CardOS DI V5.4 QES Version 1.0

Certificate

certificate file processing did not finish successfully.
Download pdf: OK
Convert pdf to text: OK
Extract keywords: ERROR

Extracted keywords

Security level
EAL 4, EAL 5, EAL 2, EAL 4 augmented
Security Assurance Requirements (SAR)
ALC_DVS.2, ALC_FLR, AVA_VAN.5
Protection profiles
BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-MA-01
Certificates
BSI-DSZ-CC-1112-V2-2021

Standards
ISO/IEC 15408, ISO/IEC 18045

Certification report

Extracted keywords

Symmetric Algorithms
AES
Asymmetric Algorithms
ECDSA
Hash functions
SHA-2
Randomness
RNG
Libraries
Crypto Library 2.02.010

Vendor
Infineon, Infineon Technologies AG

Security level
EAL 4, EAL 5, EAL 2, EAL 1, EAL 2+, EAL 4 augmented
Claims
OE.HID_VAD
Security Assurance Requirements (SAR)
ALC_DVS.2, ALC_FLR, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_LCD.1, ALC_TAT.1, ATE_FUN, ATE_COV, ATE_DPT, ATE_IND, AVA_VAN.5, AVA_VAN
Protection profiles
BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-MA-01, BSI-CC-PP-0059-, BSI-CC-PP-0072-, BSI-CC-PP-0059-2009-, BSI-CC-PP-0071-2012-, BSI-CC-PP-0072-2012-
Certificates
BSI-DSZ-CC-1112-V2-2021, BSI-DSZ-CC-1112-2020, BSI-DSZ-CC-0891-V4-2019
Evaluation facilities
TÜV Informationstechnik

Side-channel analysis
side-channel, side channel, fault induction, Oracle attack, JIL
Certification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, 1, 2021-09-09, EVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY), TÜV Informationstechnik GmbH, (confidential document) [8] Protection profiles: 7 specifically • AIS 20, Version 3, Funktionalitätsklassen und, “Evaluation Technical Report for Conmposite Evaluation (ETR Comp)”, TÜV Informationstechnik GmbH (confidential document) [11] Configuration list for the TOE, Revision 1.30, 2020-05-08, Configuration List ’CardOS DI V5.4, Version 1.0’ (confidential document) [12] Guidance documentation for the TOE: User’s Manual ‘CardOS V5.4’, –, 2020-02, Atos Information

Standards
AIS 37, AIS 46, AIS 25, AIS 26, AIS 36, AIS 31, AIS 20, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065
Technical reports
BSI 7148, BSI 24

File metadata

Title BSI-DSZ-CC-1112-V2-2021 Certification Report (V2.0)
Subject Common Criteria, Certification, Zertifizierung, CardOS, Smartcard
Keywords "Common Criteria, Certification, Zertifizierung, CardOS, Smartcard"
Author Federal Office for Information Security
Pages 27

Frontpage

Certificate ID BSI-DSZ-CC-1112-V2-2021
Certified item CardOS DI V5.4 QES Version 1.0
Certification lab BSI
Developer Atos Information Technology GmbH

References

Outgoing
  • BSI-DSZ-CC-0891-V4-2019 - archived - Infineon Security Controller M7892 Design Steps D11 and G12, with specific IC dedicated firmware and optional software
  • BSI-DSZ-CC-1112-2020 - archived - CardOS DI V5.4 QES Version 1.0

Security target

Extracted keywords

Symmetric Algorithms
AES, DES, TDES, Triple-DES, TDEA, KMAC, CMAC
Asymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSA
Hash functions
SHA-256, SHA-224, SHA-384, SHA-512, SHA-2
Schemes
MAC, Key Agreement, Key agreement
Protocols
PACE
Randomness
RNG, RND
Elliptic Curves
P-256, Curve P-256, P-384, Curve P-384, Curve P-521, P-521, NIST P-256, NIST P-384, NIST P-521, secp256r1, secp384r1, secp521r1, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1
Block cipher modes
CBC

Vendor
NXP Semiconductors, Infineon, Infineon Technologies AG, STMicroelectronics

Security level
EAL4, EAL 6+, EAL6, EAL6+, EAL4 augmented, EAL6 augmented
Claims
O.RND, O.TDES, O.AES, O.SHA, T.RND, A.CGA, A.SCA, OE.HID_VAD
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_DVS.2, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_LCD.1, ALC_TAT.1, ALC_FLR.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.5, ASE_INT, ASE_CCL, ASE_SPD, ASE_OBJ, ASE_ECD, ASE_REQ, ASE_TSS, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1
Security Functional Requirements (SFR)
FAU_SAS.1, FCS_RNG, FCS_CKM, FCS_CKM.4, FCS_COP, FCS_RNG.1, FCS_RND.1, FCS_CKM.1, FCS_COP.1, FCS_RNG.1.1, FCS_RNG.1.2, FCS_CKM.2, FCS_CKM.4.1, FDP_ACC, FDP_ACF, FDP_UCT, FDP_UIT, FDP_RIP.1, FDP_SDI, FDP_DAU, FDP_ITC.1, FDP_ITC.2, FDP_ACF.1, FDP_ACC.1, FDP_IFC.1, FDP_UCT.1, FDP_UIT.1, FDP_RIP.1.1, FDP_SDI.1, FDP_SDI.2, FDP_DAU.1, FDP_DAU.2, FDP_ITT.1, FDP_SDC.1, FIA_UID.1, FIA_UAU.1, FIA_UAU, FIA_AFL, FIA_API.1, FIA_AFL.1, FIA_API, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.4, FIA_UAU.5, FIA_UAU.6, FIA_API.1.1, FIA_UID, FMT_SMR.1, FMT_SMF.1, FMT_MOF.1, FMT_MSA, FMT_MSA.2, FMT_MSA.3, FMT_MSA.4, FMT_MTD, FMT_MSA.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMF.1.1, FMT_MOF.1.1, FMT_MSA.2.1, FMT_MSA.3.1, FMT_MSA.3.2, FMT_MSA.4.1, FMT_MTD.1, FMT_LIM.1, FMT_LIM.2, FMT_LIM, FPT_EMS, FPT_FLS.1, FPT_PHP.1, FPT_PHP.3, FPT_TST.1, FPT_EMS.1, FPT_RIP.1.1, FPT_FLS.1.1, FPT_TST, FPT_PHP.1.1, FPT_PHP.1.2, FPT_PHP.3.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_ITT.1, FPT_TST.2, FRU_FLT.2, FTP_ITC, FTP_ITC.1, FTP_TRP.1
Protection profiles
BSI-PP0059-2009, BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-, BSI-CC-PP-0059-, BSI-CC-PP-0071-, BSI-CC-PP-0072-2012-MA-01, BSI-CC-PP-0072-, BSI-CC-PP-0072-2012-MA-, BSI-CC-PP-0056-V2-, BSI-CC-PP-0086-2015, BSI-CC-PP-0068-V2-2011-MA-01, BSI-CC-PP-0056-V2-2012-MA-02, BSI-CC-PP-0084-, BSI-CC-PP-0068-, BSI-CC-PP-0084-2014, BSI-CC-PP-0056-V2-2012-, BSI-CC-PP-0035-2007
Certificates
BSI-DSZ-CC-1112, BSI-DSZ-CC-0891, BSI-DSZ-CC-0891-V4-2019

Side-channel analysis
Leak-Inherent, physical probing, Physical Probing, SPA, timing attacks, physical tampering, Malfunction, DFA, fault injection

Standards
FIPS PUB 140-2, FIPS PUB 180-4, FIPS PUB 186-4, FIPS PUB 197, FIPS PUB 46-3, PKCS #1, PKCS1, PKCS #15, AIS 20, AIS 31, AIS 36, RFC 5639, ISO/IEC 15408-2, ISO/IEC 15408-3, ISO/IEC 15408-1, ISO/IEC 7816-3, ISO/IEC 14443, ICAO, X.509, CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003, CCMB-2017-04-004
Technical reports
BSI TR-03116, BSI TR-03110

File metadata

Title Security Target 'CardOS DI V5.4 QES Version 1.0', Rev. 1.61R, Edition 04/2020
Subject Security Target CardOS DI V5.4 QES
Keywords Common Criteria, CardOS, ASE, QSCD
Author Atos Information Technology GmbH
Creation date D:20200417171507+02'00'
Modification date D:20200417172147+02'00'
Pages 128
Creator Microsoft® Word 2010
Producer Microsoft® Word 2010

References

Outgoing
  • BSI-DSZ-CC-0891-V4-2019 - archived - Infineon Security Controller M7892 Design Steps D11 and G12, with specific IC dedicated firmware and optional software

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

BSI-DSZ-CC-1112-V2-2021

Extracted SARs

ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_DVS.2, ALC_FLR.1, ALC_LCD.1, ALC_TAT.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.5

Scheme data

Cert Id BSI-DSZ-CC-1112-V2-2021
Product CardOS DI V5.4 QES Version 1.0
Vendor Atos Information Technology GmbH
Certification Date 29.09.2021
Category Digital signature
Url https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Digitale_Signatur-Sichere_Signaturerstellungseinheiten/1112.html
Enhanced
Product CardOS DI V5.4 QES Version 1.0
Applicant Atos Information Technology GmbH Otto-Hahn-Ring 6 81739 München
Evaluation Facility TÜV Informationstechnik GmbH
Assurance Level EAL4+,ALC_DVS.2,AVA_VAN.5
Protection Profile Secure Signature Creation Device - Part 2: Device with Key Generation Version 2.0.1, 23 January 2012, prEN 14169-2, BSI-CC-PP-0059-2009-MA-01,Protection profiles for secure signature creation device - Part 4: Extension for device with key generation and trusted channel to certificate generation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0071-2012-MA-01,Protection profiles for secure signature creation device - Part 5: Extension for device with key generation and trusted channel to signature creation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0072-2012-MA-01
Certification Date 29.09.2021
Expiration Date 28.09.2026
Entries [frozendict({'id': 'Secure'}), frozendict({'id': 'Protection'}), frozendict({'id': 'Protection'})]
Cert Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2c_pdf.pdf?__blob=publicationFile&v=4
Report Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2a_pdf.pdf?__blob=publicationFile&v=7
Description The composite TOE is named CardOS DI V5.4 QES Version 1.0 (developed by Atos Information Technology GmbH). The TOE is a smart card operating system dedicated to be used as a Secure Signature Creation Device (SSCD) and in accordance with eIDAS. It consists of the application QES, the OS ‘CardOS DI V5.4’, configuration scripts for initialization, personalization and AQES update, the according guidance documents, the underlying hardware platform together with the crypto library. As stated in the certification report in chapter 12 the certificate comprises the usage as QSigCD as well as QSealCD according to articles 30 and 39 of the Regulation (EU) No 910/2014. Please note that the certificate is no longer valid.
Subcategory Secure Signature Creation Devices (SSCD)

References

Loading...

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Products for Digital Signatures",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112V2c_pdf.pdf",
  "dgst": "f23b77ef0395ab81",
  "heuristics": {
    "_type": "sec_certs.sample.cc_eucc_common.Heuristics",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1112-V2-2021",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL4+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_DPT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.0",
        "5.4"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": {
      "_type": "Set",
      "elements": [
        "1f7ea2e05de5b88b",
        "d918b28fd7bb5d79",
        "d9553e7194783182"
      ]
    },
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1112-2020",
          "BSI-DSZ-CC-0891-V4-2019"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0891-V2-2016",
          "BSI-DSZ-CC-0782-2012",
          "BSI-DSZ-CC-1112-2020",
          "BSI-DSZ-CC-0891-2015",
          "BSI-DSZ-CC-0891-V4-2019",
          "BSI-DSZ-CC-0891-V3-2018"
        ]
      }
    },
    "scheme_data": {
      "category": "Digital signature",
      "cert_id": "BSI-DSZ-CC-1112-V2-2021",
      "certification_date": "2021-09-29",
      "enhanced": {
        "applicant": "Atos Information Technology GmbH Otto-Hahn-Ring 6 81739 M\u00fcnchen",
        "assurance_level": "EAL4+,ALC_DVS.2,AVA_VAN.5",
        "cert_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2c_pdf.pdf?__blob=publicationFile\u0026v=4",
        "certification_date": "2021-09-29",
        "description": "The composite TOE is named CardOS DI V5.4 QES Version 1.0 (developed by Atos Information Technology GmbH). The TOE is a smart card operating system dedicated to be used as a Secure Signature Creation Device (SSCD) and in accordance with eIDAS. It consists of the application QES, the OS \u2018CardOS DI V5.4\u2019, configuration scripts for initialization, personalization and AQES update, the according guidance documents, the underlying hardware platform together with the crypto library. As stated in the certification report in chapter 12 the certificate comprises the usage as QSigCD as well as QSealCD according to articles 30 and 39 of the Regulation (EU) No 910/2014. Please note that the certificate is no longer valid.",
        "entries": [
          {
            "id": "Secure"
          },
          {
            "id": "Protection"
          },
          {
            "id": "Protection"
          }
        ],
        "evaluation_facility": "T\u00dcV Informationstechnik GmbH",
        "expiration_date": "2026-09-28",
        "product": "CardOS DI V5.4 QES Version 1.0",
        "protection_profile": "Secure Signature Creation Device - Part 2: Device with Key Generation Version 2.0.1, 23 January 2012, prEN 14169-2, BSI-CC-PP-0059-2009-MA-01,Protection profiles for secure signature creation device - Part 4: Extension for device with key generation and trusted channel to certificate generation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0071-2012-MA-01,Protection profiles for secure signature creation device - Part 5: Extension for device with key generation and trusted channel to signature creation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0072-2012-MA-01",
        "report_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2a_pdf.pdf?__blob=publicationFile\u0026v=7"
      },
      "product": "CardOS DI V5.4 QES Version 1.0",
      "subcategory": "Secure Signature Creation Devices (SSCD)",
      "url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Digitale_Signatur-Sichere_Signaturerstellungseinheiten/1112.html",
      "vendor": "Atos Information Technology GmbH"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0891-V4-2019"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0891-V2-2016",
          "BSI-DSZ-CC-0891-V3-2018",
          "BSI-DSZ-CC-0891-V4-2019"
        ]
      }
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "Atos Information Technology GmbH",
  "manufacturer_web": "https://www.de.atos.net",
  "name": "CardOS DI V5.4 QES Version 1.0",
  "not_valid_after": "2026-11-29",
  "not_valid_before": "2021-09-29",
  "pdf_data": {
    "_type": "sec_certs.sample.cc_eucc_common.PdfData",
    "cert_filename": "1112V2c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1112-V2-2021": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0059-2009-MA-02": 1,
          "BSI-CC-PP-0071-2012-MA-01": 1,
          "BSI-CC-PP-0072-2012-MA-01": 1
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_DVS.2": 1,
          "ALC_FLR": 1
        },
        "AVA": {
          "AVA_VAN.5": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 1,
          "EAL 4 augmented": 1,
          "EAL 5": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": null,
    "report_filename": "1112V2a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cc_security_level": "Common Criteria Part 3 conformant EAL 4 augmented by ALC_DVS.2 and AVA_VAN.5 SOGIS Recognition Agreement",
        "cc_version": "PP conformant plus product specific extensions Common Criteria Part 2 extended",
        "cert_id": "BSI-DSZ-CC-1112-V2-2021",
        "cert_item": "CardOS DI V5.4 QES Version 1.0",
        "cert_lab": "BSI",
        "developer": "Atos Information Technology GmbH",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        ],
        "ref_protection_profiles": "EN 419211-2:2013 (BSI-CC-PP-0059-2009-MA-02), EN 419211-4:2013 (BSI-CC-PP-0071-2012-MA-01), EN 419211-5:2013 (BSI-CC-PP-0072-2012-MA-01"
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECDSA": {
            "ECDSA": 1
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0891-V4-2019": 3,
          "BSI-DSZ-CC-1112-2020": 3,
          "BSI-DSZ-CC-1112-V2-2021": 15
        }
      },
      "cc_claims": {
        "OE": {
          "OE.HID_VAD": 1
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0059-": 1,
          "BSI-CC-PP-0059-2009-": 1,
          "BSI-CC-PP-0059-2009-MA-02": 2,
          "BSI-CC-PP-0071-2012-": 1,
          "BSI-CC-PP-0071-2012-MA-01": 2,
          "BSI-CC-PP-0072-": 1,
          "BSI-CC-PP-0072-2012-": 1,
          "BSI-CC-PP-0072-2012-MA-01": 2
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_CMS.4": 1,
          "ALC_DEL.1": 1,
          "ALC_DVS.2": 5,
          "ALC_FLR": 3,
          "ALC_LCD.1": 1,
          "ALC_TAT.1": 1
        },
        "ATE": {
          "ATE_COV": 1,
          "ATE_DPT": 1,
          "ATE_FUN": 1,
          "ATE_IND": 1
        },
        "AVA": {
          "AVA_VAN": 1,
          "AVA_VAN.5": 4
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 2,
          "EAL 2+": 1,
          "EAL 4": 5,
          "EAL 4 augmented": 3,
          "EAL 5": 4
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "1, 2021-09-09, EVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY), T\u00dcV Informationstechnik GmbH, (confidential document) [8] Protection profiles: 7 specifically \u2022 AIS 20, Version 3, Funktionalit\u00e4tsklassen und": 1,
          "Version 1.0\u2019 (confidential document) [12] Guidance documentation for the TOE: User\u2019s Manual \u2018CardOS V5.4\u2019, \u2013, 2020-02, Atos Information": 1,
          "being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1,
          "\u201cEvaluation Technical Report for Conmposite Evaluation (ETR Comp)\u201d, T\u00dcV Informationstechnik GmbH (confidential document) [11] Configuration list for the TOE, Revision 1.30, 2020-05-08, Configuration List \u2019CardOS DI V5.4": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "Generic": {
          "Crypto Library 2.02.010": 1
        }
      },
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "TUV": {
          "T\u00dcV Informationstechnik": 5
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-2": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "FI": {
          "fault induction": 1
        },
        "SCA": {
          "side channel": 3,
          "side-channel": 1
        },
        "other": {
          "JIL": 3,
          "Oracle attack": 1
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 25": 2,
          "AIS 26": 2,
          "AIS 31": 2,
          "AIS 36": 4,
          "AIS 37": 2,
          "AIS 46": 2
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 24": 1,
          "BSI 7148": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Infineon": {
          "Infineon": 6,
          "Infineon Technologies AG": 1
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Federal Office for Information Security",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, CardOS, Smartcard\"",
      "/Subject": "Common Criteria, Certification, Zertifizierung, CardOS, Smartcard",
      "/Title": "BSI-DSZ-CC-1112-V2-2021 Certification Report (V2.0)",
      "pdf_file_size_bytes": 383213,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 27
    },
    "st_filename": "1112b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 2
          },
          "ECDH": {
            "ECDH": 6
          },
          "ECDSA": {
            "ECDSA": 10
          }
        },
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 9
          },
          "DSA": {
            "DSA": 2
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0891": 3,
          "BSI-DSZ-CC-0891-V4-2019": 1,
          "BSI-DSZ-CC-1112": 1
        }
      },
      "cc_claims": {
        "A": {
          "A.CGA": 6,
          "A.SCA": 7
        },
        "O": {
          "O.AES": 1,
          "O.RND": 1,
          "O.SHA": 1,
          "O.TDES": 1
        },
        "OE": {
          "OE.HID_VAD": 12
        },
        "T": {
          "T.RND": 3
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0035-2007": 2,
          "BSI-CC-PP-0056-V2-": 1,
          "BSI-CC-PP-0056-V2-2012-": 1,
          "BSI-CC-PP-0056-V2-2012-MA-02": 10,
          "BSI-CC-PP-0059-": 5,
          "BSI-CC-PP-0059-2009-MA-02": 27,
          "BSI-CC-PP-0068-": 1,
          "BSI-CC-PP-0068-V2-2011-MA-01": 37,
          "BSI-CC-PP-0071-": 2,
          "BSI-CC-PP-0071-2012-MA-01": 7,
          "BSI-CC-PP-0072-": 1,
          "BSI-CC-PP-0072-2012-": 1,
          "BSI-CC-PP-0072-2012-MA-": 1,
          "BSI-CC-PP-0072-2012-MA-01": 3,
          "BSI-CC-PP-0084-": 1,
          "BSI-CC-PP-0084-2014": 3,
          "BSI-CC-PP-0086-2015": 6,
          "BSI-PP0059-2009": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 4,
          "ADV_FSP.4": 3,
          "ADV_IMP.1": 3,
          "ADV_TDS.3": 3
        },
        "AGD": {
          "AGD_OPE.1": 3,
          "AGD_PRE.1": 3
        },
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_CMS.4": 1,
          "ALC_DEL.1": 1,
          "ALC_DVS.2": 6,
          "ALC_FLR.1": 1,
          "ALC_LCD.1": 1,
          "ALC_TAT.1": 1
        },
        "ASE": {
          "ASE_CCL": 10,
          "ASE_CCL.1": 1,
          "ASE_ECD": 4,
          "ASE_ECD.1": 1,
          "ASE_INT": 19,
          "ASE_INT.1": 1,
          "ASE_OBJ": 16,
          "ASE_OBJ.2": 1,
          "ASE_REQ": 43,
          "ASE_REQ.2": 1,
          "ASE_SPD": 7,
          "ASE_SPD.1": 1,
          "ASE_TSS": 24,
          "ASE_TSS.1": 1
        },
        "ATE": {
          "ATE_COV.2": 1,
          "ATE_DPT.1": 2,
          "ATE_FUN.1": 1,
          "ATE_IND.2": 1
        },
        "AVA": {
          "AVA_VAN.5": 6
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 6+": 1,
          "EAL4": 10,
          "EAL4 augmented": 4,
          "EAL6": 2,
          "EAL6 augmented": 1,
          "EAL6+": 1
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_SAS.1": 1
        },
        "FCS": {
          "FCS_CKM": 93,
          "FCS_CKM.1": 24,
          "FCS_CKM.2": 9,
          "FCS_CKM.4": 60,
          "FCS_CKM.4.1": 1,
          "FCS_COP": 156,
          "FCS_COP.1": 16,
          "FCS_RND.1": 2,
          "FCS_RNG": 6,
          "FCS_RNG.1": 23,
          "FCS_RNG.1.1": 2,
          "FCS_RNG.1.2": 2
        },
        "FDP": {
          "FDP_ACC": 58,
          "FDP_ACC.1": 33,
          "FDP_ACF": 47,
          "FDP_ACF.1": 31,
          "FDP_DAU": 10,
          "FDP_DAU.1": 1,
          "FDP_DAU.2": 2,
          "FDP_IFC.1": 18,
          "FDP_ITC.1": 18,
          "FDP_ITC.2": 18,
          "FDP_ITT.1": 4,
          "FDP_RIP.1": 20,
          "FDP_RIP.1.1": 1,
          "FDP_SDC.1": 1,
          "FDP_SDI": 19,
          "FDP_SDI.1": 3,
          "FDP_SDI.2": 5,
          "FDP_UCT": 13,
          "FDP_UCT.1": 1,
          "FDP_UIT": 22,
          "FDP_UIT.1": 4
        },
        "FIA": {
          "FIA_AFL": 63,
          "FIA_AFL.1": 14,
          "FIA_API": 1,
          "FIA_API.1": 12,
          "FIA_API.1.1": 1,
          "FIA_UAU": 71,
          "FIA_UAU.1": 31,
          "FIA_UAU.1.1": 5,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.4": 2,
          "FIA_UAU.5": 5,
          "FIA_UAU.6": 3,
          "FIA_UID": 3,
          "FIA_UID.1": 19,
          "FIA_UID.1.1": 3,
          "FIA_UID.1.2": 1
        },
        "FMT": {
          "FMT_LIM": 2,
          "FMT_LIM.1": 1,
          "FMT_LIM.2": 1,
          "FMT_MOF.1": 12,
          "FMT_MOF.1.1": 1,
          "FMT_MSA": 22,
          "FMT_MSA.1": 8,
          "FMT_MSA.2": 16,
          "FMT_MSA.2.1": 1,
          "FMT_MSA.3": 25,
          "FMT_MSA.3.1": 1,
          "FMT_MSA.3.2": 1,
          "FMT_MSA.4": 10,
          "FMT_MSA.4.1": 1,
          "FMT_MTD": 48,
          "FMT_MTD.1": 4,
          "FMT_SMF.1": 40,
          "FMT_SMF.1.1": 1,
          "FMT_SMR.1": 32,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_EMS": 24,
          "FPT_EMS.1": 11,
          "FPT_FLS.1": 17,
          "FPT_FLS.1.1": 1,
          "FPT_ITT.1": 4,
          "FPT_PHP.1": 11,
          "FPT_PHP.1.1": 1,
          "FPT_PHP.1.2": 1,
          "FPT_PHP.3": 18,
          "FPT_PHP.3.1": 1,
          "FPT_RIP.1.1": 1,
          "FPT_TST": 1,
          "FPT_TST.1": 15,
          "FPT_TST.1.1": 1,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 1,
          "FPT_TST.2": 3
        },
        "FRU": {
          "FRU_FLT.2": 6
        },
        "FTP": {
          "FTP_ITC": 47,
          "FTP_ITC.1": 15,
          "FTP_TRP.1": 6
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 6
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 203
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 3,
          "Key agreement": 1
        },
        "MAC": {
          "MAC": 16
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 2,
          "brainpoolP384r1": 2,
          "brainpoolP512r1": 2
        },
        "NIST": {
          "Curve P-256": 2,
          "Curve P-384": 2,
          "Curve P-521": 2,
          "NIST P-256": 4,
          "NIST P-384": 4,
          "NIST P-521": 4,
          "P-256": 14,
          "P-384": 10,
          "P-521": 6,
          "secp256r1": 2,
          "secp384r1": 2,
          "secp521r1": 2
        }
      },
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-2": 20,
            "SHA-224": 8,
            "SHA-256": 11,
            "SHA-384": 10,
            "SHA-512": 8
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RND": 4,
          "RNG": 15
        }
      },
      "side_channel_analysis": {
        "FI": {
          "DFA": 1,
          "Malfunction": 9,
          "fault injection": 1,
          "physical tampering": 5
        },
        "SCA": {
          "Leak-Inherent": 5,
          "Physical Probing": 2,
          "SPA": 1,
          "physical probing": 2,
          "timing attacks": 1
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 20": 1,
          "AIS 31": 2,
          "AIS 36": 1
        },
        "CC": {
          "CCMB-2017-04-001": 1,
          "CCMB-2017-04-002": 1,
          "CCMB-2017-04-003": 1,
          "CCMB-2017-04-004": 1
        },
        "FIPS": {
          "FIPS PUB 140-2": 1,
          "FIPS PUB 180-4": 1,
          "FIPS PUB 186-4": 1,
          "FIPS PUB 197": 1,
          "FIPS PUB 46-3": 1
        },
        "ICAO": {
          "ICAO": 7
        },
        "ISO": {
          "ISO/IEC 14443": 4,
          "ISO/IEC 15408-1": 2,
          "ISO/IEC 15408-2": 1,
          "ISO/IEC 15408-3": 1,
          "ISO/IEC 7816-3": 1
        },
        "PKCS": {
          "PKCS #1": 5,
          "PKCS #15": 1,
          "PKCS1": 1
        },
        "RFC": {
          "RFC 5639": 1
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 47
          }
        },
        "DES": {
          "3DES": {
            "TDEA": 1,
            "TDES": 5,
            "Triple-DES": 1
          },
          "DES": {
            "DES": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 15,
            "KMAC": 1
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03110": 1,
          "BSI TR-03116": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Infineon": {
          "Infineon": 11,
          "Infineon Technologies AG": 2
        },
        "NXP": {
          "NXP Semiconductors": 1
        },
        "STMicroelectronics": {
          "STMicroelectronics": 1
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Atos Information Technology GmbH",
      "/CreationDate": "D:20200417171507+02\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2010",
      "/Keywords": "Common Criteria, CardOS, ASE, QSCD",
      "/ModDate": "D:20200417172147+02\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2010",
      "/Subject": "Security Target CardOS DI V5.4 QES",
      "/Title": "Security Target \u0027CardOS DI V5.4 QES Version 1.0\u0027, Rev. 1.61R, Edition 04/2020",
      "pdf_file_size_bytes": 1584620,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": true,
      "pdf_number_of_pages": 128
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": [
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0059b_pdf.pdf",
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0071b_pdf.pdf",
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0072b_pdf.pdf"
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112V2a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "AVA_VAN.5",
      "ALC_DVS.2",
      "EAL4+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.cc_eucc_common.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": false,
      "json_hash": null,
      "pdf_hash": "b6db7d65afead182359769c5fccd346606547f4962980ad1745b20c59fe428a7",
      "txt_hash": "0503a32f4ad8aefbeb584382d0776784b288f02fe497662c974b86df3357cafa"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "000cacb7ffd4ca40a05fc4271ea1cc9cae3f8082bef8d7e4269b61b7429d5cb8",
      "txt_hash": "836fc0581960b0c7aa65a67c1dc6cb3a9e6f6254b5b004d92ff7000651d9f363"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "c709800a9b6ff032f04dc4fd9b5baeec7b852250e8c14e36082a92a98381a4bd",
      "txt_hash": "32953ba2b3caea4c3626373b0b30f89516965b508d7c5f37de35ed744271168a"
    }
  },
  "status": "active"
}