This page was not yet optimized for use on mobile
devices.
CardOS DI V5.4 QES Version 1.0
CSV information
| Status | active |
|---|---|
| Valid from | 29.09.2021 |
| Valid until | 29.11.2026 |
| Scheme | 🇩🇪 DE |
| Manufacturer | Atos Information Technology GmbH |
| Category | Products for Digital Signatures |
| Security level | AVA_VAN.5, EAL4+, ALC_DVS.2 |
| Protection profiles |
|
Heuristics summary
Certificate ID: BSI-DSZ-CC-1112-V2-2021
Certificate
certificate file processing did not finish successfully.
Show more...
Download pdf:
OK
Convert pdf to text:
OK
Extract keywords:
ERROR
Extracted keywords
Security level
EAL 4, EAL 5, EAL 2, EAL 4 augmentedSecurity Assurance Requirements (SAR)
ALC_DVS.2, ALC_FLR, AVA_VAN.5Protection profiles
BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-MA-01Certificates
BSI-DSZ-CC-1112-V2-2021Standards
ISO/IEC 15408, ISO/IEC 18045Certification report
Extracted keywords
Symmetric Algorithms
AESAsymmetric Algorithms
ECDSAHash functions
SHA-2Randomness
RNGLibraries
Crypto Library 2.02.010Vendor
Infineon, Infineon Technologies AGSecurity level
EAL 4, EAL 5, EAL 2, EAL 1, EAL 2+, EAL 4 augmentedClaims
OE.HID_VADSecurity Assurance Requirements (SAR)
ALC_DVS.2, ALC_FLR, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_LCD.1, ALC_TAT.1, ATE_FUN, ATE_COV, ATE_DPT, ATE_IND, AVA_VAN.5, AVA_VANProtection profiles
BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-MA-01, BSI-CC-PP-0059-, BSI-CC-PP-0072-, BSI-CC-PP-0059-2009-, BSI-CC-PP-0071-2012-, BSI-CC-PP-0072-2012-Certificates
BSI-DSZ-CC-1112-V2-2021, BSI-DSZ-CC-1112-2020, BSI-DSZ-CC-0891-V4-2019Evaluation facilities
TÜV InformationstechnikSide-channel analysis
side-channel, side channel, fault induction, Oracle attack, JILCertification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, 1, 2021-09-09, EVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY), TÜV Informationstechnik GmbH, (confidential document) [8] Protection profiles: 7 specifically • AIS 20, Version 3, Funktionalitätsklassen und, “Evaluation Technical Report for Conmposite Evaluation (ETR Comp)”, TÜV Informationstechnik GmbH (confidential document) [11] Configuration list for the TOE, Revision 1.30, 2020-05-08, Configuration List ’CardOS DI V5.4, Version 1.0’ (confidential document) [12] Guidance documentation for the TOE: User’s Manual ‘CardOS V5.4’, –, 2020-02, Atos InformationStandards
AIS 37, AIS 46, AIS 25, AIS 26, AIS 36, AIS 31, AIS 20, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065Technical reports
BSI 7148, BSI 24File metadata
| Title | BSI-DSZ-CC-1112-V2-2021 Certification Report (V2.0) |
|---|---|
| Subject | Common Criteria, Certification, Zertifizierung, CardOS, Smartcard |
| Keywords | "Common Criteria, Certification, Zertifizierung, CardOS, Smartcard" |
| Author | Federal Office for Information Security |
| Pages | 27 |
Frontpage
| Certificate ID | BSI-DSZ-CC-1112-V2-2021 |
|---|---|
| Certified item | CardOS DI V5.4 QES Version 1.0 |
| Certification lab | BSI |
| Developer | Atos Information Technology GmbH |
References
Outgoing- BSI-DSZ-CC-0891-V4-2019 - archived - Infineon Security Controller M7892 Design Steps D11 and G12, with specific IC dedicated firmware and optional software
- BSI-DSZ-CC-1112-2020 - archived - CardOS DI V5.4 QES Version 1.0
Security target
Extracted keywords
Symmetric Algorithms
AES, DES, TDES, Triple-DES, TDEA, KMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DH, DSAHash functions
SHA-256, SHA-224, SHA-384, SHA-512, SHA-2Schemes
MAC, Key Agreement, Key agreementProtocols
PACERandomness
RNG, RNDElliptic Curves
P-256, Curve P-256, P-384, Curve P-384, Curve P-521, P-521, NIST P-256, NIST P-384, NIST P-521, secp256r1, secp384r1, secp521r1, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1Block cipher modes
CBCVendor
NXP Semiconductors, Infineon, Infineon Technologies AG, STMicroelectronicsSecurity level
EAL4, EAL 6+, EAL6, EAL6+, EAL4 augmented, EAL6 augmentedClaims
O.RND, O.TDES, O.AES, O.SHA, T.RND, A.CGA, A.SCA, OE.HID_VADSecurity Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_DVS.2, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_LCD.1, ALC_TAT.1, ALC_FLR.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.5, ASE_INT, ASE_CCL, ASE_SPD, ASE_OBJ, ASE_ECD, ASE_REQ, ASE_TSS, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1Security Functional Requirements (SFR)
FAU_SAS.1, FCS_RNG, FCS_CKM, FCS_CKM.4, FCS_COP, FCS_RNG.1, FCS_RND.1, FCS_CKM.1, FCS_COP.1, FCS_RNG.1.1, FCS_RNG.1.2, FCS_CKM.2, FCS_CKM.4.1, FDP_ACC, FDP_ACF, FDP_UCT, FDP_UIT, FDP_RIP.1, FDP_SDI, FDP_DAU, FDP_ITC.1, FDP_ITC.2, FDP_ACF.1, FDP_ACC.1, FDP_IFC.1, FDP_UCT.1, FDP_UIT.1, FDP_RIP.1.1, FDP_SDI.1, FDP_SDI.2, FDP_DAU.1, FDP_DAU.2, FDP_ITT.1, FDP_SDC.1, FIA_UID.1, FIA_UAU.1, FIA_UAU, FIA_AFL, FIA_API.1, FIA_AFL.1, FIA_API, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.4, FIA_UAU.5, FIA_UAU.6, FIA_API.1.1, FIA_UID, FMT_SMR.1, FMT_SMF.1, FMT_MOF.1, FMT_MSA, FMT_MSA.2, FMT_MSA.3, FMT_MSA.4, FMT_MTD, FMT_MSA.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMF.1.1, FMT_MOF.1.1, FMT_MSA.2.1, FMT_MSA.3.1, FMT_MSA.3.2, FMT_MSA.4.1, FMT_MTD.1, FMT_LIM.1, FMT_LIM.2, FMT_LIM, FPT_EMS, FPT_FLS.1, FPT_PHP.1, FPT_PHP.3, FPT_TST.1, FPT_EMS.1, FPT_RIP.1.1, FPT_FLS.1.1, FPT_TST, FPT_PHP.1.1, FPT_PHP.1.2, FPT_PHP.3.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_ITT.1, FPT_TST.2, FRU_FLT.2, FTP_ITC, FTP_ITC.1, FTP_TRP.1Protection profiles
BSI-PP0059-2009, BSI-CC-PP-0059-2009-MA-02, BSI-CC-PP-0071-2012-MA-01, BSI-CC-PP-0072-2012-, BSI-CC-PP-0059-, BSI-CC-PP-0071-, BSI-CC-PP-0072-2012-MA-01, BSI-CC-PP-0072-, BSI-CC-PP-0072-2012-MA-, BSI-CC-PP-0056-V2-, BSI-CC-PP-0086-2015, BSI-CC-PP-0068-V2-2011-MA-01, BSI-CC-PP-0056-V2-2012-MA-02, BSI-CC-PP-0084-, BSI-CC-PP-0068-, BSI-CC-PP-0084-2014, BSI-CC-PP-0056-V2-2012-, BSI-CC-PP-0035-2007Certificates
BSI-DSZ-CC-1112, BSI-DSZ-CC-0891, BSI-DSZ-CC-0891-V4-2019Side-channel analysis
Leak-Inherent, physical probing, Physical Probing, SPA, timing attacks, physical tampering, Malfunction, DFA, fault injectionStandards
FIPS PUB 140-2, FIPS PUB 180-4, FIPS PUB 186-4, FIPS PUB 197, FIPS PUB 46-3, PKCS #1, PKCS1, PKCS #15, AIS 20, AIS 31, AIS 36, RFC 5639, ISO/IEC 15408-2, ISO/IEC 15408-3, ISO/IEC 15408-1, ISO/IEC 7816-3, ISO/IEC 14443, ICAO, X.509, CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003, CCMB-2017-04-004Technical reports
BSI TR-03116, BSI TR-03110File metadata
| Title | Security Target 'CardOS DI V5.4 QES Version 1.0', Rev. 1.61R, Edition 04/2020 |
|---|---|
| Subject | Security Target CardOS DI V5.4 QES |
| Keywords | Common Criteria, CardOS, ASE, QSCD |
| Author | Atos Information Technology GmbH |
| Creation date | D:20200417171507+02'00' |
| Modification date | D:20200417172147+02'00' |
| Pages | 128 |
| Creator | Microsoft® Word 2010 |
| Producer | Microsoft® Word 2010 |
References
Outgoing- BSI-DSZ-CC-0891-V4-2019 - archived - Infineon Security Controller M7892 Design Steps D11 and G12, with specific IC dedicated firmware and optional software
Heuristics
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.Certificate ID
BSI-DSZ-CC-1112-V2-2021Extracted SARs
ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_DVS.2, ALC_FLR.1, ALC_LCD.1, ALC_TAT.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.5Similar certificates
| Name | Certificate ID | |
|---|---|---|
| CardOS DI V5.4 QES Version 1.0 | BSI-DSZ-CC-1112-2020 | Compare |
| Composite system comprised of ECI LightSoft Software Version 11.2 (build 04113) with fixes NSx1120_4113-100 10, NC112... | None | Compare |
Scheme data
| Cert Id | BSI-DSZ-CC-1112-V2-2021 | |
|---|---|---|
| Product | CardOS DI V5.4 QES Version 1.0 | |
| Vendor | Atos Information Technology GmbH | |
| Certification Date | 29.09.2021 | |
| Category | Digital signature | |
| Url | https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Digitale_Signatur-Sichere_Signaturerstellungseinheiten/1112.html | |
| Enhanced | ||
| Product | CardOS DI V5.4 QES Version 1.0 | |
| Applicant | Atos Information Technology GmbH Otto-Hahn-Ring 6 81739 München | |
| Evaluation Facility | TÜV Informationstechnik GmbH | |
| Assurance Level | EAL4+,ALC_DVS.2,AVA_VAN.5 | |
| Protection Profile | Secure Signature Creation Device - Part 2: Device with Key Generation Version 2.0.1, 23 January 2012, prEN 14169-2, BSI-CC-PP-0059-2009-MA-01,Protection profiles for secure signature creation device - Part 4: Extension for device with key generation and trusted channel to certificate generation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0071-2012-MA-01,Protection profiles for secure signature creation device - Part 5: Extension for device with key generation and trusted channel to signature creation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0072-2012-MA-01 | |
| Certification Date | 29.09.2021 | |
| Expiration Date | 28.09.2026 | |
| Entries | [frozendict({'id': 'Secure'}), frozendict({'id': 'Protection'}), frozendict({'id': 'Protection'})] | |
| Cert Link | https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2c_pdf.pdf?__blob=publicationFile&v=4 | |
| Report Link | https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2a_pdf.pdf?__blob=publicationFile&v=7 | |
| Description | The composite TOE is named CardOS DI V5.4 QES Version 1.0 (developed by Atos Information Technology GmbH). The TOE is a smart card operating system dedicated to be used as a Secure Signature Creation Device (SSCD) and in accordance with eIDAS. It consists of the application QES, the OS ‘CardOS DI V5.4’, configuration scripts for initialization, personalization and AQES update, the according guidance documents, the underlying hardware platform together with the crypto library. As stated in the certification report in chapter 12 the certificate comprises the usage as QSigCD as well as QSealCD according to articles 30 and 39 of the Regulation (EU) No 910/2014. Please note that the certificate is no longer valid. | |
| Subcategory | Secure Signature Creation Devices (SSCD) | |
References
Loading...
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.cc.CCCertificate",
"category": "Products for Digital Signatures",
"cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112V2c_pdf.pdf",
"dgst": "f23b77ef0395ab81",
"heuristics": {
"_type": "sec_certs.sample.cc_eucc_common.Heuristics",
"annotated_references": null,
"cert_id": "BSI-DSZ-CC-1112-V2-2021",
"cert_lab": [
"BSI"
],
"cpe_matches": null,
"direct_transitive_cves": null,
"eal": "EAL4+",
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_SPD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_INT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_ECD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DVS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 4
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_FUN",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_TDS",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_TSS",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 4
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_REQ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_OBJ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DEL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_LCD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_TAT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_CCL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_DPT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_ARC",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_COV",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_IMP",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 4
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_FLR",
"level": 1
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"1.0",
"5.4"
]
},
"indirect_transitive_cves": null,
"next_certificates": null,
"prev_certificates": null,
"protection_profiles": {
"_type": "Set",
"elements": [
"1f7ea2e05de5b88b",
"d918b28fd7bb5d79",
"d9553e7194783182"
]
},
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-1112-2020",
"BSI-DSZ-CC-0891-V4-2019"
]
},
"indirectly_referenced_by": null,
"indirectly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-0891-V2-2016",
"BSI-DSZ-CC-0782-2012",
"BSI-DSZ-CC-1112-2020",
"BSI-DSZ-CC-0891-2015",
"BSI-DSZ-CC-0891-V4-2019",
"BSI-DSZ-CC-0891-V3-2018"
]
}
},
"scheme_data": {
"category": "Digital signature",
"cert_id": "BSI-DSZ-CC-1112-V2-2021",
"certification_date": "2021-09-29",
"enhanced": {
"applicant": "Atos Information Technology GmbH Otto-Hahn-Ring 6 81739 M\u00fcnchen",
"assurance_level": "EAL4+,ALC_DVS.2,AVA_VAN.5",
"cert_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2c_pdf.pdf?__blob=publicationFile\u0026v=4",
"certification_date": "2021-09-29",
"description": "The composite TOE is named CardOS DI V5.4 QES Version 1.0 (developed by Atos Information Technology GmbH). The TOE is a smart card operating system dedicated to be used as a Secure Signature Creation Device (SSCD) and in accordance with eIDAS. It consists of the application QES, the OS \u2018CardOS DI V5.4\u2019, configuration scripts for initialization, personalization and AQES update, the according guidance documents, the underlying hardware platform together with the crypto library. As stated in the certification report in chapter 12 the certificate comprises the usage as QSigCD as well as QSealCD according to articles 30 and 39 of the Regulation (EU) No 910/2014. Please note that the certificate is no longer valid.",
"entries": [
{
"id": "Secure"
},
{
"id": "Protection"
},
{
"id": "Protection"
}
],
"evaluation_facility": "T\u00dcV Informationstechnik GmbH",
"expiration_date": "2026-09-28",
"product": "CardOS DI V5.4 QES Version 1.0",
"protection_profile": "Secure Signature Creation Device - Part 2: Device with Key Generation Version 2.0.1, 23 January 2012, prEN 14169-2, BSI-CC-PP-0059-2009-MA-01,Protection profiles for secure signature creation device - Part 4: Extension for device with key generation and trusted channel to certificate generation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0071-2012-MA-01,Protection profiles for secure signature creation device - Part 5: Extension for device with key generation and trusted channel to signature creation application, CEN / ISSS - Information Society Standardization System, 12 October 2013, BSI-CC-PP-0072-2012-MA-01",
"report_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1100/1112V2a_pdf.pdf?__blob=publicationFile\u0026v=7"
},
"product": "CardOS DI V5.4 QES Version 1.0",
"subcategory": "Secure Signature Creation Devices (SSCD)",
"url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Digitale_Signatur-Sichere_Signaturerstellungseinheiten/1112.html",
"vendor": "Atos Information Technology GmbH"
},
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-0891-V4-2019"
]
},
"indirectly_referenced_by": null,
"indirectly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-0891-V2-2016",
"BSI-DSZ-CC-0891-V3-2018",
"BSI-DSZ-CC-0891-V4-2019"
]
}
},
"verified_cpe_matches": null
},
"maintenance_updates": {
"_type": "Set",
"elements": []
},
"manufacturer": "Atos Information Technology GmbH",
"manufacturer_web": "https://www.de.atos.net",
"name": "CardOS DI V5.4 QES Version 1.0",
"not_valid_after": "2026-11-29",
"not_valid_before": "2021-09-29",
"pdf_data": {
"_type": "sec_certs.sample.cc_eucc_common.PdfData",
"cert_filename": "1112V2c_pdf.pdf",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-1112-V2-2021": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0059-2009-MA-02": 1,
"BSI-CC-PP-0071-2012-MA-01": 1,
"BSI-CC-PP-0072-2012-MA-01": 1
}
},
"cc_sar": {
"ALC": {
"ALC_DVS.2": 1,
"ALC_FLR": 1
},
"AVA": {
"AVA_VAN.5": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 1,
"EAL 4": 1,
"EAL 4 augmented": 1,
"EAL 5": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"ISO": {
"ISO/IEC 15408": 2,
"ISO/IEC 18045": 2
}
},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": null,
"report_filename": "1112V2a_pdf.pdf",
"report_frontpage": {
"DE": {
"cc_security_level": "Common Criteria Part 3 conformant EAL 4 augmented by ALC_DVS.2 and AVA_VAN.5 SOGIS Recognition Agreement",
"cc_version": "PP conformant plus product specific extensions Common Criteria Part 2 extended",
"cert_id": "BSI-DSZ-CC-1112-V2-2021",
"cert_item": "CardOS DI V5.4 QES Version 1.0",
"cert_lab": "BSI",
"developer": "Atos Information Technology GmbH",
"match_rules": [
"(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
],
"ref_protection_profiles": "EN 419211-2:2013 (BSI-CC-PP-0059-2009-MA-02), EN 419211-4:2013 (BSI-CC-PP-0071-2012-MA-01), EN 419211-5:2013 (BSI-CC-PP-0072-2012-MA-01"
}
},
"report_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDSA": {
"ECDSA": 1
}
}
},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-0891-V4-2019": 3,
"BSI-DSZ-CC-1112-2020": 3,
"BSI-DSZ-CC-1112-V2-2021": 15
}
},
"cc_claims": {
"OE": {
"OE.HID_VAD": 1
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0059-": 1,
"BSI-CC-PP-0059-2009-": 1,
"BSI-CC-PP-0059-2009-MA-02": 2,
"BSI-CC-PP-0071-2012-": 1,
"BSI-CC-PP-0071-2012-MA-01": 2,
"BSI-CC-PP-0072-": 1,
"BSI-CC-PP-0072-2012-": 1,
"BSI-CC-PP-0072-2012-MA-01": 2
}
},
"cc_sar": {
"ALC": {
"ALC_CMC.4": 1,
"ALC_CMS.4": 1,
"ALC_DEL.1": 1,
"ALC_DVS.2": 5,
"ALC_FLR": 3,
"ALC_LCD.1": 1,
"ALC_TAT.1": 1
},
"ATE": {
"ATE_COV": 1,
"ATE_DPT": 1,
"ATE_FUN": 1,
"ATE_IND": 1
},
"AVA": {
"AVA_VAN": 1,
"AVA_VAN.5": 4
}
},
"cc_security_level": {
"EAL": {
"EAL 1": 1,
"EAL 2": 2,
"EAL 2+": 1,
"EAL 4": 5,
"EAL 4 augmented": 3,
"EAL 5": 4
}
},
"cc_sfr": {},
"certification_process": {
"ConfidentialDocument": {
"1, 2021-09-09, EVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY), T\u00dcV Informationstechnik GmbH, (confidential document) [8] Protection profiles: 7 specifically \u2022 AIS 20, Version 3, Funktionalit\u00e4tsklassen und": 1,
"Version 1.0\u2019 (confidential document) [12] Guidance documentation for the TOE: User\u2019s Manual \u2018CardOS V5.4\u2019, \u2013, 2020-02, Atos Information": 1,
"being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1,
"\u201cEvaluation Technical Report for Conmposite Evaluation (ETR Comp)\u201d, T\u00dcV Informationstechnik GmbH (confidential document) [11] Configuration list for the TOE, Revision 1.30, 2020-05-08, Configuration List \u2019CardOS DI V5.4": 1
}
},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {
"Generic": {
"Crypto Library 2.02.010": 1
}
},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"TUV": {
"T\u00dcV Informationstechnik": 5
}
},
"hash_function": {
"SHA": {
"SHA2": {
"SHA-2": 3
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RNG": 1
}
},
"side_channel_analysis": {
"FI": {
"fault induction": 1
},
"SCA": {
"side channel": 3,
"side-channel": 1
},
"other": {
"JIL": 3,
"Oracle attack": 1
}
},
"standard_id": {
"BSI": {
"AIS 20": 2,
"AIS 25": 2,
"AIS 26": 2,
"AIS 31": 2,
"AIS 36": 4,
"AIS 37": 2,
"AIS 46": 2
},
"ISO": {
"ISO/IEC 15408": 4,
"ISO/IEC 17065": 2,
"ISO/IEC 18045": 4
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 2
}
}
},
"technical_report_id": {
"BSI": {
"BSI 24": 1,
"BSI 7148": 1
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"Infineon": {
"Infineon": 6,
"Infineon Technologies AG": 1
}
},
"vulnerability": {}
},
"report_metadata": {
"/Author": "Federal Office for Information Security",
"/Keywords": "\"Common Criteria, Certification, Zertifizierung, CardOS, Smartcard\"",
"/Subject": "Common Criteria, Certification, Zertifizierung, CardOS, Smartcard",
"/Title": "BSI-DSZ-CC-1112-V2-2021 Certification Report (V2.0)",
"pdf_file_size_bytes": 383213,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 27
},
"st_filename": "1112b_pdf.pdf",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 2
},
"ECDH": {
"ECDH": 6
},
"ECDSA": {
"ECDSA": 10
}
},
"FF": {
"DH": {
"DH": 1,
"Diffie-Hellman": 9
},
"DSA": {
"DSA": 2
}
}
},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-0891": 3,
"BSI-DSZ-CC-0891-V4-2019": 1,
"BSI-DSZ-CC-1112": 1
}
},
"cc_claims": {
"A": {
"A.CGA": 6,
"A.SCA": 7
},
"O": {
"O.AES": 1,
"O.RND": 1,
"O.SHA": 1,
"O.TDES": 1
},
"OE": {
"OE.HID_VAD": 12
},
"T": {
"T.RND": 3
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0035-2007": 2,
"BSI-CC-PP-0056-V2-": 1,
"BSI-CC-PP-0056-V2-2012-": 1,
"BSI-CC-PP-0056-V2-2012-MA-02": 10,
"BSI-CC-PP-0059-": 5,
"BSI-CC-PP-0059-2009-MA-02": 27,
"BSI-CC-PP-0068-": 1,
"BSI-CC-PP-0068-V2-2011-MA-01": 37,
"BSI-CC-PP-0071-": 2,
"BSI-CC-PP-0071-2012-MA-01": 7,
"BSI-CC-PP-0072-": 1,
"BSI-CC-PP-0072-2012-": 1,
"BSI-CC-PP-0072-2012-MA-": 1,
"BSI-CC-PP-0072-2012-MA-01": 3,
"BSI-CC-PP-0084-": 1,
"BSI-CC-PP-0084-2014": 3,
"BSI-CC-PP-0086-2015": 6,
"BSI-PP0059-2009": 1
}
},
"cc_sar": {
"ADV": {
"ADV_ARC.1": 4,
"ADV_FSP.4": 3,
"ADV_IMP.1": 3,
"ADV_TDS.3": 3
},
"AGD": {
"AGD_OPE.1": 3,
"AGD_PRE.1": 3
},
"ALC": {
"ALC_CMC.4": 1,
"ALC_CMS.4": 1,
"ALC_DEL.1": 1,
"ALC_DVS.2": 6,
"ALC_FLR.1": 1,
"ALC_LCD.1": 1,
"ALC_TAT.1": 1
},
"ASE": {
"ASE_CCL": 10,
"ASE_CCL.1": 1,
"ASE_ECD": 4,
"ASE_ECD.1": 1,
"ASE_INT": 19,
"ASE_INT.1": 1,
"ASE_OBJ": 16,
"ASE_OBJ.2": 1,
"ASE_REQ": 43,
"ASE_REQ.2": 1,
"ASE_SPD": 7,
"ASE_SPD.1": 1,
"ASE_TSS": 24,
"ASE_TSS.1": 1
},
"ATE": {
"ATE_COV.2": 1,
"ATE_DPT.1": 2,
"ATE_FUN.1": 1,
"ATE_IND.2": 1
},
"AVA": {
"AVA_VAN.5": 6
}
},
"cc_security_level": {
"EAL": {
"EAL 6+": 1,
"EAL4": 10,
"EAL4 augmented": 4,
"EAL6": 2,
"EAL6 augmented": 1,
"EAL6+": 1
}
},
"cc_sfr": {
"FAU": {
"FAU_SAS.1": 1
},
"FCS": {
"FCS_CKM": 93,
"FCS_CKM.1": 24,
"FCS_CKM.2": 9,
"FCS_CKM.4": 60,
"FCS_CKM.4.1": 1,
"FCS_COP": 156,
"FCS_COP.1": 16,
"FCS_RND.1": 2,
"FCS_RNG": 6,
"FCS_RNG.1": 23,
"FCS_RNG.1.1": 2,
"FCS_RNG.1.2": 2
},
"FDP": {
"FDP_ACC": 58,
"FDP_ACC.1": 33,
"FDP_ACF": 47,
"FDP_ACF.1": 31,
"FDP_DAU": 10,
"FDP_DAU.1": 1,
"FDP_DAU.2": 2,
"FDP_IFC.1": 18,
"FDP_ITC.1": 18,
"FDP_ITC.2": 18,
"FDP_ITT.1": 4,
"FDP_RIP.1": 20,
"FDP_RIP.1.1": 1,
"FDP_SDC.1": 1,
"FDP_SDI": 19,
"FDP_SDI.1": 3,
"FDP_SDI.2": 5,
"FDP_UCT": 13,
"FDP_UCT.1": 1,
"FDP_UIT": 22,
"FDP_UIT.1": 4
},
"FIA": {
"FIA_AFL": 63,
"FIA_AFL.1": 14,
"FIA_API": 1,
"FIA_API.1": 12,
"FIA_API.1.1": 1,
"FIA_UAU": 71,
"FIA_UAU.1": 31,
"FIA_UAU.1.1": 5,
"FIA_UAU.1.2": 1,
"FIA_UAU.4": 2,
"FIA_UAU.5": 5,
"FIA_UAU.6": 3,
"FIA_UID": 3,
"FIA_UID.1": 19,
"FIA_UID.1.1": 3,
"FIA_UID.1.2": 1
},
"FMT": {
"FMT_LIM": 2,
"FMT_LIM.1": 1,
"FMT_LIM.2": 1,
"FMT_MOF.1": 12,
"FMT_MOF.1.1": 1,
"FMT_MSA": 22,
"FMT_MSA.1": 8,
"FMT_MSA.2": 16,
"FMT_MSA.2.1": 1,
"FMT_MSA.3": 25,
"FMT_MSA.3.1": 1,
"FMT_MSA.3.2": 1,
"FMT_MSA.4": 10,
"FMT_MSA.4.1": 1,
"FMT_MTD": 48,
"FMT_MTD.1": 4,
"FMT_SMF.1": 40,
"FMT_SMF.1.1": 1,
"FMT_SMR.1": 32,
"FMT_SMR.1.1": 1,
"FMT_SMR.1.2": 1
},
"FPT": {
"FPT_EMS": 24,
"FPT_EMS.1": 11,
"FPT_FLS.1": 17,
"FPT_FLS.1.1": 1,
"FPT_ITT.1": 4,
"FPT_PHP.1": 11,
"FPT_PHP.1.1": 1,
"FPT_PHP.1.2": 1,
"FPT_PHP.3": 18,
"FPT_PHP.3.1": 1,
"FPT_RIP.1.1": 1,
"FPT_TST": 1,
"FPT_TST.1": 15,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1,
"FPT_TST.2": 3
},
"FRU": {
"FRU_FLT.2": 6
},
"FTP": {
"FTP_ITC": 47,
"FTP_ITC.1": 15,
"FTP_TRP.1": 6
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 6
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 203
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 3,
"Key agreement": 1
},
"MAC": {
"MAC": 16
}
},
"device_model": {},
"ecc_curve": {
"Brainpool": {
"brainpoolP256r1": 2,
"brainpoolP384r1": 2,
"brainpoolP512r1": 2
},
"NIST": {
"Curve P-256": 2,
"Curve P-384": 2,
"Curve P-521": 2,
"NIST P-256": 4,
"NIST P-384": 4,
"NIST P-521": 4,
"P-256": 14,
"P-384": 10,
"P-521": 6,
"secp256r1": 2,
"secp384r1": 2,
"secp521r1": 2
}
},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA2": {
"SHA-2": 20,
"SHA-224": 8,
"SHA-256": 11,
"SHA-384": 10,
"SHA-512": 8
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RND": 4,
"RNG": 15
}
},
"side_channel_analysis": {
"FI": {
"DFA": 1,
"Malfunction": 9,
"fault injection": 1,
"physical tampering": 5
},
"SCA": {
"Leak-Inherent": 5,
"Physical Probing": 2,
"SPA": 1,
"physical probing": 2,
"timing attacks": 1
}
},
"standard_id": {
"BSI": {
"AIS 20": 1,
"AIS 31": 2,
"AIS 36": 1
},
"CC": {
"CCMB-2017-04-001": 1,
"CCMB-2017-04-002": 1,
"CCMB-2017-04-003": 1,
"CCMB-2017-04-004": 1
},
"FIPS": {
"FIPS PUB 140-2": 1,
"FIPS PUB 180-4": 1,
"FIPS PUB 186-4": 1,
"FIPS PUB 197": 1,
"FIPS PUB 46-3": 1
},
"ICAO": {
"ICAO": 7
},
"ISO": {
"ISO/IEC 14443": 4,
"ISO/IEC 15408-1": 2,
"ISO/IEC 15408-2": 1,
"ISO/IEC 15408-3": 1,
"ISO/IEC 7816-3": 1
},
"PKCS": {
"PKCS #1": 5,
"PKCS #15": 1,
"PKCS1": 1
},
"RFC": {
"RFC 5639": 1
},
"X509": {
"X.509": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 47
}
},
"DES": {
"3DES": {
"TDEA": 1,
"TDES": 5,
"Triple-DES": 1
},
"DES": {
"DES": 1
}
},
"constructions": {
"MAC": {
"CMAC": 15,
"KMAC": 1
}
}
},
"technical_report_id": {
"BSI": {
"BSI TR-03110": 1,
"BSI TR-03116": 1
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"Infineon": {
"Infineon": 11,
"Infineon Technologies AG": 2
},
"NXP": {
"NXP Semiconductors": 1
},
"STMicroelectronics": {
"STMicroelectronics": 1
}
},
"vulnerability": {}
},
"st_metadata": {
"/Author": "Atos Information Technology GmbH",
"/CreationDate": "D:20200417171507+02\u002700\u0027",
"/Creator": "Microsoft\u00ae Word 2010",
"/Keywords": "Common Criteria, CardOS, ASE, QSCD",
"/ModDate": "D:20200417172147+02\u002700\u0027",
"/Producer": "Microsoft\u00ae Word 2010",
"/Subject": "Security Target CardOS DI V5.4 QES",
"/Title": "Security Target \u0027CardOS DI V5.4 QES Version 1.0\u0027, Rev. 1.61R, Edition 04/2020",
"pdf_file_size_bytes": 1584620,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": true,
"pdf_number_of_pages": 128
}
},
"protection_profile_links": {
"_type": "Set",
"elements": [
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0059b_pdf.pdf",
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0071b_pdf.pdf",
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0072b_pdf.pdf"
]
},
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112V2a_pdf.pdf",
"scheme": "DE",
"security_level": {
"_type": "Set",
"elements": [
"AVA_VAN.5",
"ALC_DVS.2",
"EAL4+"
]
},
"st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1112b_pdf.pdf",
"state": {
"_type": "sec_certs.sample.cc_eucc_common.InternalState",
"cert": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": false,
"json_hash": null,
"pdf_hash": "b6db7d65afead182359769c5fccd346606547f4962980ad1745b20c59fe428a7",
"txt_hash": "0503a32f4ad8aefbeb584382d0776784b288f02fe497662c974b86df3357cafa"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "000cacb7ffd4ca40a05fc4271ea1cc9cae3f8082bef8d7e4269b61b7429d5cb8",
"txt_hash": "836fc0581960b0c7aa65a67c1dc6cb3a9e6f6254b5b004d92ff7000651d9f363"
},
"st": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "c709800a9b6ff032f04dc4fd9b5baeec7b852250e8c14e36082a92a98381a4bd",
"txt_hash": "32953ba2b3caea4c3626373b0b30f89516965b508d7c5f37de35ed744271168a"
}
},
"status": "active"
}