This page was not yet optimized for use on mobile
devices.
PP-Module for Endpoint Detection and Response Version 2.0
Web information
| Status | active |
|---|---|
| Valid from | 13.01.2026 |
| Scheme | πΊπΈ US |
| Category | Detection Devices and Systems |
| Security level |
Certification report
certification report could not be downloaded, no link is available.
Protection Profile
Extracted keywords
Asymmetric Algorithms
ECDSAProtocols
SSH, TLS, DTLSRandomness
DRBG, RBGClaims
T.CREDENTIAL_REUSE, T.MISCONFIGURATION, A.CONNECTIVITY, A.PLATFORM, OE.RELIABLE_TRANSITSecurity Assurance Requirements (SAR)
AGD_OPE, AGD_OPE.1, ATE_IND.1Security Functional Requirements (SFR)
FAU_ALT_EXT, FAU_COL_EXT, FAU_ALT_EXT.1, FAU_COL_EXT.1, FAU_GEN, FAU_ALT_EXT.1.1, FAU_ALT_EXT.1.2, FAU_ALT_EXT.1.3, FAU_COL_EXT.1.1, FAU_GEN.1, FAU_GEN.1.2, FCS_COP, FIA_AUT_EXT, FIA_PWD_EXT, FIA_AUT_EXT.1, FIA_PWD_EXT.1, FIA_AUT_EXT.1.1, FIA_PWD_EXT.1.1, FIA_UID.1, FMT_SRF_EXT, FMT_TRM_EXT, FMT_SMF, FMT_SMR.1, FMT_SRF_EXT.1, FMT_SMF.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMR, FMT_SRF_EXT.1.1, FMT_TRM_EXT.1, FMT_TRM_EXT.1.1, FPT_ITT.1, FPT_ITT.1.1, FPT_ITT, FPT_STM.1, FTP_TRP.1, FTP_TRP.1.1, FTP_TRP.1.2, FTP_TRP.1.3, FTP_TRPCertification process
out of scope, may be extended by add-ons, plug-ins, threat feeds, or other reputation services. These are out of scope of this PP-Module. [USE CASE 1] Detection of Potential Unauthorized Activity The detection ofStandards
FIPS PUB 186-5, ISO/IEC 15408, X.509, CCMB-2022-11-001, CCMB-2022-11-002, CCMB-2022-11-003, CCMB-2022-11-004, CCMB-2022-11-005, CCMB-2022-11-006File metadata
| Title | PP-Module for Endpoint Detection And Response (EDR) |
|---|---|
| Creation date | D:20260112163840+00'00' |
| Modification date | D:20260112163840+00'00' |
| Pages | 33 |
| Creator | Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/143.0.0.0 Safari/537.36 |
| Producer | Skia/PDF m143 |
References
No references are available for this protection profile.
Updates Feed
-
The protection profile was first processed.
Raw data
{
"_id": "8697463d494f6fd2",
"_type": "sec_certs.sample.protection_profile.ProtectionProfile",
"dgst": "8697463d494f6fd2",
"heuristics": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
},
"pdf_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
"pp_filename": "",
"pp_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECDSA": {
"ECDSA": 2
}
}
},
"cc_cert_id": {},
"cc_claims": {
"A": {
"A.CONNECTIVITY": 4,
"A.PLATFORM": 2
},
"OE": {
"OE.RELIABLE_TRANSIT": 3
},
"T": {
"T.CREDENTIAL_REUSE": 2,
"T.MISCONFIGURATION": 3
}
},
"cc_protection_profile_id": {},
"cc_sar": {
"AGD": {
"AGD_OPE": 1,
"AGD_OPE.1": 1
},
"ATE": {
"ATE_IND.1": 1
}
},
"cc_security_level": {},
"cc_sfr": {
"FAU": {
"FAU_ALT_EXT": 11,
"FAU_ALT_EXT.1": 10,
"FAU_ALT_EXT.1.1": 2,
"FAU_ALT_EXT.1.2": 2,
"FAU_ALT_EXT.1.3": 2,
"FAU_COL_EXT": 11,
"FAU_COL_EXT.1": 10,
"FAU_COL_EXT.1.1": 2,
"FAU_GEN": 12,
"FAU_GEN.1": 6,
"FAU_GEN.1.2": 1
},
"FCS": {
"FCS_COP": 2
},
"FIA": {
"FIA_AUT_EXT": 6,
"FIA_AUT_EXT.1": 13,
"FIA_AUT_EXT.1.1": 2,
"FIA_PWD_EXT": 6,
"FIA_PWD_EXT.1": 10,
"FIA_PWD_EXT.1.1": 2,
"FIA_UID.1": 3
},
"FMT": {
"FMT_SMF": 17,
"FMT_SMF.1": 2,
"FMT_SMR": 4,
"FMT_SMR.1": 8,
"FMT_SMR.1.1": 1,
"FMT_SMR.1.2": 1,
"FMT_SRF_EXT": 8,
"FMT_SRF_EXT.1": 10,
"FMT_SRF_EXT.1.1": 2,
"FMT_TRM_EXT": 4,
"FMT_TRM_EXT.1": 10,
"FMT_TRM_EXT.1.1": 2
},
"FPT": {
"FPT_ITT": 2,
"FPT_ITT.1": 7,
"FPT_ITT.1.1": 1,
"FPT_STM.1": 2
},
"FTP": {
"FTP_TRP": 3,
"FTP_TRP.1": 6,
"FTP_TRP.1.1": 2,
"FTP_TRP.1.2": 1,
"FTP_TRP.1.3": 1
}
},
"certification_process": {
"OutOfScope": {
"may be extended by add-ons, plug-ins, threat feeds, or other reputation services. These are out of scope of this PP-Module. [USE CASE 1] Detection of Potential Unauthorized Activity The detection of": 1,
"out of scope": 1
}
},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"SSH": {
"SSH": 1
},
"TLS": {
"DTLS": {
"DTLS": 3
},
"TLS": {
"TLS": 12
}
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"DRBG": 1
},
"RNG": {
"RBG": 2
}
},
"side_channel_analysis": {},
"standard_id": {
"CC": {
"CCMB-2022-11-001": 1,
"CCMB-2022-11-002": 1,
"CCMB-2022-11-003": 1,
"CCMB-2022-11-004": 1,
"CCMB-2022-11-005": 1,
"CCMB-2022-11-006": 1
},
"FIPS": {
"FIPS PUB 186-5": 2
},
"ISO": {
"ISO/IEC 15408": 2
},
"X509": {
"X.509": 1
}
},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"pp_metadata": {
"/CreationDate": "D:20260112163840+00\u002700\u0027",
"/Creator": "Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) HeadlessChrome/143.0.0.0 Safari/537.36",
"/ModDate": "D:20260112163840+00\u002700\u0027",
"/Producer": "Skia/PDF m143",
"/Title": "PP-Module for Endpoint Detection And Response (EDR)",
"pdf_file_size_bytes": 1935372,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://www.niap-ccevs.org/protectionprofiles/516",
"http://www.commoncriteriaportal.org/files/ccfiles/CC2022PART3R1.pdf",
"http://www.commoncriteriaportal.org/files/ccfiles/CC2022PART2R1.pdf",
"https://www.niap-ccevs.org/pp/",
"http://www.commoncriteriaportal.org/files/ccfiles/CC2022PART5R1.pdf",
"http://www.commoncriteriaportal.org/files/ccfiles/CC2022PART4R1.pdf",
"http://www.commoncriteriaportal.org/files/ccfiles/CEM2022R1.pdf",
"https://www.commoncriteriaportal.org/files/ccfiles/CC2022PART1R1.pdf"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 33
},
"report_filename": null,
"report_keywords": null,
"report_metadata": null
},
"scheme_metadata": {
"cc_version": "CC:2022",
"pp_short_name": "MOD_EDR_V2.0",
"pp_sponsor_id": "NIAP",
"pp_transition": null,
"predecessor": "MOD_EDR_V1.0",
"source_scheme": "US",
"successor": null
},
"state": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
"pp": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "e9e1f7160c40c81f8c48329c199de0d383ab22a9e0c8d4f055e66f0f1f3da2d9",
"txt_hash": "23d293b652472a9be1b894a702dc9115170d842019c3f7a099b722e913e1a533"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": false,
"download_ok": false,
"extract_ok": false,
"json_hash": null,
"source_hash": null,
"txt_hash": null
}
},
"web_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
"category": "Detection Devices and Systems",
"is_collaborative": false,
"maintenances": [],
"name": "PP-Module for Endpoint Detection and Response Version 2.0",
"not_valid_after": null,
"not_valid_before": "2026-01-13",
"pp_link": "https://www.niap-ccevs.org/api/file/get_public_file/?file_id=36922",
"report_link": null,
"scheme": "US",
"security_level": {
"_type": "Set",
"elements": []
},
"status": "active",
"version": "2.0"
}
}