Security Module Application for Electronic Record-keeping Systems (SMAERS)

Profile details

Status active
Valid from 27.03.2025
Scheme πŸ‡©πŸ‡ͺ DE
Category Other Devices and Systems
Security level EAL2+, ALC_FLR.1, ALC_LCD.1, ALC_CMC.3

Certification report

Extracted keywords

Trusted Execution Environments
SE

Security level
EAL 2, EAL 4, EAL 2 augmented
Security Assurance Requirements (SAR)
ALC_LCD.1, ALC_FLR.1, ALC_CMS.3, ALC_FLR, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.2, APE_ECD.1, APE_REQ.2
Protection profiles
BSI-CC-PP-0105-V3-2025, BSI-CC-PP-0105-V2-2020, BSI-CC-PP-0104-2019, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0111-2019, BSI-CC-PP-0113-2019
Evaluation facilities
TÜV Informationstechnik

Certification process
1, 2025-01-21, β€œEVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)”, TÜV Informationstechnik GmbH (confidential document) [7] Technische Richtlinie BSI TR-03153-1 Technische Sicherheitseinrichtung fΓΌr elektronische

Technical reports
BSI TR-03153-1, BSI TR-03151-1, BSI TR-03116

Protection profile

Extracted keywords

Symmetric Algorithms
AES, AES-256, HMAC, CMAC
Asymmetric Algorithms
ECC, DH, Diffie-Hellman
Schemes
MAC, Key Agreement
Protocols
PACE
Block cipher modes
CBC, CTR, CFB, OFB, GCM

Trusted Execution Environments
SE, TEE

Security level
EAL2, EAL2 augmented
Claims
O.IAA, O.TEE, O.TST, A.CSP, OE.ERS, OE.CSP, OE.SUCP
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_ARC, ALC_LCD.1, ALC_CMS.3, ALC_FLR.1, ALC_LCD, ALC_CMS, ATE_IND.2, ATE_IND
Security Functional Requirements (SFR)
FAU_GEN.1, FAU_GEN, FAU_STG, FAU_STG.4, FAU_STG.2, FCS_CKM.1, FCS_COP, FCS_CKM.2, FCS_CKM.5, FCS_COP.1, FCS_RGB.1, FCS_RNG.1, FCS_CKM.6, FCS_CKM.1.1, FCS_CKM.6.1, FCS_CKM.6.2, FCS_RNG.1.1, FCS_RNG.1.2, FCS_RBG.1, FDP_ITC, FDP_ACC.1, FDP_IFC.1, FDP_ACC, FDP_ACF.1, FDP_ACF, FDP_ETC, FDP_ITC.2, FDP_ETC.2, FDP_DAU, FDP_RIP, FDP_RIP.1, FDP_ITC.1, FIA_ATD.1, FIA_UID.1, FIA_UAU.5.2, FIA_ATD.1.1, FIA_AFL.1, FIA_UAU.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_USB.1, FIA_USB.1.1, FIA_USB.1.2, FIA_USB.1.3, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.5, FIA_UAU.5.1, FIA_UAU.6, FIA_UAU.6.1, FIA_SOS.1, FIA_UAU, FIA_API.1, FIA_API.1.1, FIA_SOS.1.1, FIA_ATD, FMT_SMR.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_SMR, FMT_MOF.1, FMT_SMF.1.1, FMT_SMF.1, FMT_MTD, FMT_MTD.1, FMT_MOF.1.1, FMT_MSA, FMT_MSA.1, FMT_MSA.1.1, FMT_MSA.3, FMT_MSA.3.1, FMT_MSA.3.2, FMT_MTD.3, FMT_MSA.2, FMT_MSA.2.1, FMT_MSA.4, FMT_MSA.4.1, FPT_TEE, FPT_TST.1, FPT_TDC.1, FPT_STM.1, FPT_STM.1.1, FPT_TDC.1.1, FPT_TDC.1.2, FPT_FLS.1, FPT_FLS.1.1, FPT_TEE.1, FPT_FLS, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_TRP.1, FPT_ITA.1, FPT_ITA.1.1, FPT_TDC, FTP_ITC.1, FTP_TRP.1, FTP_ITC
Protection profiles
BSI-CC-PP-0105-V3-2025, BSI-CC-PP-0104-, BSI-CC-PP- 0111-2019, BSI-CC-PP-0107-2019, BSI-CC-PP-0108-2019, BSI-CC-PP-0113-2019

Side-channel analysis
side channel
Certification process
out of scope, of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the, and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle state

Standards
FIPS197, FIPS PUB 198-1, FIPS PUB 197, NIST SP 800-186, AIS20, RFC5639, ISO/IEC 27001, ISO/IEC 18033-3, ISO/IEC 10116, ISO/IEC 27001:2022, ISO/IEC 21827:2008, ICAO, CCMB-2022-11-002, CCMB-2022-11-003, CCMB-2022-11-005, CCMB-2022-11-006
Technical reports
BSI TR-03153-1, BSI TR-03110, BSI TR-03116, BSI TR-03151-1

References

No references are available for this protection profile.

Processing updates

Feed
  • The protection profile data changed.
  • The protection profile data changed.
  • The protection profile was first processed.

Raw data

{
  "_id": "e49edaeee0f88e61",
  "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
  "dgst": "e49edaeee0f88e61",
  "heuristics": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.Heuristics"
  },
  "pdf_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.PdfData",
    "pp_filename": "pp0105V3b_pdf.pdf",
    "pp_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          }
        },
        "FF": {
          "DH": {
            "DH": 1,
            "Diffie-Hellman": 1
          }
        }
      },
      "cc_cert_id": {},
      "cc_claims": {
        "A": {
          "A.CSP": 4
        },
        "O": {
          "O.IAA": 7,
          "O.TEE": 10,
          "O.TST": 7
        },
        "OE": {
          "OE.CSP": 6,
          "OE.ERS": 5,
          "OE.SUCP": 4
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP- 0111-2019": 1,
          "BSI-CC-PP-0104-": 1,
          "BSI-CC-PP-0105-V3-2025": 2,
          "BSI-CC-PP-0107-2019": 1,
          "BSI-CC-PP-0108-2019": 1,
          "BSI-CC-PP-0113-2019": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 4,
          "ADV_ARC.1": 5
        },
        "ALC": {
          "ALC_CMS": 1,
          "ALC_CMS.3": 10,
          "ALC_FLR.1": 4,
          "ALC_LCD": 1,
          "ALC_LCD.1": 8
        },
        "ATE": {
          "ATE_IND": 3,
          "ATE_IND.2": 5
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL2": 6,
          "EAL2 augmented": 3
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_GEN": 15,
          "FAU_GEN.1": 7,
          "FAU_STG": 11,
          "FAU_STG.2": 4,
          "FAU_STG.4": 4
        },
        "FCS": {
          "FCS_CKM.1": 17,
          "FCS_CKM.1.1": 1,
          "FCS_CKM.2": 2,
          "FCS_CKM.5": 8,
          "FCS_CKM.6": 10,
          "FCS_CKM.6.1": 2,
          "FCS_CKM.6.2": 1,
          "FCS_COP": 15,
          "FCS_COP.1": 4,
          "FCS_RBG.1": 1,
          "FCS_RGB.1": 1,
          "FCS_RNG.1": 7,
          "FCS_RNG.1.1": 1,
          "FCS_RNG.1.2": 1
        },
        "FDP": {
          "FDP_ACC": 26,
          "FDP_ACC.1": 32,
          "FDP_ACF": 11,
          "FDP_ACF.1": 18,
          "FDP_DAU": 4,
          "FDP_ETC": 24,
          "FDP_ETC.2": 20,
          "FDP_IFC.1": 24,
          "FDP_ITC": 29,
          "FDP_ITC.1": 6,
          "FDP_ITC.2": 31,
          "FDP_RIP": 4,
          "FDP_RIP.1": 1
        },
        "FIA": {
          "FIA_AFL.1": 5,
          "FIA_AFL.1.1": 1,
          "FIA_AFL.1.2": 1,
          "FIA_API.1": 4,
          "FIA_API.1.1": 1,
          "FIA_ATD": 3,
          "FIA_ATD.1": 7,
          "FIA_ATD.1.1": 1,
          "FIA_SOS.1": 5,
          "FIA_SOS.1.1": 1,
          "FIA_UAU": 3,
          "FIA_UAU.1": 6,
          "FIA_UAU.1.1": 1,
          "FIA_UAU.1.2": 1,
          "FIA_UAU.5": 7,
          "FIA_UAU.5.1": 1,
          "FIA_UAU.5.2": 5,
          "FIA_UAU.6": 4,
          "FIA_UAU.6.1": 1,
          "FIA_UID.1": 12,
          "FIA_UID.1.1": 2,
          "FIA_UID.1.2": 1,
          "FIA_USB.1": 4,
          "FIA_USB.1.1": 1,
          "FIA_USB.1.2": 1,
          "FIA_USB.1.3": 1
        },
        "FMT": {
          "FMT_MOF.1": 12,
          "FMT_MOF.1.1": 3,
          "FMT_MSA": 1,
          "FMT_MSA.1": 12,
          "FMT_MSA.1.1": 1,
          "FMT_MSA.2": 5,
          "FMT_MSA.2.1": 1,
          "FMT_MSA.3": 10,
          "FMT_MSA.3.1": 1,
          "FMT_MSA.3.2": 1,
          "FMT_MSA.4": 7,
          "FMT_MSA.4.1": 1,
          "FMT_MTD": 23,
          "FMT_MTD.1": 7,
          "FMT_MTD.3": 1,
          "FMT_SMF.1": 19,
          "FMT_SMF.1.1": 5,
          "FMT_SMR": 6,
          "FMT_SMR.1": 29,
          "FMT_SMR.1.1": 1,
          "FMT_SMR.1.2": 1
        },
        "FPT": {
          "FPT_FLS": 3,
          "FPT_FLS.1": 10,
          "FPT_FLS.1.1": 1,
          "FPT_ITA.1": 3,
          "FPT_ITA.1.1": 1,
          "FPT_STM.1": 7,
          "FPT_STM.1.1": 1,
          "FPT_TDC": 3,
          "FPT_TDC.1": 21,
          "FPT_TDC.1.1": 1,
          "FPT_TDC.1.2": 1,
          "FPT_TEE": 33,
          "FPT_TEE.1": 4,
          "FPT_TRP.1": 4,
          "FPT_TST.1": 9,
          "FPT_TST.1.1": 1,
          "FPT_TST.1.2": 1,
          "FPT_TST.1.3": 1
        },
        "FTP": {
          "FTP_ITC": 9,
          "FTP_ITC.1": 19,
          "FTP_TRP.1": 10
        }
      },
      "certification_process": {
        "OutOfScope": {
          "and TOE audit functionality. External command and transaction queuing and related management is out of scope of the TOE. The TSF shall always be in one of three possible operational states: idle state": 1,
          "of the validity of those parts of the transaction data that are not security attributes is out of scope of the TOE. This includes the assessment of the appropriateness of transaction flow managed by the": 1,
          "out of scope": 2
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 1
        },
        "CFB": {
          "CFB": 1
        },
        "CTR": {
          "CTR": 1
        },
        "GCM": {
          "GCM": 1
        },
        "OFB": {
          "OFB": 1
        }
      },
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 44
        }
      },
      "crypto_scheme": {
        "KA": {
          "Key Agreement": 1
        },
        "MAC": {
          "MAC": 9
        }
      },
      "device_model": {},
      "ecc_curve": {
        "Brainpool": {
          "brainpoolP256r1": 1,
          "brainpoolP384r1": 1,
          "brainpoolP512r1": 1
        },
        "NIST": {
          "Curve P-256": 1,
          "Curve P-384": 1,
          "Curve P-521": 1,
          "P-256": 1,
          "P-384": 1,
          "P-521": 1
        }
      },
      "eval_facility": {},
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {
        "SCA": {
          "side channel": 2
        }
      },
      "standard_id": {
        "BSI": {
          "AIS20": 2
        },
        "CC": {
          "CCMB-2022-11-002": 1,
          "CCMB-2022-11-003": 1,
          "CCMB-2022-11-005": 1,
          "CCMB-2022-11-006": 1
        },
        "FIPS": {
          "FIPS PUB 197": 1,
          "FIPS PUB 198-1": 1,
          "FIPS197": 1
        },
        "ICAO": {
          "ICAO": 5
        },
        "ISO": {
          "ISO/IEC 10116": 6,
          "ISO/IEC 18033-3": 3,
          "ISO/IEC 21827:2008": 1,
          "ISO/IEC 27001": 4,
          "ISO/IEC 27001:2022": 1
        },
        "NIST": {
          "NIST SP 800-186": 3
        },
        "RFC": {
          "RFC5639": 8
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 15,
            "AES-256": 2
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 2,
            "HMAC": 2
          }
        }
      },
      "technical_report_id": {
        "BSI": {
          "BSI TR-03110": 1,
          "BSI TR-03116": 1,
          "BSI TR-03151-1": 1,
          "BSI TR-03153-1": 2
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        },
        "other": {
          "TEE": 10
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "pp_metadata": {
      "/Author": "Federal Office for Information Security",
      "/Keywords": "\"\"\"Security Module Application, Electronic Record-keeping Systems\"\"\"",
      "/Subject": "\"Security Module Application, Electronic Record-keeping Systems\"",
      "/Title": "Common Criteria Protection Profile Security Module Application for Electronic Record-keeping Systems (SMAERS)",
      "pdf_file_size_bytes": 821050,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.ietf.org/rfc/rfc5639.txt"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 70
    },
    "report_filename": "pp0105V3a_pdf.pdf",
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {},
      "cc_claims": {},
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0104-2019": 1,
          "BSI-CC-PP-0105-V2-2020": 3,
          "BSI-CC-PP-0105-V3-2025": 8,
          "BSI-CC-PP-0107-2019": 1,
          "BSI-CC-PP-0108-2019": 1,
          "BSI-CC-PP-0111-2019": 1,
          "BSI-CC-PP-0113-2019": 1
        }
      },
      "cc_sar": {
        "ALC": {
          "ALC_CMS.3": 3,
          "ALC_FLR": 1,
          "ALC_FLR.1": 2,
          "ALC_LCD.1": 3
        },
        "APE": {
          "APE_CCL.1": 1,
          "APE_ECD.1": 1,
          "APE_INT.1": 1,
          "APE_OBJ.2": 1,
          "APE_REQ.2": 1,
          "APE_SPD.1": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 2": 3,
          "EAL 2 augmented": 2,
          "EAL 4": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "1, 2025-01-21, \u201cEVALUATION TECHNICAL REPORT SUMMARY (ETR SUMMARY)\u201d, T\u00dcV Informationstechnik GmbH (confidential document) [7] Technische Richtlinie BSI TR-03153-1 Technische Sicherheitseinrichtung f\u00fcr elektronische": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {},
      "crypto_library": {},
      "crypto_protocol": {},
      "crypto_scheme": {},
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "TUV": {
          "T\u00dcV Informationstechnik": 3
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {},
      "pq_crypto": {},
      "randomness": {},
      "side_channel_analysis": {},
      "standard_id": {
        "BSI": {
          "AIS 14": 1,
          "AIS 19": 1,
          "AIS 23": 1,
          "AIS 32": 1,
          "AIS 38": 1,
          "AIS 41": 1
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI TR-03116": 1,
          "BSI TR-03151-1": 1,
          "BSI TR-03153-1": 1
        }
      },
      "tee_name": {
        "IBM": {
          "SE": 1
        }
      },
      "tls_cipher_suite": {},
      "vendor": {},
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Federal Office for Information Security",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems\"",
      "/Subject": "Common Criteria, Certification, Zertifizierung, Protection Profile, Schutzprofil, Security Module Application, Electronic Record-keeping Systems",
      "/Title": "Certification Report  BSI-CC-PP-0105-V3-2025",
      "pdf_file_size_bytes": 320154,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "https://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/",
          "http://www.gesetze-im-internet.de/bsizertv_2014/index.html",
          "https://www.sogis.eu/",
          "http://www.gesetze-im-internet.de/bsig_2009/index.html",
          "https://www.bsi.bund.de/zertifizierung",
          "https://www.bsi.bund.de/Gebuehrenverordnung"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 16
    }
  },
  "scheme_metadata": null,
  "state": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.InternalState",
    "pp": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "48f317d3fc58ff4fa2bad539e9fa9a7a0f2f4625e84f0e063a89f9ed3412a18e",
      "txt_hash": "6aab63514a3d9e9a5e1b691e41c8d44bd40392bea3645cda9a2c3db06dcdbcbe"
    },
    "report": {
      "_type": "sec_certs.sample.document_state.DocumentState",
      "convert_ok": true,
      "download_ok": true,
      "extract_ok": true,
      "json_hash": null,
      "source_hash": "af6b0f7bb12f99a1d11896ba2ee44f0946f52b6b47250496d3538d53e2618dc6",
      "txt_hash": "cf359503703b2c2fab7249d782ec7e5dc480b58bb42431613e84e9e773292642"
    }
  },
  "web_data": {
    "_type": "sec_certs.sample.protection_profile.ProtectionProfile.WebData",
    "category": "Other Devices and Systems",
    "is_collaborative": false,
    "maintenances": [],
    "name": "Security Module Application for Electronic Record-keeping Systems (SMAERS)",
    "not_valid_after": null,
    "not_valid_before": "2025-03-27",
    "pp_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0105V3b_pdf.pdf",
    "report_link": "https://www.commoncriteriaportal.org/nfs/ccpfiles/files/ppfiles/pp0105V3a_pdf.pdf",
    "scheme": "DE",
    "security_level": {
      "_type": "Set",
      "elements": [
        "EAL2+",
        "ALC_FLR.1",
        "ALC_LCD.1",
        "ALC_CMC.3"
      ]
    },
    "status": "active",
    "version": "3.0.2"
  }
}