IBM Enterprise PKCS#11 (EP11) Firmware identifier '2b638e8e' (4768)

CSV information

Status archived
Valid from 02.08.2019
Valid until 02.08.2024
Scheme 🇩🇪 DE
Manufacturer IBM Corporation
Category Other Devices and Systems
Security level EAL4

Heuristics summary

Certificate ID: BSI-DSZ-CC-1094-2019

Certificate

Extracted keywords

Security level
EAL 4, EAL 2
Certificates
BSI-DSZ-CC-1094-2019

Standards
PKCS#11, ISO/IEC 15408, ISO/IEC 18045

File metadata

Title Certification Report BSI-DSZ-CC-1094-2019
Subject Urkunde, Zertifikat
Keywords "Common Criteria, Certification, Zertifizierung, IBM Enterprise PKCS#11 (EP11) Firmware identifier 2b638e8e"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20190826112423+02'00'
Modification date D:20190906121520+02'00'
Pages 1
Creator Writer
Producer LibreOffice 6.1

Certification report

Extracted keywords

Symmetric Algorithms
AES, TDES
Asymmetric Algorithms
ECDH, ECDSA, DSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, SHA256, SHA-2
Schemes
MAC
Randomness
TRNG, DRBG, RNG
Elliptic Curves
secp256k1
Block cipher modes
ECB, CBC

Security level
EAL 4, EAL 2, EAL 1
Security Assurance Requirements (SAR)
ALC_FLR
Certificates
BSI-DSZ-CC-1094-2019, BSI-DSZ-CC-1002-2018, CC-1002-2018
Evaluation facilities
atsec

Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, Report, Version 2, 2019-07-10, Final Evaluation Technical Report, atsec information security GmbH (confidential document) [8] Configuration lists for the TOE: Configuration list of static content measured by SHA256, Version 1.0, 2016- 12-12, IBM (confidential document) EP11 configuration list BOE, Version 1, 2019-03-27, IBM (confidential document) EP11 configuration, BOE) for documentation files, Version 1, 2017-07-14, IBM (confidential document) Configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential, Notes for the configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential document) Hardware configuration list for IBM 4765 and 4767 EP11 HSMs, Version 1.0, 2017- 08-31, IBM

Standards
FIPS 46-3, FIPS 197, FIPS 180-4, FIPS 186-4, NIST SP 800-38A, NIST SP 800-90A, PKCS#11, PKCS#1, AIS 20, AIS 32, AIS 38, RFC 3447, RFC 5639, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, X.509
Technical reports
BSI TR-02102, BSI 7148

File metadata

Title Certification Report BSI-DSZ-CC-1094-2019
Subject Report BSI-DSZ-CC-1094 Zertifizierung
Keywords "Common Criteria, Certification, Zertifizierung, IBM Enterprise PKCS#11 (EP11) Firmware identifier 2b638e8e"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20190826112423+02'00'
Modification date D:20190910151840+02'00'
Pages 25
Creator Writer
Producer LibreOffice 6.1

Frontpage

Certificate ID BSI-DSZ-CC-1094-2019
Certified item IBM Enterprise PKCS#11 (EP11) Firmware identifier '2b638e8e' (4768
Certification lab BSI
Developer IBM Research & Development Germany

References

Outgoing
  • BSI-DSZ-CC-1002-2018 - archived - IBM Enterprise PKCS#11 Firmware FW IDs 'dada00eb' ((4767) and 'e41c1444' (4765)

Security target

Extracted keywords

Symmetric Algorithms
AES, TDES, TDEA, SEED, HMAC, CMAC
Asymmetric Algorithms
RSA 2048, ECDH, ECDSA, ECIES, ECC, DH, Diffie-Hellman, DSA
Hash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512, RIPEMD-160
Schemes
MAC, Key Exchange, Key Agreement, Key agreement
Protocols
SSL
Randomness
TRNG, DRBG, RNG
Elliptic Curves
P-192, P-224, P-256, P-384, P-521
Block cipher modes
ECB, CBC

Vendor
STM

Security level
EAL 4, EAL4
Protection profiles
BSI-CC-PP-0045-2009

Side-channel analysis
side-channel, Malfunction, malfunction

Standards
FIPS 197, FIPS 180-4, FIPS 186-4, FIPS 140-2, PKCS#11, PKCS1, PKCS12, PKCS11, PKCS 11, AIS 31, RFC 3394, RFC 5649, RFC 3447, RFC 8017, ISO/IEC 18031:2011, X.509

File metadata

Title IBM Enterprise PKCS11(on 4768) Security Target (EAL 4 )
Subject Security Policy [rev. 288]
Keywords IBM 4768 (hw. 00LV498PLH (3)); PCIeCC; XCP, Enterprise PKCS11 (EP11)
Author Visegrady, Tamas <tvi (at) zurich.ibm.com>
Creation date D:20190320220000+01'00'
Modification date D:20190320220000+01'00'
Pages 53
Creator IBM Research --- Zurich and IBM Boeblingen/Poughkeepsie
Producer pdfTeX

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

BSI-DSZ-CC-1094-2019

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Other Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094c_pdf.pdf",
  "dgst": "1f2b1fe6f29f21b7",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1094-2019",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL4",
    "extracted_sars": null,
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "11",
        "4768"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1002-2018"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1002-2018"
        ]
      }
    },
    "scheme_data": null,
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "IBM Corporation",
  "manufacturer_web": "https://www.ibm.com",
  "name": "IBM Enterprise PKCS#11 (EP11) Firmware identifier \u00272b638e8e\u0027 (4768)",
  "not_valid_after": "2024-08-02",
  "not_valid_before": "2019-08-02",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "1094c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1094-2019": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {},
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        },
        "PKCS": {
          "PKCS#11": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20190826112423+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, IBM Enterprise PKCS#11 (EP11) Firmware identifier 2b638e8e\"",
      "/ModDate": "D:20190906121520+02\u002700\u0027",
      "/Producer": "LibreOffice 6.1",
      "/Subject": "Urkunde, Zertifikat",
      "/Title": "Certification Report BSI-DSZ-CC-1094-2019",
      "pdf_file_size_bytes": 368630,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 1
    },
    "report_filename": "1094a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cc_security_level": "Common Criteria Part 3 conformant EAL 4",
        "cc_version": "Product specific Security Target Common Criteria Part 2 extended",
        "cert_id": "BSI-DSZ-CC-1094-2019",
        "cert_item": "IBM Enterprise PKCS#11 (EP11) Firmware identifier \u00272b638e8e\u0027 (4768",
        "cert_lab": "BSI",
        "developer": "IBM Research \u0026 Development Germany",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        ],
        "ref_protection_profiles": "None"
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDH": {
            "ECDH": 4
          },
          "ECDSA": {
            "ECDSA": 5
          }
        },
        "FF": {
          "DSA": {
            "DSA": 4
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1002-2018": 2,
          "BSI-DSZ-CC-1094-2019": 14
        },
        "NL": {
          "CC-1002-2018": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 3,
          "EAL 4": 5
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "BOE) for documentation files, Version 1, 2017-07-14, IBM (confidential document) Configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential": 1,
          "Notes for the configuration list from git, Charlotte part; Version 1, Date 2019-03-14, IBM (confidential document) Hardware configuration list for IBM 4765 and 4767 EP11 HSMs, Version 1.0, 2017- 08-31, IBM": 1,
          "Report, Version 2, 2019-07-10, Final Evaluation Technical Report, atsec information security GmbH (confidential document) [8] Configuration lists for the TOE: Configuration list of static content measured by SHA256": 1,
          "Version 1.0, 2016- 12-12, IBM (confidential document) EP11 configuration list BOE, Version 1, 2019-03-27, IBM (confidential document) EP11 configuration": 1,
          "being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 3
        },
        "ECB": {
          "ECB": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "secp256k1": 2
        }
      },
      "eval_facility": {
        "atsec": {
          "atsec": 3
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 2
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-224": 1,
            "SHA-256": 4,
            "SHA-384": 1,
            "SHA-512": 1,
            "SHA256": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 1
        },
        "RNG": {
          "RNG": 1
        },
        "TRNG": {
          "TRNG": 2
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 32": 1,
          "AIS 38": 1
        },
        "FIPS": {
          "FIPS 180-4": 1,
          "FIPS 186-4": 9,
          "FIPS 197": 1,
          "FIPS 46-3": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        },
        "NIST": {
          "NIST SP 800-38A": 2,
          "NIST SP 800-90A": 1
        },
        "PKCS": {
          "PKCS#1": 1,
          "PKCS#11": 14
        },
        "RFC": {
          "RFC 3447": 1,
          "RFC 5639": 3
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 3
          }
        },
        "DES": {
          "3DES": {
            "TDES": 3
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1,
          "BSI TR-02102": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20190826112423+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, IBM Enterprise PKCS#11 (EP11) Firmware identifier 2b638e8e\"",
      "/ModDate": "D:20190910151840+02\u002700\u0027",
      "/Producer": "LibreOffice 6.1",
      "/Subject": "Report BSI-DSZ-CC-1094 Zertifizierung",
      "/Title": "Certification Report BSI-DSZ-CC-1094-2019",
      "pdf_file_size_bytes": 952779,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.sogisportal.eu/",
          "https://www.ibm.com/downloads/cas/WXRDPRAN",
          "http://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/zertifizierungsreporte",
          "https://www.bsi.bund.de/AIS",
          "https://www.ibm.com/downloads/cas/RMQG64AV",
          "https://www.bsi.bund.de/zertifizierung",
          "http://www.commoncriteriaportal.org/cc/",
          "https://www-01.ibm.com/servers/resourcelink/svc00100.nsf/pages/zosv2r3izst100/$file/izst100_v2r3.pdf",
          "https://www.bsi.bund.de/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 25
    },
    "st_filename": "1094b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDH": {
            "ECDH": 5
          },
          "ECDSA": {
            "ECDSA": 8
          },
          "ECIES": {
            "ECIES": 1
          }
        },
        "FF": {
          "DH": {
            "DH": 4,
            "Diffie-Hellman": 2
          },
          "DSA": {
            "DSA": 12
          }
        },
        "RSA": {
          "RSA 2048": 1
        }
      },
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0045-2009": 1
        }
      },
      "cc_sar": {},
      "cc_security_level": {
        "EAL": {
          "EAL 4": 1,
          "EAL4": 3
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        },
        "ECB": {
          "ECB": 4
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "TLS": {
          "SSL": {
            "SSL": 1
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 2,
          "Key agreement": 1
        },
        "KEX": {
          "Key Exchange": 1
        },
        "MAC": {
          "MAC": 10
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-192": 8,
          "P-224": 8,
          "P-256": 8,
          "P-384": 8,
          "P-521": 8
        }
      },
      "eval_facility": {},
      "hash_function": {
        "RIPEMD": {
          "RIPEMD-160": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 7
          },
          "SHA2": {
            "SHA-224": 5,
            "SHA-256": 14,
            "SHA-384": 4,
            "SHA-512": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 2
        },
        "RNG": {
          "RNG": 19
        },
        "TRNG": {
          "TRNG": 5
        }
      },
      "side_channel_analysis": {
        "FI": {
          "Malfunction": 3,
          "malfunction": 2
        },
        "SCA": {
          "side-channel": 1
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 31": 1
        },
        "FIPS": {
          "FIPS 140-2": 3,
          "FIPS 180-4": 1,
          "FIPS 186-4": 1,
          "FIPS 197": 4
        },
        "ISO": {
          "ISO/IEC 18031:2011": 1
        },
        "PKCS": {
          "PKCS 11": 1,
          "PKCS#11": 158,
          "PKCS1": 14,
          "PKCS11": 1,
          "PKCS12": 1
        },
        "RFC": {
          "RFC 3394": 1,
          "RFC 3447": 12,
          "RFC 5649": 1,
          "RFC 8017": 1
        },
        "X509": {
          "X.509": 6
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 13
          }
        },
        "DES": {
          "3DES": {
            "TDEA": 1,
            "TDES": 8
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 2,
            "HMAC": 7
          }
        },
        "miscellaneous": {
          "SEED": {
            "SEED": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "STMicroelectronics": {
          "STM": 4
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Visegrady, Tamas \u003ctvi (at) zurich.ibm.com\u003e",
      "/CreationDate": "D:20190320220000+01\u002700\u0027",
      "/Creator": "IBM Research --- Zurich and IBM Boeblingen/Poughkeepsie",
      "/Keywords": "IBM 4768 (hw. 00LV498PLH (3)); PCIeCC; XCP, Enterprise PKCS11 (EP11)",
      "/ModDate": "D:20190320220000+01\u002700\u0027",
      "/PTEX.Fullbanner": "This is pdfTeX, Version 3.14159265-2.6-1.40.19 (TeX Live 2018/TeX Live for SUSE Linux) kpathsea version 6.3.0",
      "/Producer": "pdfTeX",
      "/Subject": "Security Policy [rev. 288]",
      "/Title": "IBM Enterprise PKCS11(on 4768) Security Target (EAL 4 )",
      "/Trapped": "/False",
      "pdf_file_size_bytes": 841608,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 53
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "EAL4"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1094b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "a8ecea77c6eb703edae9062f963011788fd425558138983be45ba2e8c90a8844",
      "txt_hash": "cc9b1115fb26055df831832d8325deecc4209e8c008572c095defd8e56af4fe9"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "8b66efa5343db2af49e164e5db73ac665ff80282813ee879abefaee43e042bf0",
      "txt_hash": "3c73dadfa13f7cf3781565e9162d0892106b60c4de3a1285d77c1fa0bad2a919"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "7d443a5d04fd00163c6b14499ff05684502a188c2df61cb1d59db52e24448820",
      "txt_hash": "94da6d55a7e2d4220fea15772a773e2db1e6a0f17dcf88075da95e50217c89e3"
    }
  },
  "status": "archived"
}