Digital Tachograph DTCO 1381 Release 4.0

CSV information ?

Status archived
Valid from 06.12.2018
Valid until 06.12.2023
Scheme 🇩🇪 DE
Manufacturer Continental Automotive GmbH
Category Other Devices and Systems
Security level EAL4+, AVA_VAN.5, ATE_DPT.2

Heuristics summary ?

Certificate ID: BSI-DSZ-CC-1069-2018

Certificate ?

Extracted keywords

Security level
EAL 4, EAL 5, EAL 2, EAL 4 augmented
Security Assurance Requirements (SAR)
Protection profiles

ISO/IEC 15408, ISO/IEC 18045

File metadata

Title Certificate BSI-DSZ-CC-1069-2018
Subject digital tachograph
Keywords Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle Unit, IT security
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20181213104632+01'00'
Modification date D:20181213105040+01'00'
Pages 1
Creator Writer
Producer LibreOffice 5.2

Certification report ?

Extracted keywords

Asymmetric Algorithms
RSA2048, RSA4096

Infineon Technologies, Infineon Technologies AG

Security level
EAL 4, EAL 5, EAL 2, EAL 1, EAL 2+, EAL4, EAL4+, EAL 5+, EAL 6, EAL 4 augmented
Security Assurance Requirements (SAR)
Protection profiles
BSI-DSZ-CC-1069-2018, BSI-DSZ-CC-1015-2017, BSI-DSZ-CC-0827-V7-2018
Evaluation facilities
T-Systems International
Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, Version 5.01, 23.11.2018, Digital Tachograph DTCO 1381, Release 4.0, T-Systems International GmbH, (confidential document) [8] Protection Profile for Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 09.05.2017, 1.6, 15.10.2018 [11] Konfigurationsliste (Excelsheet), Version 1.16, 23.11.2018, Continental (confidential document) [12] Bedienungsanleitung für Unternehmer & Fahrer, BA00.1381.40 201 101, 05.2018, Continental [13

Side-channel analysis
Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, Version 5.01, 23.11.2018, Digital Tachograph DTCO 1381, Release 4.0, T-Systems International GmbH, (confidential document) [8] Protection Profile for Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 09.05.2017, 1.6, 15.10.2018 [11] Konfigurationsliste (Excelsheet), Version 1.16, 23.11.2018, Continental (confidential document) [12] Bedienungsanleitung für Unternehmer & Fahrer, BA00.1381.40 201 101, 05.2018, Continental [13

AIS 34, AIS 25, AIS 26, AIS 32, AIS 36, AIS 20, AIS 38, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065
Technical reports
BSI 7148

File metadata

Title Certification Report BSI-DSZ-CC-1069-2018
Subject digital tachograph
Keywords "Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle unit, IT security"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20181213102221+01'00'
Modification date D:20181213103911+01'00'
Pages 22
Creator Writer
Producer LibreOffice 5.2


Certificate ID BSI-DSZ-CC-1069-2018
Certified item Digital Tachograph DTCO 1381 Release 4.0
Certification lab BSI
Developer Continental Automotive GmbH


  • BSI-DSZ-CC-0827-V7-2018 - archived - Infineon Technologies Smart Card IC (Security Controller) M9900 A22, M9900 C22, M9900 D22, M9900 G11, M9905 A11, M9906 A11 with optional Software Libraries RSA2048, RSA4096, EC, Toolbox, Base, FTL, SCL, HCL, and PSL, and with specific IC dedicated software
  • BSI-DSZ-CC-1015-2017 - archived - Digital Tachograph DTCO 1381 Release 3.0

Security target ?

Extracted keywords

Symmetric Algorithms
Asymmetric Algorithms
Hash functions
SHA-1, SHA1, SHA-384, SHA-512, SHA-256, SHA256, SHA-2
Elliptic Curves
P-256, P-384, P-521, NIST P-256, NIST P-384, NIST P-521, secp256r1, secp384r1, secp521r1, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1
Block cipher modes

Infineon AG

Security level
EAL 4, EAL4, EAL 4 augmented, EAL4 augmented
Security Assurance Requirements (SAR)
Security Functional Requirements (SFR)
Protection profiles
BSI-CC-PP 094, BSI-CC-PP-0094
Certification process
Out of scope, 10-3 RSA Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable VU non-volatile memory Card.PK (conditional, possibly multiple) Card, by card or card manufacturer; obtained by VU in card certificate during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory MS.PK (conditional, possibly multiple) Public key, foreign) MSCA; obtained by VU in MS certificate presented by a card during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date, 10-6. ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date, 10-6 ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory (conditional; only present if existing at time of, C as part of the EUR.Link.C; obtained by VU du-ring mutual authentication towards such card or EGF Out of scope for this ST Not applicable VU general nonvo- latile memory (con- ditional; only if the VU has, by card or card manufac-turer; obtained by VU in card certi-ficate during mu- tual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) EGF_MA. PK EGF, obtained by VU in EGF certificate during mutual authentication as part of the coupling process Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA _Card.PK, 10-6) ECC Generated by MSCA ; obtained by VU in MSCA-_Card certificate during mutual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) VUEGF.PK Public, 10-6. ECC Generated by MSCA ; obtained by VU in MSCA_VU-EGF certificate during coupling to an EGF Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) Table 10-4, as explained in [[2016_799_IC]; Annex 1C, Appendix 11, section 12.2, a VU contains only one Km- vu. Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile Memory Km-wc, key generations). However, a VU will retrieve only one of these keys during the pairing process. Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only, sensor session key when AES Generated by the motion sensor manufacturer; stored in motion sensor Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only, communication AES Derived by MSCA based on DSRC Master Key and VU serial number received from Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory 37 Note, received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory TK, for upgrade file To ensure confidentiality of the upgrade file AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life Not permanently stored CBC-MAC, of the underlying elliptic curve and the CBC- MAC key itself AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Kvu, MACs for the data integrity control of user data records AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Table 10-5

Side-channel analysis
DPA, physical tampering, Physical tampering, malfunction, reverse engineering
Certification process
Out of scope, 10-3 RSA Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable VU non-volatile memory Card.PK (conditional, possibly multiple) Card, by card or card manufacturer; obtained by VU in card certificate during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory MS.PK (conditional, possibly multiple) Public key, foreign) MSCA; obtained by VU in MS certificate presented by a card during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date, 10-6. ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date, 10-6 ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory (conditional; only present if existing at time of, C as part of the EUR.Link.C; obtained by VU du-ring mutual authentication towards such card or EGF Out of scope for this ST Not applicable VU general nonvo- latile memory (con- ditional; only if the VU has, by card or card manufac-turer; obtained by VU in card certi-ficate during mu- tual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) EGF_MA. PK EGF, obtained by VU in EGF certificate during mutual authentication as part of the coupling process Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA _Card.PK, 10-6) ECC Generated by MSCA ; obtained by VU in MSCA-_Card certificate during mutual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) VUEGF.PK Public, 10-6. ECC Generated by MSCA ; obtained by VU in MSCA_VU-EGF certificate during coupling to an EGF Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) Table 10-4, as explained in [[2016_799_IC]; Annex 1C, Appendix 11, section 12.2, a VU contains only one Km- vu. Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile Memory Km-wc, key generations). However, a VU will retrieve only one of these keys during the pairing process. Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only, sensor session key when AES Generated by the motion sensor manufacturer; stored in motion sensor Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only, communication AES Derived by MSCA based on DSRC Master Key and VU serial number received from Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory 37 Note, received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory TK, for upgrade file To ensure confidentiality of the upgrade file AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life Not permanently stored CBC-MAC, of the underlying elliptic curve and the CBC- MAC key itself AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Kvu, MACs for the data integrity control of user data records AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Table 10-5

FIPS PUB 46-3, FIPS PUB 197, SP 800-38B, RFC3447, RFC 5639, RFC 5480, RFC 5869, ISO/IEC 9797-1, CCMB-2017-09-001, CCMB-2017-09-002, CCMB-2017-09-003, CCMB-2012-09-004

File metadata

Title Digital Tachograph DTCO 1381 Security Target
Subject Security Target DTCO 1381, Release 4.0
Keywords Digital Tachograph Release 4.0 Vehicle Unit Smart Tachograph
Author Winfried Rogenz, Norbert Koehn, Continental Automotive GmbH
Creation date D:20181123125354+01'00'
Modification date D:20181123141941+01'00'
Pages 114
Creator Acrobat PDFMaker 15 für Word
Producer Adobe PDF Library 15.0

Heuristics ?

Certificate ID: BSI-DSZ-CC-1069-2018

Extracted SARs


References ?

Updates ?

  • 22.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '6cfdd8b2a7b06916c33337c4c6d79afb2b542a3864509a91b83aab6179e795c7', 'txt_hash': '402a463446d8ff6b7ff62a18b6a3894cf67ca14b3d929e36ee3cfa7c78e4ae16'} data.
    • The st property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '5df1536a359911eea9ea370fc6405fe58b5884559a43365465ba252837ce0f2a', 'txt_hash': 'acc1885a9ef593fce06ae23a07d4cb6d64d07282bbfaa7c7b41a2a934885c033'} data.
    • The cert property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '8d5849bd10b6548d1f2054205f7572c0e34a3a687170e4136cbecac22b66acb4', 'txt_hash': 'd2112232b74b5dca971505c62504e568d1fa4a3f1f9e32b7133f7c09bdb31db2'} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to {'pdf_file_size_bytes': 814889, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 22, '/Author': 'Bundesamt für Sicherheit in der Informationstechnik', '/CreationDate': "D:20181213102221+01'00'", '/Creator': 'Writer', '/Keywords': '"Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle unit, IT security"', '/ModDate': "D:20181213103911+01'00'", '/Producer': 'LibreOffice 5.2', '/Subject': 'digital tachograph', '/Title': 'Certification Report BSI-DSZ-CC-1069-2018', 'pdf_hyperlinks': {'_type': 'Set', 'elements': ['', '', '', '', '', '', '']}}.
    • The st_metadata property was set to {'pdf_file_size_bytes': 1362575, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 114, '/Author': 'Winfried Rogenz, Norbert Koehn, Continental Automotive GmbH', '/Comments': '', '/ContentType': 'Document upload', '/ContentTypeId': '0x010100793277625FD31346BB1B2E9C94506BAD', '/CreationDate': "D:20181123125354+01'00'", '/Creator': 'Acrobat PDFMaker 15 für Word', '/Hard link (open)': '', '/Keywords': 'Digital Tachograph\r\nRelease 4.0\r\nVehicle Unit\r\nSmart Tachograph', '/ModDate': "D:20181123141941+01'00'", '/Producer': 'Adobe PDF Library 15.0', '/SourceModified': 'D:20181009071359', '/Status changed by': '12;#Weigt, Markus', '/Status changed date': '5/21/2013 1:05:33 PM', '/Subject': 'Security Target DTCO 1381, Release 4.0', '/Title': 'Digital Tachograph DTCO 1381 Security Target', '/display_urn:schemas-microsoft-com:office:office#Status_x0020_changed_x0020_by': 'Weigt, Markus', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The cert_metadata property was set to {'pdf_file_size_bytes': 410113, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 1, '/Author': 'Bundesamt für Sicherheit in der Informationstechnik', '/CreationDate': "D:20181213104632+01'00'", '/Creator': 'Writer', '/Keywords': 'Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle Unit, IT security', '/ModDate': "D:20181213105040+01'00'", '/Producer': 'LibreOffice 5.2', '/Subject': 'digital tachograph', '/Title': 'Certificate BSI-DSZ-CC-1069-2018', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The report_frontpage property was set to {'DE': {'match_rules': ['(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)'], 'cert_id': 'BSI-DSZ-CC-1069-2018', 'cert_item': 'Digital Tachograph DTCO 1381 Release 4.0', 'developer': 'Continental Automotive GmbH', 'cert_lab': 'BSI', 'ref_protection_profiles': 'Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 9 May 2017, BSI-CC-PP-0094-2017', 'cc_version': 'PP conformant Common Criteria Part 2 extended', 'cc_security_level': 'Common Criteria Part 3 conformant EAL 4 augmented by ATE_DPT.2 and AVA_VAN.5'}}.
    • The report_keywords property was set to {'cc_cert_id': {'DE': {'BSI-DSZ-CC-1069-2018': 13, 'BSI-DSZ-CC-1015-2017': 3, 'BSI-DSZ-CC-0827-V7-2018': 1}}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0094-2017': 3}}, 'cc_security_level': {'EAL': {'EAL 4': 5, 'EAL 5': 4, 'EAL 2': 2, 'EAL 1': 1, 'EAL 2+': 1, 'EAL4': 1, 'EAL4+': 1, 'EAL 5+': 1, 'EAL 6': 1, 'EAL 4 augmented': 3}}, 'cc_sar': {'ALC': {'ALC_FLR': 3, 'ALC_CMC.4': 1, 'ALC_CMS.4': 1, 'ALC_DEL.1': 1, 'ALC_DVS.1': 1, 'ALC_LCD.1': 1, 'ALC_TAT.1': 1}, 'ATE': {'ATE_DPT.2': 4}, 'AVA': {'AVA_VAN.5': 4}}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {'Infineon': {'Infineon Technologies': 1, 'Infineon Technologies AG': 2}}, 'eval_facility': {'TSystems': {'T-Systems International': 3}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {'RSA': {'RSA2048': 1, 'RSA4096': 1}}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {'RNG': {'RNG': 1}}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {'other': {'JIL': 3}}, 'technical_report_id': {'BSI': {'BSI 7148': 1}}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'BSI': {'AIS 34': 3, 'AIS 25': 2, 'AIS 26': 2, 'AIS 32': 2, 'AIS 36': 2, 'AIS 20': 2, 'AIS 38': 1}, 'ISO': {'ISO/IEC 15408': 4, 'ISO/IEC 18045': 4, 'ISO/IEC 17065': 2}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'ConfidentialDocument': {'being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification': 1, 'Version 5.01, 23.11.2018, Digital Tachograph DTCO 1381, Release 4.0, T-Systems International GmbH, (confidential document) [8] Protection Profile for Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 09.05.2017': 1, '1.6, 15.10.2018 [11] Konfigurationsliste (Excelsheet), Version 1.16, 23.11.2018, Continental (confidential document) [12] Bedienungsanleitung für Unternehmer & Fahrer, BA00.1381.40 201 101, 05.2018, Continental [13': 1}}}.
    • The st_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP 094': 1, 'BSI-CC-PP-0094': 2}}, 'cc_security_level': {'EAL': {'EAL 4': 3, 'EAL4': 11, 'EAL 4 augmented': 1, 'EAL4 augmented': 3}}, 'cc_sar': {'ADV': {'ADV_ARC.1': 2, 'ADV_TDS.3': 2, 'ADV_FSP.4': 1, 'ADV_IMP.1': 1}, 'AGD': {'AGD_OPE.1': 1, 'AGD_PRE.1': 1}, 'ATE': {'ATE_DPT.2': 7, 'ATE_FUN.1': 1, 'ATE_DPT.1': 1}, 'AVA': {'AVA_VAN.5': 7}}, 'cc_sfr': {'FAU': {'FAU_GEN': 6, 'FAU_GEN.1': 12, 'FAU_GEN.1.1': 1, 'FAU_GEN.1.2': 1, 'FAU_SAR': 2, 'FAU_SAR.1': 5, 'FAU_SAR.1.1': 1, 'FAU_SAR.1.2': 1, 'FAU_STG': 3, 'FAU_STG.1': 9, 'FAU_STG.1.1': 1, 'FAU_STG.1.2': 1, 'FAU_STG.4': 5, 'FAU_STG.3': 1, 'FAU_STG.4.1': 1}, 'FCO': {'FCO_NRO.1': 7, 'FCO_NRO.1.1': 1, 'FCO_NRO.1.2': 1, 'FCO_NRO.1.3': 1}, 'FCS': {'FCS_RNG': 8, 'FCS_RNG.1': 28, 'FCS_COP.1': 38, 'FCS_COP.1.1': 7, 'FCS_CKM.1': 46, 'FCS_RNG.1.1': 8, 'FCS_RNG.1.2': 8, 'FCS_CKM.4': 27, 'FCS_CKM': 7, 'FCS_CKM.2': 18, 'FCS_CKM.1.1': 2, 'FCS_CKM.2.1': 2, 'FCS_CKM.4.1': 2, 'FCS_COP': 6, 'FCS_CKM.3': 2}, 'FDP': {'FDP_ACF.1.2': 7, 'FDP_ACF.1.3': 7, 'FDP_ITC.2.5': 2, 'FDP_ITT.1': 6, 'FDP_ACC': 11, 'FDP_ACC.1': 77, 'FDP_ACF.1': 58, 'FDP_ACC.1.1': 6, 'FDP_ACF.1.1': 12, 'FDP_ACF': 11, 'FDP_ACF.1.4': 6, 'FDP_ITC.2': 35, 'FDP_ETC': 2, 'FDP_ETC.2': 10, 'FDP_IFC.1': 9, 'FDP_ETC.2.1': 1, 'FDP_ETC.2.2': 1, 'FDP_ETC.2.3': 1, 'FDP_ETC.2.4': 1, 'FDP_ITC': 7, 'FDP_ITC.1': 25, 'FDP_ITC.1.1': 1, 'FDP_ITC.1.2': 1, 'FDP_ITC.1.3': 1, 'FDP_IFC': 1, 'FDP_ITC.2.1': 1, 'FDP_ITC.2.2': 1, 'FDP_ITC.2.3': 1, 'FDP_ITC.2.4': 1, 'FDP_ITT': 1, 'FDP_ITT.1.1': 1, 'FDP_RIP': 2, 'FDP_RIP.1': 9, 'FDP_RIP.1.1': 1, 'FDP_SDI': 3, 'FDP_SDI.2': 12, 'FDP_SDI.2.1': 2, 'FDP_SDI.2.2': 2, 'FDP_MSA.3': 2}, 'FIA': {'FIA_UAU.2': 12, 'FIA_AFL.1': 27, 'FIA_SOS.2': 1, 'FIA_UID.1': 14, 'FIA_AFL': 2, 'FIA_UAU.1': 26, 'FIA_AFL.1.1': 6, 'FIA_AFL.1.2': 7, 'FIA_ATD': 2, 'FIA_ATD.1': 17, 'FIA_ATD.1.1': 3, 'FIA_UAU': 9, 'FIA_UAU.3': 8, 'FIA_UAU.3.1': 1, 'FIA_UAU.3.2': 1, 'FIA_UAU.5': 8, 'FIA_UAU.5.1': 1, 'FIA_UAU.5.2': 1, 'FIA_UAU.6': 8, 'FIA_UAU.6.1': 1, 'FIA_UID': 4, 'FIA_UID.2': 15, 'FIA_UID.2.1': 1, 'FIA_UAU.1.1': 3, 'FIA_UAU.1.2': 3, 'FIA_UAU.2.1': 2}, 'FMT': {'FMT_MSA.3': 51, 'FMT_MSA': 9, 'FMT_MSA.1': 17, 'FMT_SMR': 14, 'FMT_SMF': 9, 'FMT_MSA.1.1': 1, 'FMT_MSA.3.1': 6, 'FMT_MSA.3.2': 6, 'FMT_MOF': 2, 'FMT_MOF.1': 25, 'FMT_MOF.1.1': 5, 'FMT_MTD': 1, 'FMT_MTD.1': 7, 'FMT_SMR.1': 33, 'FMT_SMF.1': 19, 'FMT_MTD.1.1': 1, 'FMT_SMF.1.1': 1, 'FMT_SMR.1.1': 1, 'FMT_SMR.1.2': 1, 'FMT_MSA.2': 1}, 'FPT': {'FPT_STM.1': 10, 'FPT_TDC.1': 21, 'FPT_FLS': 2, 'FPT_FLS.1': 4, 'FPT_FLS.1.1': 1, 'FPT_PHP': 3, 'FPT_PHP.2': 5, 'FPT_PHP.1': 1, 'FPT_PHP.2.1': 1, 'FPT_PHP.2.2': 1, 'FPT_PHP.2.3': 2, 'FPT_PHP.3': 5, 'FPT_PHP.3.1': 1, 'FPT_STM': 3, 'FPT_STM.1.1': 1, 'FPT_TST': 2, 'FPT_TST.1': 6, 'FPT_TST.1.1': 2, 'FPT_TST.1.2': 1, 'FPT_TST.1.3': 2, 'FPT_TDC': 2, 'FPT_TDC.1.1': 2, 'FPT_TDC.1.2': 2, 'FPT_ITC.1': 3}, 'FTP': {'FTP_ITC.1': 17, 'FTP_TRP.1': 3, 'FTP_ITC': 3, 'FTP_ITC.1.1': 4, 'FTP_ITC.1.2': 4, 'FTP_ITC.1.3': 4}}, 'cc_claims': {'OE': {'OE.EOL': 4}}, 'vendor': {'Infineon': {'Infineon AG': 1}}, 'eval_facility': {}, 'symmetric_crypto': {'AES_competition': {'AES': {'AES': 32}}, 'DES': {'DES': {'DES': 5}, '3DES': {'TDES': 7, 'Triple-DES': 1}}, 'constructions': {'MAC': {'CMAC': 3, 'CBC-MAC': 1}}}, 'asymmetric_crypto': {'ECC': {'ECDH': {'ECDH': 2}, 'ECDSA': {'ECDSA': 6}, 'ECC': {'ECC': 24}}}, 'pq_crypto': {}, 'hash_function': {'SHA': {'SHA1': {'SHA-1': 4, 'SHA1': 3}, 'SHA2': {'SHA-384': 10, 'SHA-512': 10, 'SHA-256': 8, 'SHA256': 1, 'SHA-2': 2}}}, 'crypto_scheme': {'MAC': {'MAC': 5}}, 'crypto_protocol': {}, 'randomness': {'RNG': {'RNG': 44}}, 'cipher_mode': {'ECB': {'ECB': 1}, 'CBC': {'CBC': 8}}, 'ecc_curve': {'NIST': {'P-256': 5, 'P-384': 5, 'P-521': 5, 'NIST P-256': 5, 'NIST P-384': 5, 'NIST P-521': 5, 'secp256r1': 1, 'secp384r1': 1, 'secp521r1': 1}, 'Brainpool': {'brainpoolP256r1': 3, 'brainpoolP384r1': 1, 'brainpoolP512r1': 1}}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {'SCA': {'DPA': 1}, 'FI': {'physical tampering': 7, 'Physical tampering': 1, 'malfunction': 1}, 'other': {'reverse engineering': 1}}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'FIPS': {'FIPS PUB 46-3': 2, 'FIPS PUB 197': 1}, 'NIST': {'SP 800-38B': 4}, 'RFC': {'RFC3447': 5, 'RFC 5639': 1, 'RFC 5480': 1, 'RFC 5869': 1}, 'ISO': {'ISO/IEC 9797-1': 1}, 'CC': {'CCMB-2017-09-001': 2, 'CCMB-2017-09-002': 2, 'CCMB-2017-09-003': 2, 'CCMB-2012-09-004': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'OutOfScope': {'Out of scope': 18, '10-3 RSA Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable VU non-volatile memory Card.PK (conditional, possibly multiple) Card': 1, 'by card or card manufacturer; obtained by VU in card certificate during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory MS.PK (conditional, possibly multiple) Public key': 1, 'foreign) MSCA; obtained by VU in MS certificate presented by a card during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date': 1, '10-6. ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date': 1, '10-6 ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory (conditional; only present if existing at time of': 1, 'C as part of the EUR.Link.C; obtained by VU du-ring mutual authentication towards such card or EGF Out of scope for this ST Not applicable VU general nonvo- latile memory (con- ditional; only if the VU has': 1, 'by card or card manufac-turer; obtained by VU in card certi-ficate during mu- tual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) EGF_MA. PK EGF': 1, 'obtained by VU in EGF certificate during mutual authentication as part of the coupling process Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA _Card.PK': 1, '10-6) ECC Generated by MSCA ; obtained by VU in MSCA-_Card certificate during mutual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) VUEGF.PK Public': 1, '10-6. ECC Generated by MSCA ; obtained by VU in MSCA_VU-EGF certificate during coupling to an EGF Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) Table 10-4': 1, 'as explained in [[2016_799_IC]; Annex 1C, Appendix 11, section 12.2, a VU contains only one Km- vu. Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile Memory Km-wc': 1, 'key generations). However, a VU will retrieve only one of these keys during the pairing process. Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only': 1, 'sensor session key when AES Generated by the motion sensor manufacturer; stored in motion sensor Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only': 1, 'communication AES Derived by MSCA based on DSRC Master Key and VU serial number received from Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory 37 Note': 1, 'received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory TK': 1, 'for upgrade file To ensure confidentiality of the upgrade file AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life Not permanently stored CBC-MAC': 1, 'of the underlying elliptic curve and the CBC- MAC key itself AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Kvu': 1, 'MACs for the data integrity control of user data records AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Table 10-5': 1}}}.
    • The cert_keywords property was set to {'cc_cert_id': {'DE': {'BSI-DSZ-CC-1069-2018': 1}}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0094-2017': 1}}, 'cc_security_level': {'EAL': {'EAL 4': 1, 'EAL 5': 1, 'EAL 2': 1, 'EAL 4 augmented': 1}}, 'cc_sar': {'ALC': {'ALC_FLR': 1}, 'ATE': {'ATE_DPT.2': 1}, 'AVA': {'AVA_VAN.5': 1}}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {}, 'eval_facility': {}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'ISO': {'ISO/IEC 15408': 2, 'ISO/IEC 18045': 2}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}.
    • The report_filename property was set to 1069a_pdf.pdf.
    • The st_filename property was set to 1069b_pdf.pdf.
    • The cert_filename property was set to 1069c_pdf.pdf.

    The computed heuristics were updated.

    • The cert_lab property was set to ['BSI'].
    • The cert_id property was set to BSI-DSZ-CC-1069-2018.
    • The report_references property was updated, with the {'directly_referenced_by': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-1158-2020']}, 'indirectly_referenced_by': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-1158-2020', 'BSI-DSZ-CC-1158-V2-2023']}, 'directly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0827-V7-2018', 'BSI-DSZ-CC-1015-2017']}, 'indirectly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0827-V6-2017', 'BSI-DSZ-CC-0827-2013', 'BSI-DSZ-CC-0936-2015', 'BSI-DSZ-CC-0791-2012', 'BSI-DSZ-CC-0827-V3-2015', 'BSI-DSZ-CC-0827-V2-2014', 'BSI-DSZ-CC-0827-V7-2018', 'BSI-DSZ-CC-0827-V4-2016', 'BSI-DSZ-CC-0395-2007', 'BSI-DSZ-CC-0269-2006', 'BSI-DSZ-CC-0632-2011', 'BSI-DSZ-CC-0827-V5-2017', 'BSI-DSZ-CC-0376-2006', 'BSI-DSZ-CC-0878-2013', 'BSI-DSZ-CC-0559-2012', 'BSI-DSZ-CC-1015-2017']}} data.
    • The extracted_sars property was updated, with the {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_TAT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_IMP', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_LCD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 4}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 4}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DVS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_TDS', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 4}]} values added.
  • 17.08.2024 The certificate data changed.
    Certificate changed

    The report_link was updated.

    • The new value is

    The st_link was updated.

    • The new value is

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.
    • The st property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.
    • The cert property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to None.
    • The st_metadata property was set to None.
    • The cert_metadata property was set to None.
    • The report_frontpage property was set to None.
    • The report_keywords property was set to None.
    • The st_keywords property was set to None.
    • The cert_keywords property was set to None.
    • The report_filename property was set to None.
    • The st_filename property was set to None.
    • The cert_filename property was set to None.

    The computed heuristics were updated.

    • The cert_lab property was set to None.
    • The cert_id property was set to None.
    • The report_references property was updated, with the {'directly_referenced_by': None, 'indirectly_referenced_by': None, 'directly_referencing': None, 'indirectly_referencing': None} data.
    • The extracted_sars property was updated, with the {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_TAT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_IMP', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_LCD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 4}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 4}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DVS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_TDS', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 4}]} values discarded.
  • 12.08.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The report_references property was updated, with the {'indirectly_referenced_by': {'__discard__': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-1158-V2-2023']}}, 'indirectly_referencing': {'__discard__': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0827-2013', 'BSI-DSZ-CC-0791-2012']}}} data.
  • 23.07.2024 The certificate was first processed.
    New certificate

    A new Common Criteria certificate with the product name Digital Tachograph DTCO 1381 Release 4.0 was processed.

Raw data

  "_type": "",
  "category": "Other Devices and Systems",
  "cert_link": "",
  "dgst": "e7e053c36da90eeb",
  "heuristics": {
    "_type": "",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1069-2018",
    "cert_lab": [
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 4
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 4
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_DPT",
          "level": 2
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 3
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 5
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 1
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
    "extracted_versions": {
      "_type": "Set",
      "elements": [
    "indirect_transitive_cves": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
      "directly_referencing": {
        "_type": "Set",
        "elements": [
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
    "scheme_data": null,
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    "verified_cpe_matches": null
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  "manufacturer": "Continental Automotive GmbH",
  "manufacturer_web": "",
  "name": "Digital Tachograph DTCO 1381 Release 4.0",
  "not_valid_after": "2023-12-06",
  "not_valid_before": "2018-12-06",
  "pdf_data": {
    "_type": "",
    "cert_filename": "1069c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1069-2018": 1
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0094-2017": 1
      "cc_sar": {
        "ALC": {
          "ALC_FLR": 1
        "ATE": {
          "ATE_DPT.2": 1
        "AVA": {
          "AVA_VAN.5": 1
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 1,
          "EAL 4 augmented": 1,
          "EAL 5": 1
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    "cert_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20181213104632+01\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle Unit, IT security",
      "/ModDate": "D:20181213105040+01\u002700\u0027",
      "/Producer": "LibreOffice 5.2",
      "/Subject": "digital tachograph",
      "/Title": "Certificate BSI-DSZ-CC-1069-2018",
      "pdf_file_size_bytes": 410113,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 1
    "report_filename": "1069a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cc_security_level": "Common Criteria Part 3 conformant EAL 4 augmented by ATE_DPT.2 and AVA_VAN.5",
        "cc_version": "PP conformant Common Criteria Part 2 extended",
        "cert_id": "BSI-DSZ-CC-1069-2018",
        "cert_item": "Digital Tachograph DTCO 1381 Release 4.0",
        "cert_lab": "BSI",
        "developer": "Continental Automotive GmbH",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        "ref_protection_profiles": "Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 9 May 2017, BSI-CC-PP-0094-2017"
    "report_keywords": {
      "asymmetric_crypto": {
        "RSA": {
          "RSA2048": 1,
          "RSA4096": 1
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0827-V7-2018": 1,
          "BSI-DSZ-CC-1015-2017": 3,
          "BSI-DSZ-CC-1069-2018": 13
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0094-2017": 3
      "cc_sar": {
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_CMS.4": 1,
          "ALC_DEL.1": 1,
          "ALC_DVS.1": 1,
          "ALC_FLR": 3,
          "ALC_LCD.1": 1,
          "ALC_TAT.1": 1
        "ATE": {
          "ATE_DPT.2": 4
        "AVA": {
          "AVA_VAN.5": 4
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 2,
          "EAL 2+": 1,
          "EAL 4": 5,
          "EAL 4 augmented": 3,
          "EAL 5": 4,
          "EAL 5+": 1,
          "EAL 6": 1,
          "EAL4": 1,
          "EAL4+": 1
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "1.6, 15.10.2018 [11] Konfigurationsliste (Excelsheet), Version 1.16, 23.11.2018, Continental (confidential document) [12] Bedienungsanleitung f\u00fcr Unternehmer \u0026 Fahrer, BA00.1381.40 201 101, 05.2018, Continental [13": 1,
          "Version 5.01, 23.11.2018, Digital Tachograph DTCO 1381, Release 4.0, T-Systems International GmbH, (confidential document) [8] Protection Profile for Digital Tachograph - Vehicle Unit (VU PP) Version 1.0, 09.05.2017": 1,
          "being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "TSystems": {
          "T-Systems International": 3
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 1
      "side_channel_analysis": {
        "other": {
          "JIL": 3
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 25": 2,
          "AIS 26": 2,
          "AIS 32": 2,
          "AIS 34": 3,
          "AIS 36": 2,
          "AIS 38": 1
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Infineon": {
          "Infineon Technologies": 1,
          "Infineon Technologies AG": 2
      "vulnerability": {}
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20181213102221+01\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, digital tachograph, DTCO 1381, vehicle unit, IT security\"",
      "/ModDate": "D:20181213103911+01\u002700\u0027",
      "/Producer": "LibreOffice 5.2",
      "/Subject": "digital tachograph",
      "/Title": "Certification Report BSI-DSZ-CC-1069-2018",
      "pdf_file_size_bytes": 814889,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 22
    "st_filename": "1069b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 24
          "ECDH": {
            "ECDH": 2
          "ECDSA": {
            "ECDSA": 6
      "cc_cert_id": {},
      "cc_claims": {
        "OE": {
          "OE.EOL": 4
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP 094": 1,
          "BSI-CC-PP-0094": 2
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 2,
          "ADV_FSP.4": 1,
          "ADV_IMP.1": 1,
          "ADV_TDS.3": 2
        "AGD": {
          "AGD_OPE.1": 1,
          "AGD_PRE.1": 1
        "ATE": {
          "ATE_DPT.1": 1,
          "ATE_DPT.2": 7,
          "ATE_FUN.1": 1
        "AVA": {
          "AVA_VAN.5": 7
      "cc_security_level": {
        "EAL": {
          "EAL 4": 3,
          "EAL 4 augmented": 1,
          "EAL4": 11,
          "EAL4 augmented": 3
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 6,
          "FAU_GEN.1": 12,
          "FAU_GEN.1.1": 1,
          "FAU_GEN.1.2": 1,
          "FAU_SAR": 2,
          "FAU_SAR.1": 5,
          "FAU_SAR.1.1": 1,
          "FAU_SAR.1.2": 1,
          "FAU_STG": 3,
          "FAU_STG.1": 9,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1,
          "FAU_STG.3": 1,
          "FAU_STG.4": 5,
          "FAU_STG.4.1": 1
        "FCO": {
          "FCO_NRO.1": 7,
          "FCO_NRO.1.1": 1,
          "FCO_NRO.1.2": 1,
          "FCO_NRO.1.3": 1
        "FCS": {
          "FCS_CKM": 7,
          "FCS_CKM.1": 46,
          "FCS_CKM.1.1": 2,
          "FCS_CKM.2": 18,
          "FCS_CKM.2.1": 2,
          "FCS_CKM.3": 2,
          "FCS_CKM.4": 27,
          "FCS_CKM.4.1": 2,
          "FCS_COP": 6,
          "FCS_COP.1": 38,
          "FCS_COP.1.1": 7,
          "FCS_RNG": 8,
          "FCS_RNG.1": 28,
          "FCS_RNG.1.1": 8,
          "FCS_RNG.1.2": 8
        "FDP": {
          "FDP_ACC": 11,
          "FDP_ACC.1": 77,
          "FDP_ACC.1.1": 6,
          "FDP_ACF": 11,
          "FDP_ACF.1": 58,
          "FDP_ACF.1.1": 12,
          "FDP_ACF.1.2": 7,
          "FDP_ACF.1.3": 7,
          "FDP_ACF.1.4": 6,
          "FDP_ETC": 2,
          "FDP_ETC.2": 10,
          "FDP_ETC.2.1": 1,
          "FDP_ETC.2.2": 1,
          "FDP_ETC.2.3": 1,
          "FDP_ETC.2.4": 1,
          "FDP_IFC": 1,
          "FDP_IFC.1": 9,
          "FDP_ITC": 7,
          "FDP_ITC.1": 25,
          "FDP_ITC.1.1": 1,
          "FDP_ITC.1.2": 1,
          "FDP_ITC.1.3": 1,
          "FDP_ITC.2": 35,
          "FDP_ITC.2.1": 1,
          "FDP_ITC.2.2": 1,
          "FDP_ITC.2.3": 1,
          "FDP_ITC.2.4": 1,
          "FDP_ITC.2.5": 2,
          "FDP_ITT": 1,
          "FDP_ITT.1": 6,
          "FDP_ITT.1.1": 1,
          "FDP_MSA.3": 2,
          "FDP_RIP": 2,
          "FDP_RIP.1": 9,
          "FDP_RIP.1.1": 1,
          "FDP_SDI": 3,
          "FDP_SDI.2": 12,
          "FDP_SDI.2.1": 2,
          "FDP_SDI.2.2": 2
        "FIA": {
          "FIA_AFL": 2,
          "FIA_AFL.1": 27,
          "FIA_AFL.1.1": 6,
          "FIA_AFL.1.2": 7,
          "FIA_ATD": 2,
          "FIA_ATD.1": 17,
          "FIA_ATD.1.1": 3,
          "FIA_SOS.2": 1,
          "FIA_UAU": 9,
          "FIA_UAU.1": 26,
          "FIA_UAU.1.1": 3,
          "FIA_UAU.1.2": 3,
          "FIA_UAU.2": 12,
          "FIA_UAU.2.1": 2,
          "FIA_UAU.3": 8,
          "FIA_UAU.3.1": 1,
          "FIA_UAU.3.2": 1,
          "FIA_UAU.5": 8,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 1,
          "FIA_UAU.6": 8,
          "FIA_UAU.6.1": 1,
          "FIA_UID": 4,
          "FIA_UID.1": 14,
          "FIA_UID.2": 15,
          "FIA_UID.2.1": 1
        "FMT": {
          "FMT_MOF": 2,
          "FMT_MOF.1": 25,
          "FMT_MOF.1.1": 5,
          "FMT_MSA": 9,
          "FMT_MSA.1": 17,
          "FMT_MSA.1.1": 1,
          "FMT_MSA.2": 1,
          "FMT_MSA.3": 51,
          "FMT_MSA.3.1": 6,
          "FMT_MSA.3.2": 6,
          "FMT_MTD": 1,
          "FMT_MTD.1": 7,
          "FMT_MTD.1.1": 1,
          "FMT_SMF": 9,
          "FMT_SMF.1": 19,
          "FMT_SMF.1.1": 1,
          "FMT_SMR": 14,
          "FMT_SMR.1": 33,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        "FPT": {
          "FPT_FLS": 2,
          "FPT_FLS.1": 4,
          "FPT_FLS.1.1": 1,
          "FPT_ITC.1": 3,
          "FPT_PHP": 3,
          "FPT_PHP.1": 1,
          "FPT_PHP.2": 5,
          "FPT_PHP.2.1": 1,
          "FPT_PHP.2.2": 1,
          "FPT_PHP.2.3": 2,
          "FPT_PHP.3": 5,
          "FPT_PHP.3.1": 1,
          "FPT_STM": 3,
          "FPT_STM.1": 10,
          "FPT_STM.1.1": 1,
          "FPT_TDC": 2,
          "FPT_TDC.1": 21,
          "FPT_TDC.1.1": 2,
          "FPT_TDC.1.2": 2,
          "FPT_TST": 2,
          "FPT_TST.1": 6,
          "FPT_TST.1.1": 2,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 2
        "FTP": {
          "FTP_ITC": 3,
          "FTP_ITC.1": 17,
          "FTP_ITC.1.1": 4,
          "FTP_ITC.1.2": 4,
          "FTP_ITC.1.3": 4,
          "FTP_TRP.1": 3
      "certification_process": {
        "OutOfScope": {
          "10-3 RSA Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable VU non-volatile memory Card.PK (conditional, possibly multiple) Card": 1,
          "10-6 ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory (conditional; only present if existing at time of": 1,
          "10-6) ECC Generated by MSCA ; obtained by VU in MSCA-_Card certificate during mutual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) VUEGF.PK Public": 1,
          "10-6. ECC Generated by ERCA; inserted in VU by manufacturer at the end of the manufacturing phase Out of scope for this ST Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date": 1,
          "10-6. ECC Generated by MSCA ; obtained by VU in MSCA_VU-EGF certificate during coupling to an EGF Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) Table 10-4": 1,
          "C as part of the EUR.Link.C; obtained by VU du-ring mutual authentication towards such card or EGF Out of scope for this ST Not applicable VU general nonvo- latile memory (con- ditional; only if the VU has": 1,
          "MACs for the data integrity control of user data records AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Table 10-5": 1,
          "Out of scope": 18,
          "as explained in [[2016_799_IC]; Annex 1C, Appendix 11, section 12.2, a VU contains only one Km- vu. Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile Memory Km-wc": 1,
          "by card or card manufac-turer; obtained by VU in card certi-ficate during mu- tual authentication Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) EGF_MA. PK EGF": 1,
          "by card or card manufacturer; obtained by VU in card certificate during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory MS.PK (conditional, possibly multiple) Public key": 1,
          "communication AES Derived by MSCA based on DSRC Master Key and VU serial number received from Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory 37 Note": 1,
          "for upgrade file To ensure confidentiality of the upgrade file AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life Not permanently stored CBC-MAC": 1,
          "foreign) MSCA; obtained by VU in MS certificate presented by a card during mutual authentication Out of scope for this PP Not applicable VU non-volatile memory DTCO 1381 Security Target [Revision 1.28] Date": 1,
          "key generations). However, a VU will retrieve only one of these keys during the pairing process. Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only": 1,
          "obtained by VU in EGF certificate during mutual authentication as part of the coupling process Out of scope for this ST Not applicable VU non-volatile memory (conditional, possibly multiple) MSCA _Card.PK": 1,
          "of the underlying elliptic curve and the CBC- MAC key itself AES Generated by the VU manufacturer Out of scope of this ST Made unavailable when the VU has reached end of life VU non-volatile memory Kvu": 1,
          "received from VU manufacturer; inserted by VU manufacturer at the end of the manufacturing phase Out of scope for this ST Made unavailable when the VU has reached end of life VU non-volatile memory TK": 1,
          "sensor session key when AES Generated by the motion sensor manufacturer; stored in motion sensor Out of scope for this ST Made unavailable at the latest by end of calibration phase Not permanently stored; only": 1
      "cipher_mode": {
        "CBC": {
          "CBC": 8
        "ECB": {
          "ECB": 1
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 5
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 3,
          "brainpoolP384r1": 1,
          "brainpoolP512r1": 1
        "NIST": {
          "NIST P-256": 5,
          "NIST P-384": 5,
          "NIST P-521": 5,
          "P-256": 5,
          "P-384": 5,
          "P-521": 5,
          "secp256r1": 1,
          "secp384r1": 1,
          "secp521r1": 1
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 4,
            "SHA1": 3
          "SHA2": {
            "SHA-2": 2,
            "SHA-256": 8,
            "SHA-384": 10,
            "SHA-512": 10,
            "SHA256": 1
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 44
      "side_channel_analysis": {
        "FI": {
          "Physical tampering": 1,
          "malfunction": 1,
          "physical tampering": 7
        "SCA": {
          "DPA": 1
        "other": {
          "reverse engineering": 1
      "standard_id": {
        "CC": {
          "CCMB-2012-09-004": 1,
          "CCMB-2017-09-001": 2,
          "CCMB-2017-09-002": 2,
          "CCMB-2017-09-003": 2
        "FIPS": {
          "FIPS PUB 197": 1,
          "FIPS PUB 46-3": 2
        "ISO": {
          "ISO/IEC 9797-1": 1
        "NIST": {
          "SP 800-38B": 4
        "RFC": {
          "RFC 5480": 1,
          "RFC 5639": 1,
          "RFC 5869": 1,
          "RFC3447": 5
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 32
        "DES": {
          "3DES": {
            "TDES": 7,
            "Triple-DES": 1
          "DES": {
            "DES": 5
        "constructions": {
          "MAC": {
            "CBC-MAC": 1,
            "CMAC": 3
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Infineon": {
          "Infineon AG": 1
      "vulnerability": {}
    "st_metadata": {
      "/Author": "Winfried Rogenz, Norbert Koehn, Continental Automotive GmbH",
      "/Comments": "",
      "/ContentType": "Document upload",
      "/ContentTypeId": "0x010100793277625FD31346BB1B2E9C94506BAD",
      "/CreationDate": "D:20181123125354+01\u002700\u0027",
      "/Creator": "Acrobat PDFMaker 15 f\u00fcr Word",
      "/Hard link (open)": "\u0026vernum=512\u0026action=read\u0026title=BasisTemplate_Word\u0026verui=1.0",
      "/Keywords": "Digital Tachograph\r\nRelease 4.0\r\nVehicle Unit\r\nSmart Tachograph",
      "/ModDate": "D:20181123141941+01\u002700\u0027",
      "/Producer": "Adobe PDF Library 15.0",
      "/SourceModified": "D:20181009071359",
      "/Status changed by": "12;#Weigt, Markus",
      "/Status changed date": "5/21/2013 1:05:33 PM",
      "/Subject": "Security Target DTCO 1381, Release 4.0",
      "/Title": "Digital Tachograph DTCO 1381 Security Target",
      "/display_urn:schemas-microsoft-com:office:office#Status_x0020_changed_x0020_by": "Weigt, Markus",
      "pdf_file_size_bytes": 1362575,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 114
  "protection_profiles": {
    "_type": "Set",
    "elements": [
        "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
        "pp_eal": null,
        "pp_ids": null,
        "pp_link": "",
        "pp_name": "Digital Tachograph - Vehicle Unit"
  "report_link": "",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
  "st_link": "",
  "state": {
    "_type": "",
    "cert": {
      "_type": "",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "8d5849bd10b6548d1f2054205f7572c0e34a3a687170e4136cbecac22b66acb4",
      "txt_hash": "d2112232b74b5dca971505c62504e568d1fa4a3f1f9e32b7133f7c09bdb31db2"
    "report": {
      "_type": "",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "6cfdd8b2a7b06916c33337c4c6d79afb2b542a3864509a91b83aab6179e795c7",
      "txt_hash": "402a463446d8ff6b7ff62a18b6a3894cf67ca14b3d929e36ee3cfa7c78e4ae16"
    "st": {
      "_type": "",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "5df1536a359911eea9ea370fc6405fe58b5884559a43365465ba252837ce0f2a",
      "txt_hash": "acc1885a9ef593fce06ae23a07d4cb6d64d07282bbfaa7c7b41a2a934885c033"
  "status": "archived"