Secure Smart Grid Hub (SGH-S)

Webpage information

Certificate ID EUCC-3087-2026-0000000002-00000
Product name Secure Smart Grid Hub (SGH-S)
Scheme 🇩🇪 DE
Assurance level high
Status active

Product Specification

Type Smart Meter Gateway
Description
The TOE is the security functionality of a Smart Meter Gateway that serves as the communication unit between devices of private and commercial consume...
The TOE is the security functionality of a Smart Meter Gateway that serves as the communication unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities.
Version SGH-S V2.00
Package N/A

Certificate holder

Name EFR GmbH
Address Nymphenburger Straße 20b, 80335 Munich
Contact information [email protected]
Website https://www.efr.de/en/contact/cybersecurity/

Certification body

Name Bundesamt für Sicherheit in der Informationstechnik, EUCC Zertifizierungsstelle
NANDO ID 3087
Address Postfach 200363\n53133 Bonn, Bonn
Contact information [email protected] Phone: +49 228 99 9582-0

Standards & Compliance

CC Version CC 3.1 Revision 5
CEM Version CEM 3.1 Revision 5
AVA_VAN level 5
Certification report reference EUCC-3087-2026-03-0002

Other

ITSEF SRC Security Research & Consulting GmbH
Responsible NCCA Bundesamt für Sicherheit in der Informationstechnik
Protection profile BSI-CC-PP-0073-2014
Certification date 20.03.2026
Archived date 20.03.2031

Certificate

Extracted keywords

Security level
EAL 4
Security Assurance Requirements (SAR)
ALC_FLR, ALC_FLR.2, AVA_VAN, AVA_VAN.5
Protection profiles
BSI-CC-PP-0073-2014
Certificates
BSI-DSZ-CC-1000-V3-2026, EUCC-3087-2026-03-0002
Evaluation facilities
SRC Security Research & Consulting

Standards
ISO/IEC 15408, ISO/IEC 18045

Certification report

Extracted keywords

Symmetric Algorithms
AES, AES-, HMAC, CMAC
Asymmetric Algorithms
ECC
Hash functions
SHA256, SHA-256, SHA-384, SHA-512
Schemes
MAC, Key agreement, Key Agreement
Protocols
SSH, TLS
Randomness
TRNG
Block cipher modes
CBC, GCM

Security level
EAL 2, EAL 4, EAL 5+, EAL 6
Security Assurance Requirements (SAR)
AGD_PRE, AGD_OPE, AGD_CON, ALC_FLR, ALC_FLR.2, AVA_VAN.5
Security Functional Requirements (SFR)
FCS_CKM.1
Protection profiles
BSI-CC-PP-0073-2014, BSI-CC-PP-0077-V2
Certificates
BSI-DSZ-CC-1000-V3-2026, BSI-DSZ-CC-1000-V2-2025, BSI-DSZ-CC-1000-V3-, EUCC-3087-2026-03-0002
Evaluation facilities
SRC Security Research & Consulting

Side-channel analysis
JIL
Certification process
Technical Report Summary, Version 3.0.1, 11.03.2026, SRC Security Research & Consulting GmbH (confidential document) [IAR] Impact Analysis Report, v1.20, 21.01.2026, EFR GmbH [ConfList, Konfigurationsliste, v2.01_e, 30.01.2026, EFR GmbH (confidential document) [DEL] Auslieferungsprozess, v1.41_d, 19.10.2022, EFR GmbH [MSB_DEL] Ergänzungen bzw. Änderungen am

Standards
FIPS 197, FIPS 180-4, AIS 1, AIS 32, AIS 34, AIS 38, AIS 46, AIS 48, RFC 5289, RFC-2104, RFC-3394, RFC 5084, RFC 5652, RFC 4493, RFC4493, RFC 2104, RFC 3394, RFC5246, RFC 5246, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, ISO/IEC 18033-
Technical reports
BSI TR-02102, BSI TR-03109, BSI TR-03109-1, BSI TR-03109-2, BSI TR-03109-4, BSI TR-03116, BSI TR-03111

Frontpage

Certificate ID BSI-DSZ-CC-1000-V3-2026
Certified item Secure Smart Grid Hub (SGH-S) Version 2.00
Certification lab BSI
Developer EFR GmbH

Security target

Extracted keywords

Symmetric Algorithms
AES, AES-, HMAC, CMAC
Asymmetric Algorithms
ECDSA, ECC, Diffie-Hellman
Hash functions
SHA-256, SHA-384, SHA-512, SHA-2, JH
Schemes
MAC, Key agreement, Key Agreement
Protocols
TLS, TLSv1.2, PACE, VPN
Randomness
TRNG
Block cipher modes
GCM
TLS cipher suites
TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384, TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256, TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384

Security level
EAL4, EAL 4, EAL4 augmented, EAL 4 augmented
Claims
OE.SM, OSP.SM
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_IMP.1, AGD_OPE.1, ALC_DEL.1, ALC_FLR.2, ALC_CMC.4, ALC_LCD.1, ATE_COV.2, ATE_FUN.1, AVA_VAN.5, ASE_CCL, ASE_SPD, ASE_OBJ, ASE_CCL.1, ASE_ECD.1, ASE_OBJ.2, ASE_SPD.1
Security Functional Requirements (SFR)
FAU_ARP, FAU_GEN, FAU_SAA, FAU_SAR, FAU_STG, FAU_GEN.2, FAU_STG.2, FAU_GEN.1, FAU_SAA.1, FAU_SAR.1, FAU_STG.4, FAU_STG.3, FAU_STG.1, FAU_GEN.2.1, FAU_STG.2.1, FAU_STG.2.2, FAU_STG.2.3, FAU_STG.4.1, FCO_NRO, FCO_NRO.2, FCO_NRO.2.1, FCO_NRO.2.2, FCO_NRO.2.3, FCO_NRO.1, FCS_CKM, FCS_COP, FCS_CKM.4, FCS_CKM.1, FCS_CKM.2, FCS_COP.1, FCS_CKM.4.1, FDP_IFC, FDP_ACC.2, FDP_ACF.1, FDP_IFF, FDP_RIP.2, FDP_SDI.2, FDP_ITC.1, FDP_ITC.2, FDP_ACC, FDP_ACC.2.1, FDP_ACC.2.2, FDP_ACC.1, FDP_ACF, FDP_ACF.1.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_IFC.2, FDP_IFC.1, FDP_IFF.1, FDP_IFF.1.3, FDP_RIP, FDP_RIP.2.1, FDP_RIP.1, FDP_SDI, FDP_SDI.2.1, FDP_SDI.2.2, FDP_SDI.1, FIA_ATD, FIA_AFL, FIA_UAU, FIA_UID, FIA_USB, FIA_ATD.1, FIA_AFL.1, FIA_UAU.2, FIA_UAU.5, FIA_UAU.6, FIA_UID.2, FIA_USB.1, FIA_UID.1, FIA_ATD.1.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UAU.1, FIA_UAU.2.1, FIA_UAU.5.1, FIA_UAU.5.2, FIA_UAU.6.1, FIA_UID.2.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FMT_SMR, FMT_MOF.1, FMT_SMF.1, FMT_SMR.1, FMT_MSA, FMT_MSA.3, FMT_MOF, FMT_MOF.1.1, FMT_SMF, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_MSA.1, FPR_CON, FPR_CON.1, FPR_PSE, FPR_CON.1.2, FPR_CON.1.1, FPR_PSE.1, FPR_PSE.1.1, FPR_PSE.1.2, FPR_PSE.1.3, FPT_FLS, FPT_RPL, FPT_STM, FPT_TST, FPT_FLS.1, FPT_RPL.1, FPT_STM.1, FPT_TST.1, FPT_PHP.1, FPT_FLS.1.1, FPT_RPL.1.1, FPT_RPL.1.2, FPT_STM.1.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_PHP, FPT_PHP.1.1, FPT_PHP.1.2, FTP_ITC, FTP_ITC.1
Protection profiles
BSI-CC-PP-0077-2015, BSI-CC-PP-0073-2014, BSI-CC-PP-0073-, BSI-CC-PP-0077-, BSI-CC-PP-0077-V2-2015
Certificates
BSI-DSZ-CC-1217-2024, BSI-DSZ-CC-1217-

Side-channel analysis
physical tampering, malfunction

Standards
FIPS 180-4, FIPS 197, SP 800-38A, NIST SP 800-38D, RFC-5289, RFC-5246, RFC-2104, RFC-3394, RFC-5084, RFC-5652, RFC-4493, RFC 2104, RFC 3394, RFC 4493, RFC 5084, RFC 5246, RFC 5289, RFC 5652
Technical reports
BSI TR-03109-1, BSI TR-03111, BSI TR-03116-3

Heuristics

Automated inference - use with caution

All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. For details on our data sources and inference methods, see our methodology. If you believe any information here is inaccurate or harmful, please submit feedback.

Extracted SARs

ADV_ARC.1, ADV_IMP.1, AGD_OPE.1, ALC_CMC.4, ALC_DEL.1, ALC_FLR.2, ALC_LCD.1, ASE_CCL.1, ASE_ECD.1, ASE_OBJ.2, ASE_SPD.1, ATE_COV.2, ATE_FUN.1, AVA_VAN.5

Scheme data

Cert Id EUCC-3087-2026-03-0002
Product Secure Smart Grid Hub (SGH-S), V2.00
Vendor EFR GmbH
Certification Date 20.03.2026
Category Intelligent measuring systems
Url https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/SmartMeter_Gateway/1000.html
Enhanced
Product Secure Smart Grid Hub (SGH-S), V2.00
Applicant EFR GmbH Nymphenburger Straße 20b 80335 München
Evaluation Facility SRC Security Research & Consulting GmbH
Assurance Level EAL4+,ALC_FLR.2,AVA_VAN.5
Protection Profile Protection Profile for the Gateway of a Smart Metering System, Version 1.3, 31 March 2014, BSI-CC-PP-0073-2014
Certification Date 20.03.2026
Expiration Date 19.03.2034
Entries [frozendict({'id': 'EUCC', 'description': 'The TOE is the security functionality of a Smart Meter Gateway that serves as the communication unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities.'}), frozendict({'id': 'BSI-DSZ-CC-1000-V2-2025', 'description': "This re-certification was necessary because of the re-location of IT infrastructure in the development Environment and a changed delivery method due to enable delivery chains according to [MSB-LK, see: https://www.bsi.bund.de/DE/Themen/Unternehmen-und-Organisationen/Standards-und-Zertifizierung/Smart-metering/Smart-Meter- Gateway/MSB/MSB_node.html ]. Also, the developer updated third-party components of the TOE and corrected defects in the implementation. There were no changes to the TOE's security functionality."}), frozendict({'id': 'BSI-DSZ-CC-1000-2023-MA-01', 'description': '(National Metrology Institute) requirements.'})]
Description The TOE is the security functionality of a Smart Meter Gateway that serves as the communi-cation unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities
Subcategory (Smart Meter Gateway)

Updates Feed

  • The certificate data changed.
  • The certificate data changed.
  • The certificate was first processed.

Raw data

{
  "_type": "sec_certs.sample.eucc.EUCCCertificate",
  "category": "SMART METER GATEWAY",
  "cert_id": "EUCC-3087-2026-0000000002-00000",
  "cert_link": "https://certification.enisa.europa.eu/document/download/89b12bcf-1c0f-4ff9-9e36-d234dcd2df43_en?filename=EUCC-3087-2026-03-0002%20Certificate.pdf",
  "dgst": "5c5769d9a7c92821",
  "heuristics": {
    "_type": "sec_certs.sample.cc_eucc_common.Heuristics",
    "annotated_references": null,
    "cert_id": "EUCC-3087-2026-2",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_transitive_cves": null,
    "eal": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 1
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "-"
      ]
    },
    "indirect_transitive_cves": null,
    "next_certificates": null,
    "prev_certificates": null,
    "protection_profiles": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "scheme_data": {
      "category": "Intelligent measuring systems",
      "cert_id": "EUCC-3087-2026-03-0002",
      "certification_date": "2026-03-20",
      "enhanced": {
        "applicant": "EFR GmbH Nymphenburger Stra\u00dfe 20b 80335 M\u00fcnchen",
        "assurance_level": "EAL4+,ALC_FLR.2,AVA_VAN.5",
        "certification_date": "2026-03-20",
        "description": "The TOE is the security functionality of a Smart Meter Gateway that serves as the communi-cation unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities",
        "entries": [
          {
            "description": "The TOE is the security functionality of a Smart Meter Gateway that serves as the communication unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities.",
            "id": "EUCC"
          },
          {
            "description": "This re-certification was necessary because of the re-location of IT infrastructure in the development Environment and a changed delivery method due to enable delivery chains according to [MSB-LK, see: https://www.bsi.bund.de/DE/Themen/Unternehmen-und-Organisationen/Standards-und-Zertifizierung/Smart-metering/Smart-Meter- Gateway/MSB/MSB_node.html ]. Also, the developer updated third-party components of the TOE and corrected defects in the implementation. There were no changes to the TOE\u0027s security functionality.",
            "id": "BSI-DSZ-CC-1000-V2-2025"
          },
          {
            "description": "(National Metrology Institute) requirements.",
            "id": "BSI-DSZ-CC-1000-2023-MA-01"
          }
        ],
        "evaluation_facility": "SRC Security Research \u0026 Consulting GmbH",
        "expiration_date": "2034-03-19",
        "product": "Secure Smart Grid Hub (SGH-S), V2.00",
        "protection_profile": "Protection Profile for the Gateway of a Smart Metering System, Version 1.3, 31 March 2014, BSI-CC-PP-0073-2014"
      },
      "product": "Secure Smart Grid Hub (SGH-S), V2.00",
      "subcategory": "(Smart Meter Gateway)",
      "url": "https://www.bsi.bund.de/SharedDocs/Zertifikate_CC/CC/SmartMeter_Gateway/1000.html",
      "vendor": "EFR GmbH"
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": null,
      "indirectly_referenced_by": null,
      "indirectly_referencing": null
    },
    "verified_cpe_matches": null
  },
  "manufacturer": "EFR GmbH",
  "manufacturer_web": "https://www.efr.de/en/contact/cybersecurity/",
  "name": "Secure Smart Grid Hub (SGH-S)",
  "not_valid_after": "2031-03-20",
  "not_valid_before": "2026-03-20",
  "other_metadata": {
    "_type": "sec_certs.sample.eucc.EUCCCertificate.EnisaMetadata",
    "assurance_level": "High",
    "ava_van_level": "5",
    "cc_version": "CC 3.1 Revision 5",
    "cem_version": "CEM 3.1 Revision 5",
    "certificate_id": "EUCC-3087-2026-0000000002-00000",
    "certificate_yearly_number": "EUCC-3087-2026-03-0002",
    "certification_body": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik, EUCC Zertifizierungsstelle",
    "certification_body_address": "Postfach 200363\\n53133 Bonn, Bonn",
    "certification_body_contact": "[email protected] Phone: +49 228 99 9582-0",
    "holder_address": "Nymphenburger Stra\u00dfe 20b, 80335 Munich",
    "holder_contact": "[email protected]",
    "holder_name": "EFR GmbH",
    "holder_website": "https://www.efr.de/en/contact/cybersecurity/",
    "issuance_date_full": "20/03/2026",
    "issuance_month": "3",
    "issuance_year": "2026",
    "itsef": "SRC Security Research \u0026 Consulting GmbH",
    "modification_or_reassurance": null,
    "nando_id": "3087",
    "package": {},
    "product_description": "The TOE is the security functionality of a Smart Meter Gateway that serves as the communication unit between devices of private and commercial consumers and commodity industry service providers (e.g., electricity, gas, water, etc.). It also collects, processes and stores Meter Data and is responsible for the distribution of this data to external entities.",
    "product_name": "Secure Smart Grid Hub (SGH-S)",
    "product_type": "Smart Meter Gateway",
    "product_version": "SGH-S V2.00",
    "protection_profile": "BSI-CC-PP-0073-2014",
    "report_reference": "EUCC-3087-2026-03-0002",
    "responsible_ncca": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
    "scheme": "(UE) 2024/482 - EUCC",
    "validity_period_years": "8 years"
  },
  "pdf_data": {
    "_type": "sec_certs.sample.cc_eucc_common.PdfData",
    "cert_filename": "89b12bcf-1c0f-4ff9-9e36-d234dcd2df43_en",
    "cert_frontpage": null,
    "cert_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1000-V3-2026": 1,
          "EUCC-3087-2026-03-0002": 1
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0073-2014": 1
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_FLR": 1,
          "ALC_FLR.2": 1
        },
        "AVA": {
          "AVA_VAN": 2,
          "AVA_VAN.5": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 4": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {},
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "SRC": {
          "SRC Security Research \u0026 Consulting": 1
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 18045": 2
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "cert_metadata": {
      "/CreationDate": "D:20260323082746+01\u002700\u0027",
      "/Creator": "BSI00021016",
      "/ModDate": "D:20260323082746+01\u002700\u0027",
      "/Producer": "KONICA MINOLTA bizhub C308",
      "/Title": "SBSI000210126032308270",
      "pdf_file_size_bytes": 120471,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 2
    },
    "report_filename": "eaf7c79f-8bdf-4648-8fb1-6f153ad15f3d_en",
    "report_frontpage": {
      "DE": {
        "cert_id": "BSI-DSZ-CC-1000-V3-2026",
        "cert_item": "Secure Smart Grid Hub (SGH-S) Version 2.00",
        "cert_lab": "BSI",
        "developer": "EFR GmbH",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        ]
      }
    },
    "report_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 3
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1000-V2-2025": 2,
          "BSI-DSZ-CC-1000-V3-": 1,
          "BSI-DSZ-CC-1000-V3-2026": 22,
          "EUCC-3087-2026-03-0002": 22
        }
      },
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0073-2014": 4,
          "BSI-CC-PP-0077-V2": 1
        }
      },
      "cc_sar": {
        "AGD": {
          "AGD_CON": 1,
          "AGD_OPE": 2,
          "AGD_PRE": 2
        },
        "ALC": {
          "ALC_FLR": 2,
          "ALC_FLR.2": 1
        },
        "AVA": {
          "AVA_VAN.5": 2
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 2,
          "EAL 4": 1,
          "EAL 5+": 1,
          "EAL 6": 1
        }
      },
      "cc_sfr": {
        "FCS": {
          "FCS_CKM.1": 1
        }
      },
      "certification_process": {
        "ConfidentialDocument": {
          "Konfigurationsliste, v2.01_e, 30.01.2026, EFR GmbH (confidential document) [DEL] Auslieferungsprozess, v1.41_d, 19.10.2022, EFR GmbH [MSB_DEL] Erg\u00e4nzungen bzw. \u00c4nderungen am": 1,
          "Technical Report Summary, Version 3.0.1, 11.03.2026, SRC Security Research \u0026 Consulting GmbH (confidential document) [IAR] Impact Analysis Report, v1.20, 21.01.2026, EFR GmbH [ConfList": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "GCM": {
          "GCM": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "SSH": {
          "SSH": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 5
          }
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 2,
          "Key agreement": 1
        },
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "SRC": {
          "SRC Security Research \u0026 Consulting": 6
        }
      },
      "hash_function": {
        "SHA": {
          "SHA2": {
            "SHA-256": 2,
            "SHA-384": 1,
            "SHA-512": 1,
            "SHA256": 4
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "TRNG": {
          "TRNG": 3
        }
      },
      "side_channel_analysis": {
        "other": {
          "JIL": 2
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 1": 1,
          "AIS 32": 1,
          "AIS 34": 1,
          "AIS 38": 1,
          "AIS 46": 1,
          "AIS 48": 1
        },
        "FIPS": {
          "FIPS 180-4": 1,
          "FIPS 197": 3
        },
        "ISO": {
          "ISO/IEC 15408": 2,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18033-": 1,
          "ISO/IEC 18045": 2
        },
        "RFC": {
          "RFC 2104": 2,
          "RFC 3394": 2,
          "RFC 4493": 3,
          "RFC 5084": 3,
          "RFC 5246": 1,
          "RFC 5289": 4,
          "RFC 5652": 3,
          "RFC-2104": 1,
          "RFC-3394": 1,
          "RFC4493": 1,
          "RFC5246": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 8,
            "AES-": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-02102": 1,
          "BSI TR-03109": 1,
          "BSI TR-03109-1": 1,
          "BSI TR-03109-2": 1,
          "BSI TR-03109-4": 1,
          "BSI TR-03111": 1,
          "BSI TR-03116": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/CreationDate": "D:20260323084222+01\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, SMGW, Smart Meter Gateway, efr, BSI-DSZ-CC-1000-V2-2025\"",
      "/Producer": "LibreOffice 5.3",
      "/Subject": "Certification Report BSI-DSZ-CC-1000-V2-2025",
      "/Title": "Certification Report BSI-DSZ-CC-1000-V2-2025",
      "pdf_file_size_bytes": 455766,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://www.efr.de/en/contact/cybersecurity/",
          "https://www.bsi.bund.de/zertifizierung",
          "https://www.commoncriteriaportal.org/",
          "http://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/AIS",
          "https://www.bsi.bund.de/zertifizierungsreporte",
          "https://certification.enisa.europa.eu/publications/eucc-state-art-documents_en",
          "https://eur-lex.europa.eu/eli/reg_impl/2025/2462/oj",
          "https://www.efr.de/kontakt/cybersecurity/",
          "https://euvd.enisa.europa.eu/"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 22
    },
    "st_filename": "07d159b4-0f31-4827-9098-397160240a2b_en",
    "st_frontpage": null,
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 2
          },
          "ECDSA": {
            "ECDSA": 1
          }
        },
        "FF": {
          "DH": {
            "Diffie-Hellman": 1
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-1217-": 1,
          "BSI-DSZ-CC-1217-2024": 1
        }
      },
      "cc_claims": {
        "OE": {
          "OE.SM": 3
        },
        "OSP": {
          "OSP.SM": 4
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0073-": 1,
          "BSI-CC-PP-0073-2014": 5,
          "BSI-CC-PP-0077-": 1,
          "BSI-CC-PP-0077-2015": 2,
          "BSI-CC-PP-0077-V2-2015": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 1,
          "ADV_IMP.1": 1
        },
        "AGD": {
          "AGD_OPE.1": 1
        },
        "ALC": {
          "ALC_CMC.4": 1,
          "ALC_DEL.1": 5,
          "ALC_FLR.2": 5,
          "ALC_LCD.1": 1
        },
        "ASE": {
          "ASE_CCL": 2,
          "ASE_CCL.1": 1,
          "ASE_ECD.1": 1,
          "ASE_OBJ": 2,
          "ASE_OBJ.2": 1,
          "ASE_SPD": 3,
          "ASE_SPD.1": 1
        },
        "ATE": {
          "ATE_COV.2": 1,
          "ATE_FUN.1": 1
        },
        "AVA": {
          "AVA_VAN.5": 6
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 4": 4,
          "EAL 4 augmented": 1,
          "EAL4": 1,
          "EAL4 augmented": 1
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP": 9,
          "FAU_GEN": 30,
          "FAU_GEN.1": 22,
          "FAU_GEN.2": 6,
          "FAU_GEN.2.1": 1,
          "FAU_SAA": 9,
          "FAU_SAA.1": 5,
          "FAU_SAR": 21,
          "FAU_SAR.1": 9,
          "FAU_STG": 23,
          "FAU_STG.1": 8,
          "FAU_STG.2": 10,
          "FAU_STG.2.1": 1,
          "FAU_STG.2.2": 1,
          "FAU_STG.2.3": 2,
          "FAU_STG.3": 3,
          "FAU_STG.4": 3,
          "FAU_STG.4.1": 1
        },
        "FCO": {
          "FCO_NRO": 3,
          "FCO_NRO.1": 1,
          "FCO_NRO.2": 8,
          "FCO_NRO.2.1": 1,
          "FCO_NRO.2.2": 1,
          "FCO_NRO.2.3": 1
        },
        "FCS": {
          "FCS_CKM": 48,
          "FCS_CKM.1": 6,
          "FCS_CKM.2": 5,
          "FCS_CKM.4": 28,
          "FCS_CKM.4.1": 2,
          "FCS_COP": 49,
          "FCS_COP.1": 10
        },
        "FDP": {
          "FDP_ACC": 2,
          "FDP_ACC.1": 9,
          "FDP_ACC.2": 8,
          "FDP_ACC.2.1": 1,
          "FDP_ACC.2.2": 1,
          "FDP_ACF": 1,
          "FDP_ACF.1": 7,
          "FDP_ACF.1.1": 1,
          "FDP_ACF.1.2": 1,
          "FDP_ACF.1.3": 1,
          "FDP_ACF.1.4": 1,
          "FDP_IFC": 24,
          "FDP_IFC.1": 12,
          "FDP_IFC.2": 4,
          "FDP_IFF": 20,
          "FDP_IFF.1": 22,
          "FDP_IFF.1.3": 1,
          "FDP_ITC.1": 12,
          "FDP_ITC.2": 12,
          "FDP_RIP": 2,
          "FDP_RIP.1": 1,
          "FDP_RIP.2": 7,
          "FDP_RIP.2.1": 1,
          "FDP_SDI": 2,
          "FDP_SDI.1": 1,
          "FDP_SDI.2": 5,
          "FDP_SDI.2.1": 1,
          "FDP_SDI.2.2": 2
        },
        "FIA": {
          "FIA_AFL": 3,
          "FIA_AFL.1": 6,
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_ATD": 3,
          "FIA_ATD.1": 11,
          "FIA_ATD.1.1": 1,
          "FIA_UAU": 5,
          "FIA_UAU.1": 2,
          "FIA_UAU.2": 6,
          "FIA_UAU.2.1": 1,
          "FIA_UAU.5": 5,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 1,
          "FIA_UAU.6": 6,
          "FIA_UAU.6.1": 1,
          "FIA_UID": 3,
          "FIA_UID.1": 8,
          "FIA_UID.2": 10,
          "FIA_UID.2.1": 1,
          "FIA_USB": 3,
          "FIA_USB.1": 6,
          "FIA_USB.1.1": 1,
          "FIA_USB.1.2": 1,
          "FIA_USB.1.3": 1
        },
        "FMT": {
          "FMT_MOF": 1,
          "FMT_MOF.1": 6,
          "FMT_MOF.1.1": 1,
          "FMT_MSA": 45,
          "FMT_MSA.1": 10,
          "FMT_MSA.3": 11,
          "FMT_SMF": 2,
          "FMT_SMF.1": 18,
          "FMT_SMF.1.1": 1,
          "FMT_SMR": 3,
          "FMT_SMR.1": 25,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPR": {
          "FPR_CON": 6,
          "FPR_CON.1": 9,
          "FPR_CON.1.1": 2,
          "FPR_CON.1.2": 4,
          "FPR_PSE": 2,
          "FPR_PSE.1": 7,
          "FPR_PSE.1.1": 1,
          "FPR_PSE.1.2": 1,
          "FPR_PSE.1.3": 1
        },
        "FPT": {
          "FPT_FLS": 3,
          "FPT_FLS.1": 10,
          "FPT_FLS.1.1": 1,
          "FPT_PHP": 1,
          "FPT_PHP.1": 6,
          "FPT_PHP.1.1": 1,
          "FPT_PHP.1.2": 1,
          "FPT_RPL": 3,
          "FPT_RPL.1": 6,
          "FPT_RPL.1.1": 1,
          "FPT_RPL.1.2": 1,
          "FPT_STM": 3,
          "FPT_STM.1": 18,
          "FPT_STM.1.1": 1,
          "FPT_TST": 3,
          "FPT_TST.1": 8,
          "FPT_TST.1.1": 1,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 1
        },
        "FTP": {
          "FTP_ITC": 23,
          "FTP_ITC.1": 8
        }
      },
      "certification_process": {},
      "cipher_mode": {
        "GCM": {
          "GCM": 3
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 1
        },
        "TLS": {
          "TLS": {
            "TLS": 44,
            "TLSv1.2": 2
          }
        },
        "VPN": {
          "VPN": 1
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 3,
          "Key agreement": 2
        },
        "MAC": {
          "MAC": 8
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "JH": {
          "JH": 1
        },
        "SHA": {
          "SHA2": {
            "SHA-2": 3,
            "SHA-256": 2,
            "SHA-384": 2,
            "SHA-512": 1
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "TRNG": {
          "TRNG": 3
        }
      },
      "side_channel_analysis": {
        "FI": {
          "malfunction": 3,
          "physical tampering": 3
        }
      },
      "standard_id": {
        "FIPS": {
          "FIPS 180-4": 1,
          "FIPS 197": 1
        },
        "NIST": {
          "NIST SP 800-38D": 1,
          "SP 800-38A": 1
        },
        "RFC": {
          "RFC 2104": 1,
          "RFC 3394": 1,
          "RFC 4493": 1,
          "RFC 5084": 1,
          "RFC 5246": 1,
          "RFC 5289": 1,
          "RFC 5652": 1,
          "RFC-2104": 2,
          "RFC-3394": 2,
          "RFC-4493": 3,
          "RFC-5084": 2,
          "RFC-5246": 3,
          "RFC-5289": 3,
          "RFC-5652": 3
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 16,
            "AES-": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 1,
            "HMAC": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03109-1": 2,
          "BSI TR-03111": 1,
          "BSI TR-03116-3": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {
        "TLS": {
          "TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256": 3,
          "TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 3,
          "TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 3,
          "TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 3
        }
      },
      "vendor": {},
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "EFR GmbH",
      "/CreationDate": "D:20260130094246+01\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word f\u00fcr Microsoft 365",
      "/ModDate": "D:20260130094246+01\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word f\u00fcr Microsoft 365",
      "/Subject": "Common Criteria Evaluation",
      "/Title": "Security Target EFR SGH-S",
      "pdf_file_size_bytes": 2906907,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 94
    }
  },
  "protection_profile_links": null,
  "report_link": "https://certification.enisa.europa.eu/document/download/eaf7c79f-8bdf-4648-8fb1-6f153ad15f3d_en?filename=EUCC-3087-2026-03-0002%20Certification%20Report.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": []
  },
  "st_link": "https://certification.enisa.europa.eu/document/download/07d159b4-0f31-4827-9098-397160240a2b_en?filename=EUCC-3087-2026-03-0002_Security_Target.pdf",
  "state": {
    "_type": "sec_certs.sample.cc_eucc_common.InternalState",
    "cert": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "959314ffdc970821d84646d24a41eac952ef4c9297c405b124ae6fd6774b5429",
      "txt_hash": "336f11a4467883b034b6b1739ee6fc30376fbd6c7a53fb1dc18f93498a60496a"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "0e7c4ba5ee9fa8fb8f4819e2660a187e2c0279c9b0a2a6237bdf221b66b78fcb",
      "txt_hash": "41c8716d17ba58fe7b9c20c86e91f5be88d36c319a8dd390ca5e058d40e61209"
    },
    "st": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "b1230c6308d909e52b534eee85775611241ed5f2aa09c52f9b4fceab2360cbe4",
      "txt_hash": "d61a78adfba49bb2a28d4da55c6235c06099c5b427250efa5c842d04b3c663d7"
    }
  },
  "status": "active"
}