{"_id": "bd8869804c90995f", "_type": "sec_certs.sample.protection_profile.ProtectionProfile", "dgst": "bd8869804c90995f", "web_data": {"_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData", "category": "Operating Systems", "status": "archived", "is_collaborative": false, "name": "Protection Profile for General Purpose Operating Systems Version 4.2", "version": "4.2", "security_level": {"_type": "Set", "elements": []}, "not_valid_before": "2018-05-22", "not_valid_after": "2019-04-30", "report_link": null, "pp_link": "https://www.niap-ccevs.org/api/file/get_public_file/?file_id=11378", "scheme": "US", "maintenances": []}, "pdf_data": {"_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData", "report_metadata": null, "pp_metadata": {"pdf_file_size_bytes": 1238602, "pdf_is_encrypted": false, "pdf_number_of_pages": 66, "/Title": "Protection Profile for General Purpose Operating Systems", "/Creator": "wkhtmltopdf 0.12.4", "/Producer": "Qt 4.8.7", "/CreationDate": "D:20180524121459Z", "pdf_hyperlinks": {"_type": "Set", "elements": ["https://www.niap-ccevs.org/Documents_and_Guidance/ccevs/Entropy Documentation and Assessment Clarification.pdf", "http://www.commoncriteriaportal.org/files/ccfiles/CCPART3V3.1R5.pdf", "https://www.gov.uk/government/collections/end-user-devices-security-guidance", "http://www.commoncriteriaportal.org/files/ccfiles/CCPART2V3.1R5.pdf", "https://www.niap-ccevs.org/pp/", "http://www.commoncriteriaportal.org/files/ccfiles/CEMV3.1R5.pdf", "https://tools.ietf.org/html/rfc5280", "http://csrc.nist.gov/groups/SMA/ispab/documents/csa_87.txt", "http://www.commoncriteriaportal.org/files/ccfiles/CCPART1V3.1R5.pdf", "http://www.whitehouse.gov/sites/default/files/omb/memoranda/fy2006/m06-19.pdf"]}}, "report_keywords": null, "pp_keywords": {"cc_cert_id": {}, "cc_protection_profile_id": {}, "cc_security_level": {}, "cc_sar": {"ADV": {"ADV_FSP.1": 9}, "AGD": {"AGD_OPE": 1, "AGD_PRE": 1, "AGD_OPE.1": 10, "AGD_PRE.1": 6}, "ALC": {"ALC_CMC.1": 8, "ALC_CMS.1": 5, "ALC_TSU_EXT.1": 5}, "ATE": {"ATE_IND": 3, "ATE_IND.1": 5}, "AVA": {"AVA_VAN": 1, "AVA_VAN.1": 6}, "ASE": {"ASE_CCL": 1, "ASE_CCL.1": 1, "ASE_ECD.1": 1, "ASE_INT.1": 1, "ASE_OBJ.1": 1, "ASE_REQ.1": 1, "ASE_SPD.1": 1, "ASE_TSS.1": 1}}, "cc_sfr": {"FAU": {"FAU_GEN.1": 3, "FAU_GEN.1.1": 1, "FAU_GEN.1.2": 2, "FAU_STG.1": 1, "FAU_GEN.2": 1, "FAU_SAR.1": 1}, "FCS": {"FCS_COP.1.1": 5, "FCS_STO_EXT.1": 2, "FCS_RBG_EXT.1": 3, "FCS_TLSC_EXT.1": 12, "FCS_TLSC_EXT.2": 3, "FCS_TLSC_EXT.3": 2, "FCS_TLSC_EXT.4": 2, "FCS_DTLS_EXT.1": 5, "FCS_CKM.1": 4, "FCS_CKM.2": 4, "FCS_CKM_EXT.4": 2, "FCS_CKM.1.1": 3, "FCS_CKM_EXT.4.2": 1, "FCS_COP.1": 8, "FCS_RBG_EXT.1.1": 1, "FCS_TLSC_EXT.1.1": 2, "FCS_DTLS_EXT.1.2": 1}, "FDP": {"FDP_ACF_EXT.1": 2, "FDP_IFC_EXT.1": 3, "FDP_IFC_EXT.1.1": 1}, "FIA": {"FIA_AFL.1": 5, "FIA_UAU.5": 2, "FIA_AFL.1.2": 1, "FIA_UAU.5.2": 1, "FIA_UAU.5.1": 1, "FIA_UAU.1": 1, "FIA_UID.1": 1}, "FMT": {"FMT_MOF_EXT.1": 6, "FMT_SMF_EXT.1.1": 2, "FMT_SMF_EXT.1": 1, "FMT_SMR.1": 1}, "FPT": {"FPT_SBOP_EXT.1": 2, "FPT_ASLR_EXT.1": 2, "FPT_TUD_EXT.1": 2, "FPT_TUD_EXT.2": 2, "FPT_ACF_EXT.1": 3, "FPT_SRP_EXT.1": 2, "FPT_TST_EXT.1": 2, "FPT_ASLR_EXT.1.1": 1, "FPT_TST_EXT.1.1": 1, "FPT_TUD_EXT.1.2": 2, "FPT_TUD_EXT.2.2": 2, "FPT_SRP_EXT.1.1": 1, "FPT_STM.1": 1, "FPT_ACF_EXT.1.2": 1}, "FTA": {"FTA_TAB.1": 1, "FTA_SSL.1": 1, "FTA_SSL.2": 1}, "FTP": {"FTP_ITC_EXT.1": 11, "FTP_TRP.1": 2, "FTP_ITC_EXT.1.1": 3, "FTP_TRP.1.3": 3, "FTP_TRP.1.1": 1, "FTP_TRP.1.2": 1}}, "cc_claims": {"O": {"O.ACCOUNTABILITY": 1, "O.INTEGRITY": 5, "O.MANAGEMENT": 5, "O.PROTECTED_STORAGE": 3, "O.PROTECTED_COMMS": 5}, "T": {"T.NETWORK_ATTACK": 5, "T.NETWORK_EAVESDROP": 4, "T.LOCAL_ATTACK": 2, "T.LIMITED_PHYSICAL_ACCESS": 2}, "A": {"A.PLATFORM": 3, "A.PROPER_USER": 3, "A.PROPER_ADMIN": 3}, "OE": {"OE.PLATFORM": 3, "OE.PROPER_USER": 3, "OE.PROPER_ADMIN": 3}}, "vendor": {}, "eval_facility": {}, "symmetric_crypto": {"AES_competition": {"AES": {"AES": 13, "AES-": 4, "AES-128": 1, "AES-256": 1}}, "DES": {"DES": {"DES": 1}}, "constructions": {"MAC": {"HMAC": 5, "HMAC-SHA-256": 1}}}, "asymmetric_crypto": {"ECC": {"ECDH": {"ECDHE": 5}, "ECDSA": {"ECDSA": 7}, "ECC": {"ECC": 6}}, "FF": {"DH": {"DHE": 3, "Diffie-Hellman": 1}}}, "pq_crypto": {}, "hash_function": {"SHA": {"SHA1": {"SHA-1": 10}, "SHA2": {"SHA-256": 4, "SHA-384": 3, "SHA-512": 3, "SHA-224": 1, "SHA256": 1, "SHA384": 1, "SHA512": 1, "SHA-2": 1}}}, "crypto_scheme": {"MAC": {"MAC": 18}, "KEX": {"Key Exchange": 3}}, "crypto_protocol": {"SSH": {"SSH": 7}, "TLS": {"TLS": {"TLS": 35, "TLS 1.2": 3}, "DTLS": {"DTLS": 11, "DTLS 1.0": 1, "DTLS 1.2": 3}}, "IKE": {"IKE": 1}, "IPsec": {"IPsec": 17}, "VPN": {"VPN": 23}}, "randomness": {"PRNG": {"DRBG": 8}, "RNG": {"RNG": 6, "RBG": 10}}, "cipher_mode": {"CCM": {"CCM": 1}}, "ecc_curve": {"NIST": {"P-256": 12, "P-384": 12, "P-521": 10, "secp256r1": 1, "secp384r1": 1, "secp521r1": 1}}, "crypto_engine": {}, "tls_cipher_suite": {"TLS": {"TLS_RSA_WITH_AES_128_CBC_SHA": 3, "TLS_RSA_WITH_AES_128_CBC_SHA256": 1, "TLS_RSA_WITH_AES_256_CBC_SHA256": 1, "TLS_RSA_WITH_AES_256_CBC_SHA384": 1, "TLS_DHE_RSA_WITH_AES_128_CBC_SHA256": 1, "TLS_DHE_RSA_WITH_AES_256_CBC_SHA256": 1, "TLS_DHE_RSA_WITH_AES_256_GCM_SHA384": 1, "TLS_ECDHE_ECDSA_WITH_AES_128_CBC_SHA256": 1, "TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256": 1, "TLS_ECDHE_ECDSA_WITH_AES_256_CBC_SHA384": 1, "TLS_ECDHE_ECDSA_WITH_AES_256_GCM_SHA384": 1, "TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256": 1, "TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256": 1, "TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384": 1, "TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384": 1, "TLS_NULL_WITH_NULL_NULL": 1}}, "crypto_library": {}, "vulnerability": {}, "side_channel_analysis": {"FI": {"malfunction": 1}}, "technical_report_id": {}, "device_model": {}, "tee_name": {}, "os_name": {}, "cplc_data": {}, "ic_data_group": {}, "standard_id": {"FIPS": {"FIPS PUB 186-4": 6, "FIPS 186-4": 4, "FIPS PUB 197": 1}, "NIST": {"NIST SP 800-56B": 1, "SP 800-56B": 1, "SP 800-56A": 1, "NIST SP 800-38E": 1, "NIST SP 800-38A": 1, "NIST SP 800-38C": 2, "NIST SP 800-38F": 2, "NIST SP 800-38D": 1, "NIST SP 800-131A": 1, "SP 800-131A": 1, "NIST SP 800-90A": 2, "NIST SP 800-57": 1, "NIST SP 800-57A": 1, "NIST SP 800-90B": 1}, "RFC": {"RFC 5246": 7, "RFC 5288": 2, "RFC 5289": 8, "RFC 6460": 1, "RFC 6125": 2, "RFC 5280": 3, "RFC 2560": 1, "RFC 5759": 1, "RFC 6066": 1, "RFC 4347": 1, "RFC 6347": 3}, "X509": {"X.509": 6}, "CC": {"CCMB-2017-04-001": 1, "CCMB-2017-04-002": 1, "CCMB-2017-04-003": 1, "CCMB-2017-04-004": 1}}, "javacard_version": {}, "javacard_api_const": {}, "javacard_packages": {}, "certification_process": {"OutOfScope": {"out of scope": 4, "may even be effectively extended by privileged applications installed onto it. However, these are out of scope of this PP. [USE CASE 1] End User Devices The OS provides a platform for end user devices such as": 1, "The OS relies upon a trustworthy computing platform for its execution. This underlying platform is out of scope of this PP. A.PROPER_USER The user of the OS is not willfully negligent or hostile, and uses the": 1, "code, and so on. However, the way in which the hardware stores and protects these keys is out of scope. If all executable code (including bootloader(s), kernel, device drivers, pre-loaded applications": 1, "kernel. Software loaded for execution directly by the platform (e.g. first-stage bootloaders) is out of scope. For each additional category of executable code verified before execution, the evaluator will": 1}}}, "report_filename": null, "pp_filename": ""}, "heuristics": {"_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"}, "state": {"_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState", "pp": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": true, "convert_ok": true, "extract_ok": true, "source_hash": "9124ae0bd9758fa0482ed8c159caad94a157bf3587a7268ca680579489b52e05", "txt_hash": "78577b1d255af6d461cd1104449cad29220022498fa9fe0594a4667d737913db", "json_hash": null}, "report": {"_type": "sec_certs.sample.document_state.DocumentState", "download_ok": false, "convert_ok": false, "extract_ok": false, "source_hash": null, "txt_hash": null, "json_hash": null}}, "scheme_metadata": {"source_scheme": "US", "pp_short_name": "PP_OS_V4.2", "pp_sponsor_id": "NIAP", "pp_transition": "2018-08-22T00:00:00Z", "cc_version": "3.1", "predecessor": "PP_OS_V4.1", "successor": "PP_OS_V4.2.1"}}