MultiApp V5.1 (version 5.1) ( 2023/31)
CSV information ?
Status | active |
---|---|
Valid from | 28.08.2023 |
Valid until | 28.09.2028 |
Scheme | 🇫🇷 FR |
Manufacturer | THALES DIS FRANCE SA |
Category | ICs, Smart Cards and Smart Card-Related Devices and Systems |
Security level | EAL6+, ALC_FLR.2 |
Maintenance updates | ANSSI-CC-2023/31-M01 (04.04.2024) Certification report Security target |
Heuristics summary ?
Certificate ?
Extracted keywords
Security level
EAL6, EAL2Security Assurance Requirements (SAR)
ALC_FLR.2Protection profiles
BSI-CC-PP-0099-V2-2020Certificates
ANSSI-CC-2023/31Evaluation facilities
CEA-LETIFile metadata
Creation date: | D:20230829152627+02'00' |
---|---|
Modification date: | D:20230829152916+02'00' |
Pages: | 2 |
Creator: | Acrobat PDFMaker 23 pour Word |
Producer: | Adobe PDF Library 23.1.175 |
Certification report ?
Extracted keywords
Symmetric Algorithms
DESProtocols
PACEJavaCard versions
Java Card 3.1CPLC
IC FabricatorVendor
GemaltoSecurity level
EAL 6, EAL2, EAL7, ITSEC E6 ElevéSecurity Assurance Requirements (SAR)
AGD_OPE, AGD_PRE, ALC_FLR.2, ALC_FLR, AVA_VANProtection profiles
BSI-CC-PP-0099-V2-2020Certificates
ANSSI-CC-2023/31, ANSSI-CC-2023/01Evaluation facilities
CESTI, CEA - LETIStandards
CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003File metadata
Creation date: | D:20230829152915+02'00' |
---|---|
Modification date: | D:20230829152915+02'00' |
Pages: | 17 |
Creator: | Acrobat PDFMaker 23 pour Word |
Producer: | Adobe PDF Library 23.1.175 |
References
Outgoing- ANSSI-CC-2023/01 - AQUARIUS_BA_09 ( AQUARIUS_v1 )
- ANSSI-CC-2023/35 - eTravel 3.1 EAC on BAC on MultiApp V5.1 Version 3.1.0.0 ( ANSSI-CC-2023/35 )
- ANSSI-CC-2023/36 - eTravel 3.1 EAC on SAC on MultiApp V5.1 Version 3.1.0.0 ( ANSSI-CC-2023/36 )
- ANSSI-CC-2023/42 - Produit IAS Classic v5.2.1 with MOC Server v3.1 on MultiApp V5.1 Version 5.2.1.A.C et 5.2.1.A.O ( ANSSI-CC-2023/42 )
- ANSSI-CC-2023/34 - eTravel 3.1 BAC on MultiApp V5.1 Version 3.1.0.0 ( ANSSI-CC-2023/34 )
- ANSSI-CC-2023/45 - MultiApp V5.1 Java Card Virtual Machine Version 5.1 (ANSSI-CC-2023/45)
Security target ?
Extracted keywords
Symmetric Algorithms
AES, AES-256, DES, TDEA, 3DES, TDES, Triple-DES, HMAC, KMAC, CMACAsymmetric Algorithms
ECDH, ECDSA, ECC, DH, Diffie-HellmanHash functions
SHA1, SHA-1, SHA-224, SHA-256, SHA-512, SHA224, SHA-384, SHA2, SHA3, SHA3-384, SHA3-512Schemes
MAC, Key Agreement, Key agreementProtocols
PACERandomness
PRNG, RNG, RNDBlock cipher modes
ECB, CBCJavaCard versions
Java Card 3.1JavaCard API constants
TYPE_ACCESSCPLC
IC Fabricator, IC TypeIC data groups
EF.DG1, EF.DG16, EF.DG3, EF.DG4Trusted Execution Environments
SEVendor
Gemalto, ThalesSecurity level
EAL6+, EAL6, EAL 6+, EAL6 augmentedClaims
D.APP_CODE, D.APP_C_DATA, D.APP_I_DATA, D.PIN, D.API_DATA, D.CRYPTO, D.JCS_CODE, D.JCS_DATA, D.SEC_DATA, D.OS-UPDATE_DEC-KEY, D.APP_KEYS, D.OS-UPDATE_SGNVER-KEY, D.OS-UPDATE_ADDITIONALCODE, D.OS-UPDATE-CODE-ID, D.OS-, O.SID, O.FIREWALL, O.GLOBAL_ARRAYS_CONFID, O.GLOBAL_ARRAYS_INTEG, O.ARRAY_VIEWS_CONFID, O.NATIVE, O.OPERATE, O.REALLOCATION, O.RESOURCES, O.ALARM, O.CIPHER, O.RNG, O.KEY-MNGT, O.PIN-MNGT, O.TRANSACTION, O.OBJ-DELETION, O.DELETION, O.LOAD, O.INSTALL, O.SCP, O.CARD-MANAGEMENT, O.SECURE_LOAD_ACODE, O.SECURE_AC_ACTIVATION, O.TOE_IDENTIFICATION, O.CONFID-OS-UPDATE, O.PIN_MNGT, O.OBJ_DELETION, O.ARRAY_VIEWS_INTEG, O.RND, O.APPLET, O.CODE_CAP_FILE, O.JAVAOBJECT, T.CONFID-APPLI-DATA, T.CONFID-JCS-CODE, T.CONFID-JCS-DATA, T.INTEG-APPLI-CODE, T.INTEG-APPLI-DATA, T.INTEG-JCS-CODE, T.INTEG-JCS-DATA, T.SID, T.EXE-CODE, T.NATIVE, T.RESOURCES, T.DELETION, T.INSTALL, T.OBJ-DELETION, T.PHYSICAL, T.UNAUTHORIZED_TOE_CODE_UPDATE, T.FAKE-SGNVER-KEY, T.WRONG-UPDATE-STATE, T.INTEG-OS-UPDATE_LOAD, T.CONFID-OS-UPDATE_LOAD, A.CAP_FILE, A.DELETION, A.VERIFICATION, A.OS-UPDATE-EVIDENCE, A.SECURE_ACODE_MANAGEMENT, R.JAVA, OT.X, OP.ARRAY_ACCESS, OP.ARRAY_LENGTH, OP.ARRAY_AASTORE, OP.ARRAY_T_ALOAD, OP.ARRAY_T_ASTORE, OP.CREATE, OP.DELETE_APPLET, OP.DELETE_CAP_FILE, OP.DELETE_CAP_FILE_APPLET, OP.INSTANCE_FIELD, OP.INVK_VIRTUAL, OP.INVK_INTERFACE, OP.JAVA, OP.THROW, OP.TYPE_ACCESS, OP.PUT, OP.PUTFIELD, OP.PUTSTATIC, OE.OS-UPDATE-ENCRYPTION, OE.VERIFICATION, OE.CAP_FILE, OE.CODE-EVIDENCE, OE.OS-UPDATE-EVIDENCE, OE.SECURE_ACODE_MANAGEMENT, OSP.VERIFICATION, OSP.RNG, OSP.ATOMIC_ACTIVATION, OSP.TOE_IDENTIFICATION, OSP.ADDITIONAL_CODE_SIGNING, OSP.ADDITIONAL_CODE_ENCRYPTIONSecurity Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.5, ADV_IMP.2, ADV_INT.3, ADV_SPM.1, ADV_TDS.5, ADV_FSP.4, ADV_ARC, ADV_TDS.1, ADV_IMP.1, ADV_TDS.3, ADV_FSP.1, ADV_FSP.2, ADV_TDS.4, AGD_OPE, AGD_PRE, AGD_OPE.1, AGD_PRE.1, ALC_FLR.2, ALC_CMC.5, ALC_CMS.5, ALC_DEL.1, ALC_DVS.2, ALC_LCD.1, ALC_TAT.3, ALC_TAT.1, ATE_COV.3, ATE_DPT.3, ATE_FUN.2, ATE_IND.2, ATE_FUN.1, ATE_COV.1, ATE_COV.2, ATE_DPT.1, AVA_VAN.5, ASE_TSS.2, ASE_CCL.1, ASE_ECD.1, ASE_INT.1, ASE_OBJ.2, ASE_REQ.2, ASE_SPD.1, ASE_TSS.1Security Functional Requirements (SFR)
FAU_ARP.1, FAU_ARP.1.1, FAU_SAA.1, FAU_SAS.1, FCO_NRO, FCO_NRO.2, FCS_RNG, FCS_CKM, FCS_COP, FCS_RNG.1, FCS_RNG.1.1, FCS_RNG.1.2, FCS_CKM.1, FCS_CKM.1.1, FCS_CKM.2, FCS_CKM.2.1, FCS_CKM.3, FCS_CKM.3.1, FCS_CKM.4, FCS_CKM.4.1, FCS_COP.1, FCS_COP.1.1, FCS_CMK.4, FDP_ACF, FDP_ACC, FDP_ACC.2, FDP_ACF.1, FDP_IFC, FDP_IFC.1, FDP_IFF, FDP_IFF.1, FDP_RIP, FDP_RIP.1, FDP_ROL.1, FDP_ROL, FDP_SDI, FDP_SDI.2, FDP_ITC, FDP_ITC.2, FDP_IFC.2, FDP_UIT, FDP_UIT.1, FDP_ACC.1, FDP_ITC.1, FDP_RIP.1.1, FDP_SDC.1, FDP_ITT.1, FDP_UCT.1, FIA_AFL, FIA_ATD, FIA_ATD.1, FIA_UID, FIA_UID.2, FIA_USB, FIA_USB.1, FIA_UAU, FIA_UAU.1, FIA_UID.1, FIA_UAU.4, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.4.1, FIA_UAU.5.1, FIA_UAU.5.2, FIA_UAU.6.1, FIA_API.1, FMT_LIM, FMT_LIM.1, FMT_LIM.2, FMT_LIM.1.1, FMT_LIM.2.1, FMT_MSA, FMT_MSA.1, FMT_MSA.2, FMT_MSA.3, FMT_SMR, FMT_SMR.1, FMT_SMF, FMT_SMF.1, FMT_MTD, FMT_MTD.1, FMT_MTD.3, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FPR_UNO.1, FPR_UNO.1.1, FPR_UNO, FPT_EMS, FPT_TST, FPT_EMS.1, FPT_EMS.1.1, FPT_EMS.1.2, FPT_FLS, FPT_FLS.1, FPT_TDC.1, FPT_TDC.1.1, FPT_TDC.1.2, FPT_RCV, FPT_RCV.3, FPT_FLS.1.1, FPT_TST.1, FPT_PHP, FPT_PHP.3, FPT_RCV.4, FPT_ITT, FPT_ITT.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_PHP.3.1, FRU_FLT.2, FTP_ITC, FTP_ITC.1, FTP_ITC.1.1, FTP_ITC.1.2, FTP_ITC.1.3, FTP_TRP, FTP_TRP.1Protection profiles
BSI-CC-PP- 0084-2014, BSI-CC-PP-0099-V2-2020, BSI-CC-PP-0068-V2-2011-MA-01, BSI-PP-0056-V2-MA-2012, BSI-PP-0055-2009, BSI-CC-PP-0084-2014Certificates
ANSSI-CC-2023/01, CC-1, CC-2, CC-3Certification process
out of scope, The DELETE and INSTALL APDU commands are out of scope of this SPM, a timeout policy that prevent them from being blocked should a card fails to answer. That point is out of scope of this Security Target, though. Finally, the objectives O.SCP.RECOVERY and O.SCP.SUPPORT are, the active context is not the same as the Selected Applet Context. Application note: This rule is out of scope of the SPM modelisation because CLEAR_ON_DESELECT objects can be created exclusively in the API, is also out of scope (Hypothesis 4 of the SPM document [MAV51_SPM]).. 3) S.CAP_FILE performing OP.ARRAY_AASTORE of the, as a null reference. Such a mechanism is implementation-dependent. The deletion of applets is out of scope of this SPM scope. In the case of an array type, fields are components of the array ([JVM], §2.14, Context, the Selected Applet Context, and the Active Applets Note: the Selected Applet context is out of scope of the VM functionalities. It is a process that occurs prior to VM start The initial setting of, and deletion; see #.DELETION and #.INSTALL). The DELETE and INSTALL APDU commands are out of scope of this SPM. The list of registred applets’ AIDs is proven to be not modified during the execution, 1, are out of the scope of the SPM as they are linked to the applet loading or deletion that is out of scope of the SPM boundaries limited to VM opcodes The SFR FMT_MTD.3/JCRE is out of scope of the SPM, because AID registry is created during loading phase, which is also out of scope of the SPM (Hypothesis 2 of the SPM document [MAV51_SPM]). MultiApp V5.1: JCS Security Target STSide-channel analysis
Leak-Inherent, physical probing, DPA, SPA, timing attacks, physical tampering, Physical Tampering, malfunction, Malfunction, fault inductionCertification process
out of scope, The DELETE and INSTALL APDU commands are out of scope of this SPM, a timeout policy that prevent them from being blocked should a card fails to answer. That point is out of scope of this Security Target, though. Finally, the objectives O.SCP.RECOVERY and O.SCP.SUPPORT are, the active context is not the same as the Selected Applet Context. Application note: This rule is out of scope of the SPM modelisation because CLEAR_ON_DESELECT objects can be created exclusively in the API, is also out of scope (Hypothesis 4 of the SPM document [MAV51_SPM]).. 3) S.CAP_FILE performing OP.ARRAY_AASTORE of the, as a null reference. Such a mechanism is implementation-dependent. The deletion of applets is out of scope of this SPM scope. In the case of an array type, fields are components of the array ([JVM], §2.14, Context, the Selected Applet Context, and the Active Applets Note: the Selected Applet context is out of scope of the VM functionalities. It is a process that occurs prior to VM start The initial setting of, and deletion; see #.DELETION and #.INSTALL). The DELETE and INSTALL APDU commands are out of scope of this SPM. The list of registred applets’ AIDs is proven to be not modified during the execution, 1, are out of the scope of the SPM as they are linked to the applet loading or deletion that is out of scope of the SPM boundaries limited to VM opcodes The SFR FMT_MTD.3/JCRE is out of scope of the SPM, because AID registry is created during loading phase, which is also out of scope of the SPM (Hypothesis 2 of the SPM document [MAV51_SPM]). MultiApp V5.1: JCS Security Target STStandards
FIPS180-4, FIPS202, FIPS197, FIPS 197, SP 800-67, PKCS#1, PKCS#5, BSI-AIS31, AIS31, AIS20, ICAO, SCP01, SCP02, SCP03, CCMB-2017-04-001, CCMB-2017-04-002, CCMB-2017-04-003File metadata
Title: | MultiApp V5.1: JCS Security Target |
---|---|
Author: | THALES |
Creation date: | D:20230330120805+02'00' |
Modification date: | D:20230330120805+02'00' |
Pages: | 139 |
Creator: | Microsoft® Word 2016 |
Producer: | Microsoft® Word 2016 |
References
Outgoing- ANSSI-CC-2023/01 - AQUARIUS_BA_09 ( AQUARIUS_v1 )
Heuristics ?
Extracted SARs
ALC_CMC.5, ASE_SPD.1, AGD_PRE.1, ALC_DVS.2, ALC_TAT.3, ATE_COV.3, ASE_ECD.1, ALC_LCD.1, ADV_FSP.5, ASE_TSS.2, ADV_ARC.1, ASE_REQ.2, ALC_DEL.1, ASE_CCL.1, ADV_TDS.5, ASE_INT.1, AGD_OPE.1, ATE_DPT.3, ATE_FUN.2, ADV_SPM.1, AVA_VAN.5, ATE_IND.2, ADV_INT.3, ASE_OBJ.2, ALC_CMS.5, ADV_IMP.2, ALC_FLR.2Scheme data ?
Product | MultiApp V5.1(version 5.1) | |
---|---|---|
Url | https://cyber.gouv.fr/produits-certifies/multiapp-v51version-51 | |
Description | Le produit évalué est « MultiApp V5.1 (version 5.1) » développé par THALES DIS FRANCE SAS et THALES DIS DESIGN SERVICES. Le produit est destiné à héberger et exécuter une ou plusieurs applications, dites applets dans la terminologie Java Card. Ces applications peuvent revêtir un caractère sécuritaire différent (selon qu’elles soient « sensibles » ou « basiques ») et peuvent être chargées et insta | |
Sponsor | THALES DIS DESIGN SERVICES | |
Developer | THALES DIS FRANCE SAS | |
Cert Id | ANSSI-CC-2023/31 | |
Level | EAL6+ | |
Expiration Date | 23 Août 2028 | |
Enhanced | ||
Cert Id | ANSSI-CC-2023/31 | |
Certification Date | 23/08/2023 | |
Expiration Date | 23/08/2028 | |
Category | Cartes Ă puce | |
Cc Version | Critères Communs version 3.1r5 | |
Developer | THALES DIS FRANCE SAS | |
Sponsor | THALES DIS DESIGN SERVICES | |
Evaluation Facility | CEA-LETI | |
Level | EAL6+ | |
Protection Profile | Java Card System – Open Configuration Protection Profile, version 3.1 certifié BSI-CC-PP-0099-V2-2020, avril 2020 | |
Mutual Recognition | CCRA SOG-IS | |
Augmented | ALC_FLR.2 | |
Report Link | https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-CC-2023_31fr.pdf | |
Target Link | https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-cible-2023_31en.pdf | |
Cert Link | https://cyber.gouv.fr/sites/default/files/document_type/Certificat-CC-2023_31fr.pdf |
References ?
Updates ?
-
22.04.2024 The certificate data changed.
Certificate changed
The Maintenance Updates of the certificate were updated.
- The new value is
{'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.cc.CCCertificate.MaintenanceReport', 'maintenance_date': '2024-04-04', 'maintenance_title': 'ANSSI-CC-2023/31-M01', 'maintenance_report_link': 'https://www.commoncriteriaportal.org/files/epfiles/ANSSI-CC-2023_31-M01fr.pdf', 'maintenance_st_link': 'https://www.commoncriteriaportal.org/files/epfiles/ANSSI-cible-CC-2023_31-M01en.pdf'}]}
.
- The new value is
-
15.02.2024 The certificate data changed.
Certificate changed
The state of the certificate object was updated.
- The following values were inserted:
{'report': {'_type': 'sec_certs.sample.cc.CCCertificate.DocumentState', 'download_ok': True, 'convert_garbage': False, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '1a54d3f48c7dad91ae4de02e7b5a95afe8f5ed1b1e5636dc400382ad316c8614', 'txt_hash': '98435e864afb3d2d434ff22abc294d758390397fb52ea8352b272dfed4743e63'}, 'st': {'_type': 'sec_certs.sample.cc.CCCertificate.DocumentState', 'download_ok': True, 'convert_garbage': False, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '0c34308eca42ab6f5aa14874016a218269ee3170ef9ef8fbe6047c08dffc8c50', 'txt_hash': '81980b4037fee8e2133db9a12c9968ffd3facb5950d5686f7fbb77028457a11c'}, 'cert': {'_type': 'sec_certs.sample.cc.CCCertificate.DocumentState', 'download_ok': True, 'convert_garbage': False, 'convert_ok': True, 'extract_ok': True, 'pdf_hash': '08f3226999d5b2c2bd40fa60fd2522f96f7c79cb13f57c3d6a704b397a43d778', 'txt_hash': 'dabf81cc68725ae6a96b067e7ce2e883d8766cf592bd1e782a3405a89558fe0e'}}
. - The following properties were deleted:
['st_download_ok', 'report_download_ok', 'st_convert_garbage', 'report_convert_garbage', 'st_convert_ok', 'report_convert_ok', 'st_extract_ok', 'report_extract_ok', 'st_pdf_hash', 'report_pdf_hash', 'st_txt_hash', 'report_txt_hash']
.
The PDF extraction data was updated.
- The following values were inserted:
{'cert_metadata': {'pdf_file_size_bytes': 156728, 'pdf_is_encrypted': False, 'pdf_number_of_pages': 2, '/CreationDate': "D:20230829152627+02'00'", '/Creator': 'Acrobat PDFMaker 23 pour Word', '/Keywords': '', '/ModDate': "D:20230829152916+02'00'", '/Producer': 'Adobe PDF Library 23.1.175', 'pdf_hyperlinks': {'_type': 'Set', 'elements': []}}, 'cert_frontpage': None, 'cert_keywords': {'cc_cert_id': {'FR': {'ANSSI-CC-2023/31': 2}}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0099-V2-2020': 1}}, 'cc_security_level': {'EAL': {'EAL6': 1, 'EAL2': 1}}, 'cc_sar': {'ALC': {'ALC_FLR.2': 1}}, 'cc_sfr': {}, 'cc_claims': {}, 'vendor': {}, 'eval_facility': {'CEA-LETI': {'CEA-LETI': 2}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {}, 'crypto_protocol': {}, 'randomness': {}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {}}, 'cert_filename': 'Certificat-CC-2023_31fr.pdf'}
. - The report_frontpage property was set to
{'FR': {}}
. - The st_frontpage property was set to
None
. - The report_keywords property was updated, with the
{'cc_cert_id': {'__update__': {'FR': {'__update__': {'ANSSI-CC-2023/31': 2, 'ANSSI-CC-2023/01': 2}}}}}
data. - The st_keywords property was updated, with the
{'cc_cert_id': {'__insert__': {'NL': {'CC-1': 2, 'CC-2': 3, 'CC-3': 4}}, '__update__': {'FR': {'__update__': {'ANSSI-CC-2023/01': 1}}}}}
data.
- The following values were inserted:
-
13.02.2024 The certificate data changed.
Certificate changed
The PDF extraction data was updated.
- The report_keywords property was updated, with the
{'cc_cert_id': {'__update__': {'FR': {'__update__': {'ANSSI-CC-2023/31': 4, 'ANSSI-CC-2023/01': 4}}}}}
data. - The st_keywords property was updated, with the
{'cc_cert_id': {'__update__': {'FR': {'__update__': {'ANSSI-CC-2023/01': 2}}}, '__delete__': ['NL']}}
data.
- The report_keywords property was updated, with the
-
07.02.2024 The certificate data changed.
Certificate changed
The PDF extraction data was updated.
- The report_keywords property was updated, with the
{'cc_cert_id': {'__delete__': ['CA']}}
data. - The st_keywords property was updated, with the
{'cc_cert_id': {'__delete__': ['CA']}}
data.
- The report_keywords property was updated, with the
-
07.02.2024 The certificate data changed.
Certificate changed
The PDF extraction data was updated.
- The report_keywords property was updated, with the
{'cc_cert_id': {'__insert__': {'CA': {'7 5 7': 1, '2 0 2': 16, '1 7 1': 2, '1 7 2': 2, '1 7 3': 2}}, '__update__': {'FR': {'__update__': {'ANSSI-CC-2023/31': 2, 'ANSSI-CC-2023/01': 2}}}}}
data. - The st_keywords property was updated, with the
{'cc_cert_id': {'__insert__': {'NL': {'CC-1': 2, 'CC-2': 3, 'CC-3': 4}, 'CA': {'1 2 3': 4, '5 6 7': 4}}, '__update__': {'FR': {'__update__': {'ANSSI-CC-2023/01': 1}}}}}
data.
- The report_keywords property was updated, with the
-
05.02.2024 The certificate data changed.
Certificate changed
The computed heuristics were updated.
- The scheme_data property was updated, with the
{'description': 'Le produit évalué est « MultiApp V5.1 (version 5.1) » développé par THALES DIS FRANCE SAS et THALES DIS DESIGN SERVICES.\nLe produit est destiné à héberger et exécuter une ou plusieurs applications, dites applets dans la terminologie Java Card. Ces applications peuvent revêtir un caractère sécuritaire différent (selon qu’elles soient « sensibles » ou « basiques ») et peuvent être chargées et insta'}
data.
- The scheme_data property was updated, with the
-
04.01.2024 The certificate data changed.
Certificate changed
The computed heuristics were updated.
- The following values were inserted:
{'annotated_references': None}
. - The report_references property was updated, with the
{'directly_referenced_by': {'__add__': {'_type': 'Set', 'elements': ['ANSSI-CC-2023/45']}}, 'indirectly_referenced_by': {'__add__': {'_type': 'Set', 'elements': ['ANSSI-CC-2023/45']}}}
data. - The scheme_data property was updated, with the
{'url': 'https://cyber.gouv.fr/produits-certifies/multiapp-v51version-51', 'enhanced': {'__insert__': {'cert_id': 'ANSSI-CC-2023/31', 'sponsor': 'THALES DIS DESIGN SERVICES', 'mutual_recognition': 'CCRA\n SOG-IS', 'augmented': 'ALC_FLR.2'}, '__update__': {'certification_date': '23/08/2023', 'expiration_date': '23/08/2028', 'developer': 'THALES DIS FRANCE SAS', 'evaluation_facility': 'CEA-LETI', 'report_link': 'https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-CC-2023_31fr.pdf', 'target_link': 'https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-cible-2023_31en.pdf', 'cert_link': 'https://cyber.gouv.fr/sites/default/files/document_type/Certificat-CC-2023_31fr.pdf'}, '__delete__': ['id', 'augmentations', 'recognition', 'description']}}
data.
- The following values were inserted:
-
19.10.2023 The certificate data changed.
Certificate changed
The computed heuristics were updated.
- The report_references property was updated, with the
{'directly_referenced_by': {'_type': 'Set', 'elements': ['ANSSI-CC-2023/36', 'ANSSI-CC-2023/34', 'ANSSI-CC-2023/35', 'ANSSI-CC-2023/42']}, 'indirectly_referenced_by': {'_type': 'Set', 'elements': ['ANSSI-CC-2023/36', 'ANSSI-CC-2023/34', 'ANSSI-CC-2023/35', 'ANSSI-CC-2023/42']}}
data.
- The report_references property was updated, with the
-
21.09.2023 The certificate was first processed.
New certificate
A new Common Criteria certificate with the product name MultiApp V5.1 (version 5.1) ( 2023/31) was processed.
Raw data
{
"_type": "sec_certs.sample.cc.CCCertificate",
"category": "ICs, Smart Cards and Smart Card-Related Devices and Systems",
"cert_link": "https://www.commoncriteriaportal.org/files/epfiles/Certificat-CC-2023_31fr.pdf",
"dgst": "d572066790a6bdc2",
"heuristics": {
"_type": "sec_certs.sample.cc.CCCertificate.Heuristics",
"annotated_references": null,
"cert_id": "ANSSI-CC-2023/31",
"cert_lab": null,
"cpe_matches": null,
"direct_transitive_cves": null,
"extracted_sars": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_REQ",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_FUN",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_IND",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_INT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_ARC",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_LCD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_TAT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_IMP",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_TSS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_TDS",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_SPD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_DPT",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_PRE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ATE_COV",
"level": 3
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_INT",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_ECD",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMS",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_SPM",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ADV_FSP",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AGD_OPE",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DEL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_FLR",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_DVS",
"level": 2
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_CCL",
"level": 1
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ALC_CMC",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "AVA_VAN",
"level": 5
},
{
"_type": "sec_certs.sample.sar.SAR",
"family": "ASE_OBJ",
"level": 2
}
]
},
"extracted_versions": {
"_type": "Set",
"elements": [
"5.1"
]
},
"indirect_transitive_cves": null,
"related_cves": null,
"report_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/45",
"ANSSI-CC-2023/35",
"ANSSI-CC-2023/42",
"ANSSI-CC-2023/34",
"ANSSI-CC-2023/36"
]
},
"directly_referencing": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/01"
]
},
"indirectly_referenced_by": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/45",
"ANSSI-CC-2023/35",
"ANSSI-CC-2023/42",
"ANSSI-CC-2023/34",
"ANSSI-CC-2023/36"
]
},
"indirectly_referencing": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/01"
]
}
},
"scheme_data": {
"cert_id": "ANSSI-CC-2023/31",
"description": "Le produit \u00e9valu\u00e9 est \u00ab MultiApp V5.1 (version 5.1) \u00bb d\u00e9velopp\u00e9 par THALES DIS FRANCE SAS et THALES DIS DESIGN SERVICES.\nLe produit est destin\u00e9 \u00e0 h\u00e9berger et ex\u00e9cuter une ou plusieurs applications, dites applets dans la terminologie Java Card. Ces applications peuvent rev\u00eatir un caract\u00e8re s\u00e9curitaire diff\u00e9rent (selon qu\u2019elles soient \u00ab sensibles \u00bb ou \u00ab basiques \u00bb) et peuvent \u00eatre charg\u00e9es et insta",
"developer": "THALES DIS FRANCE SAS",
"enhanced": {
"augmented": "ALC_FLR.2",
"category": "Cartes \u00e0 puce",
"cc_version": "Crit\u00e8res Communs version 3.1r5",
"cert_id": "ANSSI-CC-2023/31",
"cert_link": "https://cyber.gouv.fr/sites/default/files/document_type/Certificat-CC-2023_31fr.pdf",
"certification_date": "23/08/2023",
"developer": "THALES DIS FRANCE SAS",
"evaluation_facility": "CEA-LETI",
"expiration_date": "23/08/2028",
"level": "EAL6+",
"mutual_recognition": "CCRA\n SOG-IS",
"protection_profile": "Java Card System \u2013 Open Configuration Protection Profile, version 3.1 certifi\u00e9 BSI-CC-PP-0099-V2-2020, avril 2020",
"report_link": "https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-CC-2023_31fr.pdf",
"sponsor": "THALES DIS DESIGN SERVICES",
"target_link": "https://cyber.gouv.fr/sites/default/files/document_type/ANSSI-cible-2023_31en.pdf"
},
"expiration_date": "23 Ao\u00fbt 2028",
"level": "EAL6+",
"product": "MultiApp V5.1(version 5.1)",
"sponsor": "THALES DIS DESIGN SERVICES",
"url": "https://cyber.gouv.fr/produits-certifies/multiapp-v51version-51"
},
"st_references": {
"_type": "sec_certs.sample.certificate.References",
"directly_referenced_by": null,
"directly_referencing": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/01"
]
},
"indirectly_referenced_by": null,
"indirectly_referencing": {
"_type": "Set",
"elements": [
"ANSSI-CC-2023/01"
]
}
},
"verified_cpe_matches": null
},
"maintenance_updates": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.cc.CCCertificate.MaintenanceReport",
"maintenance_date": "2024-04-04",
"maintenance_report_link": "https://www.commoncriteriaportal.org/files/epfiles/ANSSI-CC-2023_31-M01fr.pdf",
"maintenance_st_link": "https://www.commoncriteriaportal.org/files/epfiles/ANSSI-cible-CC-2023_31-M01en.pdf",
"maintenance_title": "ANSSI-CC-2023/31-M01"
}
]
},
"manufacturer": "THALES DIS FRANCE SA",
"manufacturer_web": "https://www.thalesgroup.com/en/europe/france",
"name": "MultiApp V5.1 (version 5.1) ( 2023/31)",
"not_valid_after": "2028-09-28",
"not_valid_before": "2023-08-28",
"pdf_data": {
"_type": "sec_certs.sample.cc.CCCertificate.PdfData",
"cert_filename": "Certificat-CC-2023_31fr.pdf",
"cert_frontpage": null,
"cert_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"FR": {
"ANSSI-CC-2023/31": 2
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0099-V2-2020": 1
}
},
"cc_sar": {
"ALC": {
"ALC_FLR.2": 1
}
},
"cc_security_level": {
"EAL": {
"EAL2": 1,
"EAL6": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"CEA-LETI": {
"CEA-LETI": 2
}
},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {},
"symmetric_crypto": {},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {},
"vulnerability": {}
},
"cert_metadata": {
"/CreationDate": "D:20230829152627+02\u002700\u0027",
"/Creator": "Acrobat PDFMaker 23 pour Word",
"/Keywords": "",
"/ModDate": "D:20230829152916+02\u002700\u0027",
"/Producer": "Adobe PDF Library 23.1.175",
"pdf_file_size_bytes": 156728,
"pdf_hyperlinks": {
"_type": "Set",
"elements": []
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 2
},
"report_filename": "ANSSI-CC-2023_31fr.pdf",
"report_frontpage": {
"FR": {}
},
"report_keywords": {
"asymmetric_crypto": {},
"cc_cert_id": {
"FR": {
"ANSSI-CC-2023/01": 2,
"ANSSI-CC-2023/31": 2
}
},
"cc_claims": {},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP-0099-V2-2020": 2
}
},
"cc_sar": {
"AGD": {
"AGD_OPE": 5,
"AGD_PRE": 2
},
"ALC": {
"ALC_FLR": 1,
"ALC_FLR.2": 2
},
"AVA": {
"AVA_VAN": 1
}
},
"cc_security_level": {
"EAL": {
"EAL 6": 1,
"EAL2": 2,
"EAL7": 1
},
"ITSEC": {
"ITSEC E6 Elev\u00e9": 1
}
},
"cc_sfr": {},
"certification_process": {},
"cipher_mode": {},
"cplc_data": {
"ICFab": {
"IC Fabricator": 1
}
},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 1
}
},
"crypto_scheme": {},
"device_model": {},
"ecc_curve": {},
"eval_facility": {
"CEA-LETI": {
"CEA - LETI": 1
},
"CESTI": {
"CESTI": 4
}
},
"hash_function": {},
"ic_data_group": {},
"javacard_api_const": {},
"javacard_packages": {},
"javacard_version": {
"JavaCard": {
"Java Card 3.1": 3
}
},
"os_name": {},
"pq_crypto": {},
"randomness": {},
"side_channel_analysis": {},
"standard_id": {
"CC": {
"CCMB-2017-04-001": 1,
"CCMB-2017-04-002": 1,
"CCMB-2017-04-003": 1
}
},
"symmetric_crypto": {
"DES": {
"DES": {
"DES": 1
}
}
},
"technical_report_id": {},
"tee_name": {},
"tls_cipher_suite": {},
"vendor": {
"Gemalto": {
"Gemalto": 1
}
},
"vulnerability": {}
},
"report_metadata": {
"/CreationDate": "D:20230829152915+02\u002700\u0027",
"/Creator": "Acrobat PDFMaker 23 pour Word",
"/Keywords": "",
"/ModDate": "D:20230829152915+02\u002700\u0027",
"/Producer": "Adobe PDF Library 23.1.175",
"pdf_file_size_bytes": 428718,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"http://www.commoncriteriaportal.org/",
"http://www.ssi.gouv.fr/",
"mailto:certification@ssi.gouv.fr",
"http://www.sogis.eu/"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 17
},
"st_filename": "ANSSI-cible-2023_31en.pdf",
"st_frontpage": null,
"st_keywords": {
"asymmetric_crypto": {
"ECC": {
"ECC": {
"ECC": 12
},
"ECDH": {
"ECDH": 8
},
"ECDSA": {
"ECDSA": 4
}
},
"FF": {
"DH": {
"DH": 14,
"Diffie-Hellman": 5
}
}
},
"cc_cert_id": {
"FR": {
"ANSSI-CC-2023/01": 1
},
"NL": {
"CC-1": 2,
"CC-2": 3,
"CC-3": 4
}
},
"cc_claims": {
"A": {
"A.CAP_FILE": 4,
"A.DELETION": 4,
"A.OS-UPDATE-EVIDENCE": 3,
"A.SECURE_ACODE_MANAGEMENT": 3,
"A.VERIFICATION": 3
},
"D": {
"D.API_DATA": 3,
"D.APP_CODE": 6,
"D.APP_C_DATA": 3,
"D.APP_I_DATA": 5,
"D.APP_KEYS": 1,
"D.CRYPTO": 5,
"D.JCS_CODE": 6,
"D.JCS_DATA": 8,
"D.OS-": 1,
"D.OS-UPDATE-CODE-ID": 3,
"D.OS-UPDATE_ADDITIONALCODE": 5,
"D.OS-UPDATE_DEC-KEY": 2,
"D.OS-UPDATE_SGNVER-KEY": 2,
"D.PIN": 4,
"D.SEC_DATA": 7
},
"O": {
"O.ALARM": 15,
"O.APPLET": 28,
"O.ARRAY_VIEWS_CONFID": 7,
"O.ARRAY_VIEWS_INTEG": 3,
"O.CARD-MANAGEMENT": 20,
"O.CIPHER": 11,
"O.CODE_CAP_FILE": 23,
"O.CONFID-OS-UPDATE": 4,
"O.DELETION": 4,
"O.FIREWALL": 12,
"O.GLOBAL_ARRAYS_CONFID": 9,
"O.GLOBAL_ARRAYS_INTEG": 5,
"O.INSTALL": 7,
"O.JAVAOBJECT": 68,
"O.KEY-MNGT": 6,
"O.LOAD": 11,
"O.NATIVE": 11,
"O.OBJ-DELETION": 4,
"O.OBJ_DELETION": 4,
"O.OPERATE": 15,
"O.PIN-MNGT": 6,
"O.PIN_MNGT": 4,
"O.REALLOCATION": 5,
"O.RESOURCES": 9,
"O.RND": 1,
"O.RNG": 10,
"O.SCP": 33,
"O.SECURE_AC_ACTIVATION": 5,
"O.SECURE_LOAD_ACODE": 9,
"O.SID": 13,
"O.TOE_IDENTIFICATION": 7,
"O.TRANSACTION": 6
},
"OE": {
"OE.CAP_FILE": 5,
"OE.CODE-EVIDENCE": 11,
"OE.OS-UPDATE-ENCRYPTION": 6,
"OE.OS-UPDATE-EVIDENCE": 3,
"OE.SECURE_ACODE_MANAGEMENT": 3,
"OE.VERIFICATION": 25
},
"OP": {
"OP.ARRAY_AASTORE": 3,
"OP.ARRAY_ACCESS": 7,
"OP.ARRAY_LENGTH": 3,
"OP.ARRAY_T_ALOAD": 3,
"OP.ARRAY_T_ASTORE": 3,
"OP.CREATE": 11,
"OP.DELETE_APPLET": 6,
"OP.DELETE_CAP_FILE": 4,
"OP.DELETE_CAP_FILE_APPLET": 4,
"OP.INSTANCE_FIELD": 6,
"OP.INVK_INTERFACE": 10,
"OP.INVK_VIRTUAL": 8,
"OP.JAVA": 8,
"OP.PUT": 8,
"OP.PUTFIELD": 1,
"OP.PUTSTATIC": 1,
"OP.THROW": 7,
"OP.TYPE_ACCESS": 7
},
"OSP": {
"OSP.ADDITIONAL_CODE_ENCRYPTION": 3,
"OSP.ADDITIONAL_CODE_SIGNING": 3,
"OSP.ATOMIC_ACTIVATION": 3,
"OSP.RNG": 3,
"OSP.TOE_IDENTIFICATION": 3,
"OSP.VERIFICATION": 3
},
"OT": {
"OT.X": 1
},
"R": {
"R.JAVA": 13
},
"T": {
"T.CONFID-APPLI-DATA": 3,
"T.CONFID-JCS-CODE": 3,
"T.CONFID-JCS-DATA": 3,
"T.CONFID-OS-UPDATE_LOAD": 3,
"T.DELETION": 3,
"T.EXE-CODE": 6,
"T.FAKE-SGNVER-KEY": 3,
"T.INSTALL": 3,
"T.INTEG-APPLI-CODE": 6,
"T.INTEG-APPLI-DATA": 6,
"T.INTEG-JCS-CODE": 3,
"T.INTEG-JCS-DATA": 3,
"T.INTEG-OS-UPDATE_LOAD": 3,
"T.NATIVE": 3,
"T.OBJ-DELETION": 3,
"T.PHYSICAL": 3,
"T.RESOURCES": 3,
"T.SID": 6,
"T.UNAUTHORIZED_TOE_CODE_UPDATE": 3,
"T.WRONG-UPDATE-STATE": 3
}
},
"cc_protection_profile_id": {
"BSI": {
"BSI-CC-PP- 0084-2014": 1,
"BSI-CC-PP-0068-V2-2011-MA-01": 1,
"BSI-CC-PP-0084-2014": 1,
"BSI-CC-PP-0099-V2-2020": 1,
"BSI-PP-0055-2009": 1,
"BSI-PP-0056-V2-MA-2012": 1
}
},
"cc_sar": {
"ADV": {
"ADV_ARC": 1,
"ADV_ARC.1": 8,
"ADV_FSP.1": 1,
"ADV_FSP.2": 2,
"ADV_FSP.4": 2,
"ADV_FSP.5": 6,
"ADV_IMP.1": 3,
"ADV_IMP.2": 4,
"ADV_INT.3": 2,
"ADV_SPM.1": 9,
"ADV_TDS.1": 2,
"ADV_TDS.3": 3,
"ADV_TDS.4": 1,
"ADV_TDS.5": 6
},
"AGD": {
"AGD_OPE": 1,
"AGD_OPE.1": 7,
"AGD_PRE": 1,
"AGD_PRE.1": 6
},
"ALC": {
"ALC_CMC.5": 4,
"ALC_CMS.5": 1,
"ALC_DEL.1": 2,
"ALC_DVS.2": 4,
"ALC_FLR.2": 7,
"ALC_LCD.1": 4,
"ALC_TAT.1": 2,
"ALC_TAT.3": 4
},
"ASE": {
"ASE_CCL.1": 1,
"ASE_ECD.1": 1,
"ASE_INT.1": 1,
"ASE_OBJ.2": 1,
"ASE_REQ.2": 1,
"ASE_SPD.1": 1,
"ASE_TSS.1": 1,
"ASE_TSS.2": 1
},
"ATE": {
"ATE_COV.1": 2,
"ATE_COV.2": 1,
"ATE_COV.3": 2,
"ATE_DPT.1": 1,
"ATE_DPT.3": 2,
"ATE_FUN.1": 3,
"ATE_FUN.2": 4,
"ATE_IND.2": 2
},
"AVA": {
"AVA_VAN.5": 2
}
},
"cc_security_level": {
"EAL": {
"EAL 6+": 1,
"EAL6": 34,
"EAL6 augmented": 1,
"EAL6+": 3
}
},
"cc_sfr": {
"FAU": {
"FAU_ARP.1": 15,
"FAU_ARP.1.1": 1,
"FAU_SAA.1": 2,
"FAU_SAS.1": 2
},
"FCO": {
"FCO_NRO": 5,
"FCO_NRO.2": 3
},
"FCS": {
"FCS_CKM": 47,
"FCS_CKM.1": 29,
"FCS_CKM.1.1": 3,
"FCS_CKM.2": 10,
"FCS_CKM.2.1": 1,
"FCS_CKM.3": 5,
"FCS_CKM.3.1": 1,
"FCS_CKM.4": 29,
"FCS_CKM.4.1": 2,
"FCS_CMK.4": 1,
"FCS_COP": 48,
"FCS_COP.1": 24,
"FCS_COP.1.1": 5,
"FCS_RNG": 19,
"FCS_RNG.1": 11,
"FCS_RNG.1.1": 3,
"FCS_RNG.1.2": 3
},
"FDP": {
"FDP_ACC": 48,
"FDP_ACC.1": 19,
"FDP_ACC.2": 6,
"FDP_ACF": 43,
"FDP_ACF.1": 24,
"FDP_IFC": 25,
"FDP_IFC.1": 14,
"FDP_IFC.2": 2,
"FDP_IFF": 15,
"FDP_IFF.1": 14,
"FDP_ITC": 13,
"FDP_ITC.1": 15,
"FDP_ITC.2": 20,
"FDP_ITT.1": 2,
"FDP_RIP": 96,
"FDP_RIP.1": 11,
"FDP_RIP.1.1": 1,
"FDP_ROL": 13,
"FDP_ROL.1": 5,
"FDP_SDC.1": 2,
"FDP_SDI": 8,
"FDP_SDI.2": 4,
"FDP_UCT.1": 2,
"FDP_UIT": 6,
"FDP_UIT.1": 4
},
"FIA": {
"FIA_AFL": 23,
"FIA_AFL.1.1": 2,
"FIA_AFL.1.2": 2,
"FIA_API.1": 2,
"FIA_ATD": 12,
"FIA_ATD.1": 3,
"FIA_UAU": 64,
"FIA_UAU.1": 6,
"FIA_UAU.1.1": 2,
"FIA_UAU.1.2": 2,
"FIA_UAU.4": 1,
"FIA_UAU.4.1": 1,
"FIA_UAU.5.1": 1,
"FIA_UAU.5.2": 1,
"FIA_UAU.6.1": 1,
"FIA_UID": 38,
"FIA_UID.1": 19,
"FIA_UID.1.1": 2,
"FIA_UID.1.2": 2,
"FIA_UID.2": 1,
"FIA_USB": 6,
"FIA_USB.1": 3
},
"FMT": {
"FMT_LIM": 38,
"FMT_LIM.1": 18,
"FMT_LIM.1.1": 2,
"FMT_LIM.2": 17,
"FMT_LIM.2.1": 2,
"FMT_MSA": 102,
"FMT_MSA.1": 15,
"FMT_MSA.2": 2,
"FMT_MSA.3": 22,
"FMT_MTD": 53,
"FMT_MTD.1": 13,
"FMT_MTD.3": 1,
"FMT_SMF": 75,
"FMT_SMF.1": 29,
"FMT_SMF.1.1": 2,
"FMT_SMR": 85,
"FMT_SMR.1": 35,
"FMT_SMR.1.1": 2,
"FMT_SMR.1.2": 2
},
"FPR": {
"FPR_UNO": 5,
"FPR_UNO.1": 8,
"FPR_UNO.1.1": 1
},
"FPT": {
"FPT_EMS": 4,
"FPT_EMS.1": 14,
"FPT_EMS.1.1": 3,
"FPT_EMS.1.2": 3,
"FPT_FLS": 48,
"FPT_FLS.1": 16,
"FPT_FLS.1.1": 2,
"FPT_ITT": 6,
"FPT_ITT.1": 2,
"FPT_PHP": 7,
"FPT_PHP.3": 17,
"FPT_PHP.3.1": 1,
"FPT_RCV": 13,
"FPT_RCV.3": 4,
"FPT_RCV.4": 1,
"FPT_TDC.1": 7,
"FPT_TDC.1.1": 1,
"FPT_TDC.1.2": 1,
"FPT_TST": 8,
"FPT_TST.1": 14,
"FPT_TST.1.1": 1,
"FPT_TST.1.2": 1,
"FPT_TST.1.3": 1
},
"FRU": {
"FRU_FLT.2": 2
},
"FTP": {
"FTP_ITC": 17,
"FTP_ITC.1": 7,
"FTP_ITC.1.1": 1,
"FTP_ITC.1.2": 1,
"FTP_ITC.1.3": 1,
"FTP_TRP": 5,
"FTP_TRP.1": 7
}
},
"certification_process": {
"OutOfScope": {
" The DELETE and INSTALL APDU commands are out of scope of this SPM": 1,
"1, are out of the scope of the SPM as they are linked to the applet loading or deletion that is out of scope of the SPM boundaries limited to VM opcodes The SFR FMT_MTD.3/JCRE is out of scope of the SPM": 1,
"Context, the Selected Applet Context, and the Active Applets Note: the Selected Applet context is out of scope of the VM functionalities. It is a process that occurs prior to VM start The initial setting of": 1,
"a timeout policy that prevent them from being blocked should a card fails to answer. That point is out of scope of this Security Target, though. Finally, the objectives O.SCP.RECOVERY and O.SCP.SUPPORT are": 1,
"and deletion; see #.DELETION and #.INSTALL). The DELETE and INSTALL APDU commands are out of scope of this SPM. The list of registred applets\u2019 AIDs is proven to be not modified during the execution": 1,
"as a null reference. Such a mechanism is implementation-dependent. The deletion of applets is out of scope of this SPM scope. In the case of an array type, fields are components of the array ([JVM], \u00a72.14": 1,
"because AID registry is created during loading phase, which is also out of scope of the SPM (Hypothesis 2 of the SPM document [MAV51_SPM]). MultiApp V5.1: JCS Security Target ST": 1,
"is also out of scope (Hypothesis 4 of the SPM document [MAV51_SPM]).. 3) S.CAP_FILE performing OP.ARRAY_AASTORE of the": 1,
"out of scope": 9,
"the active context is not the same as the Selected Applet Context. Application note: This rule is out of scope of the SPM modelisation because CLEAR_ON_DESELECT objects can be created exclusively in the API": 1
}
},
"cipher_mode": {
"CBC": {
"CBC": 3
},
"ECB": {
"ECB": 1
}
},
"cplc_data": {
"ICFab": {
"IC Fabricator": 1
},
"ICType": {
"IC Type": 1
}
},
"crypto_engine": {},
"crypto_library": {},
"crypto_protocol": {
"PACE": {
"PACE": 155
}
},
"crypto_scheme": {
"KA": {
"Key Agreement": 6,
"Key agreement": 2
},
"MAC": {
"MAC": 14
}
},
"device_model": {},
"ecc_curve": {},
"eval_facility": {},
"hash_function": {
"SHA": {
"SHA1": {
"SHA-1": 4,
"SHA1": 2
},
"SHA2": {
"SHA-224": 1,
"SHA-256": 2,
"SHA-384": 1,
"SHA-512": 2,
"SHA2": 1,
"SHA224": 1
},
"SHA3": {
"SHA3": 2,
"SHA3-384": 1,
"SHA3-512": 1
}
}
},
"ic_data_group": {
"EF": {
"EF.DG1": 4,
"EF.DG16": 4,
"EF.DG3": 1,
"EF.DG4": 1
}
},
"javacard_api_const": {
"misc": {
"TYPE_ACCESS": 7
}
},
"javacard_packages": {
"com": {
"com.gemalto.belpic": 1,
"com.gemalto.javacard.eid": 1,
"com.gemalto.javacard.fido.ctap": 1,
"com.gemalto.javacard.iasclassic": 1,
"com.gemalto.javacard.mspnp": 1,
"com.gemalto.javacardx.gdp": 1,
"com.gemalto.moc.client": 1,
"com.gemalto.moc.server": 1,
"com.gemalto.mpcos": 1,
"com.gemalto.puredi": 1,
"com.gemalto.tacho": 1
},
"java": {
"java.lang": 1
},
"javacard": {
"javacard.eid": 1,
"javacard.fido.ctap": 1,
"javacard.framework": 3,
"javacard.iasclassic": 1,
"javacard.mspnp": 1
},
"javacardx": {
"javacardx.gdp": 1
}
},
"javacard_version": {
"JavaCard": {
"Java Card 3.1": 8
}
},
"os_name": {},
"pq_crypto": {},
"randomness": {
"PRNG": {
"PRNG": 1
},
"RNG": {
"RND": 1,
"RNG": 43
}
},
"side_channel_analysis": {
"FI": {
"Malfunction": 6,
"Physical Tampering": 3,
"fault induction": 2,
"malfunction": 9,
"physical tampering": 1
},
"SCA": {
"DPA": 2,
"Leak-Inherent": 3,
"SPA": 1,
"physical probing": 7,
"timing attacks": 1
}
},
"standard_id": {
"BSI": {
"AIS20": 1,
"AIS31": 6,
"BSI-AIS31": 1
},
"CC": {
"CCMB-2017-04-001": 1,
"CCMB-2017-04-002": 1,
"CCMB-2017-04-003": 1
},
"FIPS": {
"FIPS 197": 1,
"FIPS180-4": 2,
"FIPS197": 5,
"FIPS202": 2
},
"ICAO": {
"ICAO": 3
},
"NIST": {
"SP 800-67": 1
},
"PKCS": {
"PKCS#1": 7,
"PKCS#5": 5
},
"SCP": {
"SCP01": 4,
"SCP02": 4,
"SCP03": 5
}
},
"symmetric_crypto": {
"AES_competition": {
"AES": {
"AES": 28,
"AES-256": 2
}
},
"DES": {
"3DES": {
"3DES": 2,
"TDEA": 1,
"TDES": 12,
"Triple-DES": 3
},
"DES": {
"DES": 20
}
},
"constructions": {
"MAC": {
"CMAC": 3,
"HMAC": 3,
"KMAC": 3
}
}
},
"technical_report_id": {},
"tee_name": {
"IBM": {
"SE": 2
}
},
"tls_cipher_suite": {},
"vendor": {
"Gemalto": {
"Gemalto": 1
},
"Thales": {
"Thales": 46
}
},
"vulnerability": {}
},
"st_metadata": {
"/Author": "THALES",
"/CreationDate": "D:20230330120805+02\u002700\u0027",
"/Creator": "Microsoft\u00ae Word 2016",
"/ModDate": "D:20230330120805+02\u002700\u0027",
"/Producer": "Microsoft\u00ae Word 2016",
"/Title": "MultiApp V5.1: JCS Security Target",
"pdf_file_size_bytes": 3491017,
"pdf_hyperlinks": {
"_type": "Set",
"elements": [
"https://www.ssi.gouv.fr/uploads/2021/03/anssi-guide-mecanismes_crypto-2.04.pdf"
]
},
"pdf_is_encrypted": false,
"pdf_number_of_pages": 139
}
},
"protection_profiles": {
"_type": "Set",
"elements": [
{
"_type": "sec_certs.sample.protection_profile.ProtectionProfile",
"pp_eal": "EAL4+",
"pp_ids": null,
"pp_link": "https://www.commoncriteriaportal.org/files/ppfiles/pp0099b_pdf.pdf",
"pp_name": "Java Card Protection Profile - Open Configuration"
}
]
},
"report_link": "https://www.commoncriteriaportal.org/files/epfiles/ANSSI-CC-2023_31fr.pdf",
"scheme": "FR",
"security_level": {
"_type": "Set",
"elements": [
"EAL6+",
"ALC_FLR.2"
]
},
"st_link": "https://www.commoncriteriaportal.org/files/epfiles/ANSSI-cible-2023_31en.pdf",
"state": {
"_type": "sec_certs.sample.cc.CCCertificate.InternalState",
"cert": {
"_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
"convert_garbage": false,
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"pdf_hash": "08f3226999d5b2c2bd40fa60fd2522f96f7c79cb13f57c3d6a704b397a43d778",
"txt_hash": "dabf81cc68725ae6a96b067e7ce2e883d8766cf592bd1e782a3405a89558fe0e"
},
"report": {
"_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
"convert_garbage": false,
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"pdf_hash": "1a54d3f48c7dad91ae4de02e7b5a95afe8f5ed1b1e5636dc400382ad316c8614",
"txt_hash": "98435e864afb3d2d434ff22abc294d758390397fb52ea8352b272dfed4743e63"
},
"st": {
"_type": "sec_certs.sample.cc.CCCertificate.DocumentState",
"convert_garbage": false,
"convert_ok": true,
"download_ok": true,
"extract_ok": true,
"pdf_hash": "0c34308eca42ab6f5aa14874016a218269ee3170ef9ef8fbe6047c08dffc8c50",
"txt_hash": "81980b4037fee8e2133db9a12c9968ffd3facb5950d5686f7fbb77028457a11c"
}
},
"status": "active"
}