This page was not yet optimized for use on mobile
devices.
MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121)
CSV information
| Status | active |
|---|---|
| Valid from | 22.02.2023 |
| Valid until | 22.02.2028 |
| Scheme | 🇩🇪 DE |
| Manufacturer | MaskTech International GmbH |
| Category | ICs, Smart Cards and Smart Card-Related Devices and Systems |
| Security level | AVA_VAN.5, EAL5+, ALC_DVS.2 |
| Protection profiles |
Heuristics summary
Certificate ID: BSI-DSZ-CC-1147-V2-2023
Certificate
certificate file processing did not finish successfully.
Show more...
Download pdf:
OK
Convert pdf to text:
OK
Extract keywords:
ERROR
Extracted keywords
Protocols
PACESecurity level
EAL 5, EAL 2, EAL 5 augmentedSecurity Assurance Requirements (SAR)
ALC_DVS.2, AVA_VAN.5Protection profiles
BSI-CC-PP-0056-Certificates
BSI-DSZ-CC-1147-V2-2023Standards
ISO/IEC 15408, ISO/IEC 18045, ICAOCertification report
Extracted keywords
Symmetric Algorithms
AES, DESAsymmetric Algorithms
ECDH, ECC, Diffie-HellmanProtocols
PACE, PGPRandomness
RNGIC data groups
EF.DG4Vendor
NXP Semiconductors, NXPSecurity level
EAL 5, EAL 2, EAL 1, EAL 4, EAL6, EAL5+, EAL 5+, EAL 6, EAL6+, EAL 5 augmented, EAL6 augmentedSecurity Assurance Requirements (SAR)
ADV_ARC, ALC_DVS.2, ALC_FLR, ALC_FLR.1, ALC_CMC.4, ALC_CMS.5, ALC_DEL.1, ALC_LCD.1, ALC_TAT.2, ALC_COMP.1, ATE_IND, AVA_VAN.5, AVA_VAN, ASE_TSS.2Protection profiles
BSI-CC-PP-0056-, BSI-CC-PP-0068-, BSI-CC-PP-0084-2014, BSI-CC-PP-0056-V2-2012-, BSI-CC-PP-0056-V2-2012-MA-02, BSI-CC-PP-0068-V2-2011-MA01Certificates
BSI-DSZ-CC-1147-V2-2023, BSI-DSZ-CC-1147-2020, BSI-DSZ-CC-1136-V3-2022, BSI-DSZ-CC-1040-2019, BSI-DSZ-CC-S-0207-, BSI-DSZ-CC-S-0183-2021, BSI-DSZ-CC-S-0189-2021Evaluation facilities
TÜV Informationstechnik, SRC Security Research & ConsultingSide-channel analysis
JILCertification process
being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification, Access Control, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH (confidential document) [7] Security Target Lite BSI-DSZ-CC-1147-V2-2023, Version 1.3, 13 January 2023, Machine Readable, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), SRC Security Research & Consulting GmbH (confidential document) [9] Common Criteria Protection Profile - Electronic Passport using Standard Inspection Procedure, Configuration List for MTCOS Pro 2.5 ePassport / P71D352 (N7121), MaskTech International GmbH (confidential document) [13] ICAO. Technical Report: Supplemental Access Control for Machine Readable Travel Documents. V1Standards
AIS 34, AIS 36, AIS 37, AIS 26, AIS 25, AIS 20, AIS 31, AIS 46, AIS 35, AIS 14, AIS 19, AIS 32, AIS 38, AIS 47, AIS36, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, ICAOTechnical reports
BSI 7148File metadata
| Title | Certification Report BSI-DSZ-CC-1147-V2-2023 |
|---|---|
| Subject | Common Criteria, Certification, Zertifizierung, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH |
| Keywords | Common Criteria, Certification, Zertifizierung, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH |
| Author | Bundesamt für Sicherheit in der Informationstechnik |
| Pages | 26 |
Frontpage
| Certificate ID | BSI-DSZ-CC-1147-V2-2023 |
|---|---|
| Certified item | MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121 |
| Certification lab | BSI |
| Developer | MaskTech International GmbH |
References
Outgoing- BSI-DSZ-CC-1040-2019 - archived - NXP Secure Smart Card Controller N7121 with IC Dedicated Software and Crypto Library
- BSI-DSZ-CC-1147-2020 - archived - MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121)
- BSI-DSZ-CC-1136-V3-2022 - active - NXP Secure Smart Card Controller N7121 with IC Dedicated Software and Crypto Library (R1/R2/R3/R4)
- BSI-DSZ-CC-1147-V3-2023 - active - MTCOS Pro 2.6 EAC with PACE / P71D352 (N7121)
- BSI-DSZ-CC-1148-V2-2023 - active - MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121) (BAC)
Security target
Extracted keywords
Symmetric Algorithms
AES, DES, 3DES, Triple-DES, TDES, TDEA, KMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, ECC, Diffie-Hellman, DHHash functions
SHA-1, SHA-224, SHA-256, SHA-384, SHA-512Schemes
MAC, Key AgreementProtocols
PACERandomness
RNG, RNDBlock cipher modes
CBCIC data groups
EF.DG1, EF.DG2, EF.DG3, EF.DG4, EF.DG5, EF.DG16, EF.DG14, EF.DG15, EF.DG13, EF.COM, EF.SODTrusted Execution Environments
SSCVendor
NXP Semiconductors, NXPSecurity level
EAL5, EAL6, EAL5+, EAL4+, EAL4, EAL5 augmented, EAL6 augmentedClaims
O.RND, O.TDES, O.AES, O.SHA, O.PUF, O.RSA, O.ECCSecurity Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.4, ADV_TDS.3, ADV_IMP.1, ADV_FSP.5, ADV_INT.2, ADV_TDS.4, AGD_PRE.1, AGD_OPE.1, ALC_DVS.2, ALC_DEL.1, ALC_CMC.4, ALC_CMS.5, ALC_LCD.1, ALC_TAT.2, ALC_FLR.1, ATE_DPT.2, ATE_DPT.3, ATE_DPT.1, ATE_COV.2, ATE_FUN.1, ATE_IND.2, AVA_VAN.3, AVA_VAN.5, ASE_INT.1, ASE_CCL.1, ASE_SPD.1, ASE_OBJ.2, ASE_ECD.1, ASE_REQ.2, ASE_TSS.1, ASE_TSS.2Security Functional Requirements (SFR)
FAU_SAS.1, FAU_SAS.1.1, FCS_COP, FCS_RND.1, FCS_RNG.1, FCS_CKM.1, FCS_CKM, FCS_CKM.2, FCS_COP.1, FCS_CKM.4, FCS_CKM.4.1, FCS_RND.1.1, FCS_RND.1.2, FCS_RNG, FDP_RIP.1, FDP_ITC.1, FDP_ITC.2, FDP_ACC.1, FDP_ACC, FDP_ACF.1, FDP_ACF, FDP_UCT, FDP_UIT, FDP_RIP.1.1, FDP_UCT.1, FDP_IFC.1, FDP_UIT.1, FDP_ITC, FDP_SDC.1, FDP_SDI.2, FDP_ITT.1, FIA_API, FIA_UID, FIA_UAU, FIA_API.1, FIA_AFL, FIA_UID.1, FIA_UAU.1, FIA_UAU.4, FIA_UAU.4.1, FIA_UAU.5, FIA_UAU.6, FIA_API.1.1, FIA_AFL.1, FIA_ACC.1.1, FMT_MTD, FMT_MSA.3, FMT_MTD.3, FMT_SMR, FMT_SMR.1, FMT_SMF.1, FMT_SMF.1.1, FMT_LIM.1, FMT_LIM.2, FMT_LIM.1.1, FMT_LIM.2.1, FMT_MTD.1, FMT_MTD.3.1, FMT_MSA.1, FMT_LIM, FMT_MSA, FPT_EMS.1, FPT_EMS.1.1, FPT_EMS.1.2, FPT_FLS.1, FPT_FLS.1.1, FPT_TST.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_PHP.3, FPT_PHP.3.1, FRU_FLT.2, FTP_ITC.1, FTP_TRP.1, FTP_ITCProtection profiles
BSI-CC-PP- 0084-2014, BSI-CC-PP-0068-V2, BSI-CC-PP-0056-, BSI-CC-PP-0055, BSI-CC-PP-0056-V2-2011, BSI-CC-PP-0056-V2-2012, BSI-CC-PP-0068-V2-2011, BSI-CC-PP-0055-2009, BSI-CC-PP-0056-V2-2012-MA-02, BSI-CC-PP-0068-V2-2011-MA-01, BSI-CC-PP-0084-2014Certificates
BSI-DSZ-CC-S-0183-2021, BSI-DSZ-CC-S-0189-2021, BSI-DSZ-CC-S-0207-2021, BSI-DSZ-CC-1147-Side-channel analysis
Leak-Inherent, physical probing, DPA, Physical tampering, physical tampering, Malfunction, malfunction, fault injection, reverse engineeringStandards
FIPS 140-3, FIPS 180-4, FIPS PUB 140-3, FIPS PUB 180-4, FIPS PUB 186-4, FIPS PUB 197, NIST SP 800-38B, NIST SP 800-56A, NIST SP 800-67, NIST SP 800-90A, AIS 31, RFC 2631, RFC 3369, RFC 8017, ISO/IEC 7816, ISO/IEC 14443, ISO/IEC 7816-4, ISO/IEC 10116-2017, ICAO, CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003, CCMB-2017-04-004File metadata
| Title | MTCOS Pro 2.5 ICAO - EAC with PACE / P71D352 (N7121)- Security Target lite |
|---|---|
| Subject | Common Criteria Certification |
| Keywords | Common Criteria, CC, Machine Readable Travel Document, MRTD, EAC with PACE, ePass, MTCOS, EAL 5+ |
| Author | MaskTech International GmbH |
| Pages | 109 |
Heuristics
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.Certificate ID
BSI-DSZ-CC-1147-V2-2023Extracted SARs
ADV_ARC.1, ADV_FSP.5, ADV_IMP.1, ADV_INT.2, ADV_TDS.4, AGD_OPE.1, AGD_PRE.1, ALC_CMC.4, ALC_CMS.5, ALC_COMP.1, ALC_DEL.1, ALC_DVS.2, ALC_FLR.1, ALC_LCD.1, ALC_TAT.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.2, ATE_COV.2, ATE_DPT.3, ATE_FUN.1, ATE_IND.2, AVA_VAN.5Similar certificates
| Name | Certificate ID | |
|---|---|---|
| MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121) | BSI-DSZ-CC-1147-2020 | Compare |
| MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121) (BAC) | BSI-DSZ-CC-1148-V2-2023 | Compare |
| MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121) (BAC) | BSI-DSZ-CC-1148-2020 | Compare |
Scheme data
| Cert Id | BSI-DSZ-CC-1073-V3-2026 | |
|---|---|---|
| Product | Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600 | |
| Vendor | MaskTech International GmbH | |
| Certification Date | 11.02.2026 | |
| Category | Electronic ID documents | |
| Url | https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Hoheitliche_Dokumente-IC_mit_Anwendung/1073.html | |
| Enhanced | ||
| Product | Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600 | |
| Applicant | MaskTech International GmbH Nordostpark 45 90411 Nürnberg | |
| Evaluation Facility | SRC Security Research & Consulting GmbH | |
| Assurance Level | EAL4+,ALC_DVS.2,ALC_FLR.3,AVA_VAN.5 | |
| Certification Date | 11.02.2026 | |
| Expiration Date | 10.02.2031 | |
| Entries | [frozendict({'id': 'BSI', 'description': 'The Target of evaluation (TOE) of this evaluation is the product Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600provided by MaskTech International GmbH. The TOE is an electronic travel document representing a contactless smart card providing Password Authenticated Connection Establishment (PACE) and the Active Authentication protocol according to the ’ICAO 9303’ and BSI TR-03110 and is programmed according to ICAO Technical Report “Supplemental Access Control”.'}), frozendict({'id': 'BSI-DSZ-CC-1073-V2-2020', 'description': 'Technical Report "Supplemental Access Control"'}), frozendict({'id': 'BSI-DSZ-CC-1073-2020', 'description': 'Certificate'})] | |
| Report Link | https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3a_pdf.pdf?__blob=publicationFile&v=2 | |
| Target Link | https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3b_pdf.pdf?__blob=publicationFile&v=4 | |
| Cert Link | https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3c_pdf.pdf?__blob=publicationFile&v=3 | |
| Description | The target of evaluation (TOE) is the product Xaica-α PLUS ePassport on MTCOS Pro 2.5 with SAC (PACE) and Active Authentication / ST31G480 D01 provided by MaskTech International GmbH. The TOE is an electronic travel document representing a contactless smart card providing Password Authenticated Connection Establishment (PACE) and the Active Authentication protocol according to the ICAO 9303 and BSI TR-03110 and is programmed according to ICAO Technical Report “Supplemental Access Control”. | |
| Subcategory | IC with applications | |
References
Loading...
Updates Feed
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate data changed.
-
The certificate was first processed.
Raw data
{
"_type": "sec_certs.sample.cc.CCCertificate",
"category": "ICs, Smart Cards and Smart Card-Related Devices and Systems",
"cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1147V2c_pdf.pdf",
"dgst": "06d5ee81a5b6b59c",
"heuristics": {
"_type": "sec_certs.sample.cc_eucc_common.Heuristics",
"annotated_references": null,
"cert_id": "BSI-DSZ-CC-1147-V2-2023",
"cert_lab": [
"BSI"
],
"cpe_matches": null,
"direct_transitive_cves": null,
"eal": "EAL5+",
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_SPD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_INT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_ECD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DVS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_FUN",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 4
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_TDS",
"level": 4
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_DPT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_REQ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_OBJ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DEL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_LCD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_CCL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_TAT",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_COMP",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_TSS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_ARC",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_COV",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_IMP",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_INT",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_FLR",
"level": 1
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"2.5"
]
},
"indirect_transitive_cves": null,
"next_certificates": null,
"prev_certificates": null,
"protection_profiles": {
"_type": "Set",
"elements": [
"a33327d40f253f46"
]
},
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-1148-V2-2023",
"BSI-DSZ-CC-1147-V3-2023"
]
},
"directly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-1136-V3-2022",
"BSI-DSZ-CC-1147-2020",
"BSI-DSZ-CC-1040-2019"
]
},
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-1148-V3-2023",
"BSI-DSZ-CC-1148-V2-2023",
"BSI-DSZ-CC-1147-V3-2023"
]
},
"indirectly_referencing": {
"_type": "Set",
"elements": [
"BSI-DSZ-CC-1136-V2-2022",
"BSI-DSZ-CC-1033-2019",
"BSI-DSZ-CC-1136-2021",
"BSI-DSZ-CC-0973-2016",
"BSI-DSZ-CC-1147-2020",
"BSI-DSZ-CC-0973-V2-2016",
"BSI-DSZ-CC-0782-2012",
"BSI-DSZ-CC-0891-V2-2016",
"BSI-DSZ-CC-1034-2019",
"BSI-DSZ-CC-1136-V3-2022",
"BSI-DSZ-CC-1040-2019",
"BSI-DSZ-CC-0996-2018",
"BSI-DSZ-CC-0891-2015",
"BSI-DSZ-CC-0995-2018",
"BSI-DSZ-CC-0891-V3-2018"
]
}
},
"scheme_data": {
"category": "Electronic ID documents",
"cert_id": "BSI-DSZ-CC-1073-V3-2026",
"certification_date": "2026-02-11",
"enhanced": {
"applicant": "MaskTech International GmbH Nordostpark 45 90411 N\u00fcrnberg",
"assurance_level": "EAL4+,ALC_DVS.2,ALC_FLR.3,AVA_VAN.5",
"cert_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3c_pdf.pdf?__blob=publicationFile\u0026v=3",
"certification_date": "2026-02-11",
"description": "The target of evaluation (TOE) is the product Xaica-\u03b1 PLUS ePassport on MTCOS Pro 2.5 with SAC (PACE) and Active Authentication / ST31G480 D01 provided by MaskTech International GmbH. The TOE is an electronic travel document representing a contactless smart card providing Password Authenticated Connection Establishment (PACE) and the Active Authentication protocol according to the ICAO 9303 and BSI TR-03110 and is programmed according to ICAO Technical Report \u201cSupplemental Access Control\u201d.",
"entries": [
{
"description": "The Target of evaluation (TOE) of this evaluation is the product Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600provided by MaskTech International GmbH. The TOE is an electronic travel document representing a contactless smart card providing Password Authenticated Connection Establishment (PACE) and the Active Authentication protocol according to the \u2019ICAO 9303\u2019 and BSI TR-03110 and is programmed according to ICAO Technical Report \u201cSupplemental Access Control\u201d.",
"id": "BSI"
},
{
"description": "Technical Report \"Supplemental Access Control\"",
"id": "BSI-DSZ-CC-1073-V2-2020"
},
{
"description": "Certificate",
"id": "BSI-DSZ-CC-1073-2020"
}
],
"evaluation_facility": "SRC Security Research \u0026 Consulting GmbH",
"expiration_date": "2031-02-10",
"product": "Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600",
"report_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3a_pdf.pdf?__blob=publicationFile\u0026v=2",
"target_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1000/1073V3b_pdf.pdf?__blob=publicationFile\u0026v=4"
},
"product": "Xaica-a PLUS ePassport on MTCOS Pro 2.6 with SAC (PACE) and Active Authentication / ST31N600",
"subcategory": "IC with applications",
"url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Hoheitliche_Dokumente-IC_mit_Anwendung/1073.html",
"vendor": "MaskTech International GmbH"
},
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": null,
"indirectly_referenced_by": null,
"indirectly_referencing": null
},
"verified_cpe_matches": null
},
"maintenance_updates": {
"_type": "Set",
"elements": []
},
"manufacturer": "MaskTech International GmbH",
"manufacturer_web": "https://www.masktech.de/",
"name": "MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121)",
"not_valid_after": "2028-02-22",
"not_valid_before": "2023-02-22",
"pdf_data": {
"_type": "sec_certs.sample.cc_eucc_common.PdfData",
"cert_filename": "1147V2c_pdf.pdf",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-1147-V2-2023": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0056-": 1
}
},
"cc_sar": {
"ALC": {
"ALC_DVS.2": 1
},
"AVA": {
"AVA_VAN.5": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 1,
"EAL 5": 2,
"EAL 5 augmented": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 2
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"ICAO": {
"ICAO": 1
},
"ISO": {
"ISO/IEC 15408": 2,
"ISO/IEC 18045": 2
}
},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": null,
"report_filename": "1147V2a_pdf.pdf",
"report_frontpage": {
"DE": {
"cc_security_level": "Common Criteria Part 3 conformant EAL 5 augmented by ALC_DVS.2 and AVA_VAN.5",
"cc_version": "PP conformant plus product specific extensions Common Criteria Part 2 extended",
"cert_id": "BSI-DSZ-CC-1147-V2-2023",
"cert_item": "MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121",
"cert_lab": "BSI",
"developer": "MaskTech International GmbH",
"match_rules": [
"(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
],
"ref_protection_profiles": "Machine Readable Travel Document with \"ICAO Application\" Extended Access Control with PACE, Version 1.3.2, 5 December 2012, BSI-CC-PP-0056- V2-2012-MA-02"
}
},
"report_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 1
},
"ECDH": {
"ECDH": 1
}
},
"FF": {
"DH": {
"Diffie-Hellman": 1
}
}
},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-1040-2019": 1,
"BSI-DSZ-CC-1136-V3-2022": 7,
"BSI-DSZ-CC-1147-2020": 3,
"BSI-DSZ-CC-1147-V2-2023": 17,
"BSI-DSZ-CC-S-0183-2021": 1,
"BSI-DSZ-CC-S-0189-2021": 1,
"BSI-DSZ-CC-S-0207-": 1
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0056-": 1,
"BSI-CC-PP-0056-V2-2012-": 1,
"BSI-CC-PP-0056-V2-2012-MA-02": 2,
"BSI-CC-PP-0068-": 1,
"BSI-CC-PP-0068-V2-2011-MA01": 1,
"BSI-CC-PP-0084-2014": 2
}
},
"cc_sar": {
"ADV": {
"ADV_ARC": 1
},
"ALC": {
"ALC_CMC.4": 1,
"ALC_CMS.5": 1,
"ALC_COMP.1": 1,
"ALC_DEL.1": 1,
"ALC_DVS.2": 5,
"ALC_FLR": 1,
"ALC_FLR.1": 3,
"ALC_LCD.1": 1,
"ALC_TAT.2": 1
},
"ASE": {
"ASE_TSS.2": 3
},
"ATE": {
"ATE_IND": 1
},
"AVA": {
"AVA_VAN": 1,
"AVA_VAN.5": 4
}
},
"cc_security_level": {
"EAL": {
"EAL 1": 1,
"EAL 2": 3,
"EAL 4": 1,
"EAL 5": 8,
"EAL 5 augmented": 3,
"EAL 5+": 1,
"EAL 6": 1,
"EAL5+": 1,
"EAL6": 4,
"EAL6 augmented": 3,
"EAL6+": 1
}
},
"cc_sfr": {},
"certification_process": {
"ConfidentialDocument": {
"Access Control, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH (confidential document) [7] Security Target Lite BSI-DSZ-CC-1147-V2-2023, Version 1.3, 13 January 2023, Machine Readable": 1,
"Configuration List for MTCOS Pro 2.5 ePassport / P71D352 (N7121), MaskTech International GmbH (confidential document) [13] ICAO. Technical Report: Supplemental Access Control for Machine Readable Travel Documents. V1": 1,
"MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), SRC Security Research \u0026 Consulting GmbH (confidential document) [9] Common Criteria Protection Profile - Electronic Passport using Standard Inspection Procedure": 1,
"being maintained, is not given any longer. In particular, prior to the dissemination of confidential documentation and information related to the TOE or resulting from the evaluation and certification": 1
}
},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 26
},
"PGP": {
"PGP": 1
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"SRC": {
"SRC Security Research \u0026 Consulting": 3
},
"TUV": {
"T\u00dcV Informationstechnik": 1
}
},
"hash_function": {},
"ic_data_group": {
"EF": {
"EF.DG4": 2
}
},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RNG": 2
}
},
"side_channel_analysis": {
"other": {
"JIL": 5
}
},
"standard_id": {
"BSI": {
"AIS 14": 1,
"AIS 19": 1,
"AIS 20": 3,
"AIS 25": 4,
"AIS 26": 4,
"AIS 31": 3,
"AIS 32": 1,
"AIS 34": 4,
"AIS 35": 2,
"AIS 36": 4,
"AIS 37": 3,
"AIS 38": 1,
"AIS 46": 3,
"AIS 47": 1,
"AIS36": 1
},
"ICAO": {
"ICAO": 10
},
"ISO": {
"ISO/IEC 15408": 4,
"ISO/IEC 17065": 2,
"ISO/IEC 18045": 4
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 1
}
},
"DES": {
"DES": {
"DES": 1
}
}
},
"technical_report_id": {
"BSI": {
"BSI 7148": 1
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"NXP": {
"NXP": 5,
"NXP Semiconductors": 9
}
},
"vulnerability": {}
},
"report_metadata": {
"/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
"/Keywords": "Common Criteria, Certification, Zertifizierung, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH",
"/Subject": "Common Criteria, Certification, Zertifizierung, MTCOS Pro 2.5 EAC with PACE / P71D352 (N7121), MaskTech International GmbH",
"/Title": "Certification Report BSI-DSZ-CC-1147-V2-2023",
"pdf_file_size_bytes": 439600,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.commoncriteriaportal.org/",
"https://www.bsi.bund.de/AIS",
"https://www.commoncriteriaportal.org/",
"https://www.sogis.eu/",
"https://www.bsi.bund.de/",
"https://www.bsi.bund.de/zertifizierung",
"https://www.bsi.bund.de/zertifizierungsreporte",
"http://www.commoncriteriaportal.org/cc/"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 26
},
"st_filename": "1147V2b_pdf.pdf",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 6
},
"ECDH": {
"ECDH": 7
},
"ECDSA": {
"ECDSA": 10
}
},
"FF": {
"DH": {
"DH": 9,
"Diffie-Hellman": 14
}
}
},
"cc_cert_id": {
"DE": {
"BSI-DSZ-CC-1147-": 1,
"BSI-DSZ-CC-S-0183-2021": 1,
"BSI-DSZ-CC-S-0189-2021": 1,
"BSI-DSZ-CC-S-0207-2021": 1
}
},
"cc_claims": {
"O": {
"O.AES": 1,
"O.ECC": 1,
"O.PUF": 1,
"O.RND": 1,
"O.RSA": 1,
"O.SHA": 1,
"O.TDES": 1
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP- 0084-2014": 1,
"BSI-CC-PP-0055": 1,
"BSI-CC-PP-0055-2009": 1,
"BSI-CC-PP-0056-": 1,
"BSI-CC-PP-0056-V2-2011": 1,
"BSI-CC-PP-0056-V2-2012": 1,
"BSI-CC-PP-0056-V2-2012-MA-02": 1,
"BSI-CC-PP-0068-V2": 1,
"BSI-CC-PP-0068-V2-2011": 1,
"BSI-CC-PP-0068-V2-2011-MA-01": 1,
"BSI-CC-PP-0084-2014": 1
}
},
"cc_sar": {
"ADV": {
"ADV_ARC.1": 3,
"ADV_FSP.4": 1,
"ADV_FSP.5": 1,
"ADV_IMP.1": 2,
"ADV_INT.2": 1,
"ADV_TDS.3": 1,
"ADV_TDS.4": 1
},
"AGD": {
"AGD_OPE.1": 2,
"AGD_PRE.1": 3
},
"ALC": {
"ALC_CMC.4": 1,
"ALC_CMS.5": 1,
"ALC_DEL.1": 2,
"ALC_DVS.2": 7,
"ALC_FLR.1": 1,
"ALC_LCD.1": 1,
"ALC_TAT.2": 1
},
"ASE": {
"ASE_CCL.1": 3,
"ASE_ECD.1": 3,
"ASE_INT.1": 3,
"ASE_OBJ.2": 3,
"ASE_REQ.2": 3,
"ASE_SPD.1": 3,
"ASE_TSS.1": 2,
"ASE_TSS.2": 1
},
"ATE": {
"ATE_COV.2": 1,
"ATE_DPT.1": 1,
"ATE_DPT.2": 2,
"ATE_DPT.3": 2,
"ATE_FUN.1": 1,
"ATE_IND.2": 1
},
"AVA": {
"AVA_VAN.3": 2,
"AVA_VAN.5": 7
}
},
"cc_security_level": {
"EAL": {
"EAL4": 1,
"EAL4+": 1,
"EAL5": 12,
"EAL5 augmented": 4,
"EAL5+": 1,
"EAL6": 2,
"EAL6 augmented": 2
}
},
"cc_sfr": {
"FAU": {
"FAU_SAS.1": 9,
"FAU_SAS.1.1": 1
},
"FCS": {
"FCS_CKM": 58,
"FCS_CKM.1": 18,
"FCS_CKM.2": 6,
"FCS_CKM.4": 39,
"FCS_CKM.4.1": 1,
"FCS_COP": 81,
"FCS_COP.1": 11,
"FCS_RND.1": 18,
"FCS_RND.1.1": 1,
"FCS_RND.1.2": 1,
"FCS_RNG": 3,
"FCS_RNG.1": 3
},
"FDP": {
"FDP_ACC": 17,
"FDP_ACC.1": 8,
"FDP_ACF": 15,
"FDP_ACF.1": 15,
"FDP_IFC.1": 5,
"FDP_ITC": 1,
"FDP_ITC.1": 14,
"FDP_ITC.2": 14,
"FDP_ITT.1": 1,
"FDP_RIP.1": 10,
"FDP_RIP.1.1": 1,
"FDP_SDC.1": 1,
"FDP_SDI.2": 1,
"FDP_UCT": 12,
"FDP_UCT.1": 2,
"FDP_UIT": 12,
"FDP_UIT.1": 3
},
"FIA": {
"FIA_ACC.1.1": 1,
"FIA_AFL": 8,
"FIA_AFL.1": 2,
"FIA_API": 9,
"FIA_API.1": 11,
"FIA_API.1.1": 1,
"FIA_UAU": 73,
"FIA_UAU.1": 5,
"FIA_UAU.4": 2,
"FIA_UAU.4.1": 1,
"FIA_UAU.5": 6,
"FIA_UAU.6": 3,
"FIA_UID": 15,
"FIA_UID.1": 7
},
"FMT": {
"FMT_LIM": 2,
"FMT_LIM.1": 15,
"FMT_LIM.1.1": 1,
"FMT_LIM.2": 12,
"FMT_LIM.2.1": 1,
"FMT_MSA": 1,
"FMT_MSA.1": 1,
"FMT_MSA.3": 3,
"FMT_MTD": 85,
"FMT_MTD.1": 14,
"FMT_MTD.3": 10,
"FMT_MTD.3.1": 1,
"FMT_SMF.1": 51,
"FMT_SMF.1.1": 1,
"FMT_SMR": 25,
"FMT_SMR.1": 13
},
"FPT": {
"FPT_EMS.1": 13,
"FPT_EMS.1.1": 2,
"FPT_EMS.1.2": 3,
"FPT_FLS.1": 10,
"FPT_FLS.1.1": 1,
"FPT_PHP.3": 10,
"FPT_PHP.3.1": 1,
"FPT_TST.1": 10,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1
},
"FRU": {
"FRU_FLT.2": 1
},
"FTP": {
"FTP_ITC": 15,
"FTP_ITC.1": 7,
"FTP_TRP.1": 4
}
},
"certification_process": {},
"cipher_mode": {
"CBC": {
"CBC": 12
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 326
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
},
"MAC": {
"MAC": 12
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 4
},
"SHA2": {
"SHA-224": 4,
"SHA-256": 5,
"SHA-384": 4,
"SHA-512": 4
}
}
},
"ic_data_group": {
"EF": {
"EF.COM": 3,
"EF.DG1": 10,
"EF.DG13": 1,
"EF.DG14": 5,
"EF.DG15": 2,
"EF.DG16": 9,
"EF.DG2": 4,
"EF.DG3": 13,
"EF.DG4": 13,
"EF.DG5": 3,
"EF.SOD": 5
}
},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RND": 1,
"RNG": 9
}
},
"side_channel_analysis": {
"FI": {
"Malfunction": 5,
"Physical tampering": 3,
"fault injection": 1,
"malfunction": 6,
"physical tampering": 1
},
"SCA": {
"DPA": 1,
"Leak-Inherent": 1,
"physical probing": 4
},
"other": {
"reverse engineering": 1
}
},
"standard_id": {
"BSI": {
"AIS 31": 1
},
"CC": {
"CCMB-2017-04-001": 2,
"CCMB-2017-04-002": 2,
"CCMB-2017-04-003": 2,
"CCMB-2017-04-004": 2
},
"FIPS": {
"FIPS 140-3": 2,
"FIPS 180-4": 1,
"FIPS PUB 140-3": 1,
"FIPS PUB 180-4": 1,
"FIPS PUB 186-4": 1,
"FIPS PUB 197": 1
},
"ICAO": {
"ICAO": 12
},
"ISO": {
"ISO/IEC 10116-2017": 1,
"ISO/IEC 14443": 2,
"ISO/IEC 7816": 4,
"ISO/IEC 7816-4": 1
},
"NIST": {
"NIST SP 800-38B": 1,
"NIST SP 800-56A": 1,
"NIST SP 800-67": 1,
"NIST SP 800-90A": 1
},
"RFC": {
"RFC 2631": 1,
"RFC 3369": 1,
"RFC 8017": 1
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 26
}
},
"DES": {
"3DES": {
"3DES": 12,
"TDEA": 1,
"TDES": 4,
"Triple-DES": 5
},
"DES": {
"DES": 3
}
},
"constructions": {
"MAC": {
"CMAC": 7,
"KMAC": 3
}
}
},
"technical_report_id": {},
"tee_name": {
"IBM": {
"SSC": 2
}
},
"tls_cipher_suite": {},
"vendor": {
"NXP": {
"NXP": 1,
"NXP Semiconductors": 9
}
},
"vulnerability": {}
},
"st_metadata": {
"/Author": "MaskTech International GmbH",
"/Keywords": "Common Criteria, CC, Machine Readable Travel Document, MRTD, EAC with PACE, ePass, MTCOS, EAL 5+",
"/Subject": "Common Criteria Certification",
"/Title": "MTCOS Pro 2.5 ICAO - EAC with PACE / P71D352 (N7121)- Security Target lite",
"pdf_file_size_bytes": 672115,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 109
}
},
"protection_profile_links": {
"_type": "Set",
"elements": [
"https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0056_V2b_pdf.pdf"
]
},
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1147V2a_pdf.pdf",
"scheme": "DE",
"security_level": {
"_type": "Set",
"elements": [
"ALC_DVS.2",
"EAL5+",
"AVA_VAN.5"
]
},
"st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1147V2b_pdf.pdf",
"state": {
"_type": "sec_certs.sample.cc_eucc_common.InternalState",
"cert": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": false,
"json_hash": null,
"pdf_hash": "aed4d4ec26119173be0d8c66a7721f431f6a48b18cb60654c4f9286c90036f6f",
"txt_hash": "88a20b57c8bc6829969931e4a83bfd0c09fd4a973dad1aea5554fedfaff93ab1"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "39b9994db06972e85dfa046510aefa5cd43d0b26ea4c635530cc81b76f1bb1c4",
"txt_hash": "092bd5269ee75dd25ec4e749bc66292437986925d2c18b3097c02c449ed908c0"
},
"st": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"pdf_hash": "e0234b64d6e02af7e595bc53c2fd8a5d767f6a4b14f0dc2ff5468d48df73997d",
"txt_hash": "46d7dab8f84dfecd7a0022b26fee566d1b4953454770b8ba27cc8ffc9e2af18a"
}
},
"status": "active"
}