secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.

CSV information

Status active
Valid from 24.02.2026
Valid until 23.02.2031
Scheme 🇩🇪 DE
Manufacturer Secunet Security Networks AG
Category Other Devices and Systems
Security level ALC_FLR.2, ALC_TAT.1, ADV_FSP.4, ADV_TDS.3, AVA_VAN.5, ADV_IMP.1, EAL3+
Protection profiles

Heuristics summary

Certificate ID: BSI-DSZ-CC-1044-V9-2026

Certificate

certificate file processing did not finish successfully.
Download pdf: OK
Convert pdf to text: OK
Extract keywords: ERROR

Extracted keywords

Security level
EAL 3, EAL 5, EAL 4, EAL 2
Security Assurance Requirements (SAR)
ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, ALC_TAT.1, ALC_FLR.2, ALC_FLR, AVA_VAN.5
Protection profiles
BSI-CC-PP-0097-V2-2020-MA-02
Certificates
BSI-DSZ-CC-1044-V9-2026

Standards
ISO/IEC 15408, ISO/IEC 18045

Certification report

Extracted keywords

Symmetric Algorithms
AES, AES-128, AES-256, AES-, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512
Asymmetric Algorithms
RSA-2048, RSA-3072, ECDH, ECDSA, ECC, Diffie-Hellman, DH
Hash functions
SHA-1, SHA-256, SHA256, SHA-384, SHA-2
Schemes
Key Exchange, AEAD
Protocols
TLS, TLS v1.2, TLSv1.2, IKEv2, IKE, IPsec, VPN
Elliptic Curves
P-256, NIST P-256
Block cipher modes
CBC, GCM

Operating System name
STARCOS 3

Security level
EAL 3, EAL 5, EAL 4, EAL 2, EAL 1, EAL 5+, EAL 6
Claims
OE.NK
Security Assurance Requirements (SAR)
ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, ALC_TAT.1, ALC_FLR.2, ALC_FLR, ALC_CMS.4, ALC_CMS, AVA_VAN.5
Security Functional Requirements (SFR)
FDP_ITC, FDP_UIT
Protection profiles
BSI-CC-PP-0097-V2-2020-MA-02, BSI-CC-PP-0097-2021
Certificates
BSI-DSZ-CC-1044-V9-2026, BSI-DSZ-CC-1044-V8-2025, BSI-DSZ-CC-1044-V8-
Evaluation facilities
SRC Security Research & Consulting

Standards
FIPS180-4, FIPS 180-4, FIPS186-4, FIPS 186-4, FIPS 197, FIPS PUB 180-4, FIPS197, PKCS#1, PKCS#12, AIS 34, AIS 20, AIS 32, RFC8017, RFC-5639, RFC5639, RFC-8017, RFC-6931, RFC3526, RFC7296, RFC-7296, RFC-6954, RFC-5246, RFC-3268, RFC-4492, RFC-3526, RFC 7027, RFC-8247, RFC-2404, RFC-2104, RFC4055, RFC5280, RFC7292, RFC-4868, RFC-3602, RFC-4303, RFC-4301, RFC-5289, RFC-5116, RFC-4106, RFC-4880, RFC2104, RFC 2104, RFC2404, RFC3268, RFC 3268, RFC3602, RFC4106, RFC4301, RFC4303, RFC4346, RFC4868, RFC4880, RFC5246, RFC5289, RFC5996, RFC7027, RFC8247, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, X.509
Technical reports
BSI TR-03111, BSI TR-03116-1, BSI TR-03154, BSI TR-03155, BSI 7148

File metadata

Title Zertifizierungsreport BSI-DSZ-CC-1044-V9-2026
Subject Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026
Keywords "Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026"
Author Bundesamt für Sicherheit in der Informationstechnik
Pages 35

Frontpage

Certificate ID BSI-DSZ-CC-1044-V9-2026
Certified item secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0
Certification lab BSI
Developer secunet Security Networks AG

References

Outgoing

Security target

Extracted keywords

Symmetric Algorithms
AES, AES-128, AES-, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512
Asymmetric Algorithms
RSA-2048, RSA-3072, ECDH, ECDSA, ECC, Diffie-Hellman, DH
Hash functions
SHA-1, SHA-384, SHA-256, SHA256, SHA-2
Schemes
Key Exchange, AEAD
Protocols
SSH, TLS, TLS v1.2, TLS 1.2, IKEv2, IKE, IPsec, VPN
Randomness
DRBG, RNG
Libraries
OpenSSL, BouncyCastle
Block cipher modes
CBC, GCM

Operating System name
STARCOS 3, STARCOS
Vendor
Giesecke & Devrient, Giesecke+Devrient

Security level
EAL 3+, EAL 3, EAL3, EAL5+, EAL6, EAL 3 augmented
Claims
OE.NK
Security Assurance Requirements (SAR)
ADV_TDS, ADV_FSP.4, ADV_TDS.3, ADV_IMP.1, ADV_IMP, ADV_ARC.1, ADV_FSP, ADV_ARC, AGD_ADV, AGD_DEL, AGD_OPE.1, AGD_PRE.1, ALC_TAT.1, ALC_FLR.2, ALC_CMC.3, ALC_CMS.3, ALC_DEL.1, ALC_DVS.1, ALC_LCD.1, ALC_CMS, ALC_TAT, ALC_CMC, ALC_CMC.4, ALC_DEL, ALC_DVS, ALC_FLR, ALC_LCD, ALC_MOR, ALC_CMC_SIE, ALC_CMS_SIE, ALC_DVS_SIE, ALC_LCD_SIE, ALC_TAT_SIE, ATE_IND, ATE_FUN, ATE_IMP, ATE_IND_DEV, ATE_COV, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, ATE_DPT, AVA_CCA, AVA_VAN.5, AVA_VAN, AVA_VAN.3, AVA_ACC, ASE_INT.1, ASE_CCL.1, ASE_SPD.1, ASE_OBJ.2, ASE_ECD.1, ASE_REQ.2, ASE_TSS.1
Security Functional Requirements (SFR)
FCS_COP, FCS_CKM.1, FCS_CKM, FDP_ACF, FDP_ITC, FDP_UIT, FDP_ITC.2, FMT_MTD.1, FPT_TDC, FTP_ITC, FTP_TRP
Protection profiles
BSI-CC-PP-0097, BSI-CC-PP-0098, BSI-CC-PP-0082-V4
Certificates
BSI-DSZ-CC-1044-V2-2019, BSI-DSZ-CC-1044-V3-, BSI-DSZ-CC-1044-V4-2021, BSI-DSZ-CC-1044-V5-2022, BSI-DSZ-CC-1044-V6-2022, BSI-DSZ-CC-1044-V7-2023-MA-02, BSI-DSZ-CC-1044-V8-2025, BSI-DSZ-CC-1044-, BSI-DSZ-CC-1044-2019, BSI-DSZ-CC-1128-V5-, BSI-DSZ-CC-1044-V7-2023, BSI-DSZ-CC-1128-V6-, BSI-DSZ-CC-1044-V7-2023-MA-01, BSI-DSZ-CC-1128-, BSI-DSZ-CC-1135-2020, BSI-DSZ-CC-1209-2023, BSI-DSZ-CC-1128, BSI-DSZ-CC-1209, BSI-DSZ-CC-1209-V2-2025, BSI-DSZ-CC-1044-V8-
Evaluation facilities
atsec, Deutsche Telekom Security, SRC Security Research & Consulting, T-Systems International

Side-channel analysis
JIL

Standards
FIPS 180-4, FIPS186-4, FIPS 197, FIPS PUB 180-4, FIPS180-4, FIPS197, NIST SP 800-90A, PKCS#1, PKCS#12, PKCS12, PKCS #12, AIS 19, AIS20, AIS14, AIS19, AIS32, AIS 32, AIS34, AIS 34, RFC-8017, RFC-5639, RFC5639, RFC-6931, RFC-3526, RFC-7296, RFC-6954, RFC-5246, RFC-3268, RFC-4492, RFC7027, RFC-2404, RFC-2104, RFC4055, RFC5280, RFC7292, RFC-4868, RFC-3602, RFC-4303, RFC-4301, RFC-5289, RFC-5116, RFC-4106, RFC-4880, RFC 2404, RFC 4868, RFC5996, RFC 5996, RFC 3447, RFC2131, RFC 2131, RFC3602, RFC 3602, RFC4303, RFC 4303, RFC4301, RFC 4301, RFC3526, RFC 3526, RFC4346, RFC 4346, RFC5246, RFC 5246, RFC2104, RFC 2104, RFC3268, RFC 3268, RFC 4492, RFC5289, RFC 5289, RFC 4055, RFC 5280, RFC2404, RFC4868, RFC7296, RFC 7296, RFC8017, RFC 8017, RFC5116, RFC4880, RFC3279, RFC5652, RFC 5652, RFC5751, RFC 5751, RFC 2045, RFC 2046, RFC 2047, RFC 2048, RFC 2049, RFC5083, RFC 5083, RFC5084, RFC 5084, RFC4106, X.509, CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003
Technical reports
BSI TR-03116-1, BSI TR-03154, BSI TR-03155, BSI TR-03157, BSI 07, BSI 27, BSI 11, BSI 17, BSI 10, BSI 09

File metadata

Author SRC
Pages 85

References

Outgoing

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

BSI-DSZ-CC-1044-V9-2026

Extracted SARs

ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_CMC.4, ALC_CMS.3, ALC_DEL.1, ALC_DVS.1, ALC_FLR.2, ALC_LCD.1, ALC_TAT.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.5

Similar certificates

Name Certificate ID
secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0 BSI-DSZ-CC-1209-V3-2026 Compare
secunet konnektor 2.0.0 und 2.0.1, Version 5.50.1:2.0.0 und 5.50.1:2.0.1 BSI-DSZ-CC-1044-V7-2023 Compare
secunet konnektor 2.0.0 und 2.1.0 Version 5.70.4:2.0.0 und 5.70.4:2.1.0 BSI-DSZ-CC-1209-V2-2025 Compare
secunet konnektor 2.0.0 und 2.1.0, Version 5.70.4:2.0.0 und 5.70.4:2.1.0 BSI-DSZ-CC-1044-V8-2025 Compare
- Kanguru Defender Elite 200 with Kanguru Defender Manager Elite 200, Firmware Version 02.03.10, KDME200 v2.0.0.0-2/3... BSI-DSZ-CC-0772-2014 Compare
secunet konnektor 2.1.0, Version 5.1.2:2.1.0 BSI-DSZ-CC-1202-2022 Compare
secunet konnektor 2.1.0, Version 5.1.2:2.1.0 BSI-DSZ-CC-1128-V5-2022 Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-3110-2025-08-2500053-01-CR Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-3110-2025-08-2500053-01-CR Compare
NCR E10 New Generation FCR 2.0 (FCR Application Version 2.0, OpenSSL Version 1.0.2d Secure-IC firmware and hardware c... 21.0.03/TSE-CCCS-48 Compare
secunet konnektor 2.0.0, Version 5.1.2:2.0.0 BSI-DSZ-CC-1044-V6-2022 Compare
secunet konnektor 2.0.0, Version 5.1.2:2.0.0 BSI-DSZ-CC-1201-2022 Compare
secunet konnektor 2.1.0, Version 3.5.0:2.1.0 BSI-DSZ-CC-1128-V2-2020 Compare
secunet Konnektor 2.1.0, Version 5.50.1:2.1.0 BSI-DSZ-CC-1128-V6-2023 Compare
secunet konnektor 2.1.0, Version 5.0.5:2.1.0 BSI-DSZ-CC-1128-V4-2022 Compare
secunet konnektor 2.1.0, Version 4.1.3:2.1.0 BSI-DSZ-CC-1174-2021 Compare
secunet konnektor 2.1.0, Version 5.50.1:2.1.0 BSI-DSZ-CC-1218-2023 Compare
secunet Konnektor 2.1.0, Version 3.5.0:2.1.0 BSI-DSZ-CC-1157-2020 Compare
secunet konnektor 2.1.0, Version 4.1.3:2.1.0 BSI-DSZ-CC-1128-V3-2021 Compare
secunet konnektor 2.1.0, Version 5.0.5:2.1.0 BSI-DSZ-CC-1190-2022 Compare
NPCT6xx TPM 2.0 Hardware version FB5C85D and FB5C85E, Firmware version 1.3.0.1, 1.3.1.0 and 1.3.2.8 ANSSI-CC-2017/55 Compare
NXP JCOP 8.x/9.x on SN300 B2 Secure Element, versions JCOP 8.0 R1.38.0.1, JCOP 8.1 R1.06.0.1, JCOP 9.0 R1.07.0.1, JCO... NSCIB-CC-2200030-02-CR Compare
secunet konnektor 2.0.0, Version 4.1.3:2.0.0 BSI-DSZ-CC-1044-V4-2021 Compare
NXP JCOP 8.x on SE310 A0 Secure Element, versions JCOP 8.0 R1.38.0.1, JCOP 8.1 R1.06.0.1 and JCOP 8.2 R1.06.0.1 NSCIB-CC-2200031-02-CR Compare
secunet konnektor 2.0.0, Version 4.1.3:2.0.0 (PTV4 - EBK) BSI-DSZ-CC-1163-2021 Compare
HaltDos Mitigation Platform version 1.1 comprising of hdInspector version 1.0, hdDeviceUI version 2.0, hdDetectionSer... None Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-2200043-05-CR Compare
Showing 5 out of 27.

Scheme data

Cert Id BSI-DSZ-CC-1044-V9-2026
Product secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
Vendor secunet Security Networks AG
Certification Date 24.02.2026
Category eHealth
Url https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1044.html
Enhanced
Product secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.
Applicant secunet Security Networks AG Kurfürstenstraße 58 45138 Essen
Evaluation Facility SRC Security Research & Consulting GmbH
Assurance Level EAL3,AVA_VAN.5,ALC_TAT.1,ALC_FLR.2,ADV_TDS.3,ADV_IMP.1,ADV_FSP.4
Protection Profile Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097-V2-2020-MA-02, Version 1.6.7, vom 15.03.2023
Certification Date 24.02.2026
Expiration Date 23.02.2031
Entries [frozendict({'id': 'BSI-DSZ-CC-1044-V9-2026 (Ausstellungsdatum / Certification Date 24.02.2026, gültig bis / valid until 23.02.2031)', 'description': ') is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations'}), frozendict({'id': 'BSI-DSZ-CC-1044-V8-2025 (Ausstellungsdatum / Certification Date 10.06.2025, gültig bis / valid until 09.06.2030)', 'description': ') is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V7-2023 (Ausstellungsdatum / Certification Date 19.10.2023, gültig bis / valid until 18.10.2028)', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V6-2022-MA-01 (Ausstellungsdatum / Certification Date 21.11.2022) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V6-2022 (Ausstellungsdatum / Certification Date 09.09.2022, gültig bis / valid until 08.09.2027)', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V5-2022 (Ausstellungsdatum / Certification Date 08.04.2022, gültig bis / valid until 07.04.2027)', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V4-2021 (Ausstellungsdatum / Certification Date 16.07.2021, gültig bis / valid until 15.07.2026)', 'description': ')'}), frozendict({'id': 'BSI-DSZ-CC-1044-V3-2020 (Ausstellungsdatum / Certification Date 06.11.2020, gültig bis / valid until 05.11.2025)', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.'}), frozendict({'id': 'BSI-DSZ-CC-1044-V2-2019-MA-01 (Ausstellungsdatum / Certification Date 10.06.2020) Maintenance Report', 'description': 'is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration."'}), frozendict({'id': 'BSI-DSZ-CC-1044-V2-2019 (Ausstellungsdatum / Certification Date 13.11.2019, gültig bis / valid until 12.11.2024)', 'description': 'Certificate'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019-MA-02 (Ausstellungsdatum / Certification Date 19.09.2019) Maintanance Report', 'description': 'Maintanance Report'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019_MA-01 (Ausstellungsdatum / Certification Date 06.06.2019) Maintenance Report', 'description': 'The change compared to the certified product was made at the level of adjustment of the guidance document.'}), frozendict({'id': 'BSI-DSZ-CC-1044-2019 (Ausstellungsdatum / Certification Date 25.01.2019, gültig bis / valid until 24.01.2024) Zertifizierungsreport / Certification Report', 'description': 'Certificate'})]
Report Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9a_pdf.pdf?__blob=publicationFile&v=2
Target Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9b_pdf.pdf?__blob=publicationFile&v=3
Cert Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9c_pdf.pdf?__blob=publicationFile&v=2
Description Target of evaluation (TOE) is the product secunet konnektor 2.0.0 provided by secunet Security Networks AG. The TOE is a pure software TOE consisting of the Netzkonnektor as specified in the protection profile Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097, Version 1.5, 27.04.2018, Bundesamt für Sicherheit in der Informationstechnik (BSI)
Subcategory Software

References

Loading...

Updates Feed

  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Other Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9c_pdf.pdf",
  "dgst": "52226eebf57c42fc",
  "heuristics": {
    "_type": "sec_certs.sample.cc_eucc_common.Heuristics",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1044-V9-2026",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL3+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_DPT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.0.0",
        "2.1",
        "2.1.0",
        "6.0.8"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": {
      "_type": "Set",
      "elements": [
        "19e2d2b1593c97a5"
      ]
    },
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1044-V8-2025"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1044-V8-2025",
          "BSI-DSZ-CC-1044-V7-2023"
        ]
      }
    },
    "scheme_data": {
      "category": "eHealth",
      "cert_id": "BSI-DSZ-CC-1044-V9-2026",
      "certification_date": "2026-02-24",
      "enhanced": {
        "applicant": "secunet Security Networks AG Kurf\u00fcrstenstra\u00dfe 58 45138 Essen",
        "assurance_level": "EAL3,AVA_VAN.5,ALC_TAT.1,ALC_FLR.2,ADV_TDS.3,ADV_IMP.1,ADV_FSP.4",
        "cert_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9c_pdf.pdf?__blob=publicationFile\u0026v=2",
        "certification_date": "2026-02-24",
        "description": "Target of evaluation (TOE) is the product secunet konnektor 2.0.0 provided by secunet Security Networks AG. The TOE is a pure software TOE consisting of the Netzkonnektor as specified in the protection profile Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097, Version 1.5, 27.04.2018, Bundesamt f\u00fcr Sicherheit in der Informationstechnik (BSI)",
        "entries": [
          {
            "description": ") is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations",
            "id": "BSI-DSZ-CC-1044-V9-2026 (Ausstellungsdatum / Certification Date 24.02.2026, g\u00fcltig bis / valid until 23.02.2031)"
          },
          {
            "description": ") is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097-V2-2020-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configurations",
            "id": "BSI-DSZ-CC-1044-V8-2025 (Ausstellungsdatum / Certification Date 10.06.2025, g\u00fcltig bis / valid until 09.06.2030)"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V7-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V7-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023) Maintenance Report"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V7-2023 (Ausstellungsdatum / Certification Date 19.10.2023, g\u00fcltig bis / valid until 18.10.2028)"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V6-2022-MA-01 (Ausstellungsdatum / Certification Date 21.11.2022) Maintenance Report"
          },
          {
            "description": "The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V6-2022 (Ausstellungsdatum / Certification Date 09.09.2022, g\u00fcltig bis / valid until 08.09.2027)"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V5-2022 (Ausstellungsdatum / Certification Date 08.04.2022, g\u00fcltig bis / valid until 07.04.2027)"
          },
          {
            "description": ")",
            "id": "BSI-DSZ-CC-1044-V4-2021 (Ausstellungsdatum / Certification Date 16.07.2021, g\u00fcltig bis / valid until 15.07.2026)"
          },
          {
            "description": "The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor as specified in the Protection Profile BSI-CC-PP-0097. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.",
            "id": "BSI-DSZ-CC-1044-V3-2020 (Ausstellungsdatum / Certification Date 06.11.2020, g\u00fcltig bis / valid until 05.11.2025)"
          },
          {
            "description": "is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration.\"",
            "id": "BSI-DSZ-CC-1044-V2-2019-MA-01 (Ausstellungsdatum / Certification Date 10.06.2020) Maintenance Report"
          },
          {
            "description": "Certificate",
            "id": "BSI-DSZ-CC-1044-V2-2019 (Ausstellungsdatum / Certification Date 13.11.2019, g\u00fcltig bis / valid until 12.11.2024)"
          },
          {
            "description": "Maintanance Report",
            "id": "BSI-DSZ-CC-1044-2019-MA-02 (Ausstellungsdatum / Certification Date 19.09.2019) Maintanance Report"
          },
          {
            "description": "The change compared to the certified product was made at the level of adjustment of the guidance document.",
            "id": "BSI-DSZ-CC-1044-2019_MA-01 (Ausstellungsdatum / Certification Date 06.06.2019) Maintenance Report"
          },
          {
            "description": "Certificate",
            "id": "BSI-DSZ-CC-1044-2019 (Ausstellungsdatum / Certification Date 25.01.2019, g\u00fcltig bis / valid until 24.01.2024) Zertifizierungsreport / Certification Report"
          }
        ],
        "evaluation_facility": "SRC Security Research \u0026 Consulting GmbH",
        "expiration_date": "2031-02-23",
        "product": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.",
        "protection_profile": "Common Criteria Schutzprofil (Protection Profile), Schutzprofil 1: Anforderungen an den Netzkonnektor, BSI-CC-PP-0097-V2-2020-MA-02, Version 1.6.7, vom 15.03.2023",
        "report_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9a_pdf.pdf?__blob=publicationFile\u0026v=2",
        "target_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1044V9b_pdf.pdf?__blob=publicationFile\u0026v=3"
      },
      "product": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.",
      "subcategory": "Software",
      "url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1044.html",
      "vendor": "secunet Security Networks AG"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1044-V5-2022",
          "BSI-DSZ-CC-1044-V2-2019",
          "BSI-DSZ-CC-1044-2019",
          "BSI-DSZ-CC-1044-V8-2025",
          "BSI-DSZ-CC-1044-V6-2022",
          "BSI-DSZ-CC-1209-V2-2025",
          "BSI-DSZ-CC-1135-2020",
          "BSI-DSZ-CC-1044-V7-2023",
          "BSI-DSZ-CC-1044-V4-2021"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1044-V5-2022",
          "BSI-DSZ-CC-1157-2020",
          "BSI-DSZ-CC-1044-V2-2019",
          "BSI-DSZ-CC-1044-2019",
          "BSI-DSZ-CC-1044-V8-2025",
          "BSI-DSZ-CC-1218-2023",
          "BSI-DSZ-CC-1184-2022",
          "BSI-DSZ-CC-1163-2021",
          "BSI-DSZ-CC-1044-V6-2022",
          "BSI-DSZ-CC-1209-V2-2025",
          "BSI-DSZ-CC-1135-2020",
          "BSI-DSZ-CC-1190-2022",
          "BSI-DSZ-CC-1044-V7-2023",
          "BSI-DSZ-CC-1044-V4-2021",
          "BSI-DSZ-CC-1174-2021"
        ]
      }
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "Secunet Security Networks AG",
  "manufacturer_web": "https://www.secunet.com/en/",
  "name": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.",
  "not_valid_after": "2031-02-23",
  "not_valid_before": "2026-02-24",
  "pdf_data": {
    "_type": "sec_certs.sample.cc_eucc_common.PdfData",
    "cert_filename": "1044V9c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1044-V9-2026": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0097-V2-2020-MA-02": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_FSP.4": 1,
          "ADV_IMP.1": 1,
          "ADV_TDS.3": 1
        },
        "ALC": {
          "ALC_FLR": 1,
          "ALC_FLR.2": 1,
          "ALC_TAT.1": 1
        },
        "AVA": {
          "AVA_VAN.5": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 3": 1,
          "EAL 4": 1,
          "EAL 5": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": null,
    "report_filename": "1044V9a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cert_id": "BSI-DSZ-CC-1044-V9-2026",
        "cert_item": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0",
        "cert_lab": "BSI",
        "developer": "secunet Security Networks AG",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) zu (.+?) der (.*)"
        ]
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 4
          },
          "ECDH": {
            "ECDH": 5
          },
          "ECDSA": {
            "ECDSA": 14
          }
        },
        "FF": {
          "DH": {
            "DH": 7,
            "Diffie-Hellman": 4
          }
        },
        "RSA": {
          "RSA-2048": 1,
          "RSA-3072": 1
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1044-V8-": 1,
          "BSI-DSZ-CC-1044-V8-2025": 2,
          "BSI-DSZ-CC-1044-V9-2026": 18
        }
      },
      "cc_claims": {
        "OE": {
          "OE.NK": 4
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0097-2021": 1,
          "BSI-CC-PP-0097-V2-2020-MA-02": 2
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_FSP.4": 4,
          "ADV_IMP.1": 4,
          "ADV_TDS.3": 4
        },
        "ALC": {
          "ALC_CMS": 1,
          "ALC_CMS.4": 1,
          "ALC_FLR": 3,
          "ALC_FLR.2": 4,
          "ALC_TAT.1": 4
        },
        "AVA": {
          "AVA_VAN.5": 6
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 3,
          "EAL 3": 4,
          "EAL 4": 4,
          "EAL 5": 1,
          "EAL 5+": 1,
          "EAL 6": 1
        }
      },
      "cc_sfr": {
        "FDP": {
          "FDP_ITC": 2,
          "FDP_UIT": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "GCM": {
          "GCM": 8
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 3,
          "IKEv2": 13
        },
        "IPsec": {
          "IPsec": 9
        },
        "TLS": {
          "TLS": {
            "TLS": 22,
            "TLS v1.2": 7,
            "TLSv1.2": 1
          }
        },
        "VPN": {
          "VPN": 13
        }
      },
      "crypto_scheme": {
        "AEAD": {
          "AEAD": 1
        },
        "KEX": {
          "Key Exchange": 6
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "NIST P-256": 4,
          "P-256": 4
        }
      },
      "eval_facility": {
        "SRC": {
          "SRC Security Research \u0026 Consulting": 4
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 8,
            "SHA-384": 3,
            "SHA256": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "STARCOS": {
          "STARCOS 3": 2
        }
      },
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 32": 1,
          "AIS 34": 2
        },
        "FIPS": {
          "FIPS 180-4": 10,
          "FIPS 186-4": 1,
          "FIPS 197": 4,
          "FIPS PUB 180-4": 1,
          "FIPS180-4": 5,
          "FIPS186-4": 6,
          "FIPS197": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        },
        "PKCS": {
          "PKCS#1": 3,
          "PKCS#12": 1
        },
        "RFC": {
          "RFC 2104": 1,
          "RFC 3268": 1,
          "RFC 7027": 1,
          "RFC-2104": 3,
          "RFC-2404": 1,
          "RFC-3268": 3,
          "RFC-3526": 1,
          "RFC-3602": 2,
          "RFC-4106": 1,
          "RFC-4301": 3,
          "RFC-4303": 3,
          "RFC-4492": 2,
          "RFC-4868": 1,
          "RFC-4880": 1,
          "RFC-5116": 1,
          "RFC-5246": 4,
          "RFC-5289": 1,
          "RFC-5639": 5,
          "RFC-6931": 1,
          "RFC-6954": 2,
          "RFC-7296": 3,
          "RFC-8017": 3,
          "RFC-8247": 1,
          "RFC2104": 1,
          "RFC2404": 1,
          "RFC3268": 1,
          "RFC3526": 2,
          "RFC3602": 1,
          "RFC4055": 1,
          "RFC4106": 1,
          "RFC4301": 1,
          "RFC4303": 1,
          "RFC4346": 1,
          "RFC4868": 1,
          "RFC4880": 1,
          "RFC5246": 1,
          "RFC5280": 1,
          "RFC5289": 1,
          "RFC5639": 2,
          "RFC5996": 1,
          "RFC7027": 1,
          "RFC7292": 1,
          "RFC7296": 3,
          "RFC8017": 3,
          "RFC8247": 1
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8,
            "AES-": 1,
            "AES-128": 1,
            "AES-256": 1
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 10,
            "HMAC-SHA-256": 1,
            "HMAC-SHA-384": 1,
            "HMAC-SHA-512": 1
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1,
          "BSI TR-03111": 2,
          "BSI TR-03116-1": 1,
          "BSI TR-03154": 1,
          "BSI TR-03155": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026\"",
      "/Subject": "Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1044-V9-2026",
      "/Title": "Zertifizierungsreport BSI-DSZ-CC-1044-V9-2026",
      "pdf_file_size_bytes": 411320,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 35
    },
    "st_filename": "1044V9b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 6
          },
          "ECDH": {
            "ECDH": 5
          },
          "ECDSA": {
            "ECDSA": 15
          }
        },
        "FF": {
          "DH": {
            "DH": 7,
            "Diffie-Hellman": 4
          }
        },
        "RSA": {
          "RSA-2048": 1,
          "RSA-3072": 1
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1044-": 1,
          "BSI-DSZ-CC-1044-2019": 1,
          "BSI-DSZ-CC-1044-V2-2019": 1,
          "BSI-DSZ-CC-1044-V3-": 1,
          "BSI-DSZ-CC-1044-V4-2021": 1,
          "BSI-DSZ-CC-1044-V5-2022": 1,
          "BSI-DSZ-CC-1044-V6-2022": 1,
          "BSI-DSZ-CC-1044-V7-2023": 1,
          "BSI-DSZ-CC-1044-V7-2023-MA-01": 1,
          "BSI-DSZ-CC-1044-V7-2023-MA-02": 3,
          "BSI-DSZ-CC-1044-V8-": 1,
          "BSI-DSZ-CC-1044-V8-2025": 1,
          "BSI-DSZ-CC-1128": 1,
          "BSI-DSZ-CC-1128-": 2,
          "BSI-DSZ-CC-1128-V5-": 1,
          "BSI-DSZ-CC-1128-V6-": 1,
          "BSI-DSZ-CC-1135-2020": 1,
          "BSI-DSZ-CC-1209": 1,
          "BSI-DSZ-CC-1209-2023": 3,
          "BSI-DSZ-CC-1209-V2-2025": 1
        }
      },
      "cc_claims": {
        "OE": {
          "OE.NK": 17
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0082-V4": 1,
          "BSI-CC-PP-0097": 3,
          "BSI-CC-PP-0098": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 2,
          "ADV_ARC.1": 1,
          "ADV_FSP": 1,
          "ADV_FSP.4": 3,
          "ADV_IMP": 3,
          "ADV_IMP.1": 3,
          "ADV_TDS": 4,
          "ADV_TDS.3": 3
        },
        "AGD": {
          "AGD_ADV": 3,
          "AGD_DEL": 4,
          "AGD_OPE.1": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_CMC": 3,
          "ALC_CMC.3": 2,
          "ALC_CMC.4": 2,
          "ALC_CMC_SIE": 1,
          "ALC_CMS": 5,
          "ALC_CMS.3": 2,
          "ALC_CMS_SIE": 1,
          "ALC_DEL": 2,
          "ALC_DEL.1": 4,
          "ALC_DVS": 3,
          "ALC_DVS.1": 4,
          "ALC_DVS_SIE": 1,
          "ALC_FLR": 1,
          "ALC_FLR.2": 6,
          "ALC_LCD": 3,
          "ALC_LCD.1": 4,
          "ALC_LCD_SIE": 1,
          "ALC_MOR": 1,
          "ALC_TAT": 5,
          "ALC_TAT.1": 6,
          "ALC_TAT_SIE": 1
        },
        "ASE": {
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_INT.1": 2,
          "ASE_OBJ.2": 1,
          "ASE_REQ.2": 1,
          "ASE_SPD.1": 1,
          "ASE_TSS.1": 1
        },
        "ATE": {
          "ATE_COV": 2,
          "ATE_COV.2": 1,
          "ATE_DPT": 1,
          "ATE_DPT.1": 1,
          "ATE_FUN": 8,
          "ATE_FUN.1": 1,
          "ATE_IMP": 3,
          "ATE_IND": 5,
          "ATE_IND.2": 1,
          "ATE_IND_DEV": 2
        },
        "AVA": {
          "AVA_ACC": 3,
          "AVA_CCA": 2,
          "AVA_VAN": 1,
          "AVA_VAN.3": 1,
          "AVA_VAN.5": 6
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 3": 1,
          "EAL 3 augmented": 1,
          "EAL 3+": 84,
          "EAL3": 1,
          "EAL5+": 1,
          "EAL6": 1
        }
      },
      "cc_sfr": {
        "FCS": {
          "FCS_CKM": 6,
          "FCS_CKM.1": 1,
          "FCS_COP": 14
        },
        "FDP": {
          "FDP_ACF": 2,
          "FDP_ITC": 2,
          "FDP_ITC.2": 1,
          "FDP_UIT": 2
        },
        "FMT": {
          "FMT_MTD.1": 1
        },
        "FPT": {
          "FPT_TDC": 10
        },
        "FTP": {
          "FTP_ITC": 3,
          "FTP_TRP": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "GCM": {
          "GCM": 7
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "BouncyCastle": {
          "BouncyCastle": 1
        },
        "OpenSSL": {
          "OpenSSL": 1
        }
      },
      "crypto_protocol": {
        "IKE": {
          "IKE": 4,
          "IKEv2": 14
        },
        "IPsec": {
          "IPsec": 16
        },
        "SSH": {
          "SSH": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 49,
            "TLS 1.2": 2,
            "TLS v1.2": 6
          }
        },
        "VPN": {
          "VPN": 25
        }
      },
      "crypto_scheme": {
        "AEAD": {
          "AEAD": 1
        },
        "KEX": {
          "Key Exchange": 3
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "DeutscheTelekom": {
          "Deutsche Telekom Security": 1
        },
        "SRC": {
          "SRC Security Research \u0026 Consulting": 112
        },
        "TSystems": {
          "T-Systems International": 1
        },
        "atsec": {
          "atsec": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 7,
            "SHA-384": 1,
            "SHA256": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {
        "com": {
          "com.com": 1
        }
      },
      "javacard_version": {},
      "os_name": {
        "STARCOS": {
          "STARCOS": 2,
          "STARCOS 3": 7
        }
      },
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 1
        },
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "other": {
          "JIL": 8
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 19": 2,
          "AIS 32": 1,
          "AIS 34": 1,
          "AIS14": 1,
          "AIS19": 1,
          "AIS20": 2,
          "AIS32": 1,
          "AIS34": 1
        },
        "CC": {
          "CCMB-2017-04-001": 2,
          "CCMB-2017-04-002": 2,
          "CCMB-2017-04-003": 2
        },
        "FIPS": {
          "FIPS 180-4": 14,
          "FIPS 197": 4,
          "FIPS PUB 180-4": 2,
          "FIPS180-4": 1,
          "FIPS186-4": 6,
          "FIPS197": 1
        },
        "NIST": {
          "NIST SP 800-90A": 2
        },
        "PKCS": {
          "PKCS #12": 1,
          "PKCS#1": 3,
          "PKCS#12": 2,
          "PKCS12": 1
        },
        "RFC": {
          "RFC 2045": 1,
          "RFC 2046": 1,
          "RFC 2047": 1,
          "RFC 2048": 1,
          "RFC 2049": 1,
          "RFC 2104": 1,
          "RFC 2131": 1,
          "RFC 2404": 2,
          "RFC 3268": 1,
          "RFC 3447": 1,
          "RFC 3526": 1,
          "RFC 3602": 1,
          "RFC 4055": 1,
          "RFC 4301": 1,
          "RFC 4303": 1,
          "RFC 4346": 1,
          "RFC 4492": 1,
          "RFC 4868": 2,
          "RFC 5083": 1,
          "RFC 5084": 1,
          "RFC 5246": 1,
          "RFC 5280": 1,
          "RFC 5289": 1,
          "RFC 5652": 1,
          "RFC 5751": 1,
          "RFC 5996": 1,
          "RFC 7296": 1,
          "RFC 8017": 1,
          "RFC-2104": 3,
          "RFC-2404": 1,
          "RFC-3268": 3,
          "RFC-3526": 2,
          "RFC-3602": 2,
          "RFC-4106": 1,
          "RFC-4301": 3,
          "RFC-4303": 3,
          "RFC-4492": 2,
          "RFC-4868": 1,
          "RFC-4880": 1,
          "RFC-5116": 1,
          "RFC-5246": 4,
          "RFC-5289": 1,
          "RFC-5639": 6,
          "RFC-6931": 1,
          "RFC-6954": 2,
          "RFC-7296": 5,
          "RFC-8017": 5,
          "RFC2104": 1,
          "RFC2131": 1,
          "RFC2404": 1,
          "RFC3268": 1,
          "RFC3279": 1,
          "RFC3526": 1,
          "RFC3602": 1,
          "RFC4055": 2,
          "RFC4106": 1,
          "RFC4301": 1,
          "RFC4303": 1,
          "RFC4346": 1,
          "RFC4868": 1,
          "RFC4880": 1,
          "RFC5083": 1,
          "RFC5084": 1,
          "RFC5116": 1,
          "RFC5246": 1,
          "RFC5280": 2,
          "RFC5289": 1,
          "RFC5639": 6,
          "RFC5652": 1,
          "RFC5751": 1,
          "RFC5996": 1,
          "RFC7027": 2,
          "RFC7292": 1,
          "RFC7296": 1,
          "RFC8017": 1
        },
        "X509": {
          "X.509": 7
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 10,
            "AES-": 2,
            "AES-128": 2
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 10,
            "HMAC-SHA-256": 2,
            "HMAC-SHA-384": 2,
            "HMAC-SHA-512": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 07": 1,
          "BSI 09": 1,
          "BSI 10": 2,
          "BSI 11": 1,
          "BSI 17": 1,
          "BSI 27": 1,
          "BSI TR-03116-1": 1,
          "BSI TR-03154": 1,
          "BSI TR-03155": 1,
          "BSI TR-03157": 2
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "GD": {
          "Giesecke \u0026 Devrient": 1,
          "Giesecke+Devrient": 1
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "SRC",
      "pdf_file_size_bytes": 1066437,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.rfc-editor.org/rfc/rfc4868.txt",
          "http://www.ietf.org/rfc/rfc5996.txt",
          "https://www.rfc-editor.org/rfc/rfc8017.txt",
          "https://github.com/nluedtke/linux_kernel_cves/blob/master/data/5.4/5.4_security.txt",
          "https://nvd.nist.gov/vuln/search/results?form_type=Advanced\u0026results_type=overview\u0026seach_type=all\u0026query=cpe:2.3:a:oracle:vm_virtualbox:6.1.16:*:*:*:*:*:*:*",
          "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
          "https://www.strongswan.org/",
          "https://nvd.nist.gov/vuln",
          "https://nvd.nist.gov/vuln/search/results?form_type=Advanced\u0026results_type=overview\u0026seach_type=all\u0026query=cpe:2.3:o:linux:linux_kernel:5.4.17:*:*:*:*:*:*:*",
          "http://mosquitto.org/",
          "http://www.ietf.org/rfc/rfc5652.txt",
          "https://www.intel.com/content/dam/www/public/us/en/documents/manuals/64-ia-32-architectures-software-developer-vol-2b-manual.pdf",
          "https://www.isc.org/downloads/bind/",
          "https://www.w3.org/TR/2008/REC-xmldsig-core-20080610/",
          "https://ark.intel.com/de/products/95592/Intel-Pentium-Processor-N4200-2M-Cache-up-to-2_5-GHz",
          "http://www.rfc-editor.org/rfc/rfc3447.txt",
          "http://www.ietf.org/rfc/rfc4303.txt",
          "http://www.ietf.org/rfc/rfc4301.txt",
          "https://wiki.strongswan.org/projects/strongswan/wiki/Swanctlconf",
          "https://www.rfc-editor.org/rfc/rfc2404.txt",
          "https://tools.ietf.org/html/rfc2131",
          "http://www.rfc-editor.org/rfc/rfc2404.txt",
          "https://www.rfc-editor.org/rfc/rfc4868.txt",
          "https://github.com/nluedtke/linux_kernel_cves/blob/master/data/5.4/5.4_CVEs.txt",
          "http://www.rfc-editor.org/rfc/rfc3526.txt",
          "https://www.openssl.org/",
          "https://www.rfc-editor.org/rfc/rfc4055.txt",
          "https://www.pdf-insecurity.org/pdf-dangerous-paths/attacks.html",
          "https://www.ietf.org/rfc/rfc5280.txt",
          "http://www.rfc-editor.org/rfc/rfc3602.txt"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 85
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": [
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0097V2b_pdf.pdf"
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_TAT.1",
      "ADV_FSP.4",
      "ALC_FLR.2",
      "AVA_VAN.5",
      "ADV_IMP.1",
      "ADV_TDS.3",
      "EAL3+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1044V9b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.cc_eucc_common.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": false,
      "json_hash": null,
      "pdf_hash": "88855fbc24723d5a714ab0bdb9fc1b2bc98dc507882867cc277457130a12e715",
      "txt_hash": "281d543b5dee21c0bdff565aecc4c38d5e16bdd3b8c456e4b9760245d8aac12c"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "acfd43d06764f9de3a83b49481eed5bdb8793f08cda8d1ff842a81cafdacf583",
      "txt_hash": "3dff5ee83a26619a01af7b4720724d55d9b4efe2137b5c82c8f20583a2226069"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "7e43942f7e45e814f1cbf72dcce04feab08a0a175d526576193a2b672ce46c15",
      "txt_hash": "501805fd9a3ee1e6d7bc9381a58c34aa6f0a45647f8567acef2b6151f055eb69"
    }
  },
  "status": "active"
}