This page was not yet optimized for use on mobile devices.
Digital Tachograph - Tachograph Card
Profile details
| Status | active |
|---|---|
| Valid from | 19.05.2017 |
| Valid until | N/A |
| Scheme | π©πͺ DE |
| Category | Other Devices and Systems |
| Security level | EAL4+, AVA_VAN.5, ATE_DPT.2 |
Certification report
Extracted keywords
Security level
EAL 4, EAL 2, EAL4+, EAL 4 augmented, ITSEC EvaluationSecurity Assurance Requirements (SAR)
ALC_FLR, ATE_DPT.2, AVA_VAN.5, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.2, APE_ECD.1, APE_REQ.2Protection profiles
BSI-CC-PP-0091-2017, BSI-CC-PP-0091Certification process
Evaluation Technical Report BSI-CC-PP-0091 Evaluation Assurance Level EAL4+, T-Systems GEI GmbH (confidential documentTechnical reports
BSI 7148Protection profile
Extracted keywords
Symmetric Algorithms
AES, DES, TDESAsymmetric Algorithms
ECDSA, ECCHash functions
SHA-1, SHA-256, SHA-384, SHA-512, SHA-2Schemes
MACRandomness
RNGElliptic Curves
P-256, P-384, P-521, NIST P-256, NIST P-384, NIST P-521, secp256r1, secp384r1, secp521r1, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1Block cipher modes
CBCSecurity level
EAL4, EAL4 augmentedClaims
OE.EOLSecurity Assurance Requirements (SAR)
ADV_ARC.1, ADV_TDS.3, ADV_FSP.4, ADV_IMP.1, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_DEL, ATE_DPT.2, ATE_FUN.1, ATE_DPT.1, AVA_VAN.5Security Functional Requirements (SFR)
FAU_ARP.1, FAU_SAA.1, FAU_ARP.1.1, FAU_GEN.1, FAU_SAA.1.1, FAU_SAA.1.2, FAU_ARP, FAU_SAA, FCO_NRO.1, FCO_NRO.1.1, FCO_NRO.1.2, FCO_NRO.1.3, FCO_NRO, FCS_RNG, FCS_RNG.1, FCS_CKM.1, FCS_RNG.1.1, FCS_RNG.1.2, FCS_CKM.2, FCS_COP.1, FCS_CKM.4, FCS_CKM.1.1, FCS_CKM.2.1, FCS_CKM.4.1, FCS_COP.1.1, FCS_CKM, FDP_ACC.2, FDP_ACF.1, FDP_ACC.2.1, FDP_ACC.2.2, FDP_ACF.1.1, FDP_ACC.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_DAU.1, FDP_DAU.1.1, FDP_DAU.1.2, FDP_ETC.1, FDP_ETC.1.1, FDP_ETC.1.2, FDP_IFC.1, FDP_ETC.2, FDP_ETC.2.1, FDP_ETC.2.2, FDP_ETC.2.3, FDP_ETC.2.4, FDP_ITC.1, FDP_ITC.1.1, FDP_ITC.1.2, FDP_ITC.1.3, FDP_ITC.2, FDP_ITC.2.1, FDP_ITC.2.2, FDP_ITC.2.3, FDP_ITC.2.4, FDP_ITC.2.5, FDP_RIP.1, FDP_RIP.1.1, FDP_SDI.2, FDP_SDI.2.1, FDP_SDI.2.2, FDP_ACC, FDP_DAU, FDP_ETC, FIA_SOS.2, FIA_UID.1, FIA_AFL.1, FIA_UAU.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_ATD.1, FIA_ATD.1.1, FIA_UAU.3, FIA_UAU.3.1, FIA_UAU.3.2, FIA_UAU.4, FIA_UAU.4.1, FIA_UID.2, FIA_UID.2.1, FIA_USB.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU, FMT_MSA.3, FPR_UNO.1, FPR_UNO, FPT_EMS, FPT_EMS.1, FPT_EMS.1.1, FPT_EMS.1.2, FPT_ITC.1, FPT_TDC.1, FPT_FLS.1, FPT_FLS.1.1, FPT_PHP.3, FPT_PHP.3.1, FPT_TST.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_TDC.1.1, FPT_TDC.1.2, FPT_TDC, FTP_TRP.1, FTP_ITC.1, FTP_ITC.1.1, FTP_ITC.1.2, FTP_ITC.1.3Protection profiles
BSI-CC-PP-0070, BSI-CC-PP-0091, BSI-CC-PP-0084-2014Side-channel analysis
physical probing, SPA, DPA, timing attacks, malfunctionCertification process
Out of scope, 18. RSA Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory, Generated by VU or VU manufacturer; obtained by card in VU certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory, foreign) MSCA; obtained by card in MS certificate presented by a VU during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory, by ERCA; inserted in card by card manufacturer. Note: See [5] Annex 1C, Appendix 11, CSM_105. Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory, 21. ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory, EUR.C ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory, EUR.C as part of the EUR.Link.C; obtained by card during mutual authentication towards such a VU. Out of scope for this PP Not applicable Card non- volatile memory, by VU or VU manufacturer; obtained by card in VU_MA certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory, 21 ECC Generated by MSCA ; obtained by card in MSCA_VU-EGF certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory, explained in [5] Annex 1C, Appendix 11, section 12.2, a workshop card may contain up to three keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory, channel AES Generated by ERCA Note: Workshop and control cards may contain up to 3 KM DSRC keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memoryStandards
FIPS PUB 46-3, ISO/IEC 7810, ISO/IEC 7816, ISO/IEC 10373, CCMB-2012-09-001, CCMB-2012-09-002, CCMB-2012-09-003, CCMB-2012-09-004References
Automated inference - use with caution
All attributes shown in this section (e.g., links between certificates, products, vendors, and known CVEs) are generated by automated heuristics and have not been reviewed by humans. These methods can produce false positives or false negatives and should not be treated as definitive without independent verification. If you want to know more about how this data is computed and how reliable it is, see our documentation on automated analysis. If you believe any information here is inaccurate or harmful, please submit feedback.- Idemia IDeal Drive DT V3.0 (Applet code version 416304) archived
- Idemia IDeal Drive DT V3.1 on Cosmo V9.1 active
- J-TACHOG2V2 v1.0.2 on ST31P450 C02 active
- MTCOS Smart Tachograph V2 / SLE78CFX4000P active
- STMicroelectronics J-TACHOG2V2 v.1.0.2 active
- STMicroelectronics J-Tacho v.1.3.1 archived
- Smart Tachograph G2 on MultiApp V4.0.1 (Versions 2.0.1 G et 2.0.1 H) (EUCC-ANSSI-2025-03-02) active
- TachoDrive v4 on ID-One Cosmo X (Code SAAAAR : 41 63 06 active
- TachoDrive v4 on ID-One Cosmo X Code SAAAAR : 41 63 06 archived
- TachoDrive v4 on ID-One Cosmo X Code SAAAAR : 41 63 06 active
- Tachograph G1, G2V1, G2V2 on IFX_CCI_000039h version 2.2.1.M active
- Tachograph G1, G2V1, G2V2 on IFX_CCI_000039h(version 2.2.1.N) active
- Tachograph G1, G2V1, G2V2 on IFX_CCI_000039h(version 2.2.1.N) (ANSSI-CC-2022/38-R01) active
-
The protection profile data changed.
-
The protection profile data changed.
-
The protection profile data changed.
-
The protection profile data changed.
-
The protection profile data changed.
-
The protection profile was first processed.
{
"_id": "d9ddf0d150631fef",
"_type": "sec_certs.sample.protection_profile.ProtectionProfile",
"dgst": "d9ddf0d150631fef",
"heuristics": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
},
"pdf_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
"pp_filename": "pp0091b_pdf.pdf",
"pp_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 10
},
"ECDSA": {
"ECDSA": 1
}
}
},
"cc_cert_id": {},
"cc_claims": {
"OE": {
"OE.EOL": 4
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0070": 1,
"BSI-CC-PP-0084-2014": 1,
"BSI-CC-PP-0091": 1
}
},
"cc_sar": {
"ADV": {
"ADV_ARC.1": 2,
"ADV_FSP.4": 1,
"ADV_IMP.1": 1,
"ADV_TDS.3": 2
},
"AGD": {
"AGD_OPE.1": 1,
"AGD_PRE": 1,
"AGD_PRE.1": 1
},
"ALC": {
"ALC_DEL": 1
},
"ATE": {
"ATE_DPT.1": 1,
"ATE_DPT.2": 10,
"ATE_FUN.1": 1
},
"AVA": {
"AVA_VAN.5": 14
}
},
"cc_security_level": {
"EAL": {
"EAL4": 16,
"EAL4 augmented": 5
}
},
"cc_sfr": {
"FAU": {
"FAU_ARP": 1,
"FAU_ARP.1": 5,
"FAU_ARP.1.1": 1,
"FAU_GEN.1": 2,
"FAU_SAA": 1,
"FAU_SAA.1": 5,
"FAU_SAA.1.1": 1,
"FAU_SAA.1.2": 1
},
"FCO": {
"FCO_NRO": 1,
"FCO_NRO.1": 4,
"FCO_NRO.1.1": 1,
"FCO_NRO.1.2": 1,
"FCO_NRO.1.3": 1
},
"FCS": {
"FCS_CKM": 6,
"FCS_CKM.1": 37,
"FCS_CKM.1.1": 2,
"FCS_CKM.2": 13,
"FCS_CKM.2.1": 2,
"FCS_CKM.4": 36,
"FCS_CKM.4.1": 2,
"FCS_COP.1": 27,
"FCS_COP.1.1": 6,
"FCS_RNG": 6,
"FCS_RNG.1": 28,
"FCS_RNG.1.1": 8,
"FCS_RNG.1.2": 8
},
"FDP": {
"FDP_ACC": 1,
"FDP_ACC.1": 5,
"FDP_ACC.2": 14,
"FDP_ACC.2.1": 1,
"FDP_ACC.2.2": 1,
"FDP_ACF.1": 8,
"FDP_ACF.1.1": 1,
"FDP_ACF.1.2": 1,
"FDP_ACF.1.3": 1,
"FDP_ACF.1.4": 1,
"FDP_DAU": 1,
"FDP_DAU.1": 4,
"FDP_DAU.1.1": 1,
"FDP_DAU.1.2": 1,
"FDP_ETC": 2,
"FDP_ETC.1": 3,
"FDP_ETC.1.1": 1,
"FDP_ETC.1.2": 1,
"FDP_ETC.2": 2,
"FDP_ETC.2.1": 1,
"FDP_ETC.2.2": 1,
"FDP_ETC.2.3": 1,
"FDP_ETC.2.4": 1,
"FDP_IFC.1": 8,
"FDP_ITC.1": 30,
"FDP_ITC.1.1": 1,
"FDP_ITC.1.2": 1,
"FDP_ITC.1.3": 1,
"FDP_ITC.2": 32,
"FDP_ITC.2.1": 1,
"FDP_ITC.2.2": 1,
"FDP_ITC.2.3": 1,
"FDP_ITC.2.4": 1,
"FDP_ITC.2.5": 1,
"FDP_RIP.1": 5,
"FDP_RIP.1.1": 1,
"FDP_SDI.2": 5,
"FDP_SDI.2.1": 1,
"FDP_SDI.2.2": 1
},
"FIA": {
"FIA_AFL.1": 8,
"FIA_AFL.1.1": 2,
"FIA_AFL.1.2": 2,
"FIA_ATD.1": 6,
"FIA_ATD.1.1": 1,
"FIA_SOS.2": 1,
"FIA_UAU": 4,
"FIA_UAU.1": 11,
"FIA_UAU.1.1": 4,
"FIA_UAU.1.2": 2,
"FIA_UAU.3": 4,
"FIA_UAU.3.1": 1,
"FIA_UAU.3.2": 1,
"FIA_UAU.4": 2,
"FIA_UAU.4.1": 1,
"FIA_UID.1": 7,
"FIA_UID.2": 7,
"FIA_UID.2.1": 1,
"FIA_USB.1": 3,
"FIA_USB.1.1": 1,
"FIA_USB.1.2": 1,
"FIA_USB.1.3": 1
},
"FMT": {
"FMT_MSA.3": 5
},
"FPR": {
"FPR_UNO": 1,
"FPR_UNO.1": 5
},
"FPT": {
"FPT_EMS": 7,
"FPT_EMS.1": 8,
"FPT_EMS.1.1": 3,
"FPT_EMS.1.2": 3,
"FPT_FLS.1": 6,
"FPT_FLS.1.1": 1,
"FPT_ITC.1": 1,
"FPT_PHP.3": 8,
"FPT_PHP.3.1": 1,
"FPT_TDC": 2,
"FPT_TDC.1": 8,
"FPT_TDC.1.1": 2,
"FPT_TDC.1.2": 2,
"FPT_TST.1": 6,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1
},
"FTP": {
"FTP_ITC.1": 9,
"FTP_ITC.1.1": 2,
"FTP_ITC.1.2": 2,
"FTP_ITC.1.3": 2,
"FTP_TRP.1": 2
}
},
"certification_process": {
"OutOfScope": {
"18. RSA Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory": 1,
"21 ECC Generated by MSCA ; obtained by card in MSCA_VU-EGF certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory": 1,
"21. ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory": 1,
"EUR.C ECC Generated by ERCA; inserted in card by manufacturer at the end of the manufacturing phase Out of scope for this PP Not applicable Card non- volatile memory": 1,
"EUR.C as part of the EUR.Link.C; obtained by card during mutual authentication towards such a VU. Out of scope for this PP Not applicable Card non- volatile memory": 1,
"Generated by VU or VU manufacturer; obtained by card in VU certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory": 1,
"Out of scope": 11,
"by ERCA; inserted in card by card manufacturer. Note: See [5] Annex 1C, Appendix 11, CSM_105. Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory": 1,
"by VU or VU manufacturer; obtained by card in VU_MA certificate during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory": 1,
"channel AES Generated by ERCA Note: Workshop and control cards may contain up to 3 KM DSRC keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory": 1,
"explained in [5] Annex 1C, Appendix 11, section 12.2, a workshop card may contain up to three keys Out of scope for this PP Made unavailable when the card has reached end of life Card non- volatile memory": 1,
"foreign) MSCA; obtained by card in MS certificate presented by a VU during mutual authentication Out of scope for this PP Not applicable Card non- volatile memory": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 1
}
},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {
"MAC": {
"MAC": 3
}
},
"device_model": {},
"ecc_curve": {
"Brainpool": {
"brainpoolP256r1": 1,
"brainpoolP384r1": 1,
"brainpoolP512r1": 1
},
"NIST": {
"NIST P-256": 1,
"NIST P-384": 1,
"NIST P-521": 1,
"P-256": 1,
"P-384": 1,
"P-521": 1,
"secp256r1": 1,
"secp384r1": 1,
"secp521r1": 1
}
},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 2
},
"SHA2": {
"SHA-2": 1,
"SHA-256": 2,
"SHA-384": 2,
"SHA-512": 2
}
}
},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {
"RNG": {
"RNG": 37
}
},
"side_channel_analysis": {
"FI": {
"malfunction": 1
},
"SCA": {
"DPA": 1,
"SPA": 1,
"physical probing": 6,
"timing attacks": 1
}
},
"standard_id": {
"CC": {
"CCMB-2012-09-001": 2,
"CCMB-2012-09-002": 2,
"CCMB-2012-09-003": 2,
"CCMB-2012-09-004": 1
},
"FIPS": {
"FIPS PUB 46-3": 2
},
"ISO": {
"ISO/IEC 10373": 2,
"ISO/IEC 7810": 2,
"ISO/IEC 7816": 2
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 9
}
},
"DES": {
"3DES": {
"TDES": 2
},
"DES": {
"DES": 3
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"pp_metadata": {
"/Author": "Julian Straw, David Bakker, Jacques Kunegel, Luigi Sportiello",
"/CreationDate": "D:20170531074520+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "Digital, Tachograph, Tachograph, Card",
"/Producer": "LibreOffice 5.2",
"/Title": "CC PP: Digital Tachograph - Tachograph Card",
"pdf_file_size_bytes": 2275024,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 70
},
"report_filename": "pp0091a_pdf.pdf",
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0091": 2,
"BSI-CC-PP-0091-2017": 13
}
},
"cc_sar": {
"ALC": {
"ALC_FLR": 1
},
"APE": {
"APE_CCL.1": 1,
"APE_ECD.1": 1,
"APE_INT.1": 1,
"APE_OBJ.2": 1,
"APE_REQ.2": 1,
"APE_SPD.1": 1
},
"ATE": {
"ATE_DPT.2": 2
},
"AVA": {
"AVA_VAN.5": 2
}
},
"cc_security_level": {
"EAL": {
"EAL 2": 1,
"EAL 4": 4,
"EAL 4 augmented": 2,
"EAL4+": 1
},
"ITSEC": {
"ITSEC Evaluation": 1
}
},
"cc_sfr": {},
"certification_process": {
"ConfidentialDocument": {
"Evaluation Technical Report BSI-CC-PP-0091 Evaluation Assurance Level EAL4+, T-Systems GEI GmbH (confidential document": 1
}
},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"BSI": {
"AIS 32": 1
},
"ISO": {
"ISO/IEC 15408": 4,
"ISO/IEC 17065": 2,
"ISO/IEC 18045": 4
}
},
"symmetric_crypto": {},
"technical_report_id": {
"BSI": {
"BSI 7148": 1
}
},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"report_metadata": {
"/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
"/CreationDate": "D:20170523075943+02\u002700\u0027",
"/Creator": "Writer",
"/Keywords": "\"Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Fahrtenschreiber, Digital Tachograph, Tachograph Card, TC\"",
"/ModDate": "D:20170530144031+02\u002700\u0027",
"/Producer": "LibreOffice 4.2",
"/Subject": "Digital Tachograph - Tachograph Card",
"/Title": "Certification Report BSI-CC-PP-0091",
"pdf_file_size_bytes": 374696,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.commoncriteriaportal.org/",
"http://www.sogisportal.eu/",
"https://www.bsi.bund.de/",
"http://eur-lex.europa.eu/legal-content/EN/TXT/?uri=CELEX%3A32016R0799"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 14
}
},
"scheme_metadata": null,
"state": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
"pp": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": "4ed19671deb408847eac5a0d3848c97d98595ac1d5b02675992af004556b27b5",
"source_hash": "86dc800f40977e7f964c5e4d1374455ea2ca16f197745548753470403db25e5b",
"txt_hash": "407878637d824db9f81753d667edf3b7b138effbbe4154e3e6b60d071c504b1b"
},
"report": {
"_type": "sec_certs.sample.document_state.DocumentState",
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"json_hash": "bd2035a6251bb95445c78c9de05bc02603c729d4dc776470379d85bc49db1920",
"source_hash": "dc079d754245088f21071df47d5852c98b0fe2b156d3b08811174025e3aeb22a",
"txt_hash": "0918432b19400765e764181d154ce9a19c3861bc7e40e2354324be631fda8ed7"
}
},
"web_data": {
"_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
"category": "Other Devices and Systems",
"is_collaborative": false,
"maintenances": [],
"name": "Digital Tachograph - Tachograph Card",
"not_valid_after": null,
"not_valid_before": "2017-05-19",
"pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0091b_pdf.pdf",
"report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0091a_pdf.pdf",
"scheme": "DE",
"security_level": {
"_type": "Set",
"elements": [
"ATE_DPT.2",
"AVA_VAN.5",
"EAL4+"
]
},
"status": "active",
"version": "Version 1.0"
}
}