secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0

CSV information

Status active
Valid from 24.02.2026
Valid until 23.02.2031
Scheme 🇩🇪 DE
Manufacturer Secunet Security Networks AG
Category Other Devices and Systems
Security level ALC_FLR.2, AVA_VAN.3, ALC_TAT.1, ADV_FSP.4, ADV_TDS.3, ADV_IMP.1, EAL3+
Protection profiles

Heuristics summary

Certificate ID: BSI-DSZ-CC-1209-V3-2026

Certificate

certificate file processing did not finish successfully.
Download pdf: OK
Convert pdf to text: OK
Extract keywords: ERROR

Extracted keywords

Security level
EAL 3, EAL 2
Security Assurance Requirements (SAR)
ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, ALC_TAT.1, ALC_FLR.2, ALC_FLR, AVA_VAN.3
Certificates
BSI-DSZ-CC-1209-V3-2026, BSI-DSZ-CC-0098-V3-2021-MA-02

Standards
ISO/IEC 15408, ISO/IEC 18045

Certification report

Extracted keywords

Symmetric Algorithms
AES, AES-128, AES-256, AES-, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512
Asymmetric Algorithms
RSAOAEP, ECDH, ECDSA, ECIES, ECC, Diffie-Hellman, DH
Hash functions
SHA-1, SHA-256, SHA-384, SHA-2
Schemes
Key Exchange, AEAD
Protocols
TLS, TLS v1.2, TLS 1.2, IKEv2, IKE, IPsec, VPN
Elliptic Curves
P-256, NIST P-256, brainpoolP256r1, FRP256v1
Block cipher modes
ECB, CBC, GCM

Operating System name
STARCOS 3

Security level
EAL 3, EAL 2, EAL 1, EAL 4, EAL 5+, EAL 6
Security Assurance Requirements (SAR)
ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, ALC_TAT.1, ALC_FLR.2, ALC_FLR, ALC_CMS.4, ALC_CMS, AVA_VAN.3
Security Functional Requirements (SFR)
FDP_ITC, FDP_UIT, FMT_MTD
Protection profiles
BSI-CC-PP-0098, BSI-CC-PP-0098-V3-2021-MA-02
Certificates
BSI-DSZ-CC-1209-V3-2026, BSI-DSZ-CC-0098-V3-2021-MA-02, BSI-DSZ-CC-1209-V2-2025, BSI-DSZ-CC-1209-V2-
Evaluation facilities
SRC Security Research & Consulting

Standards
FIPS 180-4, FIPS186-4, FIPS 197, FIPS180-4, FIPS PUB 180-4, FIPS197, SP 800-38D, PKCS#1, PKCS#12, PKCS5, AIS 20, AIS 32, AIS 34, RFC5652, RFC-8017, RFC-5639, RFC5639, RFC-6931, RFC 8017, RFC7027, RFC-3526, RFC-7296, RFC-6954, RFC-5246, RFC-3268, RFC-4492, RFC-8247, RFC-2404, RFC-2104, RFC4055, RFC5280, RFC7292, RFC-4868, RFC-3602, RFC-4303, RFC-4301, RFC-5289, RFC-5116, RFC-4106, RFC-5652, RFC-4880, RFC2104, RFC 2104, RFC2404, RFC3268, RFC 3268, RFC3526, RFC3602, RFC4301, RFC4303, RFC4346, RFC4868, RFC4880, RFC5246, RFC5289, RFC5996, RFC7296, RFC8017, RFC4106, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, X.509
Technical reports
BSI TR-03111, BSI TR-03116-1, BSI TR-03154, BSI TR-03155, BSI 7148

File metadata

Title Report BSI-DSZ-CC-1209-V3-2026
Subject Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1209-V3-2026
Keywords "Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1209-V3-2026"
Author Bundesamt für Sicherheit in der Informationstechnik
Pages 39

Frontpage

Certificate ID BSI-DSZ-CC-1209-V3-2026
Certified item secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0
Certification lab BSI
Developer secunet Security Networks AG

References

Outgoing

Security target

Extracted keywords

Symmetric Algorithms
AES128, AES256, AES, AES-128, AES-256, AES-192, HPC, E2, DES, HMAC, HMAC-SHA-256, HMAC-SHA-384, HMAC-SHA-512
Asymmetric Algorithms
RSA-2048, RSA 2048, RSA 4096, RSAOAEP, ECDSA, ECIES, ECC, Diffie-Hellman
Hash functions
SHA-1, SHA-256, SHA256, SHA-384, SHA-512, SHA-2
Schemes
MAC, Key Exchange
Protocols
SSL, TLS, TLS 1.2, TLS 1.3, IKEv2, IKE, IPsec, VPN
Randomness
RNG
Elliptic Curves
P-256, P-384, NIST P-256, brainpoolP256r1, brainpoolP384r1
Block cipher modes
CBC, GCM
TLS cipher suites
TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384, TLS_DHE_RSA_WITH_AES_128_CBC_SHA, TLS_DHE_RSA_WITH_AES_256_CBC_SHA, TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384, TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384146

Operating System name
STARCOS 3
Trusted Execution Environments
SE

Security level
EAL3
Claims
O.NK, O.AK, T.NK, T.AK, A.AK, A.NK, OE.NK, OE.AK, OSP.NK, OSP.AK
Security Assurance Requirements (SAR)
ADV_FSP.4, ADV_TDS.3, ADV_IMP.1, ADV_ARC.1, ADV_TDS, ADV_FSP, ADV_IMP, AGD_OPE.1, AGD_OPE, AGD_PRE.1, ALC_TAT.1, ALC_FLR.2, ALC_DEL.1, AVA_VAN.3, AVA_VAN, AVA_VAN.5, ASE_TSS.1
Security Functional Requirements (SFR)
FAU_STG, FAU_GEN, FAU_GEN.1, FAU_GEN.2, FAU_SAR, FAU_SAR.1, FAU_STG.1, FAU_STG.3, FAU_STG.4, FCS_COP, FCS_CKM.1, FCS_CKM.4, FCS_COP.1, FCS_CKM, FCS_CKM.2, FCS_CMK.4, FDP_ACF, FDP_IFC, FDP_IFF, FDP_IFF.1, FDP_IFC.1, FDP_RIP, FDP_RIP.1, FDP_ACC.1, FDP_ACC, FDP_ACF.1, FDP_ITC, FDP_ITC.1, FDP_UIT, FDP_UIT.1, FDP_ITC.2, FDP_ETC, FDP_ETC.2, FDP_SOS.2, FDP_UCT, FDP_UCT.1, FDP_ACF.1.2, FDP_DAU, FDP_DAU.1, FDP_DAU.2, FDP_DAU.2.1, FDP_SDI, FDP_SDI.1, FDP_SDI.2, FIA_API, FIA_UAU, FIA_API.1, FIA_UAU.5, FIA_API.1.1, FIA_UID.1, FIA_UID, FIA_UAU.1, FIA_SOS, FIA_SOS.1, FIA_SOS.2, FMT_MTD.1, FMT_MSA, FMT_MSA.3, FMT_MSA.1, FMT_SMR.1, FMT_SMR.1.1, FMT_MOF, FMT_MTD, FMT_SMF.1, FMT_SMF, FMT_MOF.1, FMT_MSA.4, FMT_SMR, FPT_EMS, FPT_EMS.1, FPT_STM, FPT_EMS.1.1, FPT_EMS.1.2, FPT_TDC, FPT_STM.1, FPT_TDC.1, FPT_TST, FPT_TST.1, FPT_TDC.1.2, FPT_FLS, FPT_FLS.1, FPT_TEE, FPT_TEE.1, FTA_TAB, FTA_TAB.1, FTP_ITC, FTP_TRP, FTP_ITC.1, FTP_TRP.1
Protection profiles
BSI-CC-PP-0098, BSI-CC-PP-0098“, BSI-CC-PP-0097, BSI-PP-0032
Certificates
BSI-DSZ-CC-1209-V3-2025, BSI-DSZ-CC-1135-2020, BSI-DSZ-CC-1157-2020, BSI-DSZ-CC-1163-2021, BSI-DSZ-CC-1174-2021, BSI-DSZ-CC-1184-2022, BSI-DSZ-CC-1190-2022, BSI-DSZ-CC-1209-2023, BSI-DSZ-CC-1218-2023, BSI-DSZ-CC-1209-V2-2025

Side-channel analysis
side channel

Standards
FIPS PUB 180-4, FIPS 197, FIPS PUB 186-5, FIPS 180-4, PKCS#1, PKCS#12, PKCS#7, PKCS #12, RFC 2131, RFC 2132, RFC 5652, RFC 4301, RFC 4303, RFC 7296, RFC 3602, RFC 2404, RFC 4868, RFC 8017, RFC 4106, RFC 5246, RFC-5639, RFC 2104, RFC 8422, RFC 5289, RFC 4055, RFC 5639, RFC5652, RFC 4122, RFC4122, RFC2617, RFC2818, RFC-5246, RFC 5126, RFC 2560, RFC7296, RFC 5905, RFC 4302, RFC 2406, RFC 3526, RFC 8446, RFC 3268, RFC 4492, RFC 5083, RFC 5084, RFC 5280, RFC 5869, RFC 5116, RFC 7027, X.509, CCMB-2017-04-002, CCMB-2017-04-003, CCMB-2017-04-004
Technical reports
BSI TR-03114, BSI TR-03144, BSI TR-03116-1, BSI TR-03111, BSI TR-03154, BSI TR-03155

File metadata

Author Tekampe, Nils
Pages 410

References

Outgoing

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

BSI-DSZ-CC-1209-V3-2026

Extracted SARs

ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_CMS.4, ALC_DEL.1, ALC_FLR.2, ALC_TAT.1, ASE_TSS.1, AVA_VAN.3

Similar certificates

Name Certificate ID
secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1. BSI-DSZ-CC-1044-V9-2026 Compare
secunet konnektor 2.0.0 und 2.0.1, Version 5.50.1:2.0.0 und 5.50.1:2.0.1 BSI-DSZ-CC-1044-V7-2023 Compare
secunet konnektor 2.0.0 und 2.1.0, Version 5.70.4:2.0.0 und 5.70.4:2.1.0 BSI-DSZ-CC-1044-V8-2025 Compare
secunet konnektor 2.0.0 und 2.1.0 Version 5.70.4:2.0.0 und 5.70.4:2.1.0 BSI-DSZ-CC-1209-V2-2025 Compare
- Kanguru Defender Elite 200 with Kanguru Defender Manager Elite 200, Firmware Version 02.03.10, KDME200 v2.0.0.0-2/3... BSI-DSZ-CC-0772-2014 Compare
secunet konnektor 2.1.0, Version 5.1.2:2.1.0 BSI-DSZ-CC-1128-V5-2022 Compare
secunet konnektor 2.1.0, Version 5.1.2:2.1.0 BSI-DSZ-CC-1202-2022 Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-3110-2025-08-2500053-01-CR Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-3110-2025-08-2500053-01-CR Compare
NCR E10 New Generation FCR 2.0 (FCR Application Version 2.0, OpenSSL Version 1.0.2d Secure-IC firmware and hardware c... 21.0.03/TSE-CCCS-48 Compare
secunet konnektor 2.0.0, Version 5.1.2:2.0.0 BSI-DSZ-CC-1201-2022 Compare
secunet konnektor 2.0.0, Version 5.1.2:2.0.0 BSI-DSZ-CC-1044-V6-2022 Compare
secunet konnektor 2.1.0, Version 4.1.3:2.1.0 BSI-DSZ-CC-1128-V3-2021 Compare
secunet konnektor 2.1.0, Version 5.0.5:2.1.0 BSI-DSZ-CC-1190-2022 Compare
secunet Konnektor 2.1.0, Version 3.5.0:2.1.0 BSI-DSZ-CC-1157-2020 Compare
secunet konnektor 2.1.0, Version 5.50.1:2.1.0 BSI-DSZ-CC-1218-2023 Compare
secunet konnektor 2.1.0, Version 4.1.3:2.1.0 BSI-DSZ-CC-1174-2021 Compare
secunet Konnektor 2.1.0, Version 5.50.1:2.1.0 BSI-DSZ-CC-1128-V6-2023 Compare
secunet konnektor 2.1.0, Version 5.0.5:2.1.0 BSI-DSZ-CC-1128-V4-2022 Compare
secunet konnektor 2.1.0, Version 3.5.0:2.1.0 BSI-DSZ-CC-1128-V2-2020 Compare
NPCT6xx TPM 2.0 Hardware version FB5C85D and FB5C85E, Firmware version 1.3.0.1, 1.3.1.0 and 1.3.2.8 ANSSI-CC-2017/55 Compare
NXP JCOP 8.x/9.x on SN300 B2 Secure Element, versions JCOP 8.0 R1.38.0.1, JCOP 8.1 R1.06.0.1, JCOP 9.0 R1.07.0.1, JCO... NSCIB-CC-2200030-02-CR Compare
secunet konnektor 2.0.0, Version 4.1.3:2.0.0 BSI-DSZ-CC-1044-V4-2021 Compare
NXP JCOP 8.x on SE310 A0 Secure Element, versions JCOP 8.0 R1.38.0.1, JCOP 8.1 R1.06.0.1 and JCOP 8.2 R1.06.0.1 NSCIB-CC-2200031-02-CR Compare
secunet konnektor 2.0.0, Version 4.1.3:2.0.0 (PTV4 - EBK) BSI-DSZ-CC-1163-2021 Compare
HaltDos Mitigation Platform version 1.1 comprising of hdInspector version 1.0, hdDeviceUI version 2.0, hdDetectionSer... None Compare
NXP JCOP 8.x/9.x with eUICC extension on SN300 B2 Secure Element, versions JCOP 8.0 R1.39.0.2, JCOP 8.1 R1.06.0.2, JC... NSCIB-CC-2200043-05-CR Compare
Showing 5 out of 27.

Scheme data

Cert Id BSI-DSZ-CC-1209-V3-2026
Product secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0
Vendor secunet Security Networks AG
Certification Date 24.02.2026
Category eHealth
Url https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1209.html
Enhanced
Product secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0
Applicant secunet Security Networks AG Kurfürstenstraße 58 45138 Essen Deutschland
Evaluation Facility SRC Security Research & Consulting GmbH
Assurance Level EAL3,ADV_FSP.4,ADV_IMP.1,ADV_TDS.3,ALC_FLR.2,ALC_TAT.1,AVA_VAN.3
Protection Profile Common Criteria Schutzprofil (Protection Profile), Schutzprofil 2: Anforderungen an den Konnektor, BSI-CC-PP-0098-V3-2021-MA-02, Version 1.6.1, 15.03.2023, Bundesamt für Sicherheit in der Informationstechnik (BSI)
Certification Date 24.02.2026
Expiration Date 23.02.2031
Entries [frozendict({'id': 'BSI', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.'}), frozendict({'id': 'BSI', 'description': 'The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.'}), frozendict({'id': 'BSI-DSZ-CC-1209-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report', 'description': 'Security Target'}), frozendict({'id': 'BSI-DSZ-CC-1209-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023)', 'description': 'Security Target'}), frozendict({'id': 'BSI-DSZ-CC-1209-2023 (Ausstellungsdatum / Certification Date 19.10.2023, gültlig bis / valid until 18.10.2028)', 'description': 'Certificate'})]
Report Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3a_pdf.pdf?__blob=publicationFile&v=2
Target Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3b_pdf.pdf?__blob=publicationFile&v=2
Cert Link https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3c_pdf.pdf?__blob=publicationFile&v=2
Description The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.
Subcategory Software

References

Loading...

Updates Feed

  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Other Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1209V3c_pdf.pdf",
  "dgst": "3e757d2a69494fe3",
  "heuristics": {
    "_type": "sec_certs.sample.cc_eucc_common.Heuristics",
    "annotated_references": null,
    "cert_id": "BSI-DSZ-CC-1209-V3-2026",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL3+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.0.0",
        "2.1.0",
        "6.0.8"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": {
      "_type": "Set",
      "elements": [
        "359e684867077664"
      ]
    },
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1209-V2-2025"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1209-V2-2025"
        ]
      }
    },
    "scheme_data": {
      "category": "eHealth",
      "cert_id": "BSI-DSZ-CC-1209-V3-2026",
      "certification_date": "2026-02-24",
      "enhanced": {
        "applicant": "secunet Security Networks AG Kurf\u00fcrstenstra\u00dfe 58 45138 Essen Deutschland",
        "assurance_level": "EAL3,ADV_FSP.4,ADV_IMP.1,ADV_TDS.3,ALC_FLR.2,ALC_TAT.1,AVA_VAN.3",
        "cert_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3c_pdf.pdf?__blob=publicationFile\u0026v=2",
        "certification_date": "2026-02-24",
        "description": "The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.",
        "entries": [
          {
            "description": "The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.",
            "id": "BSI"
          },
          {
            "description": "The Target of evaluation (TOE) is a software product consisting of the Netzkonnektor and the Anwendungskonnektor as specified in the Protection Profile BSI-CC-PP-0098-V3-2021-MA-02. The Netzkonnektor includes the security functionality of a Firewall, a VPN-client, an NTP Server, a name service (DNS) and a DHCP service. The TOE also includes the basic functions for establishment of secure TLS connections to other IT products. The TOE is part of the Konnektor and it is delivered pre-installed on exactly one hardware-configuration. The security functionality of the Anwendungskonnektor comprises the signature service, encryption and decryption of documents, a card terminal service and a smart card service. Together with the network connector, the Anwendungskonnektor also enables secure communication between the connector and the client system and between Fachmodulen and Fachdiensten.",
            "id": "BSI"
          },
          {
            "description": "Security Target",
            "id": "BSI-DSZ-CC-1209-2023-MA-02 (Ausstellungsdatum / Certification Date 19.08.2024) Maintenance Report"
          },
          {
            "description": "Security Target",
            "id": "BSI-DSZ-CC-1209-2023-MA-01 (Ausstellungsdatum / Certification Date 31.10.2023)"
          },
          {
            "description": "Certificate",
            "id": "BSI-DSZ-CC-1209-2023 (Ausstellungsdatum / Certification Date 19.10.2023, g\u00fcltlig bis / valid until 18.10.2028)"
          }
        ],
        "evaluation_facility": "SRC Security Research \u0026 Consulting GmbH",
        "expiration_date": "2031-02-23",
        "product": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0",
        "protection_profile": "Common Criteria Schutzprofil (Protection Profile), Schutzprofil 2: Anforderungen an den Konnektor, BSI-CC-PP-0098-V3-2021-MA-02, Version 1.6.1, 15.03.2023, Bundesamt f\u00fcr Sicherheit in der Informationstechnik (BSI)",
        "report_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3a_pdf.pdf?__blob=publicationFile\u0026v=2",
        "target_link": "https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Zertifizierung/Reporte/Reporte1200/1209V3b_pdf.pdf?__blob=publicationFile\u0026v=2"
      },
      "product": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0",
      "subcategory": "Software",
      "url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/Gesundheitswesen_Software/1209.html",
      "vendor": "secunet Security Networks AG"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1157-2020",
          "BSI-DSZ-CC-1218-2023",
          "BSI-DSZ-CC-1184-2022",
          "BSI-DSZ-CC-1209-V2-2025",
          "BSI-DSZ-CC-1135-2020",
          "BSI-DSZ-CC-1190-2022",
          "BSI-DSZ-CC-1163-2021",
          "BSI-DSZ-CC-1174-2021"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-1157-2020",
          "BSI-DSZ-CC-1218-2023",
          "BSI-DSZ-CC-1184-2022",
          "BSI-DSZ-CC-1209-V2-2025",
          "BSI-DSZ-CC-1135-2020",
          "BSI-DSZ-CC-1190-2022",
          "BSI-DSZ-CC-1163-2021",
          "BSI-DSZ-CC-1174-2021"
        ]
      }
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "Secunet Security Networks AG",
  "manufacturer_web": "https://www.secunet.com/en/",
  "name": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0",
  "not_valid_after": "2031-02-23",
  "not_valid_before": "2026-02-24",
  "pdf_data": {
    "_type": "sec_certs.sample.cc_eucc_common.PdfData",
    "cert_filename": "1209V3c_pdf.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0098-V3-2021-MA-02": 1,
          "BSI-DSZ-CC-1209-V3-2026": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_FSP.4": 1,
          "ADV_IMP.1": 1,
          "ADV_TDS.3": 1
        },
        "ALC": {
          "ALC_FLR": 1,
          "ALC_FLR.2": 1,
          "ALC_TAT.1": 1
        },
        "AVA": {
          "AVA_VAN.3": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 3": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": null,
    "report_filename": "1209V3a_pdf.pdf",
    "report_frontpage": {
      "DE": {
        "cert_id": "BSI-DSZ-CC-1209-V3-2026",
        "cert_item": "secunet konnektor 2.0.0 und 2.1.0, Version 6.0.8:2.0.0 und 6.0.8:2.1.0",
        "cert_lab": "BSI",
        "developer": "secunet Security Networks AG",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) zu (.+?) der (.*)"
        ]
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 4
          },
          "ECDH": {
            "ECDH": 5
          },
          "ECDSA": {
            "ECDSA": 24
          },
          "ECIES": {
            "ECIES": 2
          }
        },
        "FF": {
          "DH": {
            "DH": 7,
            "Diffie-Hellman": 4
          }
        },
        "RSA": {
          "RSAOAEP": 4
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0098-V3-2021-MA-02": 2,
          "BSI-DSZ-CC-1209-V2-": 1,
          "BSI-DSZ-CC-1209-V2-2025": 1,
          "BSI-DSZ-CC-1209-V3-2026": 20
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0098": 1,
          "BSI-CC-PP-0098-V3-2021-MA-02": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_FSP.4": 4,
          "ADV_IMP.1": 4,
          "ADV_TDS.3": 4
        },
        "ALC": {
          "ALC_CMS": 1,
          "ALC_CMS.4": 1,
          "ALC_FLR": 3,
          "ALC_FLR.2": 4,
          "ALC_TAT.1": 4
        },
        "AVA": {
          "AVA_VAN.3": 5
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 1,
          "EAL 2": 3,
          "EAL 3": 4,
          "EAL 4": 1,
          "EAL 5+": 1,
          "EAL 6": 1
        }
      },
      "cc_sfr": {
        "FDP": {
          "FDP_ITC": 2,
          "FDP_UIT": 2
        },
        "FMT": {
          "FMT_MTD": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "ECB": {
          "ECB": 1
        },
        "GCM": {
          "GCM": 12
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 4,
          "IKEv2": 12
        },
        "IPsec": {
          "IPsec": 10
        },
        "TLS": {
          "TLS": {
            "TLS": 26,
            "TLS 1.2": 2,
            "TLS v1.2": 6
          }
        },
        "VPN": {
          "VPN": 14
        }
      },
      "crypto_scheme": {
        "AEAD": {
          "AEAD": 1
        },
        "KEX": {
          "Key Exchange": 5
        }
      },
      "device_model": {},
      "ecc_curve": {
        "ANSSI": {
          "FRP256v1": 1
        },
        "Brainpool": {
          "brainpoolP256r1": 5
        },
        "NIST": {
          "NIST P-256": 4,
          "P-256": 4
        }
      },
      "eval_facility": {
        "SRC": {
          "SRC Security Research \u0026 Consulting": 4
        }
      },
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 1
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 15,
            "SHA-384": 3
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "STARCOS": {
          "STARCOS 3": 2
        }
      },
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 20": 2,
          "AIS 32": 1,
          "AIS 34": 1
        },
        "FIPS": {
          "FIPS 180-4": 19,
          "FIPS 197": 7,
          "FIPS PUB 180-4": 1,
          "FIPS180-4": 1,
          "FIPS186-4": 8,
          "FIPS197": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        },
        "NIST": {
          "SP 800-38D": 3
        },
        "PKCS": {
          "PKCS#1": 8,
          "PKCS#12": 2,
          "PKCS5": 1
        },
        "RFC": {
          "RFC 2104": 1,
          "RFC 3268": 1,
          "RFC 8017": 1,
          "RFC-2104": 3,
          "RFC-2404": 1,
          "RFC-3268": 3,
          "RFC-3526": 2,
          "RFC-3602": 2,
          "RFC-4106": 1,
          "RFC-4301": 3,
          "RFC-4303": 3,
          "RFC-4492": 2,
          "RFC-4868": 1,
          "RFC-4880": 1,
          "RFC-5116": 1,
          "RFC-5246": 4,
          "RFC-5289": 1,
          "RFC-5639": 10,
          "RFC-5652": 3,
          "RFC-6931": 1,
          "RFC-6954": 2,
          "RFC-7296": 5,
          "RFC-8017": 10,
          "RFC-8247": 1,
          "RFC2104": 1,
          "RFC2404": 1,
          "RFC3268": 1,
          "RFC3526": 1,
          "RFC3602": 1,
          "RFC4055": 1,
          "RFC4106": 1,
          "RFC4301": 1,
          "RFC4303": 1,
          "RFC4346": 1,
          "RFC4868": 1,
          "RFC4880": 1,
          "RFC5246": 1,
          "RFC5280": 1,
          "RFC5289": 1,
          "RFC5639": 10,
          "RFC5652": 1,
          "RFC5996": 1,
          "RFC7027": 3,
          "RFC7292": 1,
          "RFC7296": 1,
          "RFC8017": 1
        },
        "X509": {
          "X.509": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 17,
            "AES-": 4,
            "AES-128": 2,
            "AES-256": 2
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 10,
            "HMAC-SHA-256": 1,
            "HMAC-SHA-384": 1,
            "HMAC-SHA-512": 1
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1,
          "BSI TR-03111": 2,
          "BSI TR-03116-1": 1,
          "BSI TR-03154": 1,
          "BSI TR-03155": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1209-V3-2026\"",
      "/Subject": "Common Criteria, Certification, Zertifizierung, Konnektor, eHealth, Gesundheitswesen, BSI-DSZ-CC-1209-V3-2026",
      "/Title": "Report BSI-DSZ-CC-1209-V3-2026",
      "pdf_file_size_bytes": 443151,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 39
    },
    "st_filename": "1209V3b_pdf.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 25
          },
          "ECDSA": {
            "ECDSA": 32
          },
          "ECIES": {
            "ECIES": 19
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          }
        },
        "RSA": {
          "RSA 2048": 5,
          "RSA 4096": 1,
          "RSA-2048": 1,
          "RSAOAEP": 8
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1135-2020": 1,
          "BSI-DSZ-CC-1157-2020": 1,
          "BSI-DSZ-CC-1163-2021": 1,
          "BSI-DSZ-CC-1174-2021": 1,
          "BSI-DSZ-CC-1184-2022": 1,
          "BSI-DSZ-CC-1190-2022": 1,
          "BSI-DSZ-CC-1209-2023": 1,
          "BSI-DSZ-CC-1209-V2-2025": 1,
          "BSI-DSZ-CC-1209-V3-2025": 1,
          "BSI-DSZ-CC-1218-2023": 1
        }
      },
      "cc_claims": {
        "A": {
          "A.AK": 88,
          "A.NK": 67
        },
        "O": {
          "O.AK": 372,
          "O.NK": 209
        },
        "OE": {
          "OE.AK": 198,
          "OE.NK": 207
        },
        "OSP": {
          "OSP.AK": 79,
          "OSP.NK": 23
        },
        "T": {
          "T.AK": 113,
          "T.NK": 131
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0097": 6,
          "BSI-CC-PP-0098": 21,
          "BSI-CC-PP-0098\u201c": 1,
          "BSI-PP-0032": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 3,
          "ADV_FSP": 1,
          "ADV_FSP.4": 6,
          "ADV_IMP": 1,
          "ADV_IMP.1": 6,
          "ADV_TDS": 1,
          "ADV_TDS.3": 6
        },
        "AGD": {
          "AGD_OPE": 1,
          "AGD_OPE.1": 13,
          "AGD_PRE.1": 4
        },
        "ALC": {
          "ALC_DEL.1": 6,
          "ALC_FLR.2": 6,
          "ALC_TAT.1": 6
        },
        "ASE": {
          "ASE_TSS.1": 1
        },
        "AVA": {
          "AVA_VAN": 1,
          "AVA_VAN.3": 7,
          "AVA_VAN.5": 2
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL3": 8
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 26,
          "FAU_GEN.1": 12,
          "FAU_GEN.2": 1,
          "FAU_SAR": 6,
          "FAU_SAR.1": 2,
          "FAU_STG": 14,
          "FAU_STG.1": 2,
          "FAU_STG.3": 1,
          "FAU_STG.4": 1
        },
        "FCS": {
          "FCS_CKM": 116,
          "FCS_CKM.1": 31,
          "FCS_CKM.2": 7,
          "FCS_CKM.4": 29,
          "FCS_CMK.4": 1,
          "FCS_COP": 254,
          "FCS_COP.1": 29
        },
        "FDP": {
          "FDP_ACC": 90,
          "FDP_ACC.1": 48,
          "FDP_ACF": 112,
          "FDP_ACF.1": 75,
          "FDP_ACF.1.2": 1,
          "FDP_DAU": 33,
          "FDP_DAU.1": 3,
          "FDP_DAU.2": 9,
          "FDP_DAU.2.1": 1,
          "FDP_ETC": 17,
          "FDP_ETC.2": 8,
          "FDP_IFC": 19,
          "FDP_IFC.1": 18,
          "FDP_IFF": 21,
          "FDP_IFF.1": 20,
          "FDP_ITC": 31,
          "FDP_ITC.1": 31,
          "FDP_ITC.2": 43,
          "FDP_RIP": 21,
          "FDP_RIP.1": 2,
          "FDP_SDI": 7,
          "FDP_SDI.1": 1,
          "FDP_SDI.2": 2,
          "FDP_SOS.2": 1,
          "FDP_UCT": 5,
          "FDP_UCT.1": 1,
          "FDP_UIT": 16,
          "FDP_UIT.1": 6
        },
        "FIA": {
          "FIA_API": 13,
          "FIA_API.1": 3,
          "FIA_API.1.1": 2,
          "FIA_SOS": 17,
          "FIA_SOS.1": 1,
          "FIA_SOS.2": 3,
          "FIA_UAU": 41,
          "FIA_UAU.1": 4,
          "FIA_UAU.5": 4,
          "FIA_UID": 14,
          "FIA_UID.1": 12
        },
        "FMT": {
          "FMT_MOF": 18,
          "FMT_MOF.1": 2,
          "FMT_MSA": 110,
          "FMT_MSA.1": 10,
          "FMT_MSA.3": 26,
          "FMT_MSA.4": 2,
          "FMT_MTD": 44,
          "FMT_MTD.1": 7,
          "FMT_SMF": 29,
          "FMT_SMF.1": 14,
          "FMT_SMR": 10,
          "FMT_SMR.1": 43,
          "FMT_SMR.1.1": 1
        },
        "FPT": {
          "FPT_EMS": 16,
          "FPT_EMS.1": 9,
          "FPT_EMS.1.1": 2,
          "FPT_EMS.1.2": 2,
          "FPT_FLS": 10,
          "FPT_FLS.1": 2,
          "FPT_STM": 17,
          "FPT_STM.1": 4,
          "FPT_TDC": 38,
          "FPT_TDC.1": 14,
          "FPT_TDC.1.2": 1,
          "FPT_TEE": 9,
          "FPT_TEE.1": 2,
          "FPT_TST": 24,
          "FPT_TST.1": 10
        },
        "FTA": {
          "FTA_TAB": 14,
          "FTA_TAB.1": 2
        },
        "FTP": {
          "FTP_ITC": 96,
          "FTP_ITC.1": 49,
          "FTP_TRP": 15,
          "FTP_TRP.1": 10
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        },
        "GCM": {
          "GCM": 7
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "IKE": {
          "IKE": 21,
          "IKEv2": 7
        },
        "IPsec": {
          "IPsec": 34
        },
        "TLS": {
          "SSL": {
            "SSL": 1
          },
          "TLS": {
            "TLS": 292,
            "TLS 1.2": 3,
            "TLS 1.3": 2
          }
        },
        "VPN": {
          "VPN": 61
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key Exchange": 3
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 3,
          "brainpoolP384r1": 1
        },
        "NIST": {
          "NIST P-256": 3,
          "P-256": 5,
          "P-384": 2
        }
      },
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 6
          },
          "SHA2": {
            "SHA-2": 8,
            "SHA-256": 34,
            "SHA-384": 7,
            "SHA-512": 5,
            "SHA256": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "STARCOS": {
          "STARCOS 3": 2
        }
      },
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 15
        }
      },
      "side_channel_analysis": {
        "SCA": {
          "side channel": 1
        }
      },
      "standard_id": {
        "CC": {
          "CCMB-2017-04-002": 1,
          "CCMB-2017-04-003": 1,
          "CCMB-2017-04-004": 1
        },
        "FIPS": {
          "FIPS 180-4": 1,
          "FIPS 197": 7,
          "FIPS PUB 180-4": 12,
          "FIPS PUB 186-5": 2
        },
        "PKCS": {
          "PKCS #12": 1,
          "PKCS#1": 22,
          "PKCS#12": 2,
          "PKCS#7": 1
        },
        "RFC": {
          "RFC 2104": 2,
          "RFC 2131": 3,
          "RFC 2132": 3,
          "RFC 2404": 2,
          "RFC 2406": 1,
          "RFC 2560": 1,
          "RFC 3268": 1,
          "RFC 3526": 1,
          "RFC 3602": 3,
          "RFC 4055": 2,
          "RFC 4106": 2,
          "RFC 4122": 2,
          "RFC 4301": 4,
          "RFC 4302": 1,
          "RFC 4303": 5,
          "RFC 4492": 1,
          "RFC 4868": 2,
          "RFC 5083": 1,
          "RFC 5084": 1,
          "RFC 5116": 1,
          "RFC 5126": 1,
          "RFC 5246": 7,
          "RFC 5280": 1,
          "RFC 5289": 2,
          "RFC 5639": 3,
          "RFC 5652": 2,
          "RFC 5869": 1,
          "RFC 5905": 1,
          "RFC 7027": 1,
          "RFC 7296": 6,
          "RFC 8017": 4,
          "RFC 8422": 2,
          "RFC 8446": 1,
          "RFC-5246": 2,
          "RFC-5639": 1,
          "RFC2617": 1,
          "RFC2818": 1,
          "RFC4122": 2,
          "RFC5652": 3,
          "RFC7296": 1
        },
        "X509": {
          "X.509": 30
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 71,
            "AES-128": 4,
            "AES-192": 1,
            "AES-256": 7,
            "AES128": 4,
            "AES256": 4
          },
          "E2": {
            "E2": 2
          },
          "HPC": {
            "HPC": 5
          }
        },
        "DES": {
          "DES": {
            "DES": 4
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 41,
            "HMAC-SHA-256": 1,
            "HMAC-SHA-384": 1,
            "HMAC-SHA-512": 1
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03111": 2,
          "BSI TR-03114": 2,
          "BSI TR-03116-1": 4,
          "BSI TR-03144": 8,
          "BSI TR-03154": 1,
          "BSI TR-03155": 1
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        }
      },
      "tls_cipher_suite": {
        "TLS": {
          "TLS_DHE_RSA_WITH_AES_128_CBC_SHA": 3,
          "TLS_DHE_RSA_WITH_AES_256_CBC_SHA": 3,
          "TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 3,
          "TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 2,
          "TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256": 3,
          "TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 3,
          "TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384": 3,
          "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 2,
          "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384146": 1
        }
      },
      "vendor": {},
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Tekampe, Nils",
      "pdf_file_size_bytes": 5270607,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.rfc-editor.org/rfc/rfc4868.txt",
          "http://www.ietf.org/rfc/rfc2406.txt",
          "https://www.w3.org/TR/2007/REC-xslt20-20070123/",
          "https://www.w3.org/TR/2013/REC-xmlenc-core1-20130411/",
          "http://www.rfc-editor.org/rfc/rfc8017.txt",
          "http://www.ietf.org/rfc/rfc2131.txt",
          "http://csrc.nist.gov/publications/fips/fips197/fips-197.pdf",
          "http://partners.adobe.com/public/developer/en/tiff/TIFF6.pdf",
          "http://www.ietf.org/rfc/rfc7027.txt",
          "https://tools.ietf.org/html/rfc5639",
          "https://tools.ietf.org/html/rfc5116",
          "http://www.ietf.org/rfc/rfc5652.txt",
          "https://www.secg.org/sec1-v2.pdf",
          "https://www.w3.org/TR/2008/REC-xmldsig-core-20080610/",
          "https://tools.ietf.org/html/rfc4122",
          "http://www.ietf.org/rfc/rfc4303.txt",
          "http://www.w3.org/2001/04/xmldsig-more#ecdsa-sha256",
          "http://www.rfc-editor.org/rfc/rfc4055.txt",
          "http://www.ietf.org/rfc/rfc5905.txt",
          "http://www.rfc-editor.org/rfc/rfc2404.txt",
          "http://www.rfc-editor.org/rfc/rfc3526.txt",
          "http://www.ietf.org/rfc/rfc8017.txt",
          "http://www.unicode.org/versions/Unicode6.2.0/",
          "http://www.rfc-editor.org/rfc/rfc4106.txt",
          "http://www.gematik.de/",
          "http://www.ietf.org/rfc/rfc5280.txt",
          "https://www.w3.org/TR/xml/",
          "http://www.etsi.org/",
          "http://tools.ietf.org/html/rfc2560",
          "http://www.ietf.org/rfc/rfc7296.txt",
          "http://www.rfc-editor.org/rfc/rfc3602.txt",
          "https://www.w3.org/TR/2010/REC-xpath20-20101214/",
          "http://www.ietf.org/rfc/rfc2132.txt"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 410
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": [
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0098V3b_pdf.pdf"
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1209V3a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_TAT.1",
      "ADV_FSP.4",
      "ALC_FLR.2",
      "AVA_VAN.3",
      "ADV_IMP.1",
      "ADV_TDS.3",
      "EAL3+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/1209V3b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.cc_eucc_common.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": false,
      "json_hash": null,
      "pdf_hash": "0a79ec54266993d25b4bd027df528cef541e019e94465e52cfc3a9083933a36f",
      "txt_hash": "7805482d344179c55b2a943793ec3771a04b2c91697c8bbdce343b05b496b459"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "4427c3c288d04e7a55c20391ccceee785a4deb450c6a31069ef78f7e1e61f688",
      "txt_hash": "c6a040af8b40a95781723fe485e4f515305e76bb428dcabfd1d5bc85bb35cd18"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "pdf_hash": "83a74786d2a83f60c7bacf01ba4d9e69cf5447fd61a1c7bb8e3d87ba31d2d679",
      "txt_hash": "73cdf18c31ef178c6e1477be6d9726e9f739354da98138200143528fb4f08c6e"
    }
  },
  "status": "active"
}