Digital Tachograph - Tachograph Card

Web information

Status: active
Certification date: 2017-05-19
Scheme: 🇩🇪
Category: Other Devices and Systems
Security level: EAL4+, AVA_VAN.5, ATE_DPT.2

Certification report

Extracted keywords

Security level
EAL 4, EAL 2, EAL4+, EAL 4 augmented, ITSEC Evaluation
Security Assurance Requirements (SAR)
ALC_FLR, ATE_DPT.2, AVA_VAN.5, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.2, APE_ECD.1, APE_REQ.2
Protection profiles
BSI-CC-PP-0091-2017, BSI-CC-PP-0091

Certification process
Evaluation Technical Report BSI-CC-PP-0091 Evaluation Assurance Level EAL4+, T-Systems GEI GmbH (confidential document) [7] Protection Profile Digital Tachograph – Tachograph Card (TC PP), BSI-CC-PP-0091, Version 1.0

Standards
AIS 32, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065
Technical reports
BSI 7148

File metadata

Title Certification Report BSI-CC-PP-0091
Subject Digital Tachograph - Tachograph Card
Keywords "Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Fahrtenschreiber, Digital Tachograph, Tachograph Card, TC"
Author Bundesamt für Sicherheit in der Informationstechnik
Creation date D:20170523075943+02'00'
Modification date D:20170530144031+02'00'
Pages 14
Creator Writer
Producer LibreOffice 4.2

Profile

Extracted keywords

Symmetric Algorithms
AES, DES, TDES, KMAC
Asymmetric Algorithms
ECDSA, ECC
Hash functions
SHA-1, SHA-256, SHA-384, SHA-512, SHA-2
Schemes
MAC
Randomness
RNG
Elliptic Curves
P-256, P-384, P-521, NIST P-256, NIST P-384, NIST P-521, secp256r1, secp384r1, secp521r1, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1
Block cipher modes
CBC

Security level
EAL4, EAL4 augmented
Claims
OE.EOL
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_TDS.3, ADV_FSP.4, ADV_IMP.1, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_DEL, ATE_DPT.2, ATE_FUN.1, ATE_DPT.1, AVA_VAN.5
Security Functional Requirements (SFR)
FAU_ARP.1, FAU_SAA.1, FAU_ARP.1.1, FAU_GEN.1, FAU_SAA.1.1, FAU_SAA.1.2, FAU_ARP, FAU_SAA, FCO_NRO.1, FCO_NRO.1.1, FCO_NRO.1.2, FCO_NRO.1.3, FCO_NRO, FCS_RNG, FCS_RNG.1, FCS_CKM.1, FCS_RNG.1.1, FCS_RNG.1.2, FCS_CKM.2, FCS_COP.1, FCS_CKM.4, FCS_CKM.1.1, FCS_CKM.2.1, FCS_CKM.4.1, FCS_COP.1.1, FCS_CKM, FDP_ACC.2, FDP_ACF.1, FDP_ACC.2.1, FDP_ACC.2.2, FDP_ACC.1, FDP_ACF.1.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_DAU.1, FDP_DAU.1.1, FDP_DAU.1.2, FDP_ETC.1, FDP_IFC.1, FDP_ETC.1.1, FDP_ETC.1.2, FDP_ETC.2, FDP_ETC.2.1, FDP_ETC.2.2, FDP_ETC.2.3, FDP_ETC.2.4, FDP_ITC.1, FDP_ITC.1.1, FDP_ITC.1.2, FDP_ITC.1.3, FDP_ITC.2, FDP_ITC.2.1, FDP_ITC.2.2, FDP_ITC.2.3, FDP_ITC.2.4, FDP_ITC.2.5, FDP_RIP.1, FDP_RIP.1.1, FDP_SDI.2, FDP_SDI.2.1, FDP_SDI.2.2, FDP_ACC, FDP_DAU, FDP_ETC, FIA_SOS.2, FIA_UID.1, FIA_AFL.1, FIA_UAU.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_ATD.1, FIA_ATD.1.1, FIA_UAU.3, FIA_UAU.3.1, FIA_UAU.3.2, FIA_UAU.4, FIA_UAU.4.1, FIA_UID.2, FIA_UID.2.1, FIA_USB.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU, FMT_MSA.3, FPR_UNO.1, FPR_UNO, FPT_EMS, FPT_EMS.1, FPT_EMS.1.1, FPT_EMS.1.2, FPT_ITC.1, FPT_TDC.1, FPT_FLS.1, FPT_FLS.1.1, FPT_PHP.3, FPT_PHP.3.1, FPT_TST.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_TDC.1.1, FPT_TDC.1.2, FPT_TDC, FTP_TRP.1, FTP_ITC.1, FTP_ITC.1.1, FTP_ITC.1.2, FTP_ITC.1.3
Protection profiles
BSI-CC-PP-0070, BSI-CC-PP-0091, BSI-CC-PP-0084-2014

Side-channel analysis
physical probing, SPA, DPA, timing attacks, malfunction
Certification process
Out of scope, 18. RSA Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory VU.PK (conditional, possibly multiple) VU, Generated by VU or VU manufacturer; obtained by card in VU certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MS.PK (conditional, possibly multiple) Public, foreign) MSCA; obtained by card in MS certificate presented by a VU during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 16 - First-generation asymmetric keys, by ERCA; inserted in card by card manufacturer. Note: See [5] Annex 1C, Appendix 11, CSM_105. Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Table, 21. ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory EUR.PK (previous) (conditional; only present, EUR.C ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory Page 61 of 70 Common Criteria Protection, EUR.C as part of the EUR.Link.C; obtained by card during mutual authentication towards such a VU. Out of scope for this PP Not applicable Card non- volatile memory VU_MA.PK (conditional, possibly multiple) VU, by VU or VU manufacturer; obtained by card in VU_MA certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MSCA_VU- EGF.PK (conditional, possibly, 21 ECC Generated by MSCA ; obtained by card in MSCA_VU-EGF certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 19 – Second-generation asymmetric keys, explained in [5] Annex 1C, Appendix 11, section 12.2, a workshop card may contain up to three keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Page, DSRC channel AES Generated by ERCA Note: Workshop and control cards may contain up to 3 KMDSRC keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory

Standards
FIPS PUB 46-3, ISO/IEC 7810, ISO/IEC 7816, ISO/IEC 10373, CCMB-2012-09-001, CCMB-2012-09-002, CCMB-2012-09-003, CCMB-2012-09-004

File metadata

Title CC PP: Digital Tachograph - Tachograph Card
Keywords Digital, Tachograph, Tachograph, Card
Author Julian Straw, David Bakker, Jacques Kunegel, Luigi Sportiello
Creation date D:20170531074520+02'00'
Pages 70
Creator Writer
Producer LibreOffice 5.2

Updates

  • 22.04.2025 The protection profile data changed.
    Protection Profile changed

    The PDF extraction data was updated.

    • The report_metadata property was set to {'pdf_file_size_bytes': 374696, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 14, '/Author': 'Bundesamt für Sicherheit in der Informationstechnik', '/CreationDate': "D:20170523075943+02'00'", '/Creator': 'Writer', '/Keywords': '"Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Fahrtenschreiber, Digital Tachograph, Tachograph Card, TC"', '/ModDate': "D:20170530144031+02'00'", '/Producer': 'LibreOffice 4.2', '/Subject': 'Digital Tachograph - Tachograph Card', '/Title': 'Certification Report BSI-CC-PP-0091', 'pdf_hyperlinks': {'_type': 'Set', 'elements': ['http://www.commoncriteriaportal.org/', 'https://www.bsi.bund.de/', 'http://www.sogisportal.eu/', 'http://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32016R0799']}}.
    • The pp_metadata property was set to {'pdf_file_size_bytes': 2275024, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 70, '/Title': 'CC PP: Digital Tachograph - Tachograph Card', '/Author': 'Julian Straw, David Bakker, Jacques Kunegel, Luigi Sportiello', '/Keywords': 'Digital, Tachograph, Tachograph, Card', '/Creator': 'Writer', '/Producer': 'LibreOffice 5.2', '/CreationDate': "D:20170531074520+02'00'", 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}.
    • The report_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0091-2017': 7, 'BSI-CC-PP-0091': 2}}, 'cc_security_level': {'EAL': {'EAL 4': 4, 'EAL 2': 1, 'EAL4+': 1, 'EAL 4 augmented': 2}, 'ITSEC': {'ITSEC Evaluation': 1}}, 'cc_sar': {'ALC': {'ALC_FLR': 1}, 'ATE': {'ATE_DPT.2': 2}, 'AVA': {'AVA_VAN.5': 2}, 'APE': {'APE_INT.1': 1, 'APE_CCL.1': 1, 'APE_SPD.1': 1, 'APE_OBJ.2': 1, 'APE_ECD.1': 1, 'APE_REQ.2': 1}}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {}, 'eval_facility': {}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {'BSI': {'BSI 7148': 1}}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'BSI': {'AIS 32': 1}, 'ISO': {'ISO/IEC 15408': 4, 'ISO/IEC 18045': 4, 'ISO/IEC 17065': 2}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'ConfidentialDocument': {'Evaluation Technical Report BSI-CC-PP-0091 Evaluation Assurance Level EAL4+, T-Systems GEI GmbH (confidential document) [7] Protection Profile Digital Tachograph – Tachograph Card (TC PP), BSI-CC-PP-0091, Version 1.0': 1}}}.
    • The pp_keywords property was set to {'cc_cert_id': {}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0070': 1, 'BSI-CC-PP-0091': 1, 'BSI-CC-PP-0084-2014': 1}}, 'cc_security_level': {'EAL': {'EAL4': 15, 'EAL4 augmented': 5}}, 'cc_sar': {'ADV': {'ADV_ARC.1': 2, 'ADV_TDS.3': 2, 'ADV_FSP.4': 1, 'ADV_IMP.1': 1}, 'AGD': {'AGD_PRE': 1, 'AGD_OPE.1': 1, 'AGD_PRE.1': 1}, 'ALC': {'ALC_DEL': 1}, 'ATE': {'ATE_DPT.2': 8, 'ATE_FUN.1': 1, 'ATE_DPT.1': 1}, 'AVA': {'AVA_VAN.5': 8}}, 'cc_sfr': {'FAU': {'FAU_ARP.1': 5, 'FAU_SAA.1': 4, 'FAU_ARP.1.1': 1, 'FAU_GEN.1': 3, 'FAU_SAA.1.1': 1, 'FAU_SAA.1.2': 1, 'FAU_ARP': 1, 'FAU_SAA': 1}, 'FCO': {'FCO_NRO.1': 4, 'FCO_NRO.1.1': 1, 'FCO_NRO.1.2': 1, 'FCO_NRO.1.3': 1, 'FCO_NRO': 1}, 'FCS': {'FCS_RNG': 6, 'FCS_RNG.1': 27, 'FCS_CKM.1': 36, 'FCS_RNG.1.1': 8, 'FCS_RNG.1.2': 8, 'FCS_CKM.2': 13, 'FCS_COP.1': 27, 'FCS_CKM.4': 36, 'FCS_CKM.1.1': 2, 'FCS_CKM.2.1': 2, 'FCS_CKM.4.1': 2, 'FCS_COP.1.1': 6, 'FCS_CKM': 6}, 'FDP': {'FDP_ACC.2': 14, 'FDP_ACF.1': 7, 'FDP_ACC.2.1': 1, 'FDP_ACC.2.2': 1, 'FDP_ACC.1': 8, 'FDP_ACF.1.1': 1, 'FDP_ACF.1.2': 1, 'FDP_ACF.1.3': 1, 'FDP_ACF.1.4': 1, 'FDP_DAU.1': 4, 'FDP_DAU.1.1': 1, 'FDP_DAU.1.2': 1, 'FDP_ETC.1': 3, 'FDP_IFC.1': 8, 'FDP_ETC.1.1': 1, 'FDP_ETC.1.2': 1, 'FDP_ETC.2': 1, 'FDP_ETC.2.1': 1, 'FDP_ETC.2.2': 1, 'FDP_ETC.2.3': 1, 'FDP_ETC.2.4': 1, 'FDP_ITC.1': 29, 'FDP_ITC.1.1': 1, 'FDP_ITC.1.2': 1, 'FDP_ITC.1.3': 1, 'FDP_ITC.2': 32, 'FDP_ITC.2.1': 1, 'FDP_ITC.2.2': 1, 'FDP_ITC.2.3': 1, 'FDP_ITC.2.4': 1, 'FDP_ITC.2.5': 1, 'FDP_RIP.1': 5, 'FDP_RIP.1.1': 1, 'FDP_SDI.2': 5, 'FDP_SDI.2.1': 1, 'FDP_SDI.2.2': 1, 'FDP_ACC': 1, 'FDP_DAU': 1, 'FDP_ETC': 2}, 'FIA': {'FIA_SOS.2': 1, 'FIA_UID.1': 7, 'FIA_AFL.1': 8, 'FIA_UAU.1': 11, 'FIA_AFL.1.1': 2, 'FIA_AFL.1.2': 2, 'FIA_ATD.1': 6, 'FIA_ATD.1.1': 1, 'FIA_UAU.3': 4, 'FIA_UAU.3.1': 1, 'FIA_UAU.3.2': 1, 'FIA_UAU.4': 2, 'FIA_UAU.4.1': 1, 'FIA_UID.2': 7, 'FIA_UID.2.1': 1, 'FIA_USB.1': 3, 'FIA_USB.1.1': 1, 'FIA_USB.1.2': 1, 'FIA_USB.1.3': 1, 'FIA_UAU.1.1': 3, 'FIA_UAU.1.2': 2, 'FIA_UAU': 4}, 'FMT': {'FMT_MSA.3': 5}, 'FPR': {'FPR_UNO.1': 5, 'FPR_UNO': 1}, 'FPT': {'FPT_EMS': 8, 'FPT_EMS.1': 7, 'FPT_EMS.1.1': 3, 'FPT_EMS.1.2': 3, 'FPT_ITC.1': 1, 'FPT_TDC.1': 8, 'FPT_FLS.1': 6, 'FPT_FLS.1.1': 1, 'FPT_PHP.3': 8, 'FPT_PHP.3.1': 1, 'FPT_TST.1': 6, 'FPT_TST.1.1': 1, 'FPT_TST.1.2': 1, 'FPT_TST.1.3': 1, 'FPT_TDC.1.1': 2, 'FPT_TDC.1.2': 2, 'FPT_TDC': 2}, 'FTP': {'FTP_TRP.1': 2, 'FTP_ITC.1': 9, 'FTP_ITC.1.1': 2, 'FTP_ITC.1.2': 2, 'FTP_ITC.1.3': 2}}, 'cc_claims': {'OE': {'OE.EOL': 4}}, 'vendor': {}, 'eval_facility': {}, 'symmetric_crypto': {'AES_competition': {'AES': {'AES': 9}}, 'DES': {'DES': {'DES': 3}, '3DES': {'TDES': 2}}, 'constructions': {'MAC': {'KMAC': 1}}}, 'asymmetric_crypto': {'ECC': {'ECDSA': {'ECDSA': 1}, 'ECC': {'ECC': 10}}}, 'pq_crypto': {}, 'hash_function': {'SHA': {'SHA1': {'SHA-1': 2}, 'SHA2': {'SHA-256': 2, 'SHA-384': 2, 'SHA-512': 2, 'SHA-2': 1}}}, 'crypto_scheme': {'MAC': {'MAC': 2}}, 'crypto_protocol': {}, 'randomness': {'RNG': {'RNG': 37}}, 'cipher_mode': {'CBC': {'CBC': 1}}, 'ecc_curve': {'NIST': {'P-256': 1, 'P-384': 1, 'P-521': 1, 'NIST P-256': 1, 'NIST P-384': 1, 'NIST P-521': 1, 'secp256r1': 1, 'secp384r1': 1, 'secp521r1': 1}, 'Brainpool': {'brainpoolP256r1': 1, 'brainpoolP384r1': 1, 'brainpoolP512r1': 1}}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {'SCA': {'physical probing': 6, 'SPA': 1, 'DPA': 1, 'timing attacks': 1}, 'FI': {'malfunction': 1}}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'FIPS': {'FIPS PUB 46-3': 2}, 'ISO': {'ISO/IEC 7810': 2, 'ISO/IEC 7816': 2, 'ISO/IEC 10373': 2}, 'CC': {'CCMB-2012-09-001': 2, 'CCMB-2012-09-002': 2, 'CCMB-2012-09-003': 2, 'CCMB-2012-09-004': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'OutOfScope': {'Out of scope': 11, '18. RSA Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory VU.PK (conditional, possibly multiple) VU': 1, 'Generated by VU or VU manufacturer; obtained by card in VU certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MS.PK (conditional, possibly multiple) Public': 1, 'foreign) MSCA; obtained by card in MS certificate presented by a VU during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 16 - First-generation asymmetric keys': 1, 'by ERCA; inserted in card by card manufacturer. Note: See [5] Annex 1C, Appendix 11, CSM_105. Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Table': 1, '21. ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory EUR.PK (previous) (conditional; only present': 1, 'EUR.C ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory Page 61 of 70 Common Criteria Protection': 1, 'EUR.C as part of the EUR.Link.C; obtained by card during mutual authentication towards such a VU. Out of scope for this PP Not applicable Card non- volatile memory VU_MA.PK (conditional, possibly multiple) VU': 1, 'by VU or VU manufacturer; obtained by card in VU_MA certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MSCA_VU- EGF.PK (conditional, possibly': 1, '21 ECC Generated by MSCA ; obtained by card in MSCA_VU-EGF certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 19 – Second-generation asymmetric keys': 1, 'explained in [5] Annex 1C, Appendix 11, section 12.2, a workshop card may contain up to three keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Page': 1, 'DSRC channel AES Generated by ERCA Note: Workshop and control cards may contain up to 3 KMDSRC keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory': 1}}}.

    The state of the protection profile object was updated.

    • The pp property was updated, with the {'convert_garbage': False, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '86dc800f40977e7f964c5e4d1374455ea2ca16f197745548753470403db25e5b', 'txt_hash': 'fdc3437b1679e48fea84c217eecbfe46c5c317e82c068a93d1ee11317c6d8991'} data.
    • The report property was updated, with the {'convert_garbage': False, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': 'dc079d754245088f21071df47d5852c98b0fe2b156d3b08811174025e3aeb22a', 'txt_hash': '48c8ed1ad0d9270c62982e58e1346dd4b8b318f2a164ee8f151c337db12933ca'} data.
  • 14.04.2025 The protection profile data changed.
    Protection Profile changed

    The PDF extraction data was updated.

    • The report_metadata property was set to None.
    • The pp_metadata property was set to None.
    • The report_keywords property was set to None.
    • The pp_keywords property was set to None.

    The state of the protection profile object was updated.

    • The pp property was updated, with the {'convert_garbage': True, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': '6adef86c67e4bbbcbc8872bedf10c93c33839884a5cb1ca1d36f080444041ca7', 'txt_hash': None} data.
    • The report property was updated, with the {'convert_garbage': True, 'convert_ok': False, 'extract_ok': False, 'pdf_hash': '6adef86c67e4bbbcbc8872bedf10c93c33839884a5cb1ca1d36f080444041ca7', 'txt_hash': None} data.
  • 04.02.2025 The protection profile was first processed.
    New Protection Profile

    A new Protection Profile with the name Digital Tachograph - Tachograph Card was processed.

Raw data

{
  "_id": "d9ddf0d150631fef",
  "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
  "dgst": "d9ddf0d150631fef",
  "heuristics": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
  },
  "pdf_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
    "pp_filename": "pp0091b_pdf.pdf",
    "pp_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 10
          },
          "ECDSA": {
            "ECDSA": 1
          }
        }
      },
      "cc_cert_id": {},
      "cc_claims": {
        "OE": {
          "OE.EOL": 4
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0070": 1,
          "BSI-CC-PP-0084-2014": 1,
          "BSI-CC-PP-0091": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 2,
          "ADV_FSP.4": 1,
          "ADV_IMP.1": 1,
          "ADV_TDS.3": 2
        },
        "AGD": {
          "AGD_OPE.1": 1,
          "AGD_PRE": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_DEL": 1
        },
        "ATE": {
          "ATE_DPT.1": 1,
          "ATE_DPT.2": 8,
          "ATE_FUN.1": 1
        },
        "AVA": {
          "AVA_VAN.5": 8
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL4": 15,
          "EAL4 augmented": 5
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP": 1,
          "FAU_ARP.1": 5,
          "FAU_ARP.1.1": 1,
          "FAU_GEN.1": 3,
          "FAU_SAA": 1,
          "FAU_SAA.1": 4,
          "FAU_SAA.1.1": 1,
          "FAU_SAA.1.2": 1
        },
        "FCO": {
          "FCO_NRO": 1,
          "FCO_NRO.1": 4,
          "FCO_NRO.1.1": 1,
          "FCO_NRO.1.2": 1,
          "FCO_NRO.1.3": 1
        },
        "FCS": {
          "FCS_CKM": 6,
          "FCS_CKM.1": 36,
          "FCS_CKM.1.1": 2,
          "FCS_CKM.2": 13,
          "FCS_CKM.2.1": 2,
          "FCS_CKM.4": 36,
          "FCS_CKM.4.1": 2,
          "FCS_COP.1": 27,
          "FCS_COP.1.1": 6,
          "FCS_RNG": 6,
          "FCS_RNG.1": 27,
          "FCS_RNG.1.1": 8,
          "FCS_RNG.1.2": 8
        },
        "FDP": {
          "FDP_ACC": 1,
          "FDP_ACC.1": 8,
          "FDP_ACC.2": 14,
          "FDP_ACC.2.1": 1,
          "FDP_ACC.2.2": 1,
          "FDP_ACF.1": 7,
          "FDP_ACF.1.1": 1,
          "FDP_ACF.1.2": 1,
          "FDP_ACF.1.3": 1,
          "FDP_ACF.1.4": 1,
          "FDP_DAU": 1,
          "FDP_DAU.1": 4,
          "FDP_DAU.1.1": 1,
          "FDP_DAU.1.2": 1,
          "FDP_ETC": 2,
          "FDP_ETC.1": 3,
          "FDP_ETC.1.1": 1,
          "FDP_ETC.1.2": 1,
          "FDP_ETC.2": 1,
          "FDP_ETC.2.1": 1,
          "FDP_ETC.2.2": 1,
          "FDP_ETC.2.3": 1,
          "FDP_ETC.2.4": 1,
          "FDP_IFC.1": 8,
          "FDP_ITC.1": 29,
          "FDP_ITC.1.1": 1,
          "FDP_ITC.1.2": 1,
          "FDP_ITC.1.3": 1,
          "FDP_ITC.2": 32,
          "FDP_ITC.2.1": 1,
          "FDP_ITC.2.2": 1,
          "FDP_ITC.2.3": 1,
          "FDP_ITC.2.4": 1,
          "FDP_ITC.2.5": 1,
          "FDP_RIP.1": 5,
          "FDP_RIP.1.1": 1,
          "FDP_SDI.2": 5,
          "FDP_SDI.2.1": 1,
          "FDP_SDI.2.2": 1
        },
        "FIA": {
          "FIA_AFL.1": 8,
          "FIA_AFL.1.1": 2,
          "FIA_AFL.1.2": 2,
          "FIA_ATD.1": 6,
          "FIA_ATD.1.1": 1,
          "FIA_SOS.2": 1,
          "FIA_UAU": 4,
          "FIA_UAU.1": 11,
          "FIA_UAU.1.1": 3,
          "FIA_UAU.1.2": 2,
          "FIA_UAU.3": 4,
          "FIA_UAU.3.1": 1,
          "FIA_UAU.3.2": 1,
          "FIA_UAU.4": 2,
          "FIA_UAU.4.1": 1,
          "FIA_UID.1": 7,
          "FIA_UID.2": 7,
          "FIA_UID.2.1": 1,
          "FIA_USB.1": 3,
          "FIA_USB.1.1": 1,
          "FIA_USB.1.2": 1,
          "FIA_USB.1.3": 1
        },
        "FMT": {
          "FMT_MSA.3": 5
        },
        "FPR": {
          "FPR_UNO": 1,
          "FPR_UNO.1": 5
        },
        "FPT": {
          "FPT_EMS": 8,
          "FPT_EMS.1": 7,
          "FPT_EMS.1.1": 3,
          "FPT_EMS.1.2": 3,
          "FPT_FLS.1": 6,
          "FPT_FLS.1.1": 1,
          "FPT_ITC.1": 1,
          "FPT_PHP.3": 8,
          "FPT_PHP.3.1": 1,
          "FPT_TDC": 2,
          "FPT_TDC.1": 8,
          "FPT_TDC.1.1": 2,
          "FPT_TDC.1.2": 2,
          "FPT_TST.1": 6,
          "FPT_TST.1.1": 1,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 1
        },
        "FTP": {
          "FTP_ITC.1": 9,
          "FTP_ITC.1.1": 2,
          "FTP_ITC.1.2": 2,
          "FTP_ITC.1.3": 2,
          "FTP_TRP.1": 2
        }
      },
      "certification_process": {
        "OutOfScope": {
          "18. RSA Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory VU.PK (conditional, possibly multiple) VU": 1,
          "21 ECC Generated by MSCA ; obtained by card in MSCA_VU-EGF certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 19 \u2013 Second-generation asymmetric keys": 1,
          "21. ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory EUR.PK (previous) (conditional; only present": 1,
          "DSRC channel AES Generated by ERCA Note: Workshop and control cards may contain up to 3 KMDSRC keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory": 1,
          "EUR.C ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory Page 61 of 70 Common Criteria Protection": 1,
          "EUR.C as part of the EUR.Link.C; obtained by card during mutual authentication towards such a VU. Out of scope for this PP Not applicable Card non- volatile memory VU_MA.PK (conditional, possibly multiple) VU": 1,
          "Generated by VU or VU manufacturer; obtained by card in VU certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MS.PK (conditional, possibly multiple) Public": 1,
          "Out of scope": 11,
          "by ERCA; inserted in card by card manufacturer. Note: See [5] Annex 1C, Appendix 11, CSM_105. Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Table": 1,
          "by VU or VU manufacturer; obtained by card in VU_MA certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory MSCA_VU- EGF.PK (conditional, possibly": 1,
          "explained in [5] Annex 1C, Appendix 11, section 12.2, a workshop card may contain up to three keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory Page": 1,
          "foreign) MSCA; obtained by card in MS certificate presented by a VU during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory Table 16 - First-generation asymmetric keys": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {
        "MAC": {
          "MAC": 2
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 1,
          "brainpoolP384r1": 1,
          "brainpoolP512r1": 1
        },
        "NIST": {
          "NIST P-256": 1,
          "NIST P-384": 1,
          "NIST P-521": 1,
          "P-256": 1,
          "P-384": 1,
          "P-521": 1,
          "secp256r1": 1,
          "secp384r1": 1,
          "secp521r1": 1
        }
      },
      "eval_facility": {},
      "hash_function": {
        "SHA": {
          "SHA1": {
            "SHA-1": 2
          },
          "SHA2": {
            "SHA-2": 1,
            "SHA-256": 2,
            "SHA-384": 2,
            "SHA-512": 2
          }
        }
      },
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 37
        }
      },
      "side_channel_analysis": {
        "FI": {
          "malfunction": 1
        },
        "SCA": {
          "DPA": 1,
          "SPA": 1,
          "physical probing": 6,
          "timing attacks": 1
        }
      },
      "standard_id": {
        "CC": {
          "CCMB-2012-09-001": 2,
          "CCMB-2012-09-002": 2,
          "CCMB-2012-09-003": 2,
          "CCMB-2012-09-004": 1
        },
        "FIPS": {
          "FIPS PUB 46-3": 2
        },
        "ISO": {
          "ISO/IEC 10373": 2,
          "ISO/IEC 7810": 2,
          "ISO/IEC 7816": 2
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 9
          }
        },
        "DES": {
          "3DES": {
            "TDES": 2
          },
          "DES": {
            "DES": 3
          }
        },
        "constructions": {
          "MAC": {
            "KMAC": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "pp_metadata": {
      "/Author": "Julian Straw, David Bakker, Jacques Kunegel, Luigi Sportiello",
      "/CreationDate": "D:20170531074520+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "Digital, Tachograph, Tachograph, Card",
      "/Producer": "LibreOffice 5.2",
      "/Title": "CC PP: Digital Tachograph - Tachograph Card",
      "pdf_file_size_bytes": 2275024,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": []
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 70
    },
    "report_filename": "pp0091a_pdf.pdf",
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0091": 2,
          "BSI-CC-PP-0091-2017": 7
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_FLR": 1
        },
        "APE": {
          "APE_CCL.1": 1,
          "APE_ECD.1": 1,
          "APE_INT.1": 1,
          "APE_OBJ.2": 1,
          "APE_REQ.2": 1,
          "APE_SPD.1": 1
        },
        "ATE": {
          "ATE_DPT.2": 2
        },
        "AVA": {
          "AVA_VAN.5": 2
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 1,
          "EAL 4": 4,
          "EAL 4 augmented": 2,
          "EAL4+": 1
        },
        "ITSEC": {
          "ITSEC Evaluation": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "Evaluation Technical Report BSI-CC-PP-0091 Evaluation Assurance Level EAL4+, T-Systems GEI GmbH (confidential document) [7] Protection Profile Digital Tachograph \u2013 Tachograph Card (TC PP), BSI-CC-PP-0091, Version 1.0": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 32": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI 7148": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20170523075943+02\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Fahrtenschreiber, Digital Tachograph, Tachograph Card, TC\"",
      "/ModDate": "D:20170530144031+02\u002700\u0027",
      "/Producer": "LibreOffice 4.2",
      "/Subject": "Digital Tachograph - Tachograph Card",
      "/Title": "Certification Report BSI-CC-PP-0091",
      "pdf_file_size_bytes": 374696,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.sogisportal.eu/",
          "http://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/",
          "http://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32016R0799"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 14
    }
  },
  "state": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
    "pp": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "86dc800f40977e7f964c5e4d1374455ea2ca16f197745548753470403db25e5b",
      "txt_hash": "fdc3437b1679e48fea84c217eecbfe46c5c317e82c068a93d1ee11317c6d8991"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "dc079d754245088f21071df47d5852c98b0fe2b156d3b08811174025e3aeb22a",
      "txt_hash": "48c8ed1ad0d9270c62982e58e1346dd4b8b318f2a164ee8f151c337db12933ca"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
    "category": "Other Devices and Systems",
    "is_collaborative": false,
    "maintenances": [],
    "name": "Digital Tachograph - Tachograph Card",
    "not_valid_after": null,
    "not_valid_before": "2017-05-19",
    "pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0091b_pdf.pdf",
    "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0091a_pdf.pdf",
    "scheme": "DE",
    "security_level": {
      "_type": "Set",
      "elements": [
        "AVA_VAN.5",
        "ATE_DPT.2",
        "EAL4+"
      ]
    },
    "status": "active",
    "version": "Version 1.0"
  }
}