat of disclosure of temporary image data created on the hard drive, permanent image data stored in the inboxes, and image data that is transmitted over the Remote UI communication path.
    • evaluation_facility: Electronic Commerce Security Technology Laboratory Inc. Evaluation Center
    • product: Canon iR4570/iR3570/iR2870/iR2270 Series iR Security Kit-B2
    • product_type: IT Product ( data protection function in digital MFD )
    • report_link: https://www.ipa.go.jp/en/security/c0036_erpt.pdf
    • target_link: https://www.ipa.go.jp/en/security/c0036_est.pdf
    • toe_version: Version 2.03
    • vendor: Canon Inc.
  • expiration_date: 01.10.2013
  • supplier: Canon Inc.
  • toe_japan_name: Canon iR4570/iR3570/iR2870/iR2270 Series iR Security Kit-B2 Version 2.03
  • toe_overseas_link: https://www.ipa.go.jp/en/security/jisec/software/certified-cert/c0036_it5070.html
  • toe_overseas_name: Canon iR4570/iR3570/iR2870/iR2270 Series iR Security Kit-B2 Version 2.03
heuristics/st_references/directly_referenced_by {} BSI-DSZ-CC-0630-2010
heuristics/st_references/directly_referencing {} BSI-DSZ-CC-0266-2005, BSI-DSZ-CC-0482-2008, BSI-DSZ-CC-0322-2005, BSI-DSZ-CC-0430-2008
heuristics/st_references/indirectly_referenced_by {} BSI-DSZ-CC-0630-2010
heuristics/st_references/indirectly_referencing {} BSI-DSZ-CC-0266-2005, BSI-DSZ-CC-0482-2008, BSI-DSZ-CC-0322-2005, BSI-DSZ-CC-0430-2008
maintenance_updates
  • maintenance_date: 09.06.2009
  • maintenance_report_link: https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0523_ma1.pdf
  • maintenance_st_link: None
  • maintenance_title: Infineon Smart Card IC (Security Controller) SLE66CLX1600PEM / m1590-a13, SLE66CLX1600PE / m1596-a13, SLE66CLX1600PES / m1597-a13, SLE66CX1600PE / m1598-a13, SLE66CLX1440PEM / m2090-a13, SLE66CLX1440PE / m2091-a13, SLE66CLX1440PES / m2092-a13, SLE66CX1440PE / m2093-a13, SLE66CLX1280PEM / m2094-a13, SLE66CLX1280PE / m2095-a13,SLE66CLX1280PES / m2096-a13, SLE66CX1280PE / m2097-a13 all optional with RSA2048 V1.5 and ECC V1.1 and all with specific IC dedicated software
protection_profile_links {} {}
pdf_data/report_filename c0036_ecvr.pdf 0523a.pdf
pdf_data/report_frontpage
  • DE:
  • DE:
pdf_data/report_keywords/cc_cert_id
  • JP:
    • Certification No. C0036: 1
  • DE:
    • BSI-DSZ-CC-0322-2005: 1
    • BSI-DSZ-CC-0482-2008: 5
    • BSI-DSZ-CC-0523: 2
    • BSI-DSZ-CC-0523-2008: 22
  • NL:
    • CC-0437-2007: 1
pdf_data/report_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0002-2001: 4
pdf_data/report_keywords/cc_security_level
  • EAL:
    • EAL3: 1
  • EAL:
    • EAL 1: 1
    • EAL 4: 5
    • EAL 5: 4
    • EAL 5 augmented: 3
    • EAL 7: 1
    • EAL1: 5
    • EAL2: 3
    • EAL3: 4
    • EAL4: 7
    • EAL5: 6
    • EAL5+: 2
    • EAL6: 3
    • EAL7: 4
pdf_data/report_keywords/cc_sar
  • ACM:
    • ACM_AUT: 2
    • ACM_AUT.1: 1
    • ACM_CAP: 2
    • ACM_CAP.4: 1
    • ACM_SCP: 3
    • ACM_SCP.3: 1
  • ADO:
    • ADO_DEL: 2
    • ADO_DEL.2: 1
    • ADO_IGS: 2
    • ADO_IGS.1: 1
  • ADV:
    • ADV_FSP: 2
    • ADV_HLD: 2
    • ADV_IMP: 2
    • ADV_INT: 2
    • ADV_LLD: 2
    • ADV_RCR: 2
    • ADV_SPM: 2
  • AGD:
    • AGD_ADM: 2
    • AGD_USR: 2
  • ALC:
    • ALC_DVS: 2
    • ALC_DVS.2: 6
    • ALC_FLR: 2
    • ALC_LCD: 1
    • ALC_LCD.2: 1
    • ALC_TAT: 2
    • ALC_TAT.2: 1
  • APE:
    • APE_DES: 1
    • APE_ENV: 1
    • APE_INT: 1
    • APE_OBJ: 1
    • APE_REQ: 1
    • APE_SRE: 1
  • ASE:
    • ASE_DES: 1
    • ASE_ENV: 1
    • ASE_INT: 1
    • ASE_OBJ: 1
    • ASE_PPC: 1
    • ASE_REQ: 1
    • ASE_SRE: 1
    • ASE_TSS: 1
  • ATE:
    • ATE_COV: 2
    • ATE_DPT: 2
    • ATE_FUN: 2
    • ATE_IND: 2
  • AVA:
    • AVA_CCA: 2
    • AVA_MSU: 2
    • AVA_MSU.3: 5
    • AVA_SOF: 3
    • AVA_VLA: 3
    • AVA_VLA.2: 1
    • AVA_VLA.3: 1
    • AVA_VLA.4: 6
pdf_data/report_keywords/vendor
  • Infineon:
    • Infineon: 12
    • Infineon AG: 24
    • Infineon Technologies: 6
    • Infineon Technologies AG: 11
  • Philips:
    • Philips: 1
pdf_data/report_keywords/eval_facility
  • TUV:
    • TÜV Informationstechnik: 4
pdf_data/report_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • Triple-DES: 5
    • DES:
      • DES: 9
pdf_data/report_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 52
    • ECDH:
      • ECDH: 2
    • ECDSA:
      • ECDSA: 3
  • FF:
    • DH:
      • Diffie-Hellman: 1
  • RSA:
    • RSA 2048: 28
    • RSA2048: 23
pdf_data/report_keywords/randomness
  • RNG:
    • RNG: 5
pdf_data/report_keywords/cipher_mode
  • CBC:
    • CBC: 1
  • ECB:
    • ECB: 1
pdf_data/report_keywords/side_channel_analysis
  • FI:
    • physical tampering: 1
  • SCA:
    • DPA: 2
    • SPA: 1
    • physical probing: 1
  • other:
    • JIL: 4
pdf_data/report_keywords/technical_report_id
  • BSI:
    • BSI 7125: 2
    • BSI 7148: 1
    • BSI 7149: 1
pdf_data/report_keywords/standard_id
  • BSI:
    • AIS 25: 3
    • AIS 26: 2
    • AIS 31: 4
    • AIS 32: 1
    • AIS 34: 3
    • AIS 35: 1
    • AIS 36: 1
    • AIS 38: 1
  • FIPS:
    • FIPS140: 1
  • ISO:
    • ISO/IEC 14443: 2
    • ISO/IEC 15408:2005: 3
pdf_data/report_keywords/certification_process
  • ConfidentialDocument:
    • RSA2048 V1.5 and ECC V1.1, Evaluation Body for IT Security of TÜV Informationstechnik GmbH (confidential document) 8 specifically • AIS 25, Version 3, 6 August 2007, Anwendung der CC auf Integrierte Schaltungen: 1
    • RSA2048 V1.5 and ECC V1.1, Evaluation Body for IT Security of TÜV Informationstechnik GmbH (confidential document) [11] Data Book – SLE66C(L)(X)xxxPE(M/S), Security Controller Family, Version 09.08 from 2008-09: 1
    • all with optional libraries RSA2048 V1.5 and ECC V1.1, Version 1.1, from 2008-07-02, Infineon AG (confidential document) [9] Smart card IC Platform Protection Profile, Version 1.0, July 2001, BSI registration ID: 1
pdf_data/report_metadata
  • /CreationDate: D:20060123172731+09'00'
  • /ModDate: D:20060123172731+09'00'
  • /Producer: Acrobat Distiller 6.0.1 (Windows)
  • /Title: untitled
  • pdf_file_size_bytes: 14795
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 1
  • /Author: Bundesamt für Sicherheit in der Informationstechnik
  • /CreationDate: D:20081117105441+01'00'
  • /Creator: Writer
  • /Keywords: "Infineon Smart Card IC (Security Controller) SLE66CLX1600PEM / m1590-a12,SLE66CLX1600PE / m1596-a12,SLE66CLX1600PES / m1597-a12,SLE66CX1600PE / m1598-a12,SLE66CLX1440PEM / m2090-a12,SLE66CLX1440PE / m2091-a12,SLE66CLX1440PES / m2092-a12,SLE66CX1440PE / m2093-a12,SLE66CLX1280PEM / m2094-a12,SLE66CLX1280PE / m2095-a12,SLE66CLX1280PES / m2096-a12,SLE66CX1280PE / m2097-a12all optional with RSA2048 V1.5 and ECC V1.1 and all with specific IC dedicated software, Infineon Technologies AG, BSI-DSZ-CC-0523-2008, SmartCard Controller"
  • /ModDate: D:20081120082435+01'00'
  • /Producer: StarOffice 8
  • /Subject: Common Criteria Certification
  • /Title: Certification Report BSI-DSZ-CC-0523-2008
  • pdf_file_size_bytes: 551749
  • pdf_hyperlinks: http://www.bsi.bund.de/
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 42
pdf_data/st_filename 0523b.pdf
pdf_data/st_keywords/cc_cert_id
  • DE:
    • BSI-DSZ-CC-0266-2005: 1
    • BSI-DSZ-CC-0322-2005: 1
    • BSI-DSZ-CC-0430-2008: 1
    • BSI-DSZ-CC-0482-2008: 1
pdf_data/st_keywords/cc_protection_profile_id
  • BSI:
    • BSI-PP-0002: 2
pdf_data/st_keywords/cc_security_level
  • EAL:
    • EAL 5: 4
    • EAL 5 augmented: 4
    • EAL5: 5
    • EAL5 augmented: 2
    • EAL5+: 2
pdf_data/st_keywords/cc_sar
  • ACM:
    • ACM_AUT.1: 2
    • ACM_CAP.4: 1
    • ACM_SCP: 3
    • ACM_SCP.2: 1
    • ACM_SCP.3: 5
  • ADO:
    • ADO_DEL.2: 2
    • ADO_IGS.1: 2
  • ADV:
    • ADV_FSP: 1
    • ADV_FSP.2: 1
    • ADV_FSP.3: 5
    • ADV_HLD.3: 3
    • ADV_IMP.2: 3
    • ADV_INT.1: 3
    • ADV_LLD.1: 3
    • ADV_RCR.2: 3
    • ADV_SPM.1: 3
    • ADV_SPM.3: 2
  • AGD:
    • AGD_ADM.1: 2
    • AGD_USR.1: 2
  • ALC:
    • ALC_DVS.2: 4
    • ALC_LCD.2: 1
    • ALC_TAT.2: 2
  • ATE:
    • ATE_COV.2: 2
    • ATE_DPT.2: 1
    • ATE_FUN.1: 2
    • ATE_IND.2: 2
  • AVA:
    • AVA_CCA.1: 2
    • AVA_MSU.3: 3
    • AVA_SOF: 4
    • AVA_SOF.1: 2
    • AVA_VLA.4: 4
pdf_data/st_keywords/cc_sfr
  • FAU:
    • FAU_SAS.1: 4
  • FCS:
    • FCS_CKM.1: 49
    • FCS_CKM.1.1: 5
    • FCS_CKM.2: 7
    • FCS_CKM.4: 30
    • FCS_CKM.4.1: 3
    • FCS_COP.1: 45
    • FCS_COP.1.1: 4
    • FCS_RND: 2
    • FCS_RND.1: 4
    • FCS_RND.1.1: 1
  • FDP:
    • FDP_ACC.1: 25
    • FDP_ACC.1.1: 1
    • FDP_ACF.1: 15
    • FDP_ACF.1.1: 1
    • FDP_ACF.1.2: 1
    • FDP_ACF.1.3: 1
    • FDP_ACF.1.4: 1
    • FDP_CKM.2: 1
    • FDP_IFC.1: 14
    • FDP_ITC.1: 24
    • FDP_ITC.1.1: 3
    • FDP_ITC.1.2: 3
    • FDP_ITC.1.3: 3
    • FDP_ITC.2: 23
    • FDP_ITC.2.1: 3
    • FDP_ITC.2.2: 3
    • FDP_ITC.2.3: 3
    • FDP_ITC.2.4: 3
    • FDP_ITC.2.5: 3
    • FDP_ITT.1: 3
    • FDP_SDI.1: 17
    • FDP_SDI.1.1: 1
    • FDP_SDI.2: 15
    • FDP_SDI.2.2: 1
  • FMT:
    • FMT_LIM.1: 4
    • FMT_LIM.2: 4
    • FMT_MSA.1: 15
    • FMT_MSA.1.1: 1
    • FMT_MSA.2: 32
    • FMT_MSA.2.1: 3
    • FMT_MSA.3: 16
    • FMT_MSA.3.1: 1
    • FMT_MSA.3.2: 1
    • FMT_SMF.1: 9
    • FMT_SMF.1.1: 1
    • FMT_SMR.1: 9
  • FPT:
    • FPT_AMT.1: 4
    • FPT_FLS.1: 6
    • FPT_ITT.1: 3
    • FPT_PHP.3: 7
    • FPT_SEP.1: 6
    • FPT_TDC.1: 3
    • FPT_TST: 2
    • FPT_TST.1: 11
    • FPT_TST.2: 26
    • FPT_TST.2.1: 2
  • FRU:
    • FRU_FLT.2: 6
  • FTP:
    • FTP_ITC.1: 3
    • FTP_TRP.1: 3
pdf_data/st_keywords/cc_claims
  • O:
    • O.RND: 1
  • T:
    • T.RND: 1
pdf_data/st_keywords/vendor
  • Infineon:
    • Infineon: 2
    • Infineon Technologies AG: 7
pdf_data/st_keywords/eval_facility
pdf_data/st_keywords/symmetric_crypto
  • DES:
    • 3DES:
      • 3DES: 21
      • Triple-DES: 1
    • DES:
      • DES: 11
pdf_data/st_keywords/asymmetric_crypto
  • ECC:
    • ECC:
      • ECC: 47
    • ECDH:
      • ECDH: 9
    • ECDSA:
      • ECDSA: 14
  • FF:
    • DH:
      • Diffie-Hellman: 4
    • DSA:
      • DSA: 1
  • RSA:
    • RSA 2048: 2
    • RSA2048: 19
pdf_data/st_keywords/pq_crypto
pdf_data/st_keywords/hash_function
pdf_data/st_keywords/crypto_scheme
  • KA:
    • Key Agreement: 1
pdf_data/st_keywords/crypto_protocol
pdf_data/st_keywords/randomness
  • RNG:
    • RND: 2
    • RNG: 7
pdf_data/st_keywords/cipher_mode
pdf_data/st_keywords/ecc_curve
pdf_data/st_keywords/crypto_engine
pdf_data/st_keywords/tls_cipher_suite
pdf_data/st_keywords/crypto_library
pdf_data/st_keywords/vulnerability
pdf_data/st_keywords/side_channel_analysis
  • FI:
    • DFA: 4
    • Malfunction: 15
    • malfunction: 3
  • SCA:
    • DPA: 6
    • Leak-Inherent: 11
    • Physical Probing: 2
    • SPA: 4
  • other:
    • reverse engineering: 2
pdf_data/st_keywords/technical_report_id
pdf_data/st_keywords/device_model
pdf_data/st_keywords/tee_name
pdf_data/st_keywords/os_name
pdf_data/st_keywords/cplc_data
pdf_data/st_keywords/ic_data_group
pdf_data/st_keywords/standard_id
  • BSI:
    • AIS31: 9
  • CC:
    • CCMB-2005-08-001: 1
    • CCMB-2005-08-002: 1
    • CCMB-2005-08-003: 2
  • FIPS:
    • FIPS PUB 46-3: 2
  • ISO:
    • ISO/IEC 7816: 6
    • ISO/IEC 7816-3: 1
  • PKCS:
    • PKCS#1: 3
  • RFC:
    • RFC2437: 3
pdf_data/st_keywords/javacard_version
pdf_data/st_keywords/javacard_api_const
pdf_data/st_keywords/javacard_packages
pdf_data/st_keywords/certification_process
  • OutOfScope:
    • according to ECDH standard with 160 - 521 bits key length (key length below 192 bit are out of scope of the evaluation) • Advanced security sensors and physical countermeasures (e.g. shielding: 1
    • key length (key length below 1280 bit are out of scope of the evaluation) • Signature creation and verification according to ECDSA standard and key: 1
    • key length below 1280 bit are out of scope of the evaluation: 1
    • key length below 192 bit are out of scope of the evaluation: 1
    • out of scope: 3
    • single DES is out of scope of the evaluation: 1
    • smart card applications • Data encryption according to single-DES and 3DES standard (single DES is out of scope of the evaluation) • Data encryption by the ACE module according to RSA standard with 512 to 2048: 1
pdf_data/st_metadata
  • /Author: Buchmueller Hans-Ulrich
  • /CreationDate: D:20081030093245Z
  • /Creator: Security Target_SLE66CLX1600PEx_a12_Derivates_1.2_03.doc - Microsoft Word
  • /Keywords: "Security Target, contactless, dual interface, Security Controller, public, document, resistance to attackers with high attack potential, EAL5+, EAL5 high, Infineon Technologies AG, RSA, Elliptic Curve, Libraries, Dresden, crypto"
  • /ModDate: D:20081120082822+01'00'
  • /Producer: Acrobat PDFWriter 5.0 for Windows NT
  • /Subject: Security Target SLE66CLX1600PEx - SLE66CLX1400PEx - SLE66CLX1280PEx a12
  • /Title: CC EAL5+ Certification Security Target
  • pdf_file_size_bytes: 442657
  • pdf_hyperlinks: {}
  • pdf_is_encrypted: False
  • pdf_number_of_pages: 60
state/report/pdf_hash Different Different
state/report/txt_hash Different Different
state/st/convert_ok False True
state/st/download_ok False True
state/st/extract_ok False True
state/st/pdf_hash Different Different
state/st/txt_hash Different Different