Security Module Application for Electronic Record-keeping Systems (SMAERS)

Web information

Status: active
Certification date: 2025-03-27
Scheme: 🇩🇪
Category: Other Devices and Systems
Security level: ALC_LCD.1, ALC_CMC.3, EAL2+, ALC_FLR.1

Certification report

Extracted keywords

Trusted Execution Environments
SE

Security level
EAL 2, EAL 4, EAL 2 augmented
Security Assurance Requirements (SAR)
ALC_LCD.1, ALC_FLR.1, ALC_CMS.3, ALC_FLR, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.2, APE_ECD.1, APE_REQ.2
Protection profiles
BSI-CC-PP-0105-V3-2025, BSI-CC-PP-0105-V2-2020, BSI-CC-PP-0104-2019, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0111-2019, BSI-CC-PP-0113-2019
Evaluation facilities
TÜV Informationstechnik

Certification process
1, 2025-01-21, “EVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)”, TÜV Informationstechnik GmbH (confidential document) [7] Technische Richtlinie BSI TR-03153-1 Technische Sicherheitseinrichtung für elektronische

Standards
AIS 14, AIS 19, AIS 23, AIS 32, AIS 38, AIS 41, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065
Technical reports
BSI TR-03153-1, BSI TR-03151-1, BSI TR-03116

File metadata

Title Certification Report BSI-CC-PP-0105-V3-2025
Subject Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems
Keywords "Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems"
Author Federal Office for Information Security
Pages 16

Profile

Extracted keywords

Symmetric Algorithms
AES, AES-256, HMAC, CMAC
Asymmetric Algorithms
ECC, DH, Diffie-Hellman
Schemes
MAC, Key Agreement
Protocols
PACE
Elliptic Curves
Curve P-256, Curve P-384, Curve P-521, P-256, P-384, P-521, brainpoolP256r1, brainpoolP384r1, brainpoolP512r1
Block cipher modes
CBC, CTR, CFB, OFB, GCM

Trusted Execution Environments
SE, TEE

Security level
EAL2, EAL2 augmented
Claims
O.IAA, O.TEE, O.TST, A.CSP, OE.ERS, OE.CSP, OE.SUCP
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_ARC, ALC_LCD.1, ALC_CMS.3, ALC_FLR.1, ALC_LCD, ALC_CMS, ATE_IND.2, ATE_IND
Security Functional Requirements (SFR)
FAU_GEN.1, FAU_GEN, FAU_STG, FAU_STG.4, FAU_STG.2, FCS_CKM.1, FCS_COP, FCS_CKM.2, FCS_CKM.5, FCS_COP.1, FCS_RGB.1, FCS_RNG.1, FCS_CKM.6, FCS_CKM.1.1, FCS_CKM.6.1, FCS_CKM.6.2, FCS_RNG.1.1, FCS_RNG.1.2, FCS_RBG.1, FDP_ITC, FDP_ACC.1, FDP_IFC.1, FDP_ACC, FDP_ACF.1, FDP_ACF, FDP_ETC, FDP_ITC.2, FDP_ETC.2, FDP_DAU, FDP_RIP, FDP_RIP.1, FDP_ITC.1, FIA_ATD.1, FIA_UID.1, FIA_UAU.5.2, FIA_ATD.1.1, FIA_AFL.1, FIA_UAU.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_USB.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.5, FIA_UAU.5.1, FIA_UAU.6, FIA_UAU.6.1, FIA_SOS.1, FIA_UAU, FIA_API.1, FIA_API.1.1, FIA_SOS.1.1, FIA_ATD, FMT_SMR.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMR, FMT_MOF.1, FMT_SMF.1.1, FMT_SMF.1, FMT_MTD, FMT_MTD.1, FMT_MOF.1.1, FMT_MSA, FMT_MSA.1, FMT_MSA.1.1, FMT_MSA.3, FMT_MSA.3.1, FMT_MSA.3.2, FMT_MTD.3, FMT_MSA.2, FMT_MSA.2.1, FMT_MSA.4, FMT_MSA.4.1, FPT_TEE, FPT_TST.1, FPT_TDC.1, FPT_STM.1, FPT_STM.1.1, FPT_TDC.1.1, FPT_TDC.1.2, FPT_FLS.1, FPT_FLS.1.1, FPT_TEE.1, FPT_FLS, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_TRP.1, FPT_ITA.1, FPT_ITA.1.1, FPT_TDC, FTP_ITC.1, FTP_TRP.1, FTP_ITC
Protection profiles
BSI-CC-PP-0105-V3-2025, BSI-CC-PP-0104-, BSI-CC-PP- 0111-2019, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0113-2019

Side-channel analysis
side channel
Certification process
out of scope, of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the, and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle state

Standards
FIPS197, FIPS PUB 198-1, FIPS PUB 197, NIST SP 800-186, AIS20, RFC5639, ISO/IEC 27001, ISO/IEC 18033-3, ISO/IEC 10116, ISO/IEC 27001:2022, ISO/IEC 21827:2008, ICAO, CCMB-2022-11-002, CCMB-2022-11-003, CCMB-2022-11-005, CCMB-2022-11-006
Technical reports
BSI TR-03153-1, BSI TR-03110, BSI TR-03116, BSI TR-03151-1

File metadata

Title Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS)
Subject "Security Module Application, Electronic Record-keeping Systems"
Keywords """Security Module Application, Electronic Record-keeping Systems"""
Author Federal Office for Information Security
Pages 70

References

No references are available for this protection profile.

Updates

  • 29.04.2025 The protection profile was first processed.
    New Protection Profile

    A new Protection Profile with the name Security Module Application for Electronic Record-keeping Systems (SMAERS) was processed.

Raw data

{
  "_id": "e49edaeee0f88e61",
  "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
  "dgst": "e49edaeee0f88e61",
  "heuristics": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
  },
  "pdf_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
    "pp_filename": "pp0105V3b_pdf.pdf",
    "pp_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          }
        },
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 1
          }
        }
      },
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.CSP": 4
        },
        "O": {
          "O.IAA": 7,
          "O.TEE": 10,
          "O.TST": 7
        },
        "OE": {
          "OE.CSP": 6,
          "OE.ERS": 5,
          "OE.SUCP": 4
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP- 0111-2019": 1,
          "BSI-CC-PP-0104-": 1,
          "BSI-CC-PP-0105-V3-2025": 2,
          "BSI-CC-PP-0107-2019": 1,
          "BSI-CC-PP-0108-2019": 1,
          "BSI-CC-PP-0113-2019": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 4,
          "ADV_ARC.1": 5
        },
        "ALC": {
          "ALC_CMS": 1,
          "ALC_CMS.3": 10,
          "ALC_FLR.1": 4,
          "ALC_LCD": 1,
          "ALC_LCD.1": 8
        },
        "ATE": {
          "ATE_IND": 3,
          "ATE_IND.2": 5
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL2": 6,
          "EAL2 augmented": 3
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 15,
          "FAU_GEN.1": 7,
          "FAU_STG": 11,
          "FAU_STG.2": 4,
          "FAU_STG.4": 4
        },
        "FCS": {
          "FCS_CKM.1": 17,
          "FCS_CKM.1.1": 1,
          "FCS_CKM.2": 2,
          "FCS_CKM.5": 8,
          "FCS_CKM.6": 10,
          "FCS_CKM.6.1": 2,
          "FCS_CKM.6.2": 1,
          "FCS_COP": 15,
          "FCS_COP.1": 4,
          "FCS_RBG.1": 1,
          "FCS_RGB.1": 1,
          "FCS_RNG.1": 7,
          "FCS_RNG.1.1": 1,
          "FCS_RNG.1.2": 1
        },
        "FDP": {
          "FDP_ACC": 26,
          "FDP_ACC.1": 32,
          "FDP_ACF": 11,
          "FDP_ACF.1": 18,
          "FDP_DAU": 4,
          "FDP_ETC": 24,
          "FDP_ETC.2": 20,
          "FDP_IFC.1": 24,
          "FDP_ITC": 29,
          "FDP_ITC.1": 6,
          "FDP_ITC.2": 31,
          "FDP_RIP": 4,
          "FDP_RIP.1": 1
        },
        "FIA": {
          "FIA_AFL.1": 5,
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_API.1": 4,
          "FIA_API.1.1": 1,
          "FIA_ATD": 3,
          "FIA_ATD.1": 7,
          "FIA_ATD.1.1": 1,
          "FIA_SOS.1": 5,
          "FIA_SOS.1.1": 1,
          "FIA_UAU": 3,
          "FIA_UAU.1": 6,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5": 7,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 5,
          "FIA_UAU.6": 4,
          "FIA_UAU.6.1": 1,
          "FIA_UID.1": 12,
          "FIA_UID.1.1": 2,
          "FIA_UID.1.2": 1,
          "FIA_USB.1": 4,
          "FIA_USB.1.1": 1,
          "FIA_USB.1.2": 1,
          "FIA_USB.1.3": 1
        },
        "FMT": {
          "FMT_MOF.1": 12,
          "FMT_MOF.1.1": 3,
          "FMT_MSA": 1,
          "FMT_MSA.1": 12,
          "FMT_MSA.1.1": 1,
          "FMT_MSA.2": 5,
          "FMT_MSA.2.1": 1,
          "FMT_MSA.3": 10,
          "FMT_MSA.3.1": 1,
          "FMT_MSA.3.2": 1,
          "FMT_MSA.4": 7,
          "FMT_MSA.4.1": 1,
          "FMT_MTD": 23,
          "FMT_MTD.1": 7,
          "FMT_MTD.3": 1,
          "FMT_SMF.1": 19,
          "FMT_SMF.1.1": 5,
          "FMT_SMR": 6,
          "FMT_SMR.1": 29,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_FLS": 3,
          "FPT_FLS.1": 10,
          "FPT_FLS.1.1": 1,
          "FPT_ITA.1": 3,
          "FPT_ITA.1.1": 1,
          "FPT_STM.1": 7,
          "FPT_STM.1.1": 1,
          "FPT_TDC": 3,
          "FPT_TDC.1": 21,
          "FPT_TDC.1.1": 1,
          "FPT_TDC.1.2": 1,
          "FPT_TEE": 33,
          "FPT_TEE.1": 4,
          "FPT_TRP.1": 4,
          "FPT_TST.1": 9,
          "FPT_TST.1.1": 1,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 1
        },
        "FTP": {
          "FTP_ITC": 9,
          "FTP_ITC.1": 19,
          "FTP_TRP.1": 10
        }
      },
      "certification_process": {
        "OutOfScope": {
          "and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle state": 1,
          "of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the": 1,
          "out of scope": 2
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "CFB": {
          "CFB": 1
        },
        "CTR": {
          "CTR": 1
        },
        "GCM": {
          "GCM": 1
        },
        "OFB": {
          "OFB": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 44
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 9
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 1,
          "brainpoolP384r1": 1,
          "brainpoolP512r1": 1
        },
        "NIST": {
          "Curve P-256": 1,
          "Curve P-384": 1,
          "Curve P-521": 1,
          "P-256": 1,
          "P-384": 1,
          "P-521": 1
        }
      },
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {
        "SCA": {
          "side channel": 2
        }
      },
      "standard_id": {
        "BSI": {
          "AIS20": 2
        },
        "CC": {
          "CCMB-2022-11-002": 1,
          "CCMB-2022-11-003": 1,
          "CCMB-2022-11-005": 1,
          "CCMB-2022-11-006": 1
        },
        "FIPS": {
          "FIPS PUB 197": 1,
          "FIPS PUB 198-1": 1,
          "FIPS197": 1
        },
        "ICAO": {
          "ICAO": 5
        },
        "ISO": {
          "ISO/IEC 10116": 6,
          "ISO/IEC 18033-3": 3,
          "ISO/IEC 21827:2008": 1,
          "ISO/IEC 27001": 4,
          "ISO/IEC 27001:2022": 1
        },
        "NIST": {
          "NIST SP 800-186": 3
        },
        "RFC": {
          "RFC5639": 8
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 15,
            "AES-256": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 2,
            "HMAC": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03110": 1,
          "BSI TR-03116": 1,
          "BSI TR-03151-1": 1,
          "BSI TR-03153-1": 2
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        },
        "other": {
          "TEE": 10
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "pp_metadata": {
      "/Author": "Federal Office for Information Security",
      "/Keywords": "\"\"\"Security Module Application, Electronic Record-keeping Systems\"\"\"",
      "/Subject": "\"Security Module Application, Electronic Record-keeping Systems\"",
      "/Title": "Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS)",
      "pdf_file_size_bytes": 821050,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.ietf.org/rfc/rfc5639.txt"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 70
    },
    "report_filename": "pp0105V3a_pdf.pdf",
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0104-2019": 1,
          "BSI-CC-PP-0105-V2-2020": 3,
          "BSI-CC-PP-0105-V3-2025": 8,
          "BSI-CC-PP-0107-2019": 1,
          "BSI-CC-PP-0108-2019": 1,
          "BSI-CC-PP-0111-2019": 1,
          "BSI-CC-PP-0113-2019": 1
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_CMS.3": 3,
          "ALC_FLR": 1,
          "ALC_FLR.1": 2,
          "ALC_LCD.1": 3
        },
        "APE": {
          "APE_CCL.1": 1,
          "APE_ECD.1": 1,
          "APE_INT.1": 1,
          "APE_OBJ.2": 1,
          "APE_REQ.2": 1,
          "APE_SPD.1": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 3,
          "EAL 2 augmented": 2,
          "EAL 4": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "1, 2025-01-21, \u201cEVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)\u201d, T\u00dcV Informationstechnik GmbH (confidential document) [7] Technische Richtlinie BSI TR-03153-1 Technische Sicherheitseinrichtung f\u00fcr elektronische": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "TUV": {
          "T\u00dcV Informationstechnik": 3
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 14": 1,
          "AIS 19": 1,
          "AIS 23": 1,
          "AIS 32": 1,
          "AIS 38": 1,
          "AIS 41": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI TR-03116": 1,
          "BSI TR-03151-1": 1,
          "BSI TR-03153-1": 1
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Federal Office for Information Security",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems\"",
      "/Subject": "Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems",
      "/Title": "Certification Report  BSI-CC-PP-0105-V3-2025",
      "pdf_file_size_bytes": 320154,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://www.bsi.bund.de/",
          "https://www.bsi.bund.de/Gebuehrenverordnung",
          "https://www.sogis.eu/",
          "http://www.gesetze-im-internet.de/bsig_2009/index.html",
          "http://www.gesetze-im-internet.de/bsizertv_2014/index.html",
          "https://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/zertifizierung"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 16
    }
  },
  "state": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
    "pp": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "48f317d3fc58ff4fa2bad539e9fa9a7a0f2f4625e84f0e063a89f9ed3412a18e",
      "txt_hash": "6aab63514a3d9e9a5e1b691e41c8d44bd40392bea3645cda9a2c3db06dcdbcbe"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_garbage": false,
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "pdf_hash": "af6b0f7bb12f99a1d11896ba2ee44f0946f52b6b47250496d3538d53e2618dc6",
      "txt_hash": "cf359503703b2c2fab7249d782ec7e5dc480b58bb42431613e84e9e773292642"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
    "category": "Other Devices and Systems",
    "is_collaborative": false,
    "maintenances": [],
    "name": "Security Module Application for Electronic Record-keeping Systems (SMAERS)",
    "not_valid_after": null,
    "not_valid_before": "2025-03-27",
    "pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0105V3b_pdf.pdf",
    "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0105V3a_pdf.pdf",
    "scheme": "DE",
    "security_level": {
      "_type": "Set",
      "elements": [
        "ALC_CMC.3",
        "ALC_LCD.1",
        "ALC_FLR.1",
        "EAL2+"
      ]
    },
    "status": "active",
    "version": "3.0.2"
  }
}