TNOR Guard v. 1.1.3

CSV information

Status active
Valid from 12.05.2022
Valid until 12.05.2027
Scheme 🇳🇴 NO
Manufacturer Thales Norway AS
Category Boundary Protection Devices and Systems
Security level ALC_FLR.3, EAL4+, AVA_VAN.4
Maintenance updates Maintenance of TNOR Guard (21.05.2025) Certification report

Heuristics summary

Certificate ID: SERTIT-120

Certificate

Extracted keywords

Vendor
Thales

Security level
EAL 4, EAL 2, EAL 4 augmented
Security Assurance Requirements (SAR)
ALC_FLR
Certificates
SERTIT-120

File metadata

Subject 201676 201334 VEDLEGG01
Author helgerudt
Creation date D:20220629133919+02'00'
Modification date D:20220629142649+02'00'
Pages 1
Creator Hewlett-Packard MFP
Producer PixEdit AS, PixEdit Version 8.7.4.6

Certification report

Extracted keywords

Schemes
MAC, PKE
Elliptic Curves
P-110

Vendor
Thales, Microsoft

Security level
EAL 4, EAL 2, EAL 4 augmented
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_FLR.3, ALC_FLR, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_DVS.1, ALC_LCD.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.4, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1
Certificates
SERTIT-120

Standards
RFC 6477, ISO/IEC 15408, ISO/IEC 17025, ISO/IEC 18045, CCMB-2017-04-004

File metadata

Creation date D:20220518100037+02'00'
Modification date D:20220518100037+02'00'
Pages 22

Security target

Extracted keywords

Schemes
MAC, PKE
Protocols
SSH

Trusted Execution Environments
SE
Vendor
Thales, Microsoft

Security level
EAL4, EAL4 augmented
Claims
O.ACCESS, O.AUDIT, O.CMD_ACL, O.CONFIGURATION_CHANGE, O.CORRECT_TSF_OPERATION, O.INTERNAL_LEAST_PRIVILEGE, O.LABEL_MAPPING, O.MAC, O.MGMT_MODE, O.CONTROLLED_INFORMATION_FLOW, O.MINIMAL_PROXY, O.OBJECT_INTEGRITY, O.RESIDUAL_INFORMATION, O.RESOURCE_SHARING, O.SECURE_STATE, O.SUBJECT_ISOLATION, O.TRANSITION, O.TSF_INTEGRITY, O.VALID_LABEL, O.CONTROLLED_INFORMATION, O.INTERNAL_LEAST_PRIVILEG, T.ADMIN_MASQUERADE, T.AUDIT_COMPROMISE, T.OBJECT_TAMPERING, T.COVERT_CHANNEL, T.DOS, T.INFORMATION_LEAK, T.INSECURE_STATE, T.MALWARE_INJECTION, T.METADATA_LEAK, T.NETWORK_ATTACK, T.RECONNAISSANCE, T.RESIDUAL_DATA, T.UNATTENDED_ADMIN_SESSION, T.UNAUTHORIZED_ACCESS, T.UNNOTICED_ATTACK, T.TSF_COMPROMISE, A..Z, A.APPROVED_CRYPTO, A.APPROVED_PKI, A.CORRECT_CONFIGURATION, A.NETWORK_PROTECTED, A.PHYSICAL_ACCESS_MANAGED, A.TRUSTED_AND_TRAINED_ADMIN, A.TRUSTED_LABELLER, OE.BORDER_PROTECTION, OE.CONTENT_INSPECTION_SE, OE.DIRECTORY_SERVICE, OE.APPROVED_CRYPTO, OE.APPROVED_PKI, OE.MINIMAL_POSTURE, OE.NETWORK, OE.PHYSICAL_ACCESS_MANA, OE.CONFIGURATION, OE.TRUSTED_AND_TRAINED_, OE.TRUSTED_LABELLER, OE.PLATFORM, OE.TIME_SOURCE, OE.PHYSICAL_ACCESS_MANAG, OE.TRUSTED_AND_TRAINED_A, OE.CONTENT_INSPECTION_SERVICE, OE.PHYSICAL_ACCESS_MANAGED, OE.TRUSTED_AND_TRAINED_ADMIN, OE.CONTENT_INSPECTION_S, OE.TRUSTED_AND_TRAINED_ADMINS
Security Assurance Requirements (SAR)
ALC_FLR.3, AVA_VAN.4, ASE_INT, ASE_CCL, ASE_SPD, ASE_OBJ, ASE_ECD, ASE_REQ, ASE_TSS
Security Functional Requirements (SFR)
FAU_ARP, FAU_ARP.1, FAU_SAA.1, FAU_GEN, FAU_GEN.1, FAU_GEN.2, FAU_SAR.1, FAU_SAR.2, FAU_STG.1, FAU_STG.3, FAU_STG.4, FAU_GEN.2.1, FAU_SAA, FAU_SAR, FAU_STG, FCO_NRO.1, FCO_NRO, FCS_COP.1, FCS_NRO.1, FCS_COP, FCS_CKM.1, FCS_CKM.4, FDP_ACF.1, FDP_ETC.2, FDP_IFC.2, FDP_IFF.1, FDP_IFF.2, FDP_ITC.2, FDP_RIP.2, FDP_UIT.1, FDP_ITC.1, FDP_ACC, FDP_ACC.2, FDP_ACC.1, FDP_ACF, FDP_ETC, FDP_IFC.1, FDP_IFC, FDP_IFF, FDP_IFF.2.2, FDP_ITC, FDP_RIP, FDP_RIP.1, FDP_UIT, FIA_ATD.1, FIA_UID.2, FIA_UID.1, FIA_ATD, FIA_UID, FMT_MOF.1, FMT_MSA.1, FMT_MSA.3, FMT_MTD.1, FMT_MTD.3, FMT_REV.1, FMT_SMF.1, FMT_SMR.2, FMT_TST.1, FMT_MOF, FMT_SMR.1, FMT_MSA, FMT_MTD, FMT_REV, FMT_SMF, FMT_SMR, FMT_MTS, FPT_TST.1, FPT_STM.1, FPT_FLS.1, FPT_RCV.4, FPT_TDC.1, FPT_FLS, FPT_RCV, FPT_TDC, FPT_TST, FRU_PRS.1, FRU_PRS, FTP_TRP.1, FTP_ITC.1, FTP_TRP, FTP_TRP.2

Standards
FIPS PUB 180-4, PKCS11, PKCS #11, PKCS#11, RFC3507, RFC6120, RFC6121, RFC 7622, RFC 6477, RFC 5321, RFC 5322, RFC 6120, RFC 6121, RFC5905, ISO/IEC 15408, X.509

File metadata

Title System/Subsystem Specification
Author Radical
Creation date D:20220510093219+02'00'
Modification date D:20220510093219+02'00'
Pages 78
Creator Microsoft® Word 2016
Producer Microsoft® Word 2016

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Certificate ID

SERTIT-120

Extracted SARs

ADV_ARC.1, ADV_FSP.4, ADV_IMP.1, ADV_TDS.3, AGD_OPE.1, AGD_PRE.1, ALC_CMC.4, ALC_CMS.4, ALC_DEL.1, ALC_DVS.1, ALC_FLR.3, ALC_LCD.1, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1, ATE_COV.2, ATE_DPT.1, ATE_FUN.1, ATE_IND.2, AVA_VAN.4

Scheme data

Product TNOR Guard
Url https://sertit.no/certified-products/tnor-guard-article2842-1919.html
Category Boundary Protection Devices and Systems
Developer Thales Norway AS
Certification Date 12.05.2022
Enhanced
Description TNOR Guard is a technology that provides controlled information flow between networks with different system and application security policies. The TNOR Guard (TOE) is part of the XOmail product family for messaging and information exchange in mission-critical military and civilian networks. The Guard implements high-assurance information flow control for the trusted exchange of information across security domain boundaries. This product is also described in this report as the Target of Evaluation (TOE). The main security feature of the TOE is to mediate a one-way or bidirectional flow between two security domains. The TOE inspects every information object that is requested sent between the security domains, and makes an automated release decision according to configured policy. The TOE covers the following four Guard products: STANAG 4406 Ed 2 Message Guard For connectivity towards the NATO standard Military Message Handling System (MMHS), SMTP Message Guard (E-mail) For connectivity towards standard e-mail systems such as Microsoft Exchange. Supports RFC 6477 for Military Message Handling attributes within the SMTP domain, Chat (XMPP) Guard Instant Messaging service between security domains. XML/SOAP Guard Exchange of XML/SOAP data between security domains.
Cert Id SERTIT-120
Mutual Recognition CCRA, SOG-IS
Product TNOR Guard version 1.1.3
Category Boundary Protection Devices and Systems
Sponsor Forsvarsmateriell IKT-kapasiteter
Developer Thales Norway AS
Evaluation Facility System Sikkerhet AS
Certification Date 12.05.2022
Expiration Date 12.05.2027
Level EAL 4, ALC_FLR.3, AVA_VAN.4
Documents frozendict({'cert': [frozendict({'href': 'https://sertit.no/getfile.php/1311036-1656573547/SERTIT/Sertifikater/2022/120/SERTIT-120%20C%20v1.0.pdf'})], 'target': [frozendict({'href': 'https://sertit.no/getfile.php/1310630-1654589563/SERTIT/Sertifikater/2022/120/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf'})], 'report': [frozendict({'href': 'https://sertit.no/getfile.php/1310627-1654589561/SERTIT/Sertifikater/2022/120/SERTIT-120%20CR%20v1.0.pdf'})]})

References

No references are available for this certificate.

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.cc.CCCertificate",
  "category": "Boundary Protection Devices and Systems",
  "cert_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20C%20v1.0.pdf",
  "dgst": "03972af324dcd07f",
  "heuristics": {
    "_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
    "annotated_references": null,
    "cert_id": "SERTIT-120",
    "cert_lab": null,
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": "EAL4+",
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_DPT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "1.1.3"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "category": "Boundary Protection Devices and Systems",
      "certification_date": "2022-05-12",
      "developer": "Thales Norway AS",
      "enhanced": {
        "category": "Boundary Protection Devices and Systems",
        "cert_id": "SERTIT-120",
        "certification_date": "2022-05-12",
        "description": "TNOR Guard is a technology that provides controlled information flow between networks with different system and application security policies. The TNOR Guard (TOE) is part of the XOmail product family for messaging and information exchange in mission-critical military and civilian networks. The Guard implements high-assurance information flow control for the trusted exchange of information across security domain boundaries. This product is also described in this report as the Target of Evaluation (TOE). The main security feature of the TOE is to mediate a one-way or bidirectional flow between two security domains. The TOE inspects every information object that is requested sent between the security domains, and makes an automated release decision according to configured policy. The TOE covers the following four Guard products: STANAG 4406 Ed 2 Message Guard For connectivity towards the NATO standard Military Message Handling System (MMHS), SMTP Message Guard (E-mail) For connectivity towards standard e-mail systems such as Microsoft Exchange. Supports RFC 6477 for Military Message Handling attributes within the SMTP domain, Chat (XMPP) Guard Instant Messaging service between security domains. XML/SOAP Guard Exchange of XML/SOAP data between security domains.",
        "developer": "Thales Norway AS",
        "documents": {
          "cert": [
            {
              "href": "https://sertit.no/getfile.php/1311036-1656573547/SERTIT/Sertifikater/2022/120/SERTIT-120%20C%20v1.0.pdf"
            }
          ],
          "report": [
            {
              "href": "https://sertit.no/getfile.php/1310627-1654589561/SERTIT/Sertifikater/2022/120/SERTIT-120%20CR%20v1.0.pdf"
            }
          ],
          "target": [
            {
              "href": "https://sertit.no/getfile.php/1310630-1654589563/SERTIT/Sertifikater/2022/120/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf"
            }
          ]
        },
        "evaluation_facility": "System Sikkerhet AS",
        "expiration_date": "2027-05-12",
        "level": "EAL 4, ALC_FLR.3, AVA_VAN.4",
        "mutual_recognition": "CCRA, SOG-IS",
        "product": "TNOR Guard version 1.1.3",
        "sponsor": "Forsvarsmateriell IKT-kapasiteter"
      },
      "product": "TNOR Guard",
      "url": "https://sertit.no/certified-products/tnor-guard-article2842-1919.html"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
        "maintenance_date": "2025-05-21",
        "maintenance_report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/Maintenance%20Report%20Guard.pdf",
        "maintenance_st_link": null,
        "maintenance_title": "Maintenance of TNOR Guard"
      }
    ]
  },
  "manufacturer": "Thales Norway AS",
  "manufacturer_web": "https://www.thales.no/",
  "name": "TNOR Guard v. 1.1.3",
  "not_valid_after": "2027-05-12",
  "not_valid_before": "2022-05-12",
  "pdf_data": {
    "_type": "sec_certs.sample.cc.CCCertificate.PdfData",
    "cert_filename": "SERTIT-120 C v1.0.pdf",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "NO": {
          "SERTIT-120": 2
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 2,
          "EAL 4 augmented": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {},
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Thales": {
          "Thales": 1
        }
      },
      "vulnerability": {}
    },
    "cert_metadata": {
      "/Author": "helgerudt",
      "/CreationDate": "D:20220629133919+02\u002700\u0027",
      "/Creator": "Hewlett-Packard MFP",
      "/ModDate": "D:20220629142649+02\u002700\u0027",
      "/Producer": "PixEdit AS,  PixEdit Version 8.7.4.6",
      "/Subject": "201676 201334 VEDLEGG01",
      "pdf_file_size_bytes": 1289183,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 1
    },
    "report_filename": "SERTIT-120 CR v1.0.pdf",
    "report_frontpage": {},
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "NO": {
          "SERTIT-120": 22
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 1,
          "ADV_FSP.4": 1,
          "ADV_IMP.1": 1,
          "ADV_TDS.3": 1
        },
        "AGD": {
          "AGD_OPE.1": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_CMS.4": 1,
          "ALC_DEL.1": 1,
          "ALC_DVS.1": 1,
          "ALC_FLR": 1,
          "ALC_FLR.3": 26,
          "ALC_LCD.1": 1
        },
        "ASE": {
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_INT.1": 1,
          "ASE_OBJ.2": 1,
          "ASE_REQ.2": 1,
          "ASE_SPD.1": 1,
          "ASE_TSS.1": 1
        },
        "ATE": {
          "ATE_COV.2": 1,
          "ATE_DPT.1": 1,
          "ATE_FUN.1": 1,
          "ATE_IND.2": 1
        },
        "AVA": {
          "AVA_VAN.4": 27
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 27,
          "EAL 4 augmented": 24
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 2
        },
        "PKE": {
          "PKE": 1
        }
      },
      "device_model": {},
      "ecc_curve": {
        "NIST": {
          "P-110": 1
        }
      },
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "CC": {
          "CCMB-2017-04-004": 1
        },
        "ISO": {
          "ISO/IEC 15408": 8,
          "ISO/IEC 17025": 2,
          "ISO/IEC 18045": 2
        },
        "RFC": {
          "RFC 6477": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        },
        "Thales": {
          "Thales": 12
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/CreationDate": "D:20220518100037+02\u002700\u0027",
      "/ModDate": "D:20220518100037+02\u002700\u0027",
      "pdf_file_size_bytes": 529073,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 22
    },
    "st_filename": "TNOR Guards 739_20726_aaaa_sc_ed10-4-public.pdf",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A..Z": 1,
          "A.APPROVED_CRYPTO": 3,
          "A.APPROVED_PKI": 2,
          "A.CORRECT_CONFIGURATION": 3,
          "A.NETWORK_PROTECTED": 2,
          "A.PHYSICAL_ACCESS_MANAGED": 3,
          "A.TRUSTED_AND_TRAINED_ADMIN": 2,
          "A.TRUSTED_LABELLER": 3
        },
        "O": {
          "O.ACCESS": 8,
          "O.AUDIT": 13,
          "O.CMD_ACL": 10,
          "O.CONFIGURATION_CHANGE": 5,
          "O.CONTROLLED_INFORMATION": 1,
          "O.CONTROLLED_INFORMATION_FLOW": 5,
          "O.CORRECT_TSF_OPERATION": 6,
          "O.INTERNAL_LEAST_PRIVILEG": 1,
          "O.INTERNAL_LEAST_PRIVILEGE": 9,
          "O.LABEL_MAPPING": 8,
          "O.MAC": 5,
          "O.MGMT_MODE": 6,
          "O.MINIMAL_PROXY": 10,
          "O.OBJECT_INTEGRITY": 9,
          "O.RESIDUAL_INFORMATION": 7,
          "O.RESOURCE_SHARING": 7,
          "O.SECURE_STATE": 8,
          "O.SUBJECT_ISOLATION": 12,
          "O.TRANSITION": 5,
          "O.TSF_INTEGRITY": 9,
          "O.VALID_LABEL": 6
        },
        "OE": {
          "OE.APPROVED_CRYPTO": 7,
          "OE.APPROVED_PKI": 7,
          "OE.BORDER_PROTECTION": 12,
          "OE.CONFIGURATION": 8,
          "OE.CONTENT_INSPECTION_S": 1,
          "OE.CONTENT_INSPECTION_SE": 2,
          "OE.CONTENT_INSPECTION_SERVICE": 6,
          "OE.DIRECTORY_SERVICE": 6,
          "OE.MINIMAL_POSTURE": 10,
          "OE.NETWORK": 10,
          "OE.PHYSICAL_ACCESS_MANA": 2,
          "OE.PHYSICAL_ACCESS_MANAG": 1,
          "OE.PHYSICAL_ACCESS_MANAGED": 6,
          "OE.PLATFORM": 10,
          "OE.TIME_SOURCE": 6,
          "OE.TRUSTED_AND_TRAINED_": 1,
          "OE.TRUSTED_AND_TRAINED_A": 1,
          "OE.TRUSTED_AND_TRAINED_ADMIN": 8,
          "OE.TRUSTED_AND_TRAINED_ADMINS": 1,
          "OE.TRUSTED_LABELLER": 7
        },
        "T": {
          "T.ADMIN_MASQUERADE": 4,
          "T.AUDIT_COMPROMISE": 2,
          "T.COVERT_CHANNEL": 2,
          "T.DOS": 4,
          "T.INFORMATION_LEAK": 2,
          "T.INSECURE_STATE": 4,
          "T.MALWARE_INJECTION": 2,
          "T.METADATA_LEAK": 4,
          "T.NETWORK_ATTACK": 2,
          "T.OBJECT_TAMPERING": 4,
          "T.RECONNAISSANCE": 4,
          "T.RESIDUAL_DATA": 2,
          "T.TSF_COMPROMISE": 3,
          "T.UNATTENDED_ADMIN_SESSION": 2,
          "T.UNAUTHORIZED_ACCESS": 4,
          "T.UNNOTICED_ATTACK": 2
        }
      },
      "cc_protection_profile_id": {},
      "cc_sar": {
        "ALC": {
          "ALC_FLR.3": 6
        },
        "ASE": {
          "ASE_CCL": 2,
          "ASE_ECD": 2,
          "ASE_INT": 2,
          "ASE_OBJ": 2,
          "ASE_REQ": 2,
          "ASE_SPD": 2,
          "ASE_TSS": 2
        },
        "AVA": {
          "AVA_VAN.4": 6
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL4": 8,
          "EAL4 augmented": 5
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP": 2,
          "FAU_ARP.1": 9,
          "FAU_GEN": 2,
          "FAU_GEN.1": 13,
          "FAU_GEN.2": 8,
          "FAU_GEN.2.1": 1,
          "FAU_SAA": 1,
          "FAU_SAA.1": 10,
          "FAU_SAR": 1,
          "FAU_SAR.1": 11,
          "FAU_SAR.2": 8,
          "FAU_STG": 1,
          "FAU_STG.1": 12,
          "FAU_STG.3": 9,
          "FAU_STG.4": 9
        },
        "FCO": {
          "FCO_NRO": 1,
          "FCO_NRO.1": 10
        },
        "FCS": {
          "FCS_CKM.1": 2,
          "FCS_CKM.4": 1,
          "FCS_COP": 1,
          "FCS_COP.1": 10,
          "FCS_NRO.1": 1
        },
        "FDP": {
          "FDP_ACC": 1,
          "FDP_ACC.1": 9,
          "FDP_ACC.2": 10,
          "FDP_ACF": 1,
          "FDP_ACF.1": 12,
          "FDP_ETC": 1,
          "FDP_ETC.2": 13,
          "FDP_IFC": 19,
          "FDP_IFC.1": 14,
          "FDP_IFC.2": 11,
          "FDP_IFF": 19,
          "FDP_IFF.1": 16,
          "FDP_IFF.2": 16,
          "FDP_IFF.2.2": 1,
          "FDP_ITC": 1,
          "FDP_ITC.1": 2,
          "FDP_ITC.2": 15,
          "FDP_RIP": 1,
          "FDP_RIP.1": 1,
          "FDP_RIP.2": 10,
          "FDP_UIT": 1,
          "FDP_UIT.1": 9
        },
        "FIA": {
          "FIA_ATD": 1,
          "FIA_ATD.1": 9,
          "FIA_UID": 1,
          "FIA_UID.1": 7,
          "FIA_UID.2": 13
        },
        "FMT": {
          "FMT_MOF": 19,
          "FMT_MOF.1": 5,
          "FMT_MSA": 1,
          "FMT_MSA.1": 10,
          "FMT_MSA.3": 15,
          "FMT_MTD": 2,
          "FMT_MTD.1": 12,
          "FMT_MTD.3": 8,
          "FMT_MTS": 1,
          "FMT_REV": 1,
          "FMT_REV.1": 9,
          "FMT_SMF": 1,
          "FMT_SMF.1": 15,
          "FMT_SMR": 1,
          "FMT_SMR.1": 9,
          "FMT_SMR.2": 16,
          "FMT_TST.1": 1
        },
        "FPT": {
          "FPT_FLS": 1,
          "FPT_FLS.1": 11,
          "FPT_RCV": 1,
          "FPT_RCV.4": 10,
          "FPT_STM.1": 2,
          "FPT_TDC": 1,
          "FPT_TDC.1": 11,
          "FPT_TST": 1,
          "FPT_TST.1": 12
        },
        "FRU": {
          "FRU_PRS": 1,
          "FRU_PRS.1": 10
        },
        "FTP": {
          "FTP_ITC.1": 4,
          "FTP_TRP": 1,
          "FTP_TRP.1": 15,
          "FTP_TRP.2": 2
        }
      },
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 3
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 22
        },
        "PKE": {
          "PKE": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "FIPS": {
          "FIPS PUB 180-4": 2
        },
        "ISO": {
          "ISO/IEC 15408": 6
        },
        "PKCS": {
          "PKCS #11": 2,
          "PKCS#11": 4,
          "PKCS11": 2
        },
        "RFC": {
          "RFC 5321": 1,
          "RFC 5322": 1,
          "RFC 6120": 1,
          "RFC 6121": 1,
          "RFC 6477": 1,
          "RFC 7622": 2,
          "RFC3507": 2,
          "RFC5905": 1,
          "RFC6120": 2,
          "RFC6121": 1
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {
        "IBM": {
          "SE": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {
        "Microsoft": {
          "Microsoft": 1
        },
        "Thales": {
          "Thales": 80
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "Radical",
      "/CreationDate": "D:20220510093219+02\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2016",
      "/ModDate": "D:20220510093219+02\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2016",
      "/Title": "System/Subsystem Specification",
      "pdf_file_size_bytes": 3028038,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 78
    }
  },
  "protection_profile_links": {
    "_type": "Set",
    "elements": []
  },
  "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/SERTIT-120%20CR%20v1.0.pdf",
  "scheme": "NO",
  "security_level": {
    "_type": "Set",
    "elements": [
      "EAL4+",
      "ALC_FLR.3",
      "AVA_VAN.4"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/epfiles/TNOR%20Guards%20739_20726_aaaa_sc_ed10-4-public.pdf",
  "state": {
    "_type": "sec_certs.sample.cc.CCCertificate.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "bd88ffb551b824a6b051e42a1ba0c383235a749111b9186db886af6a68c572c9",
      "txt_hash": "7f421f520ef44bc9fc2a9221e87bfaf213f3a7ff5d591a8526167c0396b5eb02"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "1281f87107012cf2dc6a8012d4a79eaf20adf492e1583c4160266b2302128e3b",
      "txt_hash": "07796b7f2a2bed5cd73bb90b72ff64b8ef34aa9927c391a0e6a4bcdf3dd7fa16"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "139b51dcd13077efc50bddd7a1c6dfa842970283523571c675e7f73cedb15162",
      "txt_hash": "06d3c7a4f5800418250613fc77d9c82aa28074bec7f34505af5f7e7bf78baefb"
    }
  },
  "status": "active"
}