This page was not yet optimized for use on mobile devices.
Thycotic Secret Server Government Edition v10.0
Certificate details
| Status | archived |
|---|---|
| Valid from | 23.10.2018 |
| Valid until | 11.09.2023 |
| Scheme | 🇨🇦 CA |
| Manufacturer | Thycotic |
| Category | Access Control Devices and Systems |
| Security level | N/A |
| Protection profiles |
Certificate
Certification report
Extracted keywords
Symmetric Algorithms
AES, HMACProtocols
SSH, TLSRandomness
DRBGVendor
MicrosoftCertificates
383-4-445Security target
Extracted keywords
Symmetric Algorithms
AES256, AES, AES-256, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512Hash functions
SHA-1, SHA-512, SHA-256, SHA-384, bcryptProtocols
SSH, TLS, TLS v1.1, TLS v1.2, TLS 1.1, TLS 1.2, TLSv1.1, TLSv1.2, IPsecRandomness
RBGLibraries
OpenSSLBlock cipher modes
CBC, GCMTLS cipher suites
TLS_RSA_WITH_AES_128_CBC_SHA, TLS_RSA_WITH_AES_256_CBC_SHA, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_256_CBC_SHA, TLS_RSA_WITH_AES_128_CBC_SHA256, TLS_RSA_WITH_AES_256_CBC_SHA256, TLS_DHE_RSA_WITH_AES_128_CBC_SHA256, TLS_DHE_RSA_WITH_AES_256_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384Vendor
Microsoft, CiscoClaims
O.ACCESSID, O.AUDIT, O.AUTH, O.EAVES, O.SELFID, O.ROBUST, O.INTEGRITY, O.PROTCOMMS, O.PROTCRED, O.IDENT, O.EXPORT, O.MANAGE, O.BANNER, T.ADMIN_ERROR, T.EAVES, T.UNAUTH, T.FALSIFY, T.FORGE, T.MASK, T.WEAKIA, T.RAWCRED, A.CRYPTO, A.ENROLLMENT, A.ESM, A.FEDERATE, A.MANAGE, A.SYSTIME, OE.ADMIN, OE.CRYPTO, OE.ENROLLMENT, OE.FEDERATE, OE.INSTALL, OE.MANAGEMENT, OE.PERSON, OE.SYSTIMESecurity Assurance Requirements (SAR)
ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ALC_CMC.2, ATE_IND.1, ATE_IND, AVA_VAN.1Security Functional Requirements (SFR)
FAU_STG_EXT.1, FAU_GEN.1, FAU_STG_EXT.1.1, FAU_STG_EXT.1.2, FAU_STG_EXT.1.3, FAU_GEN.1.1, FAU_GEN.1.2, FAU_USB.1.1, FAU_USB.1.2, FAU_USB.1.3, FCS_TLS_EXT.1, FCS_RBG_EXT.1, FCS_COP.1, FCS_CKM.1, FCS_CKM_EXT.4, FCS_TLS_EXT.1.1, FDP_ACC.1, FIA_AFL.1, FIA_USB.1, FIA_AFL.1.1, FIA_AFL.1.2, FMT_MOF.1, FMT_MTD.1, FMT_SMF.1, FMT_SMR.1, FMT_MOF.1.1, FMT_MTD.1.1, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMF, FPT_APW_EXT.1, FPT_SKP_EXT.1, FPT_APW_EXT.1.1, FPT_APW_EXT.1.2, FPT_SKP_EXT.1.1, FTA_SSL.3, FTA_SSL.4, FTA_TAB.1, FTA_TSE.1, FTA_SSL.3.1, FTA_SSL.4.1, FTA_TAB.1.1, FTA_TSE.1.1, FTP_ITC.1, FTP_TRP.1, FTP_ITC, FTP_TRP, FTP_ITC.1.1, FTP_ITC.1.2, FTP_ITC.1.3, FTP_TRP.1.1, FTP_TRP.1.2, FTP_TRP.1.3Standards
FIPS PUB 186-4, FIPS PUB 197, FIPS PUB 180-4, FIPS PUB 198-1, NIST SP 800-131A, NIST SP 800-38A, NIST SP 800-90A, RFC 4346, RFC 5246, RFC 5242, CCMB-2012-09-002Automated analysis
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. This applies equally to the Cross-references section below. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.Certificate ID
383-4-445Extracted SARs
ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.2, ALC_CMS.1, ATE_IND.1, AVA_VAN.1Cross-references
No references are available for this certificate.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
{
"_type": "sec_certs.sample.cc.CCCertificate",
"category": "Access Control Devices and Systems",
"cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-445%20CT%20v1.1e.pdf",
"dgst": "d9e143ed7434d33f",
"heuristics": {
"_type": "sec_certs.sample.cc_eucc_common.Heuristics",
"annotated_references": null,
"cert_id": "383-4-445",
"cert_lab": null,
"cpe_matches": null,
"direct_transitive_cves": null,
"eal": "EAL1",
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 1
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"10.0"
]
},
"indirect_transitive_cves": null,
"next_certificates": null,
"prev_certificates": null,
"protection_profiles": {
"_type": "Set",
"elements": [
"baff81729834174e"
]
},
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"scheme_data": null,
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"verified_cpe_matches": null
},
"maintenance_updates": {
"_type": "Set",
"elements": []
},
"manufacturer": "Thycotic",
"manufacturer_web": "https://www.thycotic.com/",
"name": "Thycotic Secret Server Government Edition v10.0",
"not_valid_after": "2023-09-11",
"not_valid_before": "2018-10-23",
"pdf_data": {
"_type": "sec_certs.sample.cc_eucc_common.PdfData",
"cert_filename": "383-4-445 CT v1.1e.pdf",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"CA": {
"383-4-445": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {},
"cc_sar": {},
"cc_security_level": {},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": {
"/Author": "Clark, Cory P.",
"/Company": "CSEC",
"/CreationDate": "D:20181025130658-04\u002700\u0027",
"/Creator": "Acrobat PDFMaker 19 for Word",
"/ModDate": "D:20181025130702-04\u002700\u0027",
"/Producer": "Adobe PDF Library 19.8.103",
"/SourceModified": "D:20181025170642",
"pdf_file_size_bytes": 229207,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 1
},
"report_filename": "383-4-445 CR v1.1e.pdf",
"report_frontpage": {
"CA": {}
},
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"CA": {
"383-4-445": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {},
"cc_sar": {},
"cc_security_level": {},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"SSH": {
"SSH": 2
},
"TLS": {
"TLS": {
"TLS": 2
}
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"FIPS": {
"FIPS 180-3": 1,
"FIPS 186-4": 1,
"FIPS 197": 1,
"FIPS 198": 1
},
"ISO": {
"ISO/IEC 17025:2005": 1
},
"NIST": {
"SP 800-135": 1,
"SP 800-90A": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 1
}
},
"constructions": {
"MAC": {
"HMAC": 1
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"Microsoft": {
"Microsoft": 3
}
},
"vulnerability": {}
},
"report_metadata": {
"/Author": "Clark, Cory P.",
"/CreationDate": "D:20181025131600-04\u002700\u0027",
"/Creator": "Microsoft\u00ae Word 2016",
"/ModDate": "D:20181025131600-04\u002700\u0027",
"/Producer": "Microsoft\u00ae Word 2016",
"/Title": "383-4-XXX CR v0.1",
"pdf_file_size_bytes": 443034,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"mailto:[email protected]"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 16
},
"st_filename": "383-4-445 ST v1.5.pdf",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {},
"cc_claims": {
"A": {
"A.CRYPTO": 1,
"A.ENROLLMENT": 1,
"A.ESM": 1,
"A.FEDERATE": 1,
"A.MANAGE": 1,
"A.SYSTIME": 1
},
"O": {
"O.ACCESSID": 1,
"O.AUDIT": 1,
"O.AUTH": 1,
"O.BANNER": 1,
"O.EAVES": 1,
"O.EXPORT": 1,
"O.IDENT": 1,
"O.INTEGRITY": 1,
"O.MANAGE": 1,
"O.PROTCOMMS": 1,
"O.PROTCRED": 1,
"O.ROBUST": 1,
"O.SELFID": 1
},
"OE": {
"OE.ADMIN": 1,
"OE.CRYPTO": 1,
"OE.ENROLLMENT": 1,
"OE.FEDERATE": 1,
"OE.INSTALL": 1,
"OE.MANAGEMENT": 1,
"OE.PERSON": 1,
"OE.SYSTIME": 1
},
"T": {
"T.ADMIN_ERROR": 1,
"T.EAVES": 1,
"T.FALSIFY": 1,
"T.FORGE": 1,
"T.MASK": 1,
"T.RAWCRED": 1,
"T.UNAUTH": 1,
"T.WEAKIA": 1
}
},
"cc_protection_profile_id": {},
"cc_sar": {
"ADV": {
"ADV_FSP.1": 10
},
"AGD": {
"AGD_OPE.1": 13,
"AGD_PRE.1": 5
},
"ALC": {
"ALC_CMC.1": 7,
"ALC_CMC.2": 1,
"ALC_CMS.1": 8
},
"ATE": {
"ATE_IND": 3,
"ATE_IND.1": 8
},
"AVA": {
"AVA_VAN.1": 9
}
},
"cc_security_level": {},
"cc_sfr": {
"FAU": {
"FAU_GEN.1": 6,
"FAU_GEN.1.1": 1,
"FAU_GEN.1.2": 1,
"FAU_STG_EXT.1": 10,
"FAU_STG_EXT.1.1": 2,
"FAU_STG_EXT.1.2": 2,
"FAU_STG_EXT.1.3": 2,
"FAU_USB.1.1": 1,
"FAU_USB.1.2": 1,
"FAU_USB.1.3": 1
},
"FCS": {
"FCS_CKM.1": 1,
"FCS_CKM_EXT.4": 1,
"FCS_COP.1": 4,
"FCS_RBG_EXT.1": 2,
"FCS_TLS_EXT.1": 8,
"FCS_TLS_EXT.1.1": 2
},
"FDP": {
"FDP_ACC.1": 3
},
"FIA": {
"FIA_AFL.1": 6,
"FIA_AFL.1.1": 1,
"FIA_AFL.1.2": 1,
"FIA_USB.1": 5
},
"FMT": {
"FMT_MOF.1": 6,
"FMT_MOF.1.1": 1,
"FMT_MTD.1": 4,
"FMT_MTD.1.1": 1,
"FMT_SMF": 1,
"FMT_SMF.1": 5,
"FMT_SMF.1.1": 1,
"FMT_SMR.1": 6,
"FMT_SMR.1.1": 1,
"FMT_SMR.1.2": 1
},
"FPT": {
"FPT_APW_EXT.1": 7,
"FPT_APW_EXT.1.1": 2,
"FPT_APW_EXT.1.2": 2,
"FPT_SKP_EXT.1": 7,
"FPT_SKP_EXT.1.1": 2
},
"FTA": {
"FTA_SSL.3": 6,
"FTA_SSL.3.1": 1,
"FTA_SSL.4": 5,
"FTA_SSL.4.1": 1,
"FTA_TAB.1": 7,
"FTA_TAB.1.1": 1,
"FTA_TSE.1": 4,
"FTA_TSE.1.1": 1
},
"FTP": {
"FTP_ITC": 1,
"FTP_ITC.1": 9,
"FTP_ITC.1.1": 1,
"FTP_ITC.1.2": 1,
"FTP_ITC.1.3": 1,
"FTP_TRP": 1,
"FTP_TRP.1": 6,
"FTP_TRP.1.1": 1,
"FTP_TRP.1.2": 1,
"FTP_TRP.1.3": 1
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 1
},
"GCM": {
"GCM": 1
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"OpenSSL": {
"OpenSSL": 2
}
},
"crypto_protocol": {
"IPsec": {
"IPsec": 1
},
"SSH": {
"SSH": 7
},
"TLS": {
"TLS": {
"TLS": 18,
"TLS 1.1": 2,
"TLS 1.2": 2,
"TLS v1.1": 4,
"TLS v1.2": 4,
"TLSv1.1": 1,
"TLSv1.2": 1
}
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 1
},
"SHA2": {
"SHA-256": 1,
"SHA-384": 1,
"SHA-512": 3
}
},
"bcrypt": {
"bcrypt": 3
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RBG": 1
}
},
"side_channel_analysis": {},
"standard_id": {
"CC": {
"CCMB-2012-09-002": 1
},
"FIPS": {
"FIPS PUB 180-4": 2,
"FIPS PUB 186-4": 1,
"FIPS PUB 197": 1,
"FIPS PUB 198-1": 1
},
"NIST": {
"NIST SP 800-131A": 1,
"NIST SP 800-38A": 1,
"NIST SP 800-90A": 1
},
"RFC": {
"RFC 4346": 3,
"RFC 5242": 1,
"RFC 5246": 3
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 2,
"AES-256": 1,
"AES256": 1
}
},
"constructions": {
"MAC": {
"HMAC-SHA-256": 1,
"HMAC-SHA-384": 1,
"HMAC-SHA-512": 1
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {
"TLS": {
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA": 3,
"TLS_DHE_RSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_DHE_RSA_WITH_AES_256_CBC_SHA": 2,
"TLS_DHE_RSA_WITH_AES_256_CBC_SHA256": 1,
"TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256": 1,
"TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 1,
"TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 1,
"TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 1,
"TLS_RSA_WITH_AES_128_CBC_SHA": 3,
"TLS_RSA_WITH_AES_128_CBC_SHA256": 3,
"TLS_RSA_WITH_AES_256_CBC_SHA": 2,
"TLS_RSA_WITH_AES_256_CBC_SHA256": 2
}
},
"vendor": {
"Cisco": {
"Cisco": 1
},
"Microsoft": {
"Microsoft": 11
}
},
"vulnerability": {}
},
"st_metadata": {
"/0_TOEName": "Thycotic Secret Server Government Edition",
"/0_TOEVersion": "v10.0",
"/Author": "",
"/CreationDate": "D:20181025085952-04\u002700\u0027",
"/Creator": "Acrobat PDFMaker 19 for Word",
"/ModDate": "D:20181025090011-04\u002700\u0027",
"/Producer": "Adobe PDF Library 19.8.103",
"/SourceModified": "D:20181022155230",
"pdf_file_size_bytes": 798242,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 45
}
},
"protection_profile_links": {
"_type": "Set",
"elements": [
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/PP_ESM_ICM_V2.1.pdf"
]
},
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-445%20CR%20v1.1e.pdf",
"scheme": "CA",
"security_level": {
"_type": "Set",
"elements": []
},
"st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/383-4-445%20ST%20v1.5.pdf",
"state": {
"_type": "sec_certs.sample.cc_eucc_common.InternalState",
"cert": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "fb25479b7e2db9b0cc183026cfde50a572755134c2c87c75ef9fb335017e38e5",
"txt_hash": "7f0cc22b1fd7da8c83dea6e4b3950e7123d9857c22f958eaee2d5c6c7e215fa7"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "8285b26c72b4997165e85b6777d24fa8d9f4c8ff841feaa62691e82f08ad1580",
"txt_hash": "66be86c05ee57c2e9ee3c0a4760a72be57e54da3abb88e19a1ee5c43fcec0b3d"
},
"st": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "20387e01586b12548f74c3b82c099edc3af33ede2c040e8566dc67e25f4f702c",
"txt_hash": "06b2b1bbd1cc1907f4e343c17c028f580491aa198040f0651fe2207d4fe8f350"
}
},
"status": "archived"
}