{
"_type": "sec_certs.sample.cc.CCCertificate",
"category": "Other Devices and Systems",
"cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2c_pdf.pdf",
"dgst": "8916d91243168c04",
"heuristics": {
"_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
"annotated_references": null,
"cert_id": "BSI-DSZ-CC-0862-V2-2021",
"cert_lab": [
"BSI"
],
"cpe_matches": null,
"direct_transitive_cves": null,
"eal": "EAL2+",
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DEL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_ARC",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_ECD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_TDS",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_FUN",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_INT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_REQ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_COV",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_TSS",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_LCD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_OBJ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DVS",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_CCL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_SPD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"2.5.0"
]
},
"indirect_transitive_cves": null,
"next_certificates": null,
"prev_certificates": null,
"protection_profiles": {
"_type": "Set",
"elements": [
"fc76773839dc79d0"
]
},
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-0862-2016"
]
},
"indirectly_referenced_by": null,
"indirectly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-0862-2016"
]
}
},
"scheme_data": {
"category": "Other products",
"cert_id": "BSI-DSZ-CC-0862-V2-2021",
"certification_date": "2021-06-25",
"enhanced": {
"applicant": "POLYAS GmbH Marie-Calm-Stra\u00dfe 1-5 34131 Kassel",
"assurance_level": "EAL2,ALC_LCD.1,ALC_DVS.1,ALC_CMS.3,ALC_CMC.3",
"certification_date": "2021-06-25",
"description": "The Target of Evaluation (TOE) is the product for conducting online elections (in short: online voting product) POLYAS CORE Version 2.2.3. Corresponding to the security requirements from the claimed Protection Profile BSI-CC-PP-0037, POLYAS CORE V2.2.3 is sufficient to securely implement elections in associations, for boards and bodies such as at universities, within the scope of education and research, and in particular other non-political elections with low attack potential. The functional and security features of the TOE relate only to the polling phase incl. tallying, but not to the election preparation (such as drawing up the electoral register, for example) or to the archiving of the polling and result data. A client-sided TOE at the endpoint device does not exist. The complete range of functions is provided by the server-sided TOE.",
"entries": [
{
"description": "security functionality is unchanged. Configuration management procedures require a change of the product version from version 2.5.3 to version 2.5.4.",
"id": "BSI-DSZ-CC-0862-V2-2021-MA-02 (Ausstellungsdatum / Certification Date 11.03.2022)"
},
{
"description": "Security Target",
"id": "BSI-DSZ-CC-0862-V2-2021-MA-01 (Ausstellungsdatum / Certification Date 24.11.2021)"
},
{
"description": "This re-certification was conducted, because the validity of the previous certificate expired and to include minor product changes in the certified scope.",
"id": "BSI-DSZ-CC-0862-V2-2021 (Ausstellungsdatum / Certification Date 25.06.2021, g\u00fcltig bis / valid until 24.06.2026) Zertifizierungsreport / Certification Report"
},
{
"description": "Security Target",
"id": "BSI-DSZ-CC-0862-2016 (Ausstellungsdatum / Certification Date 10.03.2016, g\u00fcltig bis / valid until 09.03.2021)"
}
],
"evaluation_facility": "Deutsches Forschungszentrum f\u00fcr K\u00fcnstliche Intelligenz GmbH",
"expiration_date": "2026-06-24",
"product": "POLYAS CORE Version 2.5.0",
"protection_profile": "Common Criteria Schutzprofil f\u00fcr Basissatz von Sicherheitsanforderungen an Online-Wahlprodukte, Version 1.0, 18. April 2008, BSI-CC-PP-0037-2008"
},
"product": "POLYAS CORE Version 2.5.0",
"url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Sonstiges/0862_0862V2.html",
"vendor": "POLYAS GmbH"
},
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"verified_cpe_matches": null
},
"maintenance_updates": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
"maintenance_date": "2021-11-24",
"maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2MA1a_pdf.pdf",
"maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2MA1b_pdf.pdf",
"maintenance_title": "POLYAS Core, Version 2.5.3"
},
{
"_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
"maintenance_date": "2022-03-11",
"maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2MA2a_pdf.pdf",
"maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2MA2b_pdf.pdf",
"maintenance_title": "POLYAS CORE Version 2.5.0"
}
]
},
"manufacturer": "POLYAS GmbH",
"manufacturer_web": null,
"name": "POLYAS CORE Version 2.5.0",
"not_valid_after": "2026-06-24",
"not_valid_before": "2021-06-25",
"pdf_data": {
"_type": "sec_certs.sample.cc.CCCertificate.PdfData",
"cert_filename": "0862V2c_pdf.pdf",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-0862-V2-2021": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0037-2008": 1
}
},
"cc_sar": {
"ALC": {
"ALC_CMC.3": 1,
"ALC_CMS.3": 1,
"ALC_DVS.1": 1,
"ALC_LCD.1": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 2
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"ISO": {
"ISO/IEC 15408": 2,
"ISO/IEC 18045": 2
}
},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": {
"/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
"/CreationDate": "D:20210630094312+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "\"Common Criteria, Certification, Zertifizierung, Online-Wahlen, Polyas\"",
"/ModDate": "D:20210630100752+02\u002700\u0027",
"/Producer": "LibreOffice 6.3",
"/Subject": "Common Criteria Zertifizierung, POLYAS Core, Version 2.5.0",
"/Title": "Urkunde BSI-DSZ-CC-0862-V2",
"pdf_file_size_bytes": 253961,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 1
},
"report_filename": "0862V2a_pdf.pdf",
"report_frontpage": {
"DE": {
"cert_id": "BSI-DSZ-CC-0862-V2-2021",
"cert_item": "POLYAS Core, Version 2.5.0",
"cert_lab": "BSI",
"developer": "POLYAS GmbH",
"match_rules": [
"(BSI-DSZ-CC-.+?) zu (.+?) der (.*)"
]
}
},
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-0862-": 1,
"BSI-DSZ-CC-0862-2016": 2,
"BSI-DSZ-CC-0862-V2-2021": 15
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0037": 2,
"BSI-CC-PP-0037-2008": 2
}
},
"cc_sar": {
"ALC": {
"ALC_CMC.3": 4,
"ALC_CMS.3": 4,
"ALC_DVS.1": 4,
"ALC_FLR": 2,
"ALC_LCD.1": 4
}
},
"cc_security_level": {
"EAL": {
"EAL 1": 1,
"EAL 2": 6,
"EAL 2+": 1,
"EAL 4": 1
}
},
"cc_sfr": {
"FAU": {
"FAU_GEN.1": 3,
"FAU_SAR.1": 2
},
"FDP": {
"FDP_DAU.1": 2,
"FDP_IFC": 4,
"FDP_IFF": 4,
"FDP_IFF.5": 3,
"FDP_RIP": 4,
"FDP_SDI.2": 2,
"FDP_UCT": 4,
"FDP_UIT": 4
},
"FIA": {
"FIA_ATD.1": 2,
"FIA_UAU": 2,
"FIA_UAU.6": 1,
"FIA_UID": 2,
"FIA_USB": 3
},
"FMT": {
"FMT_SMR.2": 2
},
"FPR": {
"FPR_ANO.1": 2,
"FPR_UNL": 4
},
"FPT": {
"FPT_ITT.1": 2,
"FPT_RCV.1": 2,
"FPT_RCV.4": 2,
"FPT_TST.1": 2
},
"FTA": {
"FTA_SSL": 1,
"FTA_SSL.3": 1,
"FTA_SSL.4": 1,
"FTA_TSE.1": 2
},
"FTP": {
"FTP_TRP": 4
}
},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"TLS": {
"TLS": {
"TLS": 1
}
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"DFKI": {
"DFKI": 3
}
},
"hash_function": {
"SHA": {
"SHA2": {
"SHA-256": 2
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"BSI": {
"AIS 32": 1,
"AIS 38": 1
},
"ISO": {
"ISO/IEC 15408": 4,
"ISO/IEC 17065": 2,
"ISO/IEC 18045": 4
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES-256": 1
}
}
},
"technical_report_id": {
"BSI": {
"BSI 7148": 1
}
},
"tee_name": {
"IBM": {
"SE": 1
}
},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"report_metadata": {
"/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
"/CreationDate": "D:20210630094656+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "Common Criteria, Certification, Zertifizierung, Online-Wahlen, Polyas",
"/ModDate": "D:20210630095708+02\u002700\u0027",
"/Producer": "LibreOffice 6.3",
"/Subject": "Common Criteria Zertifizierung, POLYAS Core, Version 2.5.0",
"/Title": "Zertifizierungsreport BSI-DSZ-CC-0862-V2",
"pdf_file_size_bytes": 683057,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://www.bsi.bund.de/AIS",
"https://www.sogis.eu/",
"https://www.bsi.bund.de/zertifizierung",
"https://www.commoncriteriaportal.org/",
"https://www.commoncriteriaportal.org/cc/",
"https://www.bsi.bund.de/zertifizierungsreporte",
"https://www.bsi.bund.de/"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 31
},
"st_filename": "0862V2b_pdf.pdf",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {},
"cc_claims": {
"D": {
"D.H": 11
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0037": 3
}
},
"cc_sar": {
"ADV": {
"ADV_ARC.1": 1,
"ADV_FSP.2": 1,
"ADV_TDS.1": 1
},
"AGD": {
"AGD_OPE.1": 3,
"AGD_PRE.1": 1
},
"ALC": {
"ALC_CMC.2": 1,
"ALC_CMC.3": 2,
"ALC_CMS.2": 1,
"ALC_CMS.3": 2,
"ALC_DEL.1": 1,
"ALC_DVS.1": 2,
"ALC_LCD.1": 2
},
"ASE": {
"ASE_CCL.1": 1,
"ASE_ECD.1": 1,
"ASE_INT.1": 1,
"ASE_OBJ.2": 1,
"ASE_REQ.2": 1,
"ASE_SPD.1": 1,
"ASE_TSS.1": 1
},
"ATE": {
"ATE_COV.1": 1,
"ATE_FUN.1": 1,
"ATE_IND.2": 1
},
"AVA": {
"AVA_VAN.2": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 4,
"EAL 3": 1,
"EAL2": 1,
"EAL3": 1
}
},
"cc_sfr": {
"FAU": {
"FAU_GEN.1": 7,
"FAU_GEN.1.1": 1,
"FAU_GEN.1.2": 1,
"FAU_SAR.1": 5,
"FAU_SAR.1.1": 1
},
"FDP": {
"FDP_ACC.1": 8,
"FDP_DAU.1": 6,
"FDP_DAU.1.1": 1,
"FDP_DAU.1.2": 1,
"FDP_IFC": 28,
"FDP_IFC.1": 12,
"FDP_IFF": 42,
"FDP_IFF.1": 3,
"FDP_IFF.4": 1,
"FDP_IFF.5": 8,
"FDP_IFF.5.1": 1,
"FDP_RIP": 11,
"FDP_RIP.1": 1,
"FDP_SDI.1": 1,
"FDP_SDI.2": 6,
"FDP_SDI.2.1": 1,
"FDP_SDI.2.2": 1,
"FDP_UCT": 16,
"FDP_UIT": 16
},
"FIA": {
"FIA_ATD.1": 10,
"FIA_ATD.1.1": 1,
"FIA_UAU.1": 6,
"FIA_UAU.1.1": 1,
"FIA_UAU.1.2": 1,
"FIA_UAU.2": 5,
"FIA_UAU.2.1": 1,
"FIA_UAU.6": 4,
"FIA_UAU.6.1": 1,
"FIA_UID.1": 10,
"FIA_UID.1.1": 1,
"FIA_UID.1.2": 1,
"FIA_UID.2": 7,
"FIA_UID.2.1": 1,
"FIA_USB": 17
},
"FMT": {
"FMT_MSA.3": 3,
"FMT_SMR.1": 1,
"FMT_SMR.2": 9
},
"FPR": {
"FPR_ANO.1": 6,
"FPR_ANO.1.1": 1,
"FPR_UNL": 10,
"FPR_UNL.1": 1
},
"FPT": {
"FPT_ITT.1": 7,
"FPT_ITT.1.1": 1,
"FPT_RCV.1": 6,
"FPT_RCV.1.1": 1,
"FPT_RCV.4": 6,
"FPT_RCV.4.1": 1,
"FPT_SSL.3": 1,
"FPT_SSL.4": 1,
"FPT_STM.1": 2,
"FPT_TST.1": 5,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1
},
"FTA": {
"FTA_SSL.3": 5,
"FTA_SSL.3.1": 1,
"FTA_SSL.4": 7,
"FTA_SSL.4.1": 1,
"FTA_TSE.1": 6,
"FTA_TSE.1.1": 1
},
"FTP": {
"FTP_ITC.1": 8,
"FTP_TRP": 29,
"FTP_TRP.1": 8
}
},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"TLS": {
"TLS": {
"TLS": 2
}
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA2": {
"SHA256": 6
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {},
"symmetric_crypto": {
"DES": {
"DES": {
"DES": 29
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"st_metadata": {
"/Author": "Niels Menke, Kai Reinhard, Melanie Volkamer, Dr. S\u00f6nke Maseberg, Florian Heinecke, Ibrahim Rabah, Jan Schirrmacher, Wolfgang Jung, Tobias Pressel",
"/CreationDate": "D:20210528013617-07\u002700\u0027",
"/Creator": "Microsoft Word",
"/Keywords": "remote Voting, eVoting, Online Wahlen, elektronische Wahlen",
"/ModDate": "D:20210528013617-07\u002700\u0027",
"/Producer": "macOS Version 11.3.1 (Build 20E241) Quartz PDFContext",
"/Subject": "1.10",
"/Title": "Security Target Polyas CORE zu Common Criteria Protection Profile BSI-PP-0037",
"pdf_file_size_bytes": 1705361,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 87
}
},
"protection_profile_links": {
"_type": "Set",
"elements": [
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0037b.pdf"
]
},
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2a_pdf.pdf",
"scheme": "DE",
"security_level": {
"_type": "Set",
"elements": [
"ALC_DVS.1",
"EAL2+",
"ALC_LCD.1",
"ALC_CMS.3",
"ALC_CMC.3"
]
},
"st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/0862V2b_pdf.pdf",
"state": {
"_type": "sec_certs.sample.cc.CCCertificate.InternalState",
"cert": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "0f9fe17feefb6f7d1797144601e734bcace221538f789fc0516f368d34fc0830",
"txt_hash": "add18825293a4725af39de79b681d2ed5fb25e5455ebd8da8392a5db1a623535"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "e7784fd3497a5b010e878c94c22adce7d6fc8765c1d25c780d3474bccb142a26",
"txt_hash": "11e4f69baa936d914ddf52dfd3b18905ea48f5ae0b72f1578b8f7d5181eb561c"
},
"st": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "22fc3ceeaa814cf67dd0c6111eddf0d01ca27980d981d362bff887154ce02be2",
"txt_hash": "58130e9868ce5c8c4c1d22e7ba6a9b92fddf3f6d90742527459b0b0c7d353817"
}
},
"status": "active"
}