NetApp Storage Encryption (NSE) running ONTAP 9.7P13

This certificate has known related CVEs, which means that the certified product might be vulnerable.

CSV information ?

Status archived
Valid from 07.09.2021
Valid until 07.09.2024
Scheme 🇺🇸 US
Manufacturer NetApp, Inc.
Category Other Devices and Systems
Security level
Protection profiles
Maintenance updates NetApp Storage Encryption (NSE) Running ONTAP 9.10.1P7 (30.09.2022) Certification report Security target
NetApp Storage Encryption (NSE) running ONTAP 9.10.1P14 (21.09.2023) Certification report Security target

Heuristics summary ?

Certificate ID: CCEVS-VR-VID-11174-2021

Certificate ?

Extracted keywords

Certificates
CCEVS-VR-VID11174-2021
Evaluation facilities
Leidos

File metadata

Creation date D:20210922122118-04'00'
Modification date D:20210922122118-04'00'
Pages 1
Producer iText 2.1.0 (by lowagie.com)

Certification report ?

Extracted keywords

Protocols
SSH
Randomness
DRBG, RBG

Vendor
Microsoft

Security Assurance Requirements (SAR)
ADV_FSP.1, ALC_CMC.1, ALC_CMS.1, ATE_FUN.1, AVA_VAN.1
Certificates
CCEVS-VR-VID11174-2021
Evaluation facilities
Leidos

Vulnerabilities
CVE-2021-26988, CVE-2021-26989, CVE-2021-26994
Certification process
out of scope, here was collected from the ST and is considered accurate. The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. Protected data does not include the Master

Standards
NIST SP 800-132, NIST SP 800-38F

File metadata

Author Leidos CCTL
Creation date D:20220118214357-05'00'
Modification date D:20220118214357-05'00'
Pages 23
Creator Microsoft® Word for Microsoft 365
Producer Microsoft® Word for Microsoft 365

Frontpage

Certificate ID CCEVS-VR-VID11174-2021
Certified item for NetApp Storage Encryption (NSE) running ONTAP 9.7P13
Certification lab US NIAP

Security target ?

Extracted keywords

Symmetric Algorithms
AES, AES-256, AES-128, HMAC, HMAC-SHA-512
Asymmetric Algorithms
RSA 3072, ECDSA, ECC
Hash functions
SHA-256, SHA-384, SHA-512, PBKDF2
Schemes
MAC
Protocols
SSH
Randomness
DRBG, RNG, RBG
Libraries
Crypto Library v2.22, OpenSSL
Block cipher modes
CBC, GCM, CCM, XEX, XTS

Claims
OE.TRUSTED_CHANNEL, OE.INITIAL_DRIVE_STATE, OE.PASSPHRASE_STRENGTH, OE.POWER_DOWN, OE.SINGLE_USE_ET, OE.STRONG_ENVIRONMENT_CRYPTO, OE.TRAINED_USERS, OE.PLATFORM_STATE, OE.PHYSICAL
Security Assurance Requirements (SAR)
ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ATE_IND.1, AVA_VAN.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.1, ASE_REQ.1, ASE_SPD.1, ASE_TSS.1
Security Functional Requirements (SFR)
FCS_AFA_EXT.1, FCS_AFA_EXT.2, FCS_CKM.1, FCS_CKM.4, FCS_CKM_EXT.4, FCS_COP.1, FCS_KDF_EXT.1, FCS_KYC_EXT.1, FCS_PCC_EXT.1, FCS_RBG_EXT.1, FCS_SNI_EXT.1, FCS_VAL_EXT.1, FCS_AFA_EXT, FCS_KDF_EXT, FCS_KYC_EXT, FCS_PCC_EXT, FCS_KYC_EXT.2, FCS_SNI_EXT, FCS_VAL_EXT, FCS_AFA_EXT.1.1, FCS_AFA_EXT.2.1, FCS_CKM.1.1, FCS_CKM.4.1, FCS_CKM_EXT.4.1, FCS_COP.1.1, FCS_KDF_EXT.1.1, FCS_KYC_EXT.1.1, FCS_KYC_EXT.1.2, FCS_PCC_EXT.1.1, FCS_RBG_EXT.1.1, FCS_RBG_EXT.1.2, FCS_SNI_EXT.1.1, FCS_SNI_EXT.1.2, FCS_SNI_EXT.1.3, FCS_VAL_EXT.1.1, FCS_VAL_EXT.1.2, FCS_VAL_EXT.1.3, FCS_RBG_EXT, FMT_MOF.1, FMT_SMF.1, FMT_SMR.1, FMT_SMF, FMT_SMR, FMT_MOF, FMT_MOF.1.1, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FPT_KYP_EXT.1, FPT_PWR_EXT.1, FPT_PWR_EXT.2, FPT_TST_EXT.1, FPT_TUD_EXT.1, FPT_KYP_EXT, FPT_PWR_EXT, FPT_TST_EXT, FPT_TUD_EXT, FPT_KYP_EXT.1.1, FPT_PWR_EXT.1.1, FPT_PWR_EXT.2.1, FPT_TST_EXT.1.1, FPT_TUD_EXT.1.1, FPT_TUD_EXT.1.2, FPT_TUD_EXT.1.3

Certification process
out of scope, NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated, clouds (NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. The Security Target (ST) includes the

Standards
FIPS PUB 186-4, FIPS 186-4, NIST SP 800-38F, NIST SP 800-132, NIST SP 800-90A, PKCS #1, ISO/IEC 9796-2, ISO/IEC 10118, ISO/IEC 18033-3, ISO/IEC 18031:2011

File metadata

Subject Security Target
Author Beaver, Gregory P. [US-US]
Creation date D:20210921100050-04'00'
Modification date D:20210921100050-04'00'
Pages 52
Creator Microsoft® Word for Microsoft 365
Producer Microsoft® Word for Microsoft 365

Heuristics ?

Certificate ID: CCEVS-VR-VID-11174-2021

Extracted SARs

ADV_FSP.1, AGD_OPE.1, AGD_PRE.1, ALC_CMC.1, ALC_CMS.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.1, ASE_REQ.1, ASE_SPD.1, ASE_TSS.1, ATE_FUN.1, ATE_IND.1, AVA_VAN.1

Related CVEs

ID Links Severity CVSS Score Published on
Base Exploitability Impact
CVE-2022-42915
C M N
HIGH 8.1 5.9 29.10.2022 20:15
CVE-2023-27535
C M N
MEDIUM 5.9 3.6 30.03.2023 20:15

Scheme data ?

Product NetApp Storage Encryption (NSE) running ONTAP 9.7P13
Id CCEVS-VR-VID11174
Url https://www.niap-ccevs.org/product/11174
Certification Date 07.09.2021
Expiration Date 07.09.2024
Category Encrypted Storage
Vendor NetApp, Inc.
Evaluation Facility Leidos Common Criteria Testing Laboratory
Scheme US

References ?

No references are available for this certificate.

Updates ?

  • 10.02.2025 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was set to {'product': 'NetApp Storage Encryption (NSE) running ONTAP 9.7P13', 'id': 'CCEVS-VR-VID11174', 'url': 'https://www.niap-ccevs.org/product/11174', 'certification_date': '2021-09-07', 'expiration_date': '2024-09-07', 'category': 'Encrypted Storage', 'vendor': 'NetApp, Inc.', 'evaluation_facility': 'Leidos Common Criteria Testing Laboratory', 'scheme': 'US'}.
  • 05.02.2025 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'_type': 'sec_certs.sample.document_state.DocumentState'} data.
    • The st property was updated, with the {'_type': 'sec_certs.sample.document_state.DocumentState'} data.
    • The cert property was updated, with the {'_type': 'sec_certs.sample.document_state.DocumentState'} data.

    The computed heuristics were updated.

    • The following values were inserted: {'protection_profiles': {'_type': 'Set', 'elements': ['52d782dbb1cd05bd']}, 'eal': None}.
    • The prev_certificates property was set to None.
    • The next_certificates property was set to None.
    • The scheme_data property was set to None.
  • 06.01.2025 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was set to {'product': 'NetApp Storage Encryption (NSE) running ONTAP 9.7P13', 'id': 'CCEVS-VR-VID11174', 'url': 'https://www.niap-ccevs.org/product/11174', 'certification_date': '2021-09-07', 'expiration_date': '2024-09-07', 'category': 'Encrypted Storage', 'vendor': 'NetApp, Inc.', 'evaluation_facility': 'Leidos Common Criteria Testing Laboratory', 'scheme': 'US'}.
  • 30.12.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was set to None.
  • 16.12.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was set to {'product': 'NetApp Storage Encryption (NSE) running ONTAP 9.7P13', 'id': 'CCEVS-VR-VID11174', 'url': 'https://www.niap-ccevs.org/product/11174', 'certification_date': '2021-09-07', 'expiration_date': '2024-09-07', 'category': 'Encrypted Storage', 'vendor': 'NetApp, Inc.', 'evaluation_facility': 'Leidos Common Criteria Testing Laboratory', 'scheme': 'US'}.
  • 09.12.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was set to None.
  • 21.11.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The following values were inserted: {'prev_certificates': [], 'next_certificates': []}.
  • 09.11.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was updated, with the {'certification_date': '2021-09-07', 'expiration_date': '2024-09-07'} data.
  • 14.10.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The cpe_matches property was set to {'_type': 'Set', 'elements': ['cpe:2.3:a:netapp:ontap_9:-:*:*:*:*:*:*:*']}.
    • The related_cves property was set to {'_type': 'Set', 'elements': ['CVE-2023-27535', 'CVE-2022-42915']}.
  • 09.09.2024 The certificate data changed.
    Certificate changed

    The Status was updated.

    • The new value is archived.

    The computed heuristics were updated.

    • The scheme_data property was updated, with the {'id': 'CCEVS-VR-VID11174'} data.
  • 22.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': 'c638c33fd4f01f295b8a8e9fe393519ca568b29d08ab9f702992ab6130b4e461', 'txt_hash': '55a3cb267fa233059d00bcb29703439ed36fcc414a81131fb3cb789de2b428e9'} data.
    • The st property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '41396a7500783ca077c74726adb949139522af3c3ed780d203c53a4d89291747', 'txt_hash': '68277a72dd2cadb962f2f4982c8fa12f4057ebc5ebc0a2968e45edbab9a132ed'} data.
    • The cert property was updated, with the {'download_ok': True, 'convert_garbage': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': 'a3d74b2b9cac3efadd4d73d1ed2095de8a6ae788994fc88750c551a292515307', 'txt_hash': '243f44b110ff04b73d266dc682f8bebf2014289801c50a8d885f95f440a4695a'} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to {'pdf_file_size_bytes': 440881, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 23, '/Author': 'Leidos CCTL', '/Creator': 'Microsoft® Word for Microsoft 365', '/CreationDate': "D:20220118214357-05'00'", '/ModDate': "D:20220118214357-05'00'", '/Producer': 'Microsoft® Word for Microsoft 365', 'pdf_hyperlinks': {'_type': 'Set', 'elements': ['http://cve.mitre.org/cve/', 'http://nvd.nist.gov/vuln/search', 'https://docs.netapp.com/us-en/ontap/', 'https://www.kb.cert.org/vuls/', 'http://docs.netapp.com/ontap-9/index.jsp', 'https://www.netapp.com/us/documentation/ontap-and-oncommand-system-manager.aspx']}}.
    • The st_metadata property was set to {'pdf_file_size_bytes': 797366, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 52, '/Author': 'Beaver, Gregory P. [US-US]', '/Subject': 'Security Target', '/Creator': 'Microsoft® Word for Microsoft 365', '/CreationDate': "D:20210921100050-04'00'", '/ModDate': "D:20210921100050-04'00'", '/Producer': 'Microsoft® Word for Microsoft 365', 'pdf_hyperlinks': {'_type': 'Set', 'elements': ['https://docs.netapp.com/us-en/ontap/', 'https://www.netapp.com/us/documentation/ontap-and-oncommand-system-manager.aspx', 'http://docs.netapp.com/ontap-9/index.jsp']}}.
    • The cert_metadata property was set to {'pdf_file_size_bytes': 180159, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 1, '/ModDate': "D:20210922122118-04'00'", '/CreationDate': "D:20210922122118-04'00'", '/Producer': 'iText 2.1.0 (by lowagie.com)', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The report_frontpage property was set to {'US': {'cert_id': 'CCEVS-VR-VID11174-2021', 'cert_item': 'for NetApp Storage Encryption (NSE) running ONTAP 9.7P13', 'cert_lab': 'US NIAP'}}.
    • The report_keywords property was set to {'cc_cert_id': {'US': {'CCEVS-VR-VID11174-2021': 1}}, 'cc_protection_profile_id': {}, 'cc_security_level': {}, 'cc_sar': {'ADV': {'ADV_FSP.1': 1}, 'ALC': {'ALC_CMC.1': 1, 'ALC_CMS.1': 1}, 'ATE': {'ATE_FUN.1': 1}, 'AVA': {'AVA_VAN.1': 1}}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {'Microsoft': {'Microsoft': 1}}, 'eval_facility': {'Leidos': {'Leidos': 6}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {'SSH': {'SSH': 9}}, 'randomness': {'PRNG': {'DRBG': 1}, 'RNG': {'RBG': 1}}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {'CVE': {'CVE-2021-26988': 1, 'CVE-2021-26989': 1, 'CVE-2021-26994': 1}}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'NIST': {'NIST SP 800-132': 1, 'NIST SP 800-38F': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'OutOfScope': {'out of scope': 1, 'here was collected from the ST and is considered accurate. The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. Protected data does not include the Master': 1}}}.
    • The st_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {}, 'cc_security_level': {}, 'cc_sar': {'ADV': {'ADV_FSP.1': 11}, 'AGD': {'AGD_OPE.1': 12, 'AGD_PRE.1': 8}, 'ALC': {'ALC_CMC.1': 6, 'ALC_CMS.1': 7}, 'ATE': {'ATE_IND.1': 7}, 'AVA': {'AVA_VAN.1': 8}, 'ASE': {'ASE_CCL.1': 1, 'ASE_ECD.1': 1, 'ASE_INT.1': 1, 'ASE_OBJ.1': 1, 'ASE_REQ.1': 1, 'ASE_SPD.1': 1, 'ASE_TSS.1': 2}}, 'cc_sfr': {'FCS': {'FCS_AFA_EXT.1': 7, 'FCS_AFA_EXT.2': 6, 'FCS_CKM.1': 9, 'FCS_CKM.4': 15, 'FCS_CKM_EXT.4': 16, 'FCS_COP.1': 44, 'FCS_KDF_EXT.1': 7, 'FCS_KYC_EXT.1': 4, 'FCS_PCC_EXT.1': 7, 'FCS_RBG_EXT.1': 12, 'FCS_SNI_EXT.1': 6, 'FCS_VAL_EXT.1': 9, 'FCS_AFA_EXT': 4, 'FCS_KDF_EXT': 4, 'FCS_KYC_EXT': 4, 'FCS_PCC_EXT': 4, 'FCS_KYC_EXT.2': 2, 'FCS_SNI_EXT': 2, 'FCS_VAL_EXT': 2, 'FCS_AFA_EXT.1.1': 1, 'FCS_AFA_EXT.2.1': 1, 'FCS_CKM.1.1': 1, 'FCS_CKM.4.1': 2, 'FCS_CKM_EXT.4.1': 2, 'FCS_COP.1.1': 9, 'FCS_KDF_EXT.1.1': 1, 'FCS_KYC_EXT.1.1': 1, 'FCS_KYC_EXT.1.2': 1, 'FCS_PCC_EXT.1.1': 1, 'FCS_RBG_EXT.1.1': 1, 'FCS_RBG_EXT.1.2': 1, 'FCS_SNI_EXT.1.1': 1, 'FCS_SNI_EXT.1.2': 1, 'FCS_SNI_EXT.1.3': 1, 'FCS_VAL_EXT.1.1': 1, 'FCS_VAL_EXT.1.2': 1, 'FCS_VAL_EXT.1.3': 1, 'FCS_RBG_EXT': 1}, 'FMT': {'FMT_MOF.1': 5, 'FMT_SMF.1': 3, 'FMT_SMR.1': 3, 'FMT_SMF': 4, 'FMT_SMR': 4, 'FMT_MOF': 2, 'FMT_MOF.1.1': 1, 'FMT_SMF.1.1': 1, 'FMT_SMR.1.1': 1, 'FMT_SMR.1.2': 1}, 'FPT': {'FPT_KYP_EXT.1': 5, 'FPT_PWR_EXT.1': 7, 'FPT_PWR_EXT.2': 4, 'FPT_TST_EXT.1': 6, 'FPT_TUD_EXT.1': 4, 'FPT_KYP_EXT': 4, 'FPT_PWR_EXT': 8, 'FPT_TST_EXT': 4, 'FPT_TUD_EXT': 4, 'FPT_KYP_EXT.1.1': 1, 'FPT_PWR_EXT.1.1': 2, 'FPT_PWR_EXT.2.1': 1, 'FPT_TST_EXT.1.1': 1, 'FPT_TUD_EXT.1.1': 1, 'FPT_TUD_EXT.1.2': 1, 'FPT_TUD_EXT.1.3': 1}}, 'cc_claims': {'OE': {'OE.TRUSTED_CHANNEL': 1, 'OE.INITIAL_DRIVE_STATE': 1, 'OE.PASSPHRASE_STRENGTH': 1, 'OE.POWER_DOWN': 1, 'OE.SINGLE_USE_ET': 1, 'OE.STRONG_ENVIRONMENT_CRYPTO': 1, 'OE.TRAINED_USERS': 1, 'OE.PLATFORM_STATE': 1, 'OE.PHYSICAL': 1}}, 'vendor': {}, 'eval_facility': {}, 'symmetric_crypto': {'AES_competition': {'AES': {'AES': 8, 'AES-256': 5, 'AES-128': 1}}, 'constructions': {'MAC': {'HMAC': 5, 'HMAC-SHA-512': 6}}}, 'asymmetric_crypto': {'RSA': {'RSA 3072': 1}, 'ECC': {'ECDSA': {'ECDSA': 1}, 'ECC': {'ECC': 1}}}, 'pq_crypto': {}, 'hash_function': {'SHA': {'SHA2': {'SHA-256': 9, 'SHA-384': 5, 'SHA-512': 9}}, 'PBKDF': {'PBKDF2': 5}}, 'crypto_scheme': {'MAC': {'MAC': 2}}, 'crypto_protocol': {'SSH': {'SSH': 2}}, 'randomness': {'PRNG': {'DRBG': 19}, 'RNG': {'RNG': 1, 'RBG': 4}}, 'cipher_mode': {'CBC': {'CBC': 4}, 'GCM': {'GCM': 2}, 'CCM': {'CCM': 1}, 'XEX': {'XEX': 1}, 'XTS': {'XTS': 2}}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {'Generic': {'Crypto Library v2.22': 1}, 'OpenSSL': {'OpenSSL': 1}}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'FIPS': {'FIPS PUB 186-4': 2, 'FIPS 186-4': 1}, 'NIST': {'NIST SP 800-38F': 2, 'NIST SP 800-132': 5, 'NIST SP 800-90A': 3}, 'PKCS': {'PKCS #1': 2}, 'ISO': {'ISO/IEC 9796-2': 2, 'ISO/IEC 10118': 2, 'ISO/IEC 18033-3': 1, 'ISO/IEC 18031:2011': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'OutOfScope': {'out of scope': 1, 'NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated': 1, 'clouds (NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. The Security Target (ST) includes the': 1}}}.
    • The cert_keywords property was set to {'cc_cert_id': {'US': {'CCEVS-VR-VID11174-2021': 1}}, 'cc_protection_profile_id': {}, 'cc_security_level': {}, 'cc_sar': {}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {}, 'eval_facility': {'Leidos': {'Leidos': 1}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}.
    • The report_filename property was set to st_vid11174-vr.pdf.
    • The st_filename property was set to st_vid11174-st.pdf.
    • The cert_filename property was set to st_vid11174-ci.pdf.

    The computed heuristics were updated.

    • The cert_lab property was set to ['US'].
    • The cert_id property was set to CCEVS-VR-VID-11174-2021.
    • The extracted_sars property was set to {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_TSS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_SPD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_OBJ', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_IND', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_CCL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_ECD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_INT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_REQ', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AVA_VAN', 'level': 1}]}.
  • 17.08.2024 The certificate data changed.
    Certificate changed

    The report_link was updated.

    • The new value is https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-vr.pdf.

    The st_link was updated.

    • The new value is https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-st.pdf.
  • 12.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.
    • The st property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.
    • The cert property was updated, with the {'download_ok': False, 'convert_garbage': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to None.
    • The st_metadata property was set to None.
    • The cert_metadata property was set to None.
    • The report_frontpage property was set to None.
    • The report_keywords property was set to None.
    • The st_keywords property was set to None.
    • The cert_keywords property was set to None.
    • The report_filename property was set to None.
    • The st_filename property was set to None.
    • The cert_filename property was set to None.

    The computed heuristics were updated.

    • The cert_lab property was set to None.
    • The cert_id property was set to None.
    • The extracted_sars property was set to None.
  • 23.07.2024 The certificate was first processed.
    New certificate

    A new Common Criteria certificate with the product name NetApp Storage Encryption (NSE) running ONTAP 9.7P13 was processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Other Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-ci.pdf",
  "dgst": "80c724b06c862093",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "CCEVS-VR-VID-11174-2021",
    "cert_lab": [
      "US"
    ],
    "cpe_matches": {
      "_type": "Set",
      "elements": [
        "cpe:2.3:a:netapp:ontap_9:-:*:*:*:*:*:*:*"
      ]
    },
    "direct_transitive_cves": null,
    "eal": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "9.7"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": {
      "_type": "Set",
      "elements": [
        "52d782dbb1cd05bd"
      ]
    },
    "related_cves": {
      "_type": "Set",
      "elements": [
        "CVE-2023-27535",
        "CVE-2022-42915"
      ]
    },
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "category": "Encrypted Storage",
      "certification_date": "2021-09-07",
      "evaluation_facility": "Leidos Common Criteria Testing Laboratory",
      "expiration_date": "2024-09-07",
      "id": "CCEVS-VR-VID11174",
      "product": "NetApp Storage Encryption (NSE) running ONTAP 9.7P13",
      "scheme": "US",
      "url": "https://www.niap-ccevs.org/product/11174",
      "vendor": "NetApp, Inc."
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2022-09-30",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-add1.pdf",
        "maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-st-2.pdf",
        "maintenance_title": "NetApp Storage Encryption (NSE) Running ONTAP 9.10.1P7"
      },
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2023-09-21",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-add2.pdf",
        "maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-st-3.pdf",
        "maintenance_title": "NetApp Storage Encryption (NSE) running ONTAP 9.10.1P14"
      }
    ]
  },
  "manufacturer": "NetApp, Inc.",
  "manufacturer_web": "https://www.netapp.com/",
  "name": "NetApp Storage Encryption (NSE) running ONTAP 9.7P13",
  "not_valid_after": "2024-09-07",
  "not_valid_before": "2021-09-07",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "st_vid11174-ci.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "US": {
          "CCEVS-VR-VID11174-2021": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {},
      "cc_security_level": {},
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 1
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": {
      "/CreationDate": "D:20210922122118-04\u002700\u0027",
      "/ModDate": "D:20210922122118-04\u002700\u0027",
      "/Producer": "iText 2.1.0 (by lowagie.com)",
      "pdf_file_size_bytes": 180159,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 1
    },
    "report_filename": "st_vid11174-vr.pdf",
    "report_frontpage": {
      "US": {
        "cert_id": "CCEVS-VR-VID11174-2021",
        "cert_item": "for NetApp Storage Encryption (NSE) running ONTAP 9.7P13",
        "cert_lab": "US NIAP"
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "US": {
          "CCEVS-VR-VID11174-2021": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_FSP.1": 1
        },
        "ALC": {
          "ALC_CMC.1": 1,
          "ALC_CMS.1": 1
        },
        "ATE": {
          "ATE_FUN.1": 1
        },
        "AVA": {
          "AVA_VAN.1": 1
        }
      },
      "cc_security_level": {},
      "cc_sfr": {},
      "certification_process": {
        "OutOfScope": {
          "here was collected from the ST and is considered accurate. The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. Protected data does not include the Master": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 9
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 6
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 1
        },
        "RNG": {
          "RBG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "NIST": {
          "NIST SP 800-132": 1,
          "NIST SP 800-38F": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        }
      },
      "vulnerability": {
        "CVE": {
          "CVE-2021-26988": 1,
          "CVE-2021-26989": 1,
          "CVE-2021-26994": 1
        }
      }
    },
    "report_metadata": {
      "/Author": "Leidos CCTL",
      "/CreationDate": "D:20220118214357-05\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Microsoft 365",
      "/ModDate": "D:20220118214357-05\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Microsoft 365",
      "pdf_file_size_bytes": 440881,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://docs.netapp.com/us-en/ontap/",
          "http://cve.mitre.org/cve/",
          "http://docs.netapp.com/ontap-9/index.jsp",
          "https://www.kb.cert.org/vuls/",
          "https://www.netapp.com/us/documentation/ontap-and-oncommand-system-manager.aspx",
          "http://nvd.nist.gov/vuln/search"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 23
    },
    "st_filename": "st_vid11174-st.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          },
          "ECDSA": {
            "ECDSA": 1
          }
        },
        "RSA": {
          "RSA 3072": 1
        }
      },
      "cc_cert_id": {},
      "cc_claims": {
        "OE": {
          "OE.INITIAL_DRIVE_STATE": 1,
          "OE.PASSPHRASE_STRENGTH": 1,
          "OE.PHYSICAL": 1,
          "OE.PLATFORM_STATE": 1,
          "OE.POWER_DOWN": 1,
          "OE.SINGLE_USE_ET": 1,
          "OE.STRONG_ENVIRONMENT_CRYPTO": 1,
          "OE.TRAINED_USERS": 1,
          "OE.TRUSTED_CHANNEL": 1
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_FSP.1": 11
        },
        "AGD": {
          "AGD_OPE.1": 12,
          "AGD_PRE.1": 8
        },
        "ALC": {
          "ALC_CMC.1": 6,
          "ALC_CMS.1": 7
        },
        "ASE": {
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_INT.1": 1,
          "ASE_OBJ.1": 1,
          "ASE_REQ.1": 1,
          "ASE_SPD.1": 1,
          "ASE_TSS.1": 2
        },
        "ATE": {
          "ATE_IND.1": 7
        },
        "AVA": {
          "AVA_VAN.1": 8
        }
      },
      "cc_security_level": {},
      "cc_sfr": {
        "FCS": {
          "FCS_AFA_EXT": 4,
          "FCS_AFA_EXT.1": 7,
          "FCS_AFA_EXT.1.1": 1,
          "FCS_AFA_EXT.2": 6,
          "FCS_AFA_EXT.2.1": 1,
          "FCS_CKM.1": 9,
          "FCS_CKM.1.1": 1,
          "FCS_CKM.4": 15,
          "FCS_CKM.4.1": 2,
          "FCS_CKM_EXT.4": 16,
          "FCS_CKM_EXT.4.1": 2,
          "FCS_COP.1": 44,
          "FCS_COP.1.1": 9,
          "FCS_KDF_EXT": 4,
          "FCS_KDF_EXT.1": 7,
          "FCS_KDF_EXT.1.1": 1,
          "FCS_KYC_EXT": 4,
          "FCS_KYC_EXT.1": 4,
          "FCS_KYC_EXT.1.1": 1,
          "FCS_KYC_EXT.1.2": 1,
          "FCS_KYC_EXT.2": 2,
          "FCS_PCC_EXT": 4,
          "FCS_PCC_EXT.1": 7,
          "FCS_PCC_EXT.1.1": 1,
          "FCS_RBG_EXT": 1,
          "FCS_RBG_EXT.1": 12,
          "FCS_RBG_EXT.1.1": 1,
          "FCS_RBG_EXT.1.2": 1,
          "FCS_SNI_EXT": 2,
          "FCS_SNI_EXT.1": 6,
          "FCS_SNI_EXT.1.1": 1,
          "FCS_SNI_EXT.1.2": 1,
          "FCS_SNI_EXT.1.3": 1,
          "FCS_VAL_EXT": 2,
          "FCS_VAL_EXT.1": 9,
          "FCS_VAL_EXT.1.1": 1,
          "FCS_VAL_EXT.1.2": 1,
          "FCS_VAL_EXT.1.3": 1
        },
        "FMT": {
          "FMT_MOF": 2,
          "FMT_MOF.1": 5,
          "FMT_MOF.1.1": 1,
          "FMT_SMF": 4,
          "FMT_SMF.1": 3,
          "FMT_SMF.1.1": 1,
          "FMT_SMR": 4,
          "FMT_SMR.1": 3,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_KYP_EXT": 4,
          "FPT_KYP_EXT.1": 5,
          "FPT_KYP_EXT.1.1": 1,
          "FPT_PWR_EXT": 8,
          "FPT_PWR_EXT.1": 7,
          "FPT_PWR_EXT.1.1": 2,
          "FPT_PWR_EXT.2": 4,
          "FPT_PWR_EXT.2.1": 1,
          "FPT_TST_EXT": 4,
          "FPT_TST_EXT.1": 6,
          "FPT_TST_EXT.1.1": 1,
          "FPT_TUD_EXT": 4,
          "FPT_TUD_EXT.1": 4,
          "FPT_TUD_EXT.1.1": 1,
          "FPT_TUD_EXT.1.2": 1,
          "FPT_TUD_EXT.1.3": 1
        }
      },
      "certification_process": {
        "OutOfScope": {
          "NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated": 1,
          "clouds (NetApp Private Storage or Cloud Volumes ONTAP). The cloud-based storage is considered out of scope for the evaluation and has not been tested or evaluated. The Security Target (ST) includes the": 1,
          "out of scope": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 4
        },
        "CCM": {
          "CCM": 1
        },
        "GCM": {
          "GCM": 2
        },
        "XEX": {
          "XEX": 1
        },
        "XTS": {
          "XTS": 2
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {
        "Generic": {
          "Crypto Library v2.22": 1
        },
        "OpenSSL": {
          "OpenSSL": 1
        }
      },
      "crypto_protocol": {
        "SSH": {
          "SSH": 2
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 2
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "PBKDF": {
          "PBKDF2": 5
        },
        "SHA": {
          "SHA2": {
            "SHA-256": 9,
            "SHA-384": 5,
            "SHA-512": 9
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "PRNG": {
          "DRBG": 19
        },
        "RNG": {
          "RBG": 4,
          "RNG": 1
        }
      },
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 186-4": 1,
          "FIPS PUB 186-4": 2
        },
        "ISO": {
          "ISO/IEC 10118": 2,
          "ISO/IEC 18031:2011": 1,
          "ISO/IEC 18033-3": 1,
          "ISO/IEC 9796-2": 2
        },
        "NIST": {
          "NIST SP 800-132": 5,
          "NIST SP 800-38F": 2,
          "NIST SP 800-90A": 3
        },
        "PKCS": {
          "PKCS #1": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8,
            "AES-128": 1,
            "AES-256": 5
          }
        },
        "constructions": {
          "MAC": {
            "HMAC": 5,
            "HMAC-SHA-512": 6
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Beaver, Gregory P. [US-US]",
      "/CreationDate": "D:20210921100050-04\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word for Microsoft 365",
      "/ModDate": "D:20210921100050-04\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word for Microsoft 365",
      "/Subject": "Security Target",
      "pdf_file_size_bytes": 797366,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://docs.netapp.com/us-en/ontap/",
          "https://www.netapp.com/us/documentation/ontap-and-oncommand-system-manager.aspx",
          "http://docs.netapp.com/ontap-9/index.jsp"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 52
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": [
      "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/CPP_FDE_AA_V2.0E.pdf"
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-vr.pdf",
  "scheme": "US",
  "security_level": {
    "_type": "Set",
    "elements": []
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/st_vid11174-st.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": true,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "a3d74b2b9cac3efadd4d73d1ed2095de8a6ae788994fc88750c551a292515307",
      "txt_hash": "243f44b110ff04b73d266dc682f8bebf2014289801c50a8d885f95f440a4695a"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "c638c33fd4f01f295b8a8e9fe393519ca568b29d08ab9f702992ab6130b4e461",
      "txt_hash": "55a3cb267fa233059d00bcb29703439ed36fcc414a81131fb3cb789de2b428e9"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "41396a7500783ca077c74726adb949139522af3c3ed780d203c53a4d89291747",
      "txt_hash": "68277a72dd2cadb962f2f4982c8fa12f4057ebc5ebc0a2968e45edbab9a132ed"
    }
  },
  "status": "archived"
}