RSA NetWitness Platform v11.6

CSV information ?

Status active
Valid from 29.06.2022
Valid until 29.06.2027
Scheme 🇲🇾 MY
Manufacturer NETWITNESS, an RSA Business
Category Network and Network-Related Devices and Systems
Security level ALC_FLR.1, EAL2+
Maintenance updates RSA NetWitness Platform v11.7 (21.06.2023) Certification report Security target

Heuristics summary ?

Certificate ID: ISCB-5-RPT-C125-CR-v1

Certificate ?

Extracted keywords

File metadata

Title ISCB-5-CERT-C125-CERTIFICATE-v1 (signed)
Creation date D:20220711093940Z00'00'
Modification date D:20220711093940Z00'00'
Pages 1
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Certification report ?

Extracted keywords

Hash functions
MD5
Protocols
SSH, TLS 1.2, TLS, VPN

Vendor
Microsoft

Security level
EAL 2
Claims
A.AUDIT_PROTECTION, A.DATA_SOURCES, A.TIME, A.DEPLOY, A.PHYSICAL, A.MANAGE, A.TRUSTED_ADMIN, A.USER
Security Assurance Requirements (SAR)
ALC_FLR.1
Security Functional Requirements (SFR)
FAU_GEN.1.1, FAU_GEN.2.1, FAU_SAR.1.2, FAU_SAR.1.1, FAU_SAR.2.1, FAU_GEN.1.2, FAU_STG.1.1, FAU_STG.1.2, FCS_TLS_EXT.1.1, FIA_ATD.1.1, FIA_UAU.5.1, FIA_UID.1.2, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UID.1.1, FIA_UAU.5.2, FMT_MOF.1.1, FMT_MTD.1.1, FMT_SMR.1.1, FMT_SMF.1.1, FMT_SMR.1.2, FPT_ITT.1.1, FTA_SSL.4.1, FTA_SSL.3.1, FTA_TAB.1.1, FTP_TRP.1.1, FTP_TRP.1.3
Certificates
ISCB-5-RPT-C125-CR-v1
Evaluation facilities
Leidos

Standards
FIPS 140-2, ISO/IEC15408, ISO/IEC 18045

File metadata

Title ISCB-5-RPT-C125-CR-v1
Creation date D:20220711094127Z00'00'
Modification date D:20220711094127Z00'00'
Pages 42
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Security target ?

Extracted keywords

Symmetric Algorithms
AES-
Hash functions
SHA384, SHA256, SHA-256
Protocols
SSH, TLS, TLS 1.2, TLS 1.0, TLS 1.1

Vendor
Microsoft, Cisco

Security level
EAL2, EAL 2, EAL2 augmented, EAL 2 augmented
Claims
O.ANALYZE, O.PRIVACY_DATA_PROTECT, O.TOE_ACCESS, O.PROTECTED_COMMS, O.AUDIT_GENERATION, O.AUDIT_PROTECTION, O.MANAGE, T.UNPROTECTED_PRIVACY_DATA, T.MALICIOUS_ACTIVITY, T.INADVERTENT_ACTIVITY, T.MISUSE, T.TSF_COMPROMISE, T.UNACCOUNTABLE_USERS, A.AUDIT_PROTECTION, A.DATA_SOURCES, A.TIME, A.DEPLOY, A.PHYSICAL, A.MANAGE, A.TRUSTED_ADMIN, A.USER, OE.AUDIT_PROTECTION, OE.DATA_SOURCES, OE.DEPLOY, OE.MANAGE, OE.PHYSICAL, OE.TIME, OE.TRUSTED_ADMIN, OE.USER
Security Assurance Requirements (SAR)
ADV_ARC, ADV_FSP, ADV_TDS, ADV_ARC.1, ADV_FSP.2, ADV_TDS.1, AGD_OPE, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_FRL.1, ALC_FLR.1, ALC_CMC, ALC_CMS.2, ALC_DEL, ALC_FLR, ALC_CMC.2, ALC_DEL.1, ATE_COV, ATE_FUN, ATE_IND, ATE_COV.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1
Security Functional Requirements (SFR)
FAU_GEN, FAU_GEN.1, FAU_SAR, FAU_SAR.1, FAU_STG, FAU_GEN.1.1, FAU_GEN.1.2, FAU_GEN.2, FAU_GEN.2.1, FAU_SAR.1.1, FAU_SAR.1.2, FAU_SAR.2, FAU_SAR.2.1, FAU_STG.1, FAU_STG.1.1, FAU_STG.1.2, FCS_COP.1, FCS_COP.1.1, FCS_TLS, FCS_TLS_EXT.1, FCS_TLS_EXT.1.1, FCS_CKM, FCS_SSH, FCS_SSH_EXT.1, FCS_SSH_EXT.1.1, FCS_SSH_EXT.1.2, FCS_SSH_EXT.1.3, FCS_SSH_EXT.1.4, FCS_SSH_EXT.1.5, FCS_SSH_EXT.1.6, FCS_CKM.1, FCS_SSH_EXT, FCS_TLS_EXT, FIA_AFL, FIA_ATD, FIA_UAU, FIA_UID, FIA_AFL.1, FIA_UAU.1, FIA_UAU.5, FIA_UID.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_ATD.1, FIA_ATD.1.1, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.5.1, FIA_UAU.5.2, FIA_UID.1.1, FIA_UID.1.2, FMT_MOF.1, FMT_MTD, FMT_SMF, FMT_SMR, FMT_SMF.1, FMT_SMR.1, FMT_MOF.1.1, FMT_MTD.1, FMT_MTD.1.1, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FPT_ITT, FPT_ITT.1, FPT_ITT.1.1, FPT_STM.1, FTA_SSL, FTA_TAB, FTA_SSL.3, FTA_SSL.4, FTA_SSL.3.1, FTA_SSL.4.1, FTA_TAB.1, FTA_TAB.1.1, FTP_TRP, FTP_TRP.1, FTP_TRP.1.1, FTP_TRP.1.2, FTP_TRP.1.3
Evaluation facilities
Leidos

Standards
FIPS 140-2, RFC 4252, RFC 5246

File metadata

Title Microsoft Word - RSA Netwitness v11.6_v1.0-Final.docx
Creation date D:20220623023133Z00'00'
Modification date D:20220623023133Z00'00'
Pages 69
Creator Word
Producer macOS Version 11.6 (Build 20G165) Quartz PDFContext

Heuristics ?

Certificate ID: ISCB-5-RPT-C125-CR-v1

Extracted SARs

ASE_CCL.1, ALC_DEL.1, ATE_FUN.1, ATE_IND.2, ADV_ARC.1, ASE_TSS.1, ADV_TDS.1, ATE_COV.1, ASE_SPD.1, ASE_REQ.2, ALC_FRL.1, AGD_OPE.1, ASE_ECD.1, ALC_CMS.2, AVA_VAN.2, ASE_INT.1, ALC_CMC.2, AGD_PRE.1, ADV_FSP.2, ALC_FLR.1, ASE_OBJ.2

Scheme data ?

Cert No 2022-004-C125
Developer NETWITNESS an RSA Business
Level EAL2+ ALC_FLR.1
Product RSA NetWitness Platform v11.6
Certification Date 29.06.2022
Expiration Date 29.06.2027
Recognition CCRA
Url https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/certified-products-and-systems-5/submission-view/100
Enhanced
Cert Id C125
Product RSA NetWitness Platform v11.6
Developer NETWITNESS, an RSA Business10700 Parkridge Bvld, Reston, VA 20191, United States of America
Category Network and Network-Related Devices and Systems
Type Network And Network-Related Devices And Systems
Scope The TOE is a collection of appliances that form a security infrastructure for an enterprise network. This architecture provides converged network security monitoring and centralised security information and event management (SIEM). The TOE provides real-time visibility into the monitored network and long-term network data storage to provide detection, investigation, analysis, forensics, and compliance reporting. The TOE implements additional security functions such as identification and authentication of TOE users; auditing; security management; and trusted path.The security management functions of the TOE are performed via the NetWitness Platform User Interface (UI), which is a web-based GUI. This interface allows authorised administrators to manage the user accounts, session lockout values and other TSF data, and view the IDS data and alerts. Navigation in the UI is based on Roles and is divided into major functional areas including Respond, Investigate, and Admin. The Respond view consolidates all alerts such as ESA Correlation Rules, Malware Analytics, and Reporting Alerts into one location and is used for incident tracking and triage. The Investigate view presents seven different views into a set of data, allowing authorized users to see metadata, events, and potential indicators of compromise. In the Admin view, Administrators can manage network hosts and services; manage system-level security; and manage Collection Methods/event sources.
Assurance Level EAL2+ ALC_FLR.1
Certification Date 29.06.2022
Expiration Date 29.06.2027
Mutual Recognition CCRA
Target Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/RSA_Netwitness_v11.6_v1.0-Final.pdf
Report Link https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/ISCB-5-RPT-C125-CR-v1.pdf
Status Valid

References ?

No references are available for this certificate.

Updates ?

  • 09.11.2024 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The scheme_data property was updated, with the {'certification_date': '2022-06-29', 'expiration_date': '2027-06-29', 'enhanced': {'__update__': {'scope': 'The TOE is a collection of appliances that form a security infrastructure for an enterprise network. This architecture provides converged network security monitoring and centralised security information and event management (SIEM). The TOE provides real-time visibility into the monitored network and long-term network data storage to provide detection, investigation, analysis, forensics, and compliance reporting. The TOE implements additional security functions such as identification and authentication of TOE users; auditing; security management; and trusted path.The security management functions of the TOE are performed via the NetWitness Platform User Interface (UI), which is a web-based GUI. This interface allows authorised administrators to manage the user accounts, session lockout values and other TSF data, and view the IDS data and alerts. Navigation in the UI is based on Roles and is divided into major functional areas including Respond, Investigate, and Admin. The Respond view consolidates all alerts such as ESA Correlation Rules, Malware Analytics, and Reporting Alerts into one location and is used for incident tracking and triage. The Investigate view presents seven different views into a set of data, allowing authorized users to see metadata, events, and potential indicators of compromise. In the Admin view, Administrators can manage network hosts and services; manage system-level security; and manage Collection Methods/event sources.', 'certification_date': '2022-06-29', 'expiration_date': '2027-06-29'}}} data.
  • 22.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The st property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '4f6e5839cb5b1af27958297d01a5b65c902724796814a89e505adfddf824d131', 'txt_hash': '82039999a9f1e384f30e0b3564c8abe54fa1b2f02a659f76d3131fc93aa37d66'} data.
    • The cert property was updated, with the {'download_ok': True, 'convert_garbage': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '766e3efcb7e1185b53cc3f502a501549d3d760c3c51c7bdef52f62048f7a2674', 'txt_hash': 'f88cf70e7c06be5bb9dee7d9d79da05a40676829c7ad68a526de45b43bbd7c3c'} data.

    The PDF extraction data was updated.

    • The st_metadata property was set to {'pdf_file_size_bytes': 1315844, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 69, '/Title': 'Microsoft Word - RSA Netwitness v11.6_v1.0-Final.docx', '/Producer': 'macOS Version 11.6 (Build 20G165) Quartz PDFContext', '/Creator': 'Word', '/CreationDate': "D:20220623023133Z00'00'", '/ModDate': "D:20220623023133Z00'00'", 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The cert_metadata property was set to {'pdf_file_size_bytes': 770620, 'pdf_is_encrypted': True, 'pdf_number_of_pages': 1, '/CreationDate': "D:20220711093940Z00'00'", '/Creator': 'Word', '/ModDate': "D:20220711093940Z00'00'", '/Producer': 'macOS Version 11.6 (Build 20G165) Quartz PDFContext', '/Title': 'ISCB-5-CERT-C125-CERTIFICATE-v1 (signed)', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The st_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {}, 'cc_security_level': {'EAL': {'EAL2': 4, 'EAL 2': 5, 'EAL2 augmented': 1, 'EAL 2 augmented': 5}}, 'cc_sar': {'ADV': {'ADV_ARC': 1, 'ADV_FSP': 1, 'ADV_TDS': 1, 'ADV_ARC.1': 10, 'ADV_FSP.2': 11, 'ADV_TDS.1': 11}, 'AGD': {'AGD_OPE': 1, 'AGD_PRE': 1, 'AGD_OPE.1': 10, 'AGD_PRE.1': 6}, 'ALC': {'ALC_FRL.1': 2, 'ALC_FLR.1': 14, 'ALC_CMC': 1, 'ALC_CMS.2': 7, 'ALC_DEL': 1, 'ALC_FLR': 1, 'ALC_CMC.2': 8, 'ALC_DEL.1': 5}, 'ATE': {'ATE_COV': 1, 'ATE_FUN': 1, 'ATE_IND': 1, 'ATE_COV.1': 4, 'ATE_FUN.1': 8, 'ATE_IND.2': 7}, 'AVA': {'AVA_VAN.2': 8}, 'ASE': {'ASE_CCL.1': 15, 'ASE_ECD.1': 11, 'ASE_INT.1': 13, 'ASE_OBJ.2': 11, 'ASE_REQ.2': 14, 'ASE_SPD.1': 8, 'ASE_TSS.1': 6}}, 'cc_sfr': {'FAU': {'FAU_GEN': 8, 'FAU_GEN.1': 9, 'FAU_SAR': 4, 'FAU_SAR.1': 15, 'FAU_STG': 3, 'FAU_GEN.1.1': 1, 'FAU_GEN.1.2': 1, 'FAU_GEN.2': 4, 'FAU_GEN.2.1': 1, 'FAU_SAR.1.1': 2, 'FAU_SAR.1.2': 2, 'FAU_SAR.2': 4, 'FAU_SAR.2.1': 1, 'FAU_STG.1': 4, 'FAU_STG.1.1': 1, 'FAU_STG.1.2': 1}, 'FCS': {'FCS_COP.1': 2, 'FCS_COP.1.1': 1, 'FCS_TLS': 2, 'FCS_TLS_EXT.1': 11, 'FCS_TLS_EXT.1.1': 2, 'FCS_CKM': 1, 'FCS_SSH': 2, 'FCS_SSH_EXT.1': 8, 'FCS_SSH_EXT.1.1': 2, 'FCS_SSH_EXT.1.2': 2, 'FCS_SSH_EXT.1.3': 2, 'FCS_SSH_EXT.1.4': 2, 'FCS_SSH_EXT.1.5': 2, 'FCS_SSH_EXT.1.6': 2, 'FCS_CKM.1': 1, 'FCS_SSH_EXT': 3, 'FCS_TLS_EXT': 3}, 'FIA': {'FIA_AFL': 3, 'FIA_ATD': 3, 'FIA_UAU': 7, 'FIA_UID': 3, 'FIA_AFL.1': 5, 'FIA_UAU.1': 8, 'FIA_UAU.5': 4, 'FIA_UID.1': 9, 'FIA_AFL.1.1': 1, 'FIA_AFL.1.2': 1, 'FIA_ATD.1': 3, 'FIA_ATD.1.1': 1, 'FIA_UAU.1.1': 1, 'FIA_UAU.1.2': 1, 'FIA_UAU.5.1': 1, 'FIA_UAU.5.2': 1, 'FIA_UID.1.1': 1, 'FIA_UID.1.2': 1}, 'FMT': {'FMT_MOF.1': 27, 'FMT_MTD': 3, 'FMT_SMF': 3, 'FMT_SMR': 3, 'FMT_SMF.1': 9, 'FMT_SMR.1': 7, 'FMT_MOF.1.1': 3, 'FMT_MTD.1': 5, 'FMT_MTD.1.1': 1, 'FMT_SMF.1.1': 1, 'FMT_SMR.1.1': 1, 'FMT_SMR.1.2': 1}, 'FPT': {'FPT_ITT': 3, 'FPT_ITT.1': 4, 'FPT_ITT.1.1': 1, 'FPT_STM.1': 2}, 'FTA': {'FTA_SSL': 6, 'FTA_TAB': 3, 'FTA_SSL.3': 6, 'FTA_SSL.4': 6, 'FTA_SSL.3.1': 1, 'FTA_SSL.4.1': 1, 'FTA_TAB.1': 4, 'FTA_TAB.1.1': 1}, 'FTP': {'FTP_TRP': 5, 'FTP_TRP.1': 5, 'FTP_TRP.1.1': 1, 'FTP_TRP.1.2': 1, 'FTP_TRP.1.3': 1}}, 'cc_claims': {'O': {'O.ANALYZE': 5, 'O.PRIVACY_DATA_PROTECT': 2, 'O.TOE_ACCESS': 5, 'O.PROTECTED_COMMS': 3, 'O.AUDIT_GENERATION': 2, 'O.AUDIT_PROTECTION': 4, 'O.MANAGE': 4}, 'T': {'T.UNPROTECTED_PRIVACY_DATA': 2, 'T.MALICIOUS_ACTIVITY': 3, 'T.INADVERTENT_ACTIVITY': 3, 'T.MISUSE': 2, 'T.TSF_COMPROMISE': 3, 'T.UNACCOUNTABLE_USERS': 2}, 'A': {'A.AUDIT_PROTECTION': 3, 'A.DATA_SOURCES': 2, 'A.TIME': 3, 'A.DEPLOY': 2, 'A.PHYSICAL': 2, 'A.MANAGE': 2, 'A.TRUSTED_ADMIN': 2, 'A.USER': 3}, 'OE': {'OE.AUDIT_PROTECTION': 2, 'OE.DATA_SOURCES': 1, 'OE.DEPLOY': 2, 'OE.MANAGE': 2, 'OE.PHYSICAL': 3, 'OE.TIME': 3, 'OE.TRUSTED_ADMIN': 2, 'OE.USER': 2}}, 'vendor': {'Microsoft': {'Microsoft': 5}, 'Cisco': {'Cisco': 1}}, 'eval_facility': {'Leidos': {'Leidos': 1}}, 'symmetric_crypto': {'AES_competition': {'AES': {'AES-': 1}}}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {'SHA': {'SHA2': {'SHA384': 1, 'SHA256': 2, 'SHA-256': 1}}}, 'crypto_scheme': {}, 'crypto_protocol': {'SSH': {'SSH': 45}, 'TLS': {'TLS': {'TLS': 48, 'TLS 1.2': 3, 'TLS 1.0': 1, 'TLS 1.1': 1}}}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'FIPS': {'FIPS 140-2': 5}, 'RFC': {'RFC 4252': 2, 'RFC 5246': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}.
    • The cert_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {}, 'cc_security_level': {}, 'cc_sar': {}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {}, 'eval_facility': {}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}.
    • The st_filename property was set to RSA Netwitness v11.6_v1.0-Final.pdf.
    • The cert_filename property was set to ISCB-5-CERT-C125-CERTIFICATE-v1.pdf.

    The computed heuristics were updated.

    • The extracted_sars property was updated, with the {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_CCL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_IND', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_TSS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_TDS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_COV', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_SPD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_REQ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_FRL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_ECD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AVA_VAN', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_INT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_OBJ', 'level': 2}]} values added.
  • 19.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': True, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '10c8c7542c1876874ed462bd32246a0ec19e7a797dad6ec2d1cf32f41408ec89', 'txt_hash': 'bfc00acf8033b395423d44400f5ec2c0f8beb54991f17e0fac827f9d9b67193f'} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to {'pdf_file_size_bytes': 1270700, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 42, '/Title': 'ISCB-5-RPT-C125-CR-v1', '/Producer': 'macOS Version 11.6 (Build 20G165) Quartz PDFContext', '/Creator': 'Word', '/CreationDate': "D:20220711094127Z00'00'", '/ModDate': "D:20220711094127Z00'00'", 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The report_frontpage property was set to {}.
    • The report_keywords property was set to {'cc_cert_id': {'MY': {'ISCB-5-RPT-C125-CR-v1': 41}}, 'cc_protection_profile_id': {}, 'cc_security_level': {'EAL': {'EAL 2': 5}}, 'cc_sar': {'ALC': {'ALC_FLR.1': 9}}, 'cc_sfr': {'FAU': {'FAU_GEN.1.1': 4, 'FAU_GEN.2.1': 4, 'FAU_SAR.1.2': 5, 'FAU_SAR.1.1': 4, 'FAU_SAR.2.1': 2, 'FAU_GEN.1.2': 3, 'FAU_STG.1.1': 1, 'FAU_STG.1.2': 1}, 'FCS': {'FCS_TLS_EXT.1.1': 1}, 'FIA': {'FIA_ATD.1.1': 2, 'FIA_UAU.5.1': 3, 'FIA_UID.1.2': 2, 'FIA_AFL.1.1': 1, 'FIA_AFL.1.2': 1, 'FIA_UAU.1.1': 1, 'FIA_UAU.1.2': 1, 'FIA_UID.1.1': 1, 'FIA_UAU.5.2': 2}, 'FMT': {'FMT_MOF.1.1': 3, 'FMT_MTD.1.1': 3, 'FMT_SMR.1.1': 2, 'FMT_SMF.1.1': 1, 'FMT_SMR.1.2': 1}, 'FPT': {'FPT_ITT.1.1': 1}, 'FTA': {'FTA_SSL.4.1': 2, 'FTA_SSL.3.1': 1, 'FTA_TAB.1.1': 1}, 'FTP': {'FTP_TRP.1.1': 1, 'FTP_TRP.1.3': 1}}, 'cc_claims': {'A': {'A.AUDIT_PROTECTION': 1, 'A.DATA_SOURCES': 1, 'A.TIME': 1, 'A.DEPLOY': 1, 'A.PHYSICAL': 1, 'A.MANAGE': 1, 'A.TRUSTED_ADMIN': 1, 'A.USER': 1}}, 'vendor': {'Microsoft': {'Microsoft': 2}}, 'eval_facility': {'Leidos': {'Leidos': 1}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {'MD': {'MD5': {'MD5': 1}}}, 'crypto_scheme': {}, 'crypto_protocol': {'SSH': {'SSH': 4}, 'TLS': {'TLS': {'TLS 1.2': 1, 'TLS': 5}}, 'VPN': {'VPN': 1}}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'FIPS': {'FIPS 140-2': 2}, 'ISO': {'ISO/IEC15408': 2, 'ISO/IEC 18045': 2}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}.
    • The report_filename property was set to ISCB-5-RPT-C125-CR-v1.pdf.

    The computed heuristics were updated.

    • The cert_id property was set to ISCB-5-RPT-C125-CR-v1.
  • 17.08.2024 The certificate data changed.
    Certificate changed

    The report_link was updated.

    • The new value is https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C125-CR-v1.pdf.

    The st_link was updated.

    • The new value is https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/RSA%20Netwitness%20v11.6_v1.0-Final.pdf.

    The state of the certificate object was updated.

    • The cert property was updated, with the {'download_ok': False, 'convert_garbage': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.

    The PDF extraction data was updated.

    • The cert_metadata property was set to None.
    • The cert_keywords property was set to None.
    • The cert_filename property was set to None.
  • 12.08.2024 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The report property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.
    • The st property was updated, with the {'download_ok': False, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': None, 'txt_hash': None} data.

    The PDF extraction data was updated.

    • The report_metadata property was set to None.
    • The st_metadata property was set to None.
    • The report_frontpage property was set to None.
    • The report_keywords property was set to None.
    • The st_keywords property was set to None.
    • The report_filename property was set to None.
    • The st_filename property was set to None.

    The computed heuristics were updated.

    • The cert_id property was set to None.
    • The extracted_sars property was updated, with the {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_CCL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_IND', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_TSS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_TDS', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_COV', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_SPD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_REQ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_FRL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_ECD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_INT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AVA_VAN', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_OBJ', 'level': 2}]} values discarded.
  • 23.07.2024 The certificate was first processed.
    New certificate

    A new Common Criteria certificate with the product name RSA NetWitness Platform v11.6 was processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Network and Network-Related Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-CERT-C125-CERTIFICATE-v1.pdf",
  "dgst": "3819070bba50ed92",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "ISCB-5-RPT-C125-CR-v1",
    "cert_lab": null,
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FRL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "11.6"
      ]
    },
    "indirect_transitive_cves": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "cert_no": "2022-004-C125",
      "certification_date": "2022-06-29",
      "developer": "NETWITNESS an RSA Business",
      "enhanced": {
        "assurance_level": "EAL2+ ALC_FLR.1",
        "category": "Network and Network-Related Devices and Systems",
        "cert_id": "C125",
        "certification_date": "2022-06-29",
        "developer": "NETWITNESS, an RSA Business10700 Parkridge Bvld, Reston, VA 20191, United States of America",
        "expiration_date": "2027-06-29",
        "mutual_recognition": "CCRA",
        "product": "RSA NetWitness Platform v11.6",
        "report_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/ISCB-5-RPT-C125-CR-v1.pdf",
        "scope": "The TOE is a collection of appliances that form a security infrastructure for an enterprise network. This architecture provides converged network security monitoring and centralised security information and event management (SIEM). The TOE provides real-time visibility into the monitored network and long-term network data storage to provide detection, investigation, analysis, forensics, and compliance reporting. The TOE implements additional security functions such as identification and authentication of TOE users; auditing; security management; and trusted path.The security management functions of the TOE are performed via the NetWitness Platform User Interface (UI), which is a web-based GUI. This interface allows authorised administrators to manage the user accounts, session lockout values and other TSF data, and view the IDS data and alerts. Navigation in the UI is based on Roles and is divided into major functional areas including Respond, Investigate, and Admin. The Respond view consolidates all alerts such as ESA Correlation Rules, Malware Analytics, and Reporting Alerts into one location and is used for incident tracking and triage. The Investigate view presents seven different views into a set of data, allowing authorized users to see metadata, events, and potential indicators of compromise. In the Admin view, Administrators can manage network hosts and services; manage system-level security; and manage Collection Methods/event sources.",
        "status": "Valid",
        "target_link": "https://iscb.cybersecurity.my/resources/document/mycc/mycpr/C125/RSA_Netwitness_v11.6_v1.0-Final.pdf",
        "type": "Network And Network-Related Devices And Systems"
      },
      "expiration_date": "2027-06-29",
      "level": "EAL2+ ALC_FLR.1",
      "product": "RSA NetWitness Platform v11.6",
      "recognition": "CCRA",
      "url": "https://iscb.cybersecurity.my/index.php/certification/product-certification/mycc/certified-products-and-systems-5/submission-view/100"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2023-06-21",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-M020-AMR-v1.pdf",
        "maintenance_st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/RSA%20Netwitness%20v11.7%20ST_v1.0.pdf",
        "maintenance_title": "RSA NetWitness Platform v11.7"
      }
    ]
  },
  "manufacturer": "NETWITNESS, an RSA Business",
  "manufacturer_web": "https://www.netwitness.com/en-us",
  "name": "RSA NetWitness Platform v11.6",
  "not_valid_after": "2027-06-29",
  "not_valid_before": "2022-06-29",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "ISCB-5-CERT-C125-CERTIFICATE-v1.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {},
      "cc_security_level": {},
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": {
      "/CreationDate": "D:20220711093940Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220711093940Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "ISCB-5-CERT-C125-CERTIFICATE-v1 (signed)",
      "pdf_file_size_bytes": 770620,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": true,
      "pdf_number_of_pages": 1
    },
    "report_filename": "ISCB-5-RPT-C125-CR-v1.pdf",
    "report_frontpage": {},
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "MY": {
          "ISCB-5-RPT-C125-CR-v1": 41
        }
      },
      "cc_claims": {
        "A": {
          "A.AUDIT_PROTECTION": 1,
          "A.DATA_SOURCES": 1,
          "A.DEPLOY": 1,
          "A.MANAGE": 1,
          "A.PHYSICAL": 1,
          "A.TIME": 1,
          "A.TRUSTED_ADMIN": 1,
          "A.USER": 1
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR.1": 9
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 5
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN.1.1": 4,
          "FAU_GEN.1.2": 3,
          "FAU_GEN.2.1": 4,
          "FAU_SAR.1.1": 4,
          "FAU_SAR.1.2": 5,
          "FAU_SAR.2.1": 2,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1
        },
        "FCS": {
          "FCS_TLS_EXT.1.1": 1
        },
        "FIA": {
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_ATD.1.1": 2,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5.1": 3,
          "FIA_UAU.5.2": 2,
          "FIA_UID.1.1": 1,
          "FIA_UID.1.2": 2
        },
        "FMT": {
          "FMT_MOF.1.1": 3,
          "FMT_MTD.1.1": 3,
          "FMT_SMF.1.1": 1,
          "FMT_SMR.1.1": 2,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_ITT.1.1": 1
        },
        "FTA": {
          "FTA_SSL.3.1": 1,
          "FTA_SSL.4.1": 2,
          "FTA_TAB.1.1": 1
        },
        "FTP": {
          "FTP_TRP.1.1": 1,
          "FTP_TRP.1.3": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 4
        },
        "TLS": {
          "TLS": {
            "TLS": 5,
            "TLS 1.2": 1
          }
        },
        "VPN": {
          "VPN": 1
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 1
        }
      },
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 2
        },
        "ISO": {
          "ISO/IEC 18045": 2,
          "ISO/IEC15408": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 2
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/CreationDate": "D:20220711094127Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220711094127Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "ISCB-5-RPT-C125-CR-v1",
      "pdf_file_size_bytes": 1270700,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 42
    },
    "st_filename": "RSA Netwitness v11.6_v1.0-Final.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.AUDIT_PROTECTION": 3,
          "A.DATA_SOURCES": 2,
          "A.DEPLOY": 2,
          "A.MANAGE": 2,
          "A.PHYSICAL": 2,
          "A.TIME": 3,
          "A.TRUSTED_ADMIN": 2,
          "A.USER": 3
        },
        "O": {
          "O.ANALYZE": 5,
          "O.AUDIT_GENERATION": 2,
          "O.AUDIT_PROTECTION": 4,
          "O.MANAGE": 4,
          "O.PRIVACY_DATA_PROTECT": 2,
          "O.PROTECTED_COMMS": 3,
          "O.TOE_ACCESS": 5
        },
        "OE": {
          "OE.AUDIT_PROTECTION": 2,
          "OE.DATA_SOURCES": 1,
          "OE.DEPLOY": 2,
          "OE.MANAGE": 2,
          "OE.PHYSICAL": 3,
          "OE.TIME": 3,
          "OE.TRUSTED_ADMIN": 2,
          "OE.USER": 2
        },
        "T": {
          "T.INADVERTENT_ACTIVITY": 3,
          "T.MALICIOUS_ACTIVITY": 3,
          "T.MISUSE": 2,
          "T.TSF_COMPROMISE": 3,
          "T.UNACCOUNTABLE_USERS": 2,
          "T.UNPROTECTED_PRIVACY_DATA": 2
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 1,
          "ADV_ARC.1": 10,
          "ADV_FSP": 1,
          "ADV_FSP.2": 11,
          "ADV_TDS": 1,
          "ADV_TDS.1": 11
        },
        "AGD": {
          "AGD_OPE": 1,
          "AGD_OPE.1": 10,
          "AGD_PRE": 1,
          "AGD_PRE.1": 6
        },
        "ALC": {
          "ALC_CMC": 1,
          "ALC_CMC.2": 8,
          "ALC_CMS.2": 7,
          "ALC_DEL": 1,
          "ALC_DEL.1": 5,
          "ALC_FLR": 1,
          "ALC_FLR.1": 14,
          "ALC_FRL.1": 2
        },
        "ASE": {
          "ASE_CCL.1": 15,
          "ASE_ECD.1": 11,
          "ASE_INT.1": 13,
          "ASE_OBJ.2": 11,
          "ASE_REQ.2": 14,
          "ASE_SPD.1": 8,
          "ASE_TSS.1": 6
        },
        "ATE": {
          "ATE_COV": 1,
          "ATE_COV.1": 4,
          "ATE_FUN": 1,
          "ATE_FUN.1": 8,
          "ATE_IND": 1,
          "ATE_IND.2": 7
        },
        "AVA": {
          "AVA_VAN.2": 8
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 5,
          "EAL 2 augmented": 5,
          "EAL2": 4,
          "EAL2 augmented": 1
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 8,
          "FAU_GEN.1": 9,
          "FAU_GEN.1.1": 1,
          "FAU_GEN.1.2": 1,
          "FAU_GEN.2": 4,
          "FAU_GEN.2.1": 1,
          "FAU_SAR": 4,
          "FAU_SAR.1": 15,
          "FAU_SAR.1.1": 2,
          "FAU_SAR.1.2": 2,
          "FAU_SAR.2": 4,
          "FAU_SAR.2.1": 1,
          "FAU_STG": 3,
          "FAU_STG.1": 4,
          "FAU_STG.1.1": 1,
          "FAU_STG.1.2": 1
        },
        "FCS": {
          "FCS_CKM": 1,
          "FCS_CKM.1": 1,
          "FCS_COP.1": 2,
          "FCS_COP.1.1": 1,
          "FCS_SSH": 2,
          "FCS_SSH_EXT": 3,
          "FCS_SSH_EXT.1": 8,
          "FCS_SSH_EXT.1.1": 2,
          "FCS_SSH_EXT.1.2": 2,
          "FCS_SSH_EXT.1.3": 2,
          "FCS_SSH_EXT.1.4": 2,
          "FCS_SSH_EXT.1.5": 2,
          "FCS_SSH_EXT.1.6": 2,
          "FCS_TLS": 2,
          "FCS_TLS_EXT": 3,
          "FCS_TLS_EXT.1": 11,
          "FCS_TLS_EXT.1.1": 2
        },
        "FIA": {
          "FIA_AFL": 3,
          "FIA_AFL.1": 5,
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_ATD": 3,
          "FIA_ATD.1": 3,
          "FIA_ATD.1.1": 1,
          "FIA_UAU": 7,
          "FIA_UAU.1": 8,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5": 4,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 1,
          "FIA_UID": 3,
          "FIA_UID.1": 9,
          "FIA_UID.1.1": 1,
          "FIA_UID.1.2": 1
        },
        "FMT": {
          "FMT_MOF.1": 27,
          "FMT_MOF.1.1": 3,
          "FMT_MTD": 3,
          "FMT_MTD.1": 5,
          "FMT_MTD.1.1": 1,
          "FMT_SMF": 3,
          "FMT_SMF.1": 9,
          "FMT_SMF.1.1": 1,
          "FMT_SMR": 3,
          "FMT_SMR.1": 7,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_ITT": 3,
          "FPT_ITT.1": 4,
          "FPT_ITT.1.1": 1,
          "FPT_STM.1": 2
        },
        "FTA": {
          "FTA_SSL": 6,
          "FTA_SSL.3": 6,
          "FTA_SSL.3.1": 1,
          "FTA_SSL.4": 6,
          "FTA_SSL.4.1": 1,
          "FTA_TAB": 3,
          "FTA_TAB.1": 4,
          "FTA_TAB.1.1": 1
        },
        "FTP": {
          "FTP_TRP": 5,
          "FTP_TRP.1": 5,
          "FTP_TRP.1.1": 1,
          "FTP_TRP.1.2": 1,
          "FTP_TRP.1.3": 1
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 45
        },
        "TLS": {
          "TLS": {
            "TLS": 48,
            "TLS 1.0": 1,
            "TLS 1.1": 1,
            "TLS 1.2": 3
          }
        }
      },
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "Leidos": {
          "Leidos": 1
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 1,
            "SHA256": 2,
            "SHA384": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS 140-2": 5
        },
        "RFC": {
          "RFC 4252": 2,
          "RFC 5246": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES-": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Cisco": {
          "Cisco": 1
        },
        "Microsoft": {
          "Microsoft": 5
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/CreationDate": "D:20220623023133Z00\u002700\u0027",
      "/Creator": "Word",
      "/ModDate": "D:20220623023133Z00\u002700\u0027",
      "/Producer": "macOS Version 11.6 (Build 20G165) Quartz PDFContext",
      "/Title": "Microsoft Word - RSA Netwitness v11.6_v1.0-Final.docx",
      "pdf_file_size_bytes": 1315844,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 69
    }
  },
  "protection_profiles": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/ISCB-5-RPT-C125-CR-v1.pdf",
  "scheme": "MY",
  "security_level": {
    "_type": "Set",
    "elements": [
      "ALC_FLR.1",
      "EAL2+"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/RSA%20Netwitness%20v11.6_v1.0-Final.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": true,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "766e3efcb7e1185b53cc3f502a501549d3d760c3c51c7bdef52f62048f7a2674",
      "txt_hash": "f88cf70e7c06be5bb9dee7d9d79da05a40676829c7ad68a526de45b43bbd7c3c"
    },
    "report": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "10c8c7542c1876874ed462bd32246a0ec19e7a797dad6ec2d1cf32f41408ec89",
      "txt_hash": "bfc00acf8033b395423d44400f5ec2c0f8beb54991f17e0fac827f9d9b67193f"
    },
    "st": {
      "_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "4f6e5839cb5b1af27958297d01a5b65c902724796814a89e505adfddf824d131",
      "txt_hash": "82039999a9f1e384f30e0b3564c8abe54fa1b2f02a659f76d3131fc93aa37d66"
    }
  },
  "status": "active"
}