This page was not yet optimized for use on mobile devices.
Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS) Version 3.0.2
Profile details
| Status | active |
|---|---|
| Valid from | 01.06.2026 |
| Scheme | π©πͺ DE |
| Category | Other Devices and Systems |
| Security level | EAL2+, ALC_FLR.1, ALC_CMS.3, ALC_LCD.1 |
Certification report
Extracted keywords
Hash functions
SHA256Trusted Execution Environments
SESecurity level
EAL 2, EAL 2 augmentedSecurity Assurance Requirements (SAR)
ALC_FLR, ALC_LCD.1, ALC_FLR.1, ALC_CMS.3, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.2, APE_ECD.1, APE_REQ.2Protection profiles
BSI-CC-PP-0105-V4-2026, BSI-CC-PP-0105-V3-2025, BSI-CC-PP-0104-, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0111-2019, BSI-CC-PP-0113-2019Certificates
EUCC-3087-2026-0006Evaluation facilities
TΓV InformationstechnikCertification process
1, 2026-04-10, βEVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)β, TΓV Informationstechnik GmbH (confidential document) [TR] Technical Guideline BSI TR-03151-1 Secure Element API (SE API), Version 1.1.1, 2024-01-08Technical reports
BSI TR-03151-1, BSI TR-03116Protection profile
Extracted keywords
Symmetric Algorithms
AES, AES-256, HMAC, CMACAsymmetric Algorithms
ECC, DH, Diffie-HellmanSchemes
MAC, Key AgreementProtocols
PACEElliptic Curves
Curve P-256, Curve P-384, Curve P-521, P-256, P-384, P-521, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1Block cipher modes
CBC, CTR, CFB, OFB, GCMTrusted Execution Environments
SE, TEESecurity level
EAL2, EAL2 augmentedClaims
O.IAA, O.TEE, O.TST, A.CSP, OE.ERS, OE.CSP, OE.SUCPSecurity Assurance Requirements (SAR)
ADV_ARC.1, ADV_ARC, ALC_LCD.1, ALC_CMS.3, ALC_FLR.1, ALC_LCD, ALC_CMS, ATE_IND.2, ATE_INDSecurity Functional Requirements (SFR)
FAU_GEN.1, FAU_GEN, FAU_STG, FAU_STG.4, FAU_STG.2, FCS_CKM.1, FCS_COP, FCS_CKM.2, FCS_CKM.5, FCS_COP.1, FCS_RGB.1, FCS_RNG.1, FCS_CKM.6, FCS_CKM.1.1, FCS_CKM.6.1, FCS_CKM.6.2, FCS_RNG.1.1, FCS_RNG.1.2, FCS_RBG.1, FDP_ITC, FDP_ACC.1, FDP_IFC.1, FDP_ACC, FDP_ACF.1, FDP_ACF, FDP_ETC, FDP_ITC.2, FDP_ETC.2, FDP_DAU, FDP_RIP, FDP_RIP.1, FDP_ITC.1, FIA_ATD.1, FIA_UID.1, FIA_UAU.5.2, FIA_ATD.1.1, FIA_AFL.1, FIA_UAU.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_USB.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.5, FIA_UAU.5.1, FIA_UAU.6, FIA_UAU.6.1, FIA_SOS.1, FIA_UAU, FIA_API.1, FIA_API.1.1, FIA_SOS.1.1, FIA_ATD, FMT_SMR.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMR, FMT_MOF.1, FMT_SMF.1.1, FMT_SMF.1, FMT_MTD, FMT_MTD.1, FMT_MOF.1.1, FMT_MSA, FMT_MSA.1, FMT_MSA.1.1, FMT_MSA.3, FMT_MSA.3.1, FMT_MSA.3.2, FMT_MTD.3, FMT_MSA.2, FMT_MSA.2.1, FMT_MSA.4, FMT_MSA.4.1, FPT_TEE, FPT_TST.1, FPT_TDC.1, FPT_STM.1, FPT_STM.1.1, FPT_TDC.1.1, FPT_TDC.1.2, FPT_FLS.1, FPT_FLS.1.1, FPT_TEE.1, FPT_FLS, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_TRP.1, FPT_ITA.1, FPT_ITA.1.1, FPT_TDC, FTP_ITC.1, FTP_TRP.1, FTP_ITCProtection profiles
BSI-CC-PP-0105-V4-2026, BSI-CC-PP-0104-, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0113-2019Side-channel analysis
side channelCertification process
out of scope, of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the, and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle stateStandards
FIPS197, FIPS PUB 198-1, FIPS PUB 197, NIST SP 800-186, AIS20, RFC5639, ISO/IEC 27001, ISO/IEC 18033-3, ISO/IEC 10116, ISO/IEC 27001:2022, ISO/IEC 21827:2008, ICAO, CCMB-2022-11-001, CCMB-2022-11-002, CCMB-2022-11-003, CCMB-2022-11-005, CCMB-2022-11-006Technical reports
BSI TR-03153-1, BSI TR-03110, BSI TR-03116, BSI TR-03151-1References
No references are available for this protection profile.
-
The protection profile was first processed.
{
"_id": "94059d11e19d29c3",
"_type": "sec_certs.sample.protection_profile.ProtectionProfile",
"dgst": "94059d11e19d29c3",
"heuristics": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
},
"pdf_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
"pp_filename": "EUCC-3087-2026-0006 Protection Profile.pdf",
"pp_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 1
}
},
"FF": {
"DH": {
"DH": 1,
"Diffie-Hellman": 1
}
}
},
"cc_cert_id": {},
"cc_claims": {
"A": {
"A.CSP": 4
},
"O": {
"O.IAA": 7,
"O.TEE": 10,
"O.TST": 7
},
"OE": {
"OE.CSP": 6,
"OE.ERS": 5,
"OE.SUCP": 4
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0104-": 1,
"BSI-CC-PP-0105-V4-2026": 2,
"BSI-CC-PP-0107-2019": 1,
"BSI-CC-PP-0108-2019": 1,
"BSI-CC-PP-0113-2019": 1
}
},
"cc_sar": {
"ADV": {
"ADV_ARC": 4,
"ADV_ARC.1": 5
},
"ALC": {
"ALC_CMS": 1,
"ALC_CMS.3": 10,
"ALC_FLR.1": 4,
"ALC_LCD": 1,
"ALC_LCD.1": 8
},
"ATE": {
"ATE_IND": 3,
"ATE_IND.2": 5
}
},
"cc_security_level": {
"EAL": {
"EAL2": 6,
"EAL2 augmented": 3
}
},
"cc_sfr": {
"FAU": {
"FAU_GEN": 15,
"FAU_GEN.1": 7,
"FAU_STG": 11,
"FAU_STG.2": 4,
"FAU_STG.4": 4
},
"FCS": {
"FCS_CKM.1": 17,
"FCS_CKM.1.1": 1,
"FCS_CKM.2": 2,
"FCS_CKM.5": 8,
"FCS_CKM.6": 10,
"FCS_CKM.6.1": 2,
"FCS_CKM.6.2": 1,
"FCS_COP": 15,
"FCS_COP.1": 4,
"FCS_RBG.1": 1,
"FCS_RGB.1": 1,
"FCS_RNG.1": 7,
"FCS_RNG.1.1": 1,
"FCS_RNG.1.2": 1
},
"FDP": {
"FDP_ACC": 26,
"FDP_ACC.1": 32,
"FDP_ACF": 11,
"FDP_ACF.1": 18,
"FDP_DAU": 4,
"FDP_ETC": 24,
"FDP_ETC.2": 20,
"FDP_IFC.1": 24,
"FDP_ITC": 29,
"FDP_ITC.1": 6,
"FDP_ITC.2": 31,
"FDP_RIP": 4,
"FDP_RIP.1": 1
},
"FIA": {
"FIA_AFL.1": 5,
"FIA_AFL.1.1": 1,
"FIA_AFL.1.2": 1,
"FIA_API.1": 4,
"FIA_API.1.1": 1,
"FIA_ATD": 3,
"FIA_ATD.1": 7,
"FIA_ATD.1.1": 1,
"FIA_SOS.1": 5,
"FIA_SOS.1.1": 1,
"FIA_UAU": 3,
"FIA_UAU.1": 6,
"FIA_UAU.1.1": 1,
"FIA_UAU.1.2": 1,
"FIA_UAU.5": 7,
"FIA_UAU.5.1": 1,
"FIA_UAU.5.2": 5,
"FIA_UAU.6": 4,
"FIA_UAU.6.1": 1,
"FIA_UID.1": 12,
"FIA_UID.1.1": 2,
"FIA_UID.1.2": 1,
"FIA_USB.1": 4,
"FIA_USB.1.1": 1,
"FIA_USB.1.2": 1,
"FIA_USB.1.3": 1
},
"FMT": {
"FMT_MOF.1": 12,
"FMT_MOF.1.1": 3,
"FMT_MSA": 1,
"FMT_MSA.1": 12,
"FMT_MSA.1.1": 1,
"FMT_MSA.2": 5,
"FMT_MSA.2.1": 1,
"FMT_MSA.3": 10,
"FMT_MSA.3.1": 1,
"FMT_MSA.3.2": 1,
"FMT_MSA.4": 7,
"FMT_MSA.4.1": 1,
"FMT_MTD": 23,
"FMT_MTD.1": 7,
"FMT_MTD.3": 1,
"FMT_SMF.1": 19,
"FMT_SMF.1.1": 5,
"FMT_SMR": 6,
"FMT_SMR.1": 29,
"FMT_SMR.1.1": 1,
"FMT_SMR.1.2": 1
},
"FPT": {
"FPT_FLS": 3,
"FPT_FLS.1": 10,
"FPT_FLS.1.1": 1,
"FPT_ITA.1": 3,
"FPT_ITA.1.1": 1,
"FPT_STM.1": 7,
"FPT_STM.1.1": 1,
"FPT_TDC": 3,
"FPT_TDC.1": 21,
"FPT_TDC.1.1": 1,
"FPT_TDC.1.2": 1,
"FPT_TEE": 33,
"FPT_TEE.1": 4,
"FPT_TRP.1": 4,
"FPT_TST.1": 9,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1
},
"FTP": {
"FTP_ITC": 9,
"FTP_ITC.1": 19,
"FTP_TRP.1": 10
}
},
"certification_process": {
"OutOfScope": {
"and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle state": 1,
"of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the": 1,
"out of scope": 2
}
},
"cipher_mode": {
"CBC": {
"CBC": 1
},
"CFB": {
"CFB": 1
},
"CTR": {
"CTR": 1
},
"GCM": {
"GCM": 1
},
"OFB": {
"OFB": 1
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 44
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 1
},
"MAC": {
"MAC": 9
}
},
"device_model": {},
"ecc_curve": {
"Brainpool": {
"brainpoolP256r1": 1,
"brainpoolP384r1": 1,
"brainpoolP512r1": 1
},
"NIST": {
"Curve P-256": 1,
"Curve P-384": 1,
"Curve P-521": 1,
"P-256": 1,
"P-384": 1,
"P-521": 1
}
},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {
"SCA": {
"side channel": 2
}
},
"standard_id": {
"BSI": {
"AIS20": 2
},
"CC": {
"CCMB-2022-11-001": 1,
"CCMB-2022-11-002": 1,
"CCMB-2022-11-003": 1,
"CCMB-2022-11-005": 1,
"CCMB-2022-11-006": 1
},
"FIPS": {
"FIPS PUB 197": 1,
"FIPS PUB 198-1": 1,
"FIPS197": 1
},
"ICAO": {
"ICAO": 5
},
"ISO": {
"ISO/IEC 10116": 6,
"ISO/IEC 18033-3": 3,
"ISO/IEC 21827:2008": 1,
"ISO/IEC 27001": 4,
"ISO/IEC 27001:2022": 1
},
"NIST": {
"NIST SP 800-186": 3
},
"RFC": {
"RFC5639": 8
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 15,
"AES-256": 2
}
},
"constructions": {
"MAC": {
"CMAC": 2,
"HMAC": 2
}
}
},
"technical_report_id": {
"BSI": {
"BSI TR-03110": 1,
"BSI TR-03116": 1,
"BSI TR-03151-1": 1,
"BSI TR-03153-1": 2
}
},
"tee_name": {
"IBM": {
"SE": 1
},
"other": {
"TEE": 10
}
},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"pp_metadata": {
"/CreationDate": "D:20260410062407+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "\"Security Module Application, Electronic Record-keeping Systems\"",
"/Producer": "LibreOffice 24.8.7.2 (X86_64) / LibreOffice Community",
"/Subject": "SMAERS BSI-CC-PP-0105-V4-2026",
"/Title": "Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS)",
"pdf_file_size_bytes": 1636880,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.ietf.org/rfc/rfc5639.txt"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 70
},
"report_filename": "EUCC-3087-2026-0006 Certificate Report.pdf",
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"DE": {
"EUCC-3087-2026-0006": 7
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0104-": 1,
"BSI-CC-PP-0105-V3-2025": 3,
"BSI-CC-PP-0105-V4-2026": 2,
"BSI-CC-PP-0107-2019": 1,
"BSI-CC-PP-0108-2019": 1,
"BSI-CC-PP-0111-2019": 1,
"BSI-CC-PP-0113-2019": 1
}
},
"cc_sar": {
"ALC": {
"ALC_CMS.3": 2,
"ALC_FLR": 1,
"ALC_FLR.1": 1,
"ALC_LCD.1": 2
},
"APE": {
"APE_CCL.1": 1,
"APE_ECD.1": 1,
"APE_INT.1": 1,
"APE_OBJ.2": 1,
"APE_REQ.2": 1,
"APE_SPD.1": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 2,
"EAL 2 augmented": 1
}
},
"cc_sfr": {},
"certification_process": {
"ConfidentialDocument": {
"1, 2026-04-10, \u201cEVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)\u201d, T\u00dcV Informationstechnik GmbH (confidential document) [TR] Technical Guideline BSI TR-03151-1 Secure Element API (SE API), Version 1.1.1, 2024-01-08": 1
}
},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"TUV": {
"T\u00dcV Informationstechnik": 3
}
},
"hash_function": {
"SHA": {
"SHA2": {
"SHA256": 1
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"ISO": {
"ISO/IEC 15408": 2,
"ISO/IEC 17065": 2,
"ISO/IEC 18045": 2
}
},
"symmetric_crypto": {},
"technical_report_id": {
"BSI": {
"BSI TR-03116": 1,
"BSI TR-03151-1": 1
}
},
"tee_name": {
"IBM": {
"SE": 1
}
},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"report_metadata": {
"/CreationDate": "D:20260616062230+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "Common Criteria, Certification, Zertifizierung",
"/Producer": "LibreOffice 5.3",
"/Subject": "EUCC-3087-2026-0006",
"/Title": "ETR",
"pdf_file_size_bytes": 254432,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://certification.enisa.europa.eu/certification-library/eucc-certification-scheme_en",
"https://www.iso.org/standard/72917.html",
"https://www.iso.org/standard/72892.html",
"https://www.commoncriteriaportal.org/",
"https://www.iso.org/standard/72906.html",
"https://www.iso.org/standard/72891.html",
"https://www.bsi.bund.de/AIS",
"https://www.iso.org/standard/72889.html",
"https://certification.enisa.europa.eu/",
"https://www.bsi.bund.de/zertifizierung",
"https://www.iso.org/standard/72913.html"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 15
}
},
"scheme_metadata": null,
"state": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
"pp": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "e7cfb2b46da1cb7f72c313008f7ea70d872a9f234fd60850bc305b0620c25725",
"txt_hash": "677071490265c94e5ef7db02921280003b0d4db629e5ae6e18c382dde84e27a3"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": null,
"source_hash": "36bbce6b3a655e65f351723d8c0f0df0b94ecf9d01ea7dcc1647ef13625d1b53",
"txt_hash": "f3cd5c4b7661da284df228091694d25e8fe1c4e76bfe51a82cb49e069006d774"
}
},
"web_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
"category": "Other Devices and Systems",
"is_collaborative": false,
"maintenances": [],
"name": "Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS) Version 3.0.2",
"not_valid_after": null,
"not_valid_before": "2026-06-01",
"pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/EUCC-3087-2026-0006 Protection Profile.pdf",
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/EUCC-3087-2026-0006 Certificate Report.pdf",
"scheme": "DE",
"security_level": {
"_type": "Set",
"elements": [
"ALC_FLR.1",
"EAL2+",
"ALC_CMS.3",
"ALC_LCD.1"
]
},
"status": "active",
"version": "3.0.2"
}
}