cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with “ICAO Application”, Basic Access Control (BAC)

CSV information ?

Status active
Valid from 22.12.2014
Scheme 🇩🇪 DE
Manufacturer NXP Semiconductors Germany GmbH Business Line Identification
Category ICs, Smart Cards and Smart Card-Related Devices and Systems
Security level EAL4+, ALC_DVS.2

Heuristics summary ?

Certificate ID: BSI-DSZ-CC-0911-2014

Certification report ?

Extracted keywords

Schemes
MAC
Protocols
PACE
Randomness
RNG
Engines
SmartMX

Operating System name
JCOP 2
Vendor
NXP Semiconductors, NXP

Security level
EAL 4, EAL 5, EAL 1, EAL 2, EAL 5+, EAL 6, EAL5+, EAL 3, EAL 7, EAL 4 augmented, ITSEC Evaluation
Claims
OE.MRTD_
Security Assurance Requirements (SAR)
ADV_ARC.1, ADV_FSP.1, ADV_FSP.2, ADV_FSP.3, ADV_FSP.4, ADV_FSP.5, ADV_FSP.6, ADV_IMP.1, ADV_IMP.2, ADV_INT.1, ADV_INT.2, ADV_INT.3, ADV_SPM.1, ADV_TDS.1, ADV_TDS.2, ADV_TDS.3, ADV_TDS.4, ADV_TDS.5, ADV_TDS.6, ADV_ARC, ADV_FSP, ADV_IMP, ADV_INT, ADV_SPM, ADV_TDS, AGD_OPE.1, AGD_PRE.1, AGD_OPE, AGD_PRE, ALC_DVS.2, ALC_FLR, ALC_CMC.1, ALC_CMC.2, ALC_CMC.3, ALC_CMC.4, ALC_CMC.5, ALC_CMS.1, ALC_CMS.2, ALC_CMS.3, ALC_CMS.4, ALC_CMS.5, ALC_DEL.1, ALC_DVS.1, ALC_FLR.1, ALC_FLR.2, ALC_FLR.3, ALC_LCD.1, ALC_LCD.2, ALC_TAT.1, ALC_TAT.2, ALC_TAT.3, ALC_CMC, ALC_CMS, ALC_DEL, ALC_DVS, ALC_TAT, ATE_COV.1, ATE_COV.2, ATE_COV.3, ATE_DPT.1, ATE_DPT.2, ATE_DPT.3, ATE_DPT.4, ATE_FUN.1, ATE_FUN.2, ATE_IND.1, ATE_IND.2, ATE_IND.3, ATE_COV, ATE_DPT, ATE_FUN, ATE_IND, AVA_VAN.1, AVA_VAN.2, AVA_VAN.3, AVA_VAN.4, AVA_VAN.5, AVA_VAN, APE_INT.1, APE_CCL.1, APE_SPD.1, APE_OBJ.1, APE_OBJ.2, APE_ECD.1, APE_REQ.1, APE_REQ.2, ASE_INT.1, ASE_CCL.1, ASE_SPD.1, ASE_OBJ.1, ASE_OBJ.2, ASE_ECD.1, ASE_REQ.1, ASE_REQ.2, ASE_TSS.1, ASE_TSS.2, ASE_CCL, ASE_ECD, ASE_INT, ASE_OBJ, ASE_SPD, ASE_TSS
Protection profiles
BSI-CC-PP-0055-2009
Certificates
BSI-DSZ-CC-0911-2014, BSI-DSZ-CC-0912-2014, BSI-DSZ-CC-0858-2013, BSI-DSZ-CC-0913-2014, BSI-DSZ-CC-0914-2014, BSI-DSZ-CC-0750-V2-2014, NSCIB-CC-13-37760-CR2
Evaluation facilities
Brightsight, TÜV Informationstechnik
Certification process
Technical Report, Version 2, BSI-DSZ-CC-0911-2014, 27 November 2014, TÜV Informationstechnik GmbH (confidential document) [9] Configuration list for the TOE BSI-DSZ-CC-0911-2014, 13 November 2014, cv cryptovision, J2E082_M65 Secure Smart Card Controller Revision 3 EAL5+, version 6, 12 August 2014, Brightsight (confidential document) [16] ETR for composition Crypto Library V2.7/V2.9 on SmartMX P5Cx128/P5Cx145, according to AIS36, 14-RPT-169, Revision 1.0, 26 June 2014 (confidential document) [17] ETR for composition according to AIS36 on P5CD128V0A/B, P5CD128V0B(s), P5CC128V0A/B, IC Dedicated Software, BSI-DSZ-CC-0858-2013, Version 1.0, 22 April 2013, T-Systems GEI GmbH (confidential document) [18] NXP J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart

Side-channel analysis
JIL
Certification process
Technical Report, Version 2, BSI-DSZ-CC-0911-2014, 27 November 2014, TÜV Informationstechnik GmbH (confidential document) [9] Configuration list for the TOE BSI-DSZ-CC-0911-2014, 13 November 2014, cv cryptovision, J2E082_M65 Secure Smart Card Controller Revision 3 EAL5+, version 6, 12 August 2014, Brightsight (confidential document) [16] ETR for composition Crypto Library V2.7/V2.9 on SmartMX P5Cx128/P5Cx145, according to AIS36, 14-RPT-169, Revision 1.0, 26 June 2014 (confidential document) [17] ETR for composition according to AIS36 on P5CD128V0A/B, P5CD128V0B(s), P5CC128V0A/B, IC Dedicated Software, BSI-DSZ-CC-0858-2013, Version 1.0, 22 April 2013, T-Systems GEI GmbH (confidential document) [18] NXP J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart

Standards
AIS 34, AIS 20, AIS 25, AIS 26, AIS 31, AIS 36, AIS 1, AIS 32, AIS 38, AIS 46, AIS36, ISO/IEC 15408, ISO/IEC 18045, ISO/IEC 17065, ISO/IEC 7816-4, ICAO
Technical reports
BSI TR-03105, BSI 7138, BSI 7125, BSI 7148

File metadata

Title: Certification Report BSI-DSZ-CC-0911-2014
Subject: Common Criteria Certification
Keywords: "Common Criteria, Certification, Zertifizierung, NXP, cryptovision, BAC, BSI-DSZ-CC-0911-2014"
Author: Bundesamt für Sicherheit in der Informationstechnik
Creation date: D:20150120142600+01'00'
Modification date: D:20150120144746+01'00'
Pages: 38
Creator: Writer
Producer: LibreOffice 4.2

Frontpage

Certificate ID: BSI-DSZ-CC-0911-2014
Certified item: cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with “ICAO Application”, Basic Access Control (BAC
Certification lab: BSI
Developer: NXP Semiconductors Germany GmbH

References

Outgoing
  • BSI-DSZ-CC-0750-V2-2014 - Crypto Library V2.7/2.9 on SmartMX P5Cx128/P5Cx145 V0v/ VOB(s)
  • BSI-DSZ-CC-0858-2013 - NXP Secure PKI Smart Card Controllers P5CD128V0v/ V0B(s), P5CC128V0v/ V0B(s), P5CD145V0v/ V0B(s), P5CC145V0v/ V0B(s), P5CN145V0v/V0B(s), each including IC Dedicated Software
  • BSI-DSZ-CC-0912-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with “ICAO Application”, Extended Access Control (EAC)
  • BSI-DSZ-CC-0914-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Secure Signature Device with Key generation (SSCD)
  • NSCIB-CC-13-37760-CR2 - J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart Card Controller Revision 3
  • BSI-DSZ-CC-0913-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with „ICAO Application”, Extended Access Control with PACE
Incoming
  • BSI-DSZ-CC-0913-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with „ICAO Application”, Extended Access Control with PACE
  • BSI-DSZ-CC-0914-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Secure Signature Device with Key generation (SSCD)
  • BSI-DSZ-CC-0912-2014 - cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with “ICAO Application”, Extended Access Control (EAC)

Security target ?

Extracted keywords

Symmetric Algorithms
AES, AES-, DES, Triple-DES, TDES, Lucifer, KMAC, CMAC
Asymmetric Algorithms
ECC
Hash functions
SHA-1, SHA-224, SHA-256, MD5, RIPEMD-160
Schemes
MAC, Key exchange
Protocols
PACE
Randomness
RND, RNG
Engines
SmartMX
Block cipher modes
CBC

Operating System name
JCOP 2
IC data groups
EF.DG1, EF.DG2, EF.DG3, EF.DG4, EF.DG5, EF.DG16, EF.DG13, EF.DG14, EF.DG15, EF.COM, EF.SOD
Vendor
NXP, NXP Semiconductors

Security level
EAL 4+, EAL 5+, EAL4, EAL4 augmented
Claims
T.OS_OPERATE, T.SEC_BOX_BORDER, T.RND, T.CONFID-APPLI-DATA, T.CONFID-JCS-CODE, T.CONFID-JCS-DATA, T.INTEG-APPLI-CODE, T.INTEG-APPLI-DATA, T.INTEG-JCS-CODE, T.INTEG-JCS-DATA, T.SID, T.EXE-CODE, T.EXE-CODE-REMOTE, T.NATIVE, T.RESOURCES, T.DELETION, T.INSTALL, T.OBJ-DELETION, T.PHYSICAL, A.APPLET, A.VERIFICATION, A.USE_DIAG, A.USE_KEYS, A.PPROCESS-SEC-IC, OT.SEC_BOX_FW, OT.IDENTIFICATION, OT.RND, OT.MF_FW, OT.SID, OT.FIREWALL, OT.GLOBAL_ARRAYS_CONFID, OT.GLOBAL_ARRAYS_INTEG, OT.NATIVE, OT.OPERATE, OT.REALLOCATION, OT.RESOURCES, OT.ALARM, OT.CIPHER, OT.KEY-MNGT, OT.PIN-MNGT, OT.REMOTE, OT.TRANSACTION, OT.OBJ-DELETION, OT.DELETION, OT.LOAD, OT.INSTALL, OT.CARD-MANAGEMENT, OT.SCP, OT.EXT-MEM, OE.APPLET, OE.VERIFICATION, OE.USE_DIAG, OE.USE_KEYS, OE.PROCESS_SEC_IC, OE.MRTD_, OE.CODE-EVIDENCE
Security Assurance Requirements (SAR)
ADV_ARC.1, ALC_DVS.2, ALC_DVS
Security Functional Requirements (SFR)
FAU_SAS, FAU_ARP.1, FAU_SAS.1, FAU_GEN, FAU_SAS.1.1, FCO_NRO, FCS_RND, FCS_CKM.1, FCS_CKM.2, FCS_CKM.3, FCS_CKM.4, FCS_COP.1, FCS_COP, FCS_RNG.1, FCS_RNG, FCS_RND.1, FCS_RND.1.1, FCS_LIM, FCS_CKM.1.1, FCS_CKM.4.1, FCS_CKM, FDP_ACC, FDP_ACF, FDP_IFC, FDP_IFF, FDP_RIP, FDP_ROL, FDP_SDI.2, FDP_ITC, FDP_UIT, FDP_ITC.1, FDP_ITC.2, FDP_ACC.1, FDP_ACF.1, FDP_ACC.1.1, FDP_ACF.1.1, FDP_ACF.1.2, FDP_ACF.1.3, FDP_ACF.1.4, FDP_UCT.1, FDP_UIT.1, FDP_IFC.1, FDP_UCT.1.1, FDP_UIT.1.1, FDP_UIT.1.2, FDP_UCT, FIA_ATD, FIA_UID, FIA_USB, FIA_AFL, FIA_SOS.2, FIA_UAU.5.2, FIA_UAU.4, FIA_UAU.6, FIA_UID.1, FIA_UID.1.1, FIA_UID.1.2, FIA_UAU.1, FIA_UAU.1.1, FIA_UAU.1.2, FIA_UAU.4.1, FIA_UAU.5, FIA_UAU.5.1, FIA_UAU.6.1, FIA_AFL.1, FIA_AFL.1.1, FIA_AFL.1.2, FIA_UAU, FMT_LIM, FMT_MSA, FMT_SMF.1, FMT_SMR.1, FMT_MTD, FMT_SMR, FMT_SMF, FMT_LIM.1, FMT_LIM.2, FMT_LIM.1.1, FMT_LIM.2.1, FMT_MSA.3, FMT_SMF.1.1, FMT_SMR.1.1, FMT_SMR.1.2, FMT_MTD.1, FMT_MSA.1, FPR_UNO.1, FPT_FLS.1, FPT_PHP.3, FPT_TDC.1, FPT_FLS, FPT_RCV, FPT_PHP, FPT_TST.1, FPT_FLS.1.1, FPT_TST.1.1, FPT_TST.1.2, FPT_TST.1.3, FPT_PHP.3.1, FPT_RVM.1, FPT_SEP.1, FRU_FLT, FTP_ITC, FTP_ITC.1, FTP_TRP.1
Protection profiles
BSI-CC-PP0055, BSI-PP-0002-2001, BSI-PP-0035-2007, BSI-PP-0055, BSI-PP-0056
Certificates
BSI-DSZ-CC-0858-2013, BSI-DSZ-CC-0750-V2-2014, BSI-DSZ-CC-0750-V2, NSCIB-CC-13-37760-CR2, NSCIB-CC-13-37760
Certification process
out of scope, Out of scope, chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall, internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall, No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall, chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm, managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall, chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality, ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality, platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality, FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality, chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport, No contradiction to this ST. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality, variants of this composite TOE provide MIFARE functionality; please note that this functionality is out of scope of the TOE’s security functionality claimed by this Security Target. 1.3.3 TOE usage and security, in platform ST) Firewall Policy (chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out, internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No, Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface, 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No, Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The requirements are, platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No, 14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The, vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 6.1.4 in, ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional, which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional, manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence, 15 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence, of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional, that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The, verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC, 16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional, group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements, SFR is part of the basis of the fulfillment of the SFR of this ST. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FPT_PHP.3/SCP FPT_PHP.3 The fulfillment of, ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope, platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements, the security requirements for life cycle control mechanism . FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/LifeCycle No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC, 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/LifeCycle No, 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1, requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the, 80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST. OT, no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST, FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No, to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST, OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to, ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST, corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this, OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to, ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this, 19 of 80 Platform Objective Correspondence in this ST References/Remarks OT.LOAD No correspondence Out of scope. No contradiction to this ST. OT.INSTALL No correspondence Out of scope. No contradiction to this, OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-, The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this, Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to, ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction, this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST, INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No, T.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to, 80 Platform Threat Correspondence in this ST References/Remarks T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST, SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this, T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST, RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST, T.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. T.PHYSICAL T.Phys-Tamper No contradiction to this ST. Table 5

Side-channel analysis
physical probing, DPA, SPA, timing attacks, Physical Tampering, physical tampering, Physical tampering, Malfunction, malfunction, fault injection, reverse engineering, JIL
Certification process
out of scope, Out of scope, chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall, internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall, No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall, chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm, managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall, chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality, ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality, platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality, FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality, chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport, No contradiction to this ST. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality, No contradiction to this ST. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality, variants of this composite TOE provide MIFARE functionality; please note that this functionality is out of scope of the TOE’s security functionality claimed by this Security Target. 1.3.3 TOE usage and security, in platform ST) Firewall Policy (chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out, internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out, internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No, Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User, of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of, internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface, 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No, Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The requirements are, platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No, 14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The, vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 6.1.4 in, ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional, which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional, manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence, 15 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence, of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional, that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The, verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC, 16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence, internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional, group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements, SFR is part of the basis of the fulfillment of the SFR of this ST. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FPT_PHP.3/SCP FPT_PHP.3 The fulfillment of, ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope, platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements, the security requirements for life cycle control mechanism . FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/LifeCycle No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC, 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/LifeCycle No, 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1, requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No, Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the, 80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST. OT, no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST, FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No, to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST, OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to, ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST, corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this, OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to, ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this, 19 of 80 Platform Objective Correspondence in this ST References/Remarks OT.LOAD No correspondence Out of scope. No contradiction to this ST. OT.INSTALL No correspondence Out of scope. No contradiction to this, OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-, The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this, Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to, ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction, this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST, INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No, T.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to, 80 Platform Threat Correspondence in this ST References/Remarks T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST, SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this, T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST, RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST, T.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. T.PHYSICAL T.Phys-Tamper No contradiction to this ST. Table 5

Standards
FIPS 46-3, FIPS 180-410, FIPS46-3, FIPS 197, FIPS197, FIPS 180-2, FIPS 180-4, FIPS180-4, FIPS PUB 46-3, FIPS180-2, PKCS#15, AIS20, AIS 20, AIS31, RFC3369, ISO/IEC 7816-2, ISO/IEC 7816-4, ICAO, X.509, CCMB-2012-09-001, CCMB-2012-09-002, CCMB-2012-09-003, CCMB-2012-09-004

File metadata

Title: cv act ePasslet/MRTD-BAC Security Target
Subject: deutsch
Keywords: Security Target, ePasslet Suite, ICAO LDS, BAC
Author: bdrisch
Creation date: D:20141112132321+01'00'
Modification date: D:20141112132321+01'00'
Pages: 80
Creator: Microsoft® Word 2013
Producer: Microsoft® Word 2013

References

Outgoing
  • BSI-DSZ-CC-0750-V2-2014 - Crypto Library V2.7/2.9 on SmartMX P5Cx128/P5Cx145 V0v/ VOB(s)
  • BSI-DSZ-CC-0858-2013 - NXP Secure PKI Smart Card Controllers P5CD128V0v/ V0B(s), P5CC128V0v/ V0B(s), P5CD145V0v/ V0B(s), P5CC145V0v/ V0B(s), P5CN145V0v/V0B(s), each including IC Dedicated Software
  • NSCIB-CC-13-37760-CR2 - J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart Card Controller Revision 3
Incoming

Heuristics ?

Certificate ID: BSI-DSZ-CC-0911-2014

Extracted SARs

APE_INT.1, APE_ECD.1, ASE_OBJ.2, ADV_SPM.1, ADV_TDS.6, APE_OBJ.2, ASE_TSS.2, ADV_ARC.1, ALC_DEL.1, ATE_FUN.2, ATE_DPT.4, ALC_LCD.2, ALC_CMS.5, ALC_DVS.2, AVA_VAN.5, ASE_REQ.2, APE_CCL.1, ADV_INT.3, ADV_IMP.2, ASE_CCL.1, ATE_COV.3, ADV_FSP.6, APE_REQ.2, ALC_TAT.3, ATE_IND.3, ALC_FLR.3, ALC_CMC.5, ASE_ECD.1, AGD_OPE.1, APE_SPD.1, AGD_PRE.1, ASE_SPD.1, ASE_INT.1

References ?

Updates ?

  • 28.01.2022 The certificate was first processed.
    New certificate

    A new Common Criteria certificate with the product name cv act ePasslet Suite v2.1 – Java Card applet configuration providing Machine Readable Travel Document with “ICAO Application”, Basic Access Control (BAC) was processed.

  • 18.02.2022 The certificate data changed.
    Certificate changed

    The PDF extraction data was updated.

    • The report_frontpage property was updated, with the {'nscib': {}, 'niap': {}, 'canada': {}} values inserted.
    • The st_frontpage property was updated, with the {'nscib': {}, 'niap': {}, 'canada': {}} values inserted.
    • The st_keywords property was updated, with the {'rules_cert_id': {'__insert__': {'NSCIB-CC-13-37760': 1}}} data.

    The computed heuristics were updated.

    • The extracted_versions property was set to {'_type': 'Set', 'elements': ['2.1']}.
    • The directly_affected_by property was set to {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0913-2014', 'BSI-DSZ-CC-0912-2014', 'BSI-DSZ-CC-0914-2014']}.
  • 08.03.2022 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The following values were inserted: {'st_references': {'_type': 'References', 'directly_referenced_by': None, 'indirectly_referenced_by': None, 'directly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0858-2013', 'NSCIB-CC-13-37760', 'NSCIB-CC-13-37760-CR2', 'BSI-DSZ-CC-0750-V2', 'BSI-DSZ-CC-0750-V2-2014']}, 'indirectly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0858-2013', 'NSCIB-CC-13-37760', 'NSCIB-CC-13-37760-CR2', 'BSI-DSZ-CC-0750-V2', 'BSI-DSZ-CC-0750-V2-2014']}}, 'report_references': {'_type': 'References', 'directly_referenced_by': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0913-2014', 'BSI-DSZ-CC-0912-2014', 'BSI-DSZ-CC-0914-2014']}, 'indirectly_referenced_by': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0913-2014', 'BSI-DSZ-CC-0912-2014', 'BSI-DSZ-CC-0914-2014', 'BSI-DSZ-CC-0911-2014']}, 'directly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0858-2013', 'BSI-DSZ-CC-0912-2014', 'BSI-DSZ-CC-0914-2014', 'BSI-DSZ-CC-0913-2014', 'NSCIB-CC-13-37760-CR2', 'BSI-DSZ-CC-0750-V2-2014']}, 'indirectly_referencing': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0858-2013', 'BSI-DSZ-CC-0912-2014', 'BSI-DSZ-CC-0914-2014', 'BSI-DSZ-CC-0911-2014', 'NSCIB-CC-13-37760', 'NSCIB-CC-13-37761', 'BSI-DSZ-CC-0913-2014', 'NSCIB-CC-13-37762', 'BSI-DSZ-CC-0645-2010', 'NSCIB-CC-13-37760-CR2', 'BSI-DSZ-CC-0750-V2-2014']}}}.
    • The following properties were deleted: ['directly_affected_by', 'indirectly_affected_by', 'directly_affecting', 'indirectly_affecting'].
  • 24.04.2022 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The following values were inserted: {'direct_dependency_cves': None, 'indirect_dependency_cves': None}.
  • 13.05.2022 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The following values were inserted: {'extracted_sars': {'_type': 'Set', 'elements': [{'_type': 'SAR', 'family': 'ATE_COV', 'level': 3}, {'_type': 'SAR', 'family': 'ADV_FSP', 'level': 6}, {'_type': 'SAR', 'family': 'AVA_VAN', 'level': 5}, {'_type': 'SAR', 'family': 'APE_OBJ', 'level': 2}, {'_type': 'SAR', 'family': 'ALC_FLR', 'level': 3}, {'_type': 'SAR', 'family': 'ALC_CMC', 'level': 5}, {'_type': 'SAR', 'family': 'ATE_DPT', 'level': 4}, {'_type': 'SAR', 'family': 'APE_INT', 'level': 1}, {'_type': 'SAR', 'family': 'APE_ECD', 'level': 1}, {'_type': 'SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'SAR', 'family': 'ASE_CCL', 'level': 1}, {'_type': 'SAR', 'family': 'ADV_INT', 'level': 3}, {'_type': 'SAR', 'family': 'ASE_SPD', 'level': 1}, {'_type': 'SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'SAR', 'family': 'APE_REQ', 'level': 2}, {'_type': 'SAR', 'family': 'ALC_TAT', 'level': 3}, {'_type': 'SAR', 'family': 'ASE_REQ', 'level': 2}, {'_type': 'SAR', 'family': 'ATE_IND', 'level': 3}, {'_type': 'SAR', 'family': 'ATE_FUN', 'level': 2}, {'_type': 'SAR', 'family': 'ASE_INT', 'level': 1}, {'_type': 'SAR', 'family': 'ALC_CMS', 'level': 5}, {'_type': 'SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'SAR', 'family': 'ADV_IMP', 'level': 2}, {'_type': 'SAR', 'family': 'ALC_DVS', 'level': 2}, {'_type': 'SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'SAR', 'family': 'ADV_SPM', 'level': 1}, {'_type': 'SAR', 'family': 'ALC_LCD', 'level': 2}, {'_type': 'SAR', 'family': 'ADV_TDS', 'level': 6}, {'_type': 'SAR', 'family': 'APE_SPD', 'level': 1}, {'_type': 'SAR', 'family': 'ASE_OBJ', 'level': 2}, {'_type': 'SAR', 'family': 'ASE_TSS', 'level': 2}, {'_type': 'SAR', 'family': 'ASE_ECD', 'level': 1}, {'_type': 'SAR', 'family': 'APE_CCL', 'level': 1}]}}.
  • 14.06.2022 The certificate data changed.
    Certificate changed

    The state of the certificate object was updated.

    • The following values were inserted: {'report_pdf_hash': 'c8f50a1311ba3b82b4e2743d3e1211d3a1252d3ce9106e5b4d854366f3fa95c4', 'st_pdf_hash': '22758f70533d728d644585c9a99daef8ce3acb50638217a1e5af81b2efc5bbb0', 'report_txt_hash': '8b49c51eb934cdf7f8b316d45b0f6bbb6ed9ebfdf7b7ce6a43fa0e607269385b', 'st_txt_hash': '69b7307cbaadac03bfe122feab9535afd47188f96ae00b44e1f3a067f44aac4d'}.

    The PDF extraction data was updated.

    • The report_keywords property was updated, with the {'rules_symmetric_crypto': {}, 'rules_asymmetric_crypto': {}, 'rules_pq_crypto': {}, 'rules_hashes': {}, 'rules_crypto_schemes': {'PACE': 2, 'MAC': 1}, 'rules_randomness': {'RNG': 1}, 'rules_tee': {'SE': 1}, 'rules_side_channels': {}} values inserted.
    • The st_keywords property was updated, with the {'rules_symmetric_crypto': {'AES': 25, 'AES-': 1, 'DES': 27, 'TDES': 5, 'Lucifer': 1, 'KMAC': 1}, 'rules_asymmetric_crypto': {'ECC': 1}, 'rules_pq_crypto': {}, 'rules_hashes': {'SHA-1': 9, 'SHA-224': 2, 'SHA-256': 3, 'MD5': 1, 'RIPEMD-160': 1}, 'rules_crypto_schemes': {'PACE': 1, 'MAC': 46, 'Key exchange': 1}, 'rules_randomness': {'TRNG': 2, 'RND': 9, 'RNG': 5}, 'rules_tee': {}, 'rules_side_channels': {'Malfunction': 10, 'malfunction': 7, 'physical probing': 4, 'Physical Tampering': 6, 'physical tampering': 1, 'Physical tampering': 1, 'SPA': 1, 'DPA': 2, 'fault injection': 1, 'timing attacks': 1, 'reverse engineering': 1}} values inserted.
  • 17.07.2022 The certificate data changed.
    Certificate changed

    The PDF extraction data was updated.

    • The report_metadata property was updated, with the {'pdf_hyperlinks': {'_type': 'Set', 'elements': ['https://www.bsi.bund.de/zertifizierung', 'https://www.bsi.bund.de/', 'http://www.commoncriteriaportal.org/']}} values inserted.
    • The st_metadata property was updated, with the {'pdf_hyperlinks': {'_type': 'Set', 'elements': ['file:///C:/tzeggel/Desktop/glossar.htm%23aes']}} values inserted.
    • The report_keywords property was set to {'cc_cert_id': {'DE': {'BSI-DSZ-CC-0911-2014': 82, 'BSI-DSZ-CC-0912-2014': 6, 'BSI-DSZ-CC-0858-2013': 10, 'BSI-DSZ-CC-0913-2014': 4, 'BSI-DSZ-CC-0914-2014': 4, 'BSI-DSZ-CC-0750-V2-2014': 6}, 'NL': {'NSCIB-CC-13-37760-CR2': 15}}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP-0055-2009': 5}}, 'cc_security_level': {'EAL': {'EAL 4': 14, 'EAL 5': 10, 'EAL 1': 7, 'EAL 2': 5, 'EAL 5+': 1, 'EAL 6': 5, 'EAL5+': 1, 'EAL 3': 4, 'EAL 7': 4, 'EAL 4 augmented': 3}, 'ITSEC': {'ITSEC Evaluation': 1}}, 'cc_sar': {'ADV': {'ADV_ARC.1': 1, 'ADV_FSP.1': 1, 'ADV_FSP.2': 1, 'ADV_FSP.3': 1, 'ADV_FSP.4': 1, 'ADV_FSP.5': 1, 'ADV_FSP.6': 1, 'ADV_IMP.1': 1, 'ADV_IMP.2': 1, 'ADV_INT.1': 1, 'ADV_INT.2': 1, 'ADV_INT.3': 1, 'ADV_SPM.1': 1, 'ADV_TDS.1': 1, 'ADV_TDS.2': 1, 'ADV_TDS.3': 1, 'ADV_TDS.4': 1, 'ADV_TDS.5': 1, 'ADV_TDS.6': 1, 'ADV_ARC': 1, 'ADV_FSP': 1, 'ADV_IMP': 1, 'ADV_INT': 1, 'ADV_SPM': 1, 'ADV_TDS': 1}, 'AGD': {'AGD_OPE.1': 1, 'AGD_PRE.1': 1, 'AGD_OPE': 1, 'AGD_PRE': 1}, 'ALC': {'ALC_DVS.2': 6, 'ALC_FLR': 3, 'ALC_CMC.1': 1, 'ALC_CMC.2': 1, 'ALC_CMC.3': 1, 'ALC_CMC.4': 2, 'ALC_CMC.5': 1, 'ALC_CMS.1': 1, 'ALC_CMS.2': 1, 'ALC_CMS.3': 1, 'ALC_CMS.4': 2, 'ALC_CMS.5': 1, 'ALC_DEL.1': 2, 'ALC_DVS.1': 1, 'ALC_FLR.1': 1, 'ALC_FLR.2': 1, 'ALC_FLR.3': 1, 'ALC_LCD.1': 2, 'ALC_LCD.2': 1, 'ALC_TAT.1': 2, 'ALC_TAT.2': 1, 'ALC_TAT.3': 1, 'ALC_CMC': 1, 'ALC_CMS': 1, 'ALC_DEL': 1, 'ALC_DVS': 1, 'ALC_LCD': 1, 'ALC_TAT': 1}, 'ATE': {'ATE_COV.1': 1, 'ATE_COV.2': 1, 'ATE_COV.3': 1, 'ATE_DPT.1': 1, 'ATE_DPT.2': 1, 'ATE_DPT.3': 1, 'ATE_DPT.4': 1, 'ATE_FUN.1': 1, 'ATE_FUN.2': 1, 'ATE_IND.1': 1, 'ATE_IND.2': 1, 'ATE_IND.3': 1, 'ATE_COV': 1, 'ATE_DPT': 1, 'ATE_FUN': 1, 'ATE_IND': 1}, 'AVA': {'AVA_VAN.1': 1, 'AVA_VAN.2': 1, 'AVA_VAN.3': 1, 'AVA_VAN.4': 1, 'AVA_VAN.5': 1, 'AVA_VAN': 2}, 'APE': {'APE_INT.1': 1, 'APE_CCL.1': 1, 'APE_SPD.1': 1, 'APE_OBJ.1': 1, 'APE_OBJ.2': 1, 'APE_ECD.1': 1, 'APE_REQ.1': 1, 'APE_REQ.2': 1}, 'ASE': {'ASE_INT.1': 1, 'ASE_CCL.1': 1, 'ASE_SPD.1': 1, 'ASE_OBJ.1': 1, 'ASE_OBJ.2': 1, 'ASE_ECD.1': 1, 'ASE_REQ.1': 1, 'ASE_REQ.2': 1, 'ASE_TSS.1': 1, 'ASE_TSS.2': 1, 'ASE_CCL': 1, 'ASE_ECD': 1, 'ASE_INT': 1, 'ASE_OBJ': 1, 'ASE_SPD': 1, 'ASE_TSS': 1}}, 'cc_sfr': {}, 'cc_claims': {'OE': {'OE.MRTD_': 1}}, 'vendor': {'NXP': {'NXP Semiconductors': 6, 'NXP': 17}}, 'eval_facility': {'BrightSight': {'Brightsight': 2}, 'TUV': {'TÜV Informationstechnik': 3}}, 'symmetric_crypto': {}, 'asymmetric_crypto': {}, 'pq_crypto': {}, 'hash_function': {}, 'crypto_scheme': {'MAC': {'MAC': 1}}, 'crypto_protocol': {'PACE': {'PACE': 2}}, 'randomness': {'RNG': {'RNG': 1}}, 'cipher_mode': {}, 'ecc_curve': {}, 'crypto_engine': {'SmartMX': {'SmartMX': 2}}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {'other': {'JIL': 2}}, 'technical_report_id': {'BSI': {'BSI TR-03105': 1, 'BSI 7138': 2, 'BSI 7125': 2, 'BSI 7148': 1}}, 'device_model': {}, 'tee_name': {'IBM': {'SE': 1}}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {}, 'standard_id': {'BSI': {'AIS 34': 2, 'AIS 20': 2, 'AIS 25': 1, 'AIS 26': 2, 'AIS 31': 2, 'AIS 36': 3, 'AIS 1': 1, 'AIS 32': 1, 'AIS 38': 1, 'AIS 46': 1, 'AIS36': 2}, 'ISO': {'ISO/IEC 15408': 2, 'ISO/IEC 17065': 2, 'ISO/IEC 7816-4': 1}, 'ICAO': {'ICAO': 21}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'ConfidentialDocument': {'Technical Report, Version 2, BSI-DSZ-CC-0911-2014, 27 November 2014, TÜV Informationstechnik GmbH (confidential document) [9] Configuration list for the TOE BSI-DSZ-CC-0911-2014, 13 November 2014, cv cryptovision ': 1, 'confidential document) 9 specifically • AIS 1, Version 13, Durchführung der Ortsbesichtigung in der Entwicklungsumgebung': 1, 'd J2E082_M65 Secure Smart Card Controller Revision 3 EAL5+, version 6, 12 August 2014, Brightsight (confidential document) [16] ETR for composition Crypto Library V2.7/V2.9 on SmartMX P5Cx128/P5Cx145, according to AIS36': 1, 'Brightsight 14-RPT-169, Revision 1.0, 26 June 2014 (confidential document) [17] ETR for composition according to AIS36 on P5CD128V0A/B, P5CD128V0B(s), P5CC128V0A/B': 1, 'luding IC Dedicated Software, BSI-DSZ-CC-0858-2013, Version 1.0, 22 April 2013, T-Systems GEI GmbH (confidential document) [18] NXP J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart': 1}}}.
    • The st_keywords property was set to {'cc_cert_id': {'DE': {'BSI-DSZ-CC-0858-2013': 2, 'BSI-DSZ-CC-0750-V2-2014': 2, 'BSI-DSZ-CC-0750-V2': 3}, 'NL': {'NSCIB-CC-13-37760-CR2': 3, 'NSCIB-CC-13-37760': 2}}, 'cc_protection_profile_id': {'BSI': {'BSI-CC-PP0055': 3, 'BSI-PP-0002-2001': 1, 'BSI-PP-0035-2007': 1, 'BSI-PP-0055': 1, 'BSI-PP-0056': 1}}, 'cc_security_level': {'EAL': {'EAL 4+': 1, 'EAL 5+': 2, 'EAL4': 8, 'EAL4 augmented': 2}}, 'cc_sar': {'ADV': {'ADV_ARC.1': 1}, 'ALC': {'ALC_DVS.2': 2}}, 'cc_sfr': {'FAU': {'FAU_ARP.1': 1, 'FAU_SAS.1': 11, 'FAU_SAS': 5, 'FAU_GEN': 1, 'FAU_SAS.1.1': 2}, 'FCS': {'FCS_RND': 7, 'FCS_CKM.1': 28, 'FCS_CKM.2': 3, 'FCS_CKM.3': 1, 'FCS_CKM.4': 24, 'FCS_COP.1': 5, 'FCS_RNG.1': 2, 'FCS_RND.1': 16, 'FCS_RND.1.1': 3, 'FCS_LIM': 1, 'FCS_CKM.1.1': 2, 'FCS_CKM.4.1': 4}, 'FDP': {'FDP_SDI.2': 1, 'FDP_ACF': 1, 'FDP_ITC.1': 10, 'FDP_ITC.2': 10, 'FDP_ACC.1': 18, 'FDP_ACF.1': 12, 'FDP_ACC.1.1': 3, 'FDP_ACF.1.1': 3, 'FDP_ACF.1.2': 4, 'FDP_ACF.1.3': 3, 'FDP_ACF.1.4': 4, 'FDP_UCT.1': 11, 'FDP_UIT.1': 10, 'FDP_IFC.1': 4, 'FDP_UCT.1.1': 3, 'FDP_UIT.1.1': 3, 'FDP_UIT.1.2': 2}, 'FIA': {'FIA_SOS.2': 1, 'FIA_UAU.4': 15, 'FIA_UAU.6': 12, 'FIA_UID.1': 14, 'FIA_UID.1.1': 2, 'FIA_UID.1.2': 1, 'FIA_UAU.1': 11, 'FIA_UAU.1.1': 2, 'FIA_UAU.1.2': 2, 'FIA_UAU.4.1': 2, 'FIA_UAU.5': 8, 'FIA_UAU.5.1': 4, 'FIA_UAU.5.2': 4, 'FIA_UAU.6.1': 2, 'FIA_AFL.1': 8, 'FIA_AFL.1.1': 2, 'FIA_AFL.1.2': 2}, 'FMT': {'FMT_SMF.1': 22, 'FMT_SMR.1': 22, 'FMT_LIM': 5, 'FMT_LIM.1': 25, 'FMT_LIM.2': 24, 'FMT_LIM.1.1': 6, 'FMT_LIM.2.1': 7, 'FMT_MSA.3': 3, 'FMT_SMF.1.1': 2, 'FMT_SMR.1.1': 4, 'FMT_SMR.1.2': 4, 'FMT_MTD.1': 3, 'FMT_MSA.1': 1}, 'FPR': {'FPR_UNO.1': 1}, 'FPT': {'FPT_FLS.1': 17, 'FPT_PHP.3': 11, 'FPT_TDC.1': 1, 'FPT_TST.1': 8, 'FPT_FLS.1.1': 3, 'FPT_TST.1.1': 2, 'FPT_TST.1.2': 2, 'FPT_TST.1.3': 2, 'FPT_PHP.3.1': 2, 'FPT_RVM.1': 1, 'FPT_SEP.1': 1}, 'FTP': {'FTP_ITC.1': 5, 'FTP_TRP.1': 5}}, 'cc_claims': {'D': {'D.ICC': 1}, 'T': {'T.SEC_BOX_FW': 1, 'T.IDENTIFICATION': 1, 'T.RND': 2, 'T.MF_FW': 1, 'T.SID': 1, 'T.FIREWALL': 1, 'T.GLOBAL_ARRAYS_CONFID': 1, 'T.GLOBAL_ARRAYS_INTEG': 1, 'T.NATIVE': 2, 'T.OPERATE': 1, 'T.REALLOCATION': 1, 'T.RESOURCES': 2, 'T.ALARM': 1, 'T.CIPHER': 1, 'T.KEY-MNGT': 1, 'T.PIN-MNGT': 1, 'T.REMOTE': 1, 'T.TRANSACTION': 1, 'T.OBJ-DELETION': 2, 'T.DELETION': 2, 'T.LOAD': 1, 'T.INSTALL': 2, 'T.CARD-MANAGEMENT': 1, 'T.SCP.IC': 1, 'T.SCP.RECOVERY': 1, 'T.SCP.SUPPORT': 1, 'T.EXT-MEM': 1, 'T.OS_OPERATE': 1, 'T.SEC_BOX_BORDER': 1, 'T.CONFID-APPLI-DATA': 1, 'T.CONFID-JCS-CODE': 1, 'T.CONFID-JCS-DATA': 1, 'T.INTEG-APPLI-CODE': 1, 'T.INTEG-APPLI-CODE.LOAD': 1, 'T.INTEG-APPLI-DATA': 1, 'T.INTEG-APPLI-DATA.LOAD': 1, 'T.INTEG-JCS-CODE': 1, 'T.INTEG-JCS-DATA': 1, 'T.EXE-CODE-REMOTE': 1, 'T.PHYSICAL': 1}, 'A': {'A.LOAD': 1, 'A.APPLET': 2, 'A.VERIFICATION': 1, 'A.USE_DIAG': 2, 'A.USE_KEYS': 1, 'A.PPROCESS-SEC-IC': 3}, 'OT': {'OT.SEC_BOX_FW': 1, 'OT.IDENTIFICATION': 1, 'OT.RND': 1, 'OT.MF_FW': 1, 'OT.SID': 1, 'OT.FIREWALL': 1, 'OT.GLOBAL_ARRAYS_CONFID': 1, 'OT.GLOBAL_ARRAYS_INTEG': 1, 'OT.NATIVE': 1, 'OT.OPERATE': 1, 'OT.REALLOCATION': 1, 'OT.RESOURCES': 1, 'OT.ALARM': 1, 'OT.CIPHER': 1, 'OT.KEY-MNGT': 1, 'OT.PIN-MNGT': 1, 'OT.REMOTE': 1, 'OT.TRANSACTION': 1, 'OT.OBJ-DELETION': 1, 'OT.DELETION': 1, 'OT.LOAD': 1, 'OT.INSTALL': 1, 'OT.CARD-MANAGEMENT': 1, 'OT.SCP.IC': 1, 'OT.SCP.RECOVERY': 1, 'OT.SCP.SUPPORT': 1, 'OT.EXT-MEM': 1}, 'OE': {'OE.APPLET': 1, 'OE.VERIFICATION': 6, 'OE.USE_DIAG': 1, 'OE.USE_KEYS': 1, 'OE.PROCESS_SEC_IC': 2, 'OE.MRTD_': 2, 'OE.CODE-EVIDENCE': 1}, 'OSP': {'OSP.PROCESS-TOE': 1, 'OSP.VERIFICATION': 1}}, 'vendor': {'NXP': {'NXP': 11, 'NXP Semiconductors': 1}}, 'eval_facility': {}, 'symmetric_crypto': {'AES_competition': {'AES': {'AES': 25, 'AES-': 1}}, 'DES': {'DES': {'DES': 32}, '3DES': {'Triple-DES': 16, 'TDES': 5, 'TripleDES': 1}, 'Lucifer': {'Lucifer': 1}}, 'constructions': {'MAC': {'KMAC': 1, 'CMAC': 7}}}, 'asymmetric_crypto': {'ECC': {'ECC': {'ECC': 1}}}, 'pq_crypto': {}, 'hash_function': {'SHA': {'SHA1': {'SHA-1': 9}, 'SHA2': {'SHA-224': 2, 'SHA-256': 3}}, 'MD': {'MD5': {'MD5': 1}}, 'RIPEMD': {'RIPEMD-160': 1}}, 'crypto_scheme': {'MAC': {'MAC': 46}, 'KEX': {'Key exchange': 1}}, 'crypto_protocol': {'PACE': {'PACE': 1}}, 'randomness': {'TRNG': {'TRNG': 2}, 'RNG': {'RND': 9, 'RNG': 5}}, 'cipher_mode': {'CBC': {'CBC': 11}}, 'ecc_curve': {}, 'crypto_engine': {'SmartMX': {'SmartMX': 2}}, 'tls_cipher_suite': {}, 'crypto_library': {}, 'vulnerability': {}, 'side_channel_analysis': {'SCA': {'physical probing': 4, 'DPA': 2, 'SPA': 1, 'timing attacks': 1}, 'FI': {'Physical Tampering': 6, 'physical tampering': 1, 'Physical tampering': 1, 'Malfunction': 10, 'malfunction': 7, 'fault injection': 1}, 'other': {'reverse engineering': 1, 'JIL': 1}}, 'technical_report_id': {}, 'device_model': {}, 'tee_name': {}, 'os_name': {}, 'cplc_data': {}, 'ic_data_group': {'EF': {'EF.DG1': 32, 'EF.DG2': 9, 'EF.DG3': 9, 'EF.DG4': 6, 'EF.DG5': 8, 'EF.DG16': 30, 'EF.DG13': 3, 'EF.DG14': 3, 'EF.DG15': 1, 'EF.COM': 11, 'EF.SOD': 13}}, 'standard_id': {'FIPS': {'FIPS 46-3': 3, 'FIPS 180-410': 1, 'FIPS46-3': 5, 'FIPS 197': 2, 'FIPS197': 4, 'FIPS 180-2': 1, 'FIPS180-4': 2, 'FIPS PUB 46-3': 1, 'FIPS180-2': 1}, 'PKCS': {'PKCS#15': 1, 'PKCS#1': 1}, 'BSI': {'AIS20': 6, 'AIS 20': 3, 'AIS31': 3}, 'RFC': {'RFC3369': 1}, 'ISO': {'ISO/IEC 7816-2': 1}, 'ICAO': {'ICAO': 38}, 'X509': {'X.509': 1}, 'CC': {'CCMB-2012-09-001': 1, 'CCMB-2012-09-002': 1, 'CCMB-2012-09-003': 1, 'CCMB-2012-09-004': 1}}, 'javacard_version': {}, 'javacard_api_const': {}, 'javacard_packages': {}, 'certification_process': {'OutOfScope': {'out of scope': 1, 'Out of scope': 72, '(chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall': 1, '. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall': 1, '. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine': 1, '. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine': 1, '. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall': 1, '. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall': 1, '. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall': 1, '. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall': 1, '. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall': 1, '. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall': 1, '. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall': 1, '. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall': 1, '. Application Programming Interface (chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm': 1, '.2 No correspondence Out of scope (managed within JCOP': 1, '. FCS_CKM.3 No correspondence Out of scope (managed within JCOP': 1, '.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/bArray No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/TRANSIENT No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall': 1, '.1 No correspondence Out of scope (internal Java Card func- tionality': 1, '. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality': 1, '. Aid Management (chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality': 1, '. FIA_UID.2/AID No correspondence Out of scope (internal Java Card func- tionality': 1, '. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MTD.1/JCRE No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, '. FPT_FLS.1/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, '. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, '(ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '.3/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality': 1, '. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, '. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality': 1, '. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality': 1, '. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality': 1, '. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality': 1, '. FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACF.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, '.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, '. Further Functional Requirements (chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport': 1, '. FTP_ITC.1/ LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, '. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.3/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, '. FMT_SMF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, '.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST': 1, '. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST': 1, '.SID No correspondence Out of scope. No contradiction to this ST': 1, '.FIREWALL No correspondence Out of scope. No contradiction to this ST': 1, '.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No contradiction to this ST': 1, '.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST': 1, '.NATIVE No correspondence Out of scope. No contradiction to this ST': 2, '.OPERATE No correspondence Out of scope. No contradiction to this ST': 1, '.REALLOCATION No correspondence Out of scope. No contradiction to this ST': 1, '.RESOURCES No correspondence Out of scope. No contradiction to this ST': 2, '.ALARM No correspondence Out of scope. No contradiction to this ST': 1, '. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST': 1, '.PIN-MNGT No correspondence Out of scope. No contradiction to this ST': 1, '.REMOTE No correspondence Out of scope. No contradiction to this ST': 1, '.TRANSACTION No correspondence Out of scope. No contradiction to this ST': 1, '.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST': 2, '.DELETION No correspondence Out of scope. No contradiction to this ST': 2, '.LOAD No correspondence Out of scope. No contradiction to this ST': 1, '.INSTALL No correspondence Out of scope. No contradiction to this ST': 2, '.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST': 1, '. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST': 1, '.EXT-MEM No correspondence Out of scope. No contradiction to this ST': 1, '. Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST': 1, '.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to this ST': 1, '.RND No correspondence Out of scope. No contradiction to this ST': 1, '.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction to this ST': 1, '.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST': 1, '.Information_Leakage No contradiction to this ST. T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST': 1, '.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No contradiction to this ST': 1, '.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST': 1, '.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to this ST': 1, '.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST': 1, '.SID.1 No correspondence Out of scope. No contradiction to this ST': 1, '.SID.2 No correspondence Out of scope. No contradiction to this ST': 1, '.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST': 1, '.EXE-CODE.2 No correspondence Out of scope. No contradiction to this ST': 1, '.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST': 1, 'variants of this composite TOE provide MIFARE functionality; please note that this functionality is out of scope of the TOE’s security functionality claimed by this Security Target. 1.3.3 TOE usage and security': 1, 'in platform ST) Firewall Policy (chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'Guidance of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'rences/Remarks Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out': 1, '(internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out': 1, 'cope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No': 1, 'correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'Guidance of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'Guidance of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of': 1, 'scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface ': 1, 'chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No': 1, 'correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope ': 1, 'platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No': 1, 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No': 1, 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No': 1, 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No': 1, 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No': 1, 'correspondence. Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'rget 14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The': 1, 'vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 6.1.4 in': 1, 'platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional': 1, 'pplets, which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional': 1, 'ion manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC': 2, '15 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. RMIG Security Functional': 1, 'low of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional': 1, 't that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The': 1, 'ode verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence': 1, 't 16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional': 1, 's group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements': 1, 'SFR is part of the basis of the fulfillment of the SFR of this ST. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FPT_PHP.3/SCP FPT_PHP.3 The fulfillment of': 1, 'his ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope': 1, '(platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements ': 1, 'the security requirements for life cycle control mechanism . FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/LifeCycle No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC': 1, '80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/LifeCycle No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements ': 1, 'chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1': 1, 'nal requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No': 1, 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the': 1, '80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST': 1, 't no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST': 1, 'OT.FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No': 1, 'contradiction to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this': 1, 'ST. OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to': 1, 'this ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST': 1, 'o corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this': 1, 'ST. OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to': 1, 'this ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this': 1, '19 of 80 Platform Objective Correspondence in this ST References/Remarks OT.LOAD No correspondence Out of scope. No contradiction to this ST. OT.INSTALL No correspondence Out of scope. No contradiction to this': 1, 'ST. OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-': 1, 'unction The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this': 1, 'hreats. Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to': 1, 'this ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction': 1, 'to this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST': 1, 'T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No': 1, 'T.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to': 1, '80 Platform Threat Correspondence in this ST References/Remarks T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST': 1, 'T.SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this': 1, 'ST. T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST': 1, 'T.RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this': 1, 'ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST. T.OBJ-DELETION No correspondence Out of scope. No contradiction to': 1}}}.

    The computed heuristics were updated.

    • The _type property was set to Heuristics.
  • 18.07.2022 The certificate data changed.
    Certificate changed

    The _type was updated.

    • The new value is sec_certs.sample.common_criteria.CommonCriteriaCert.

    The Protection profiles of the certificate were updated.

    • The new value is {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.protection_profile.ProtectionProfile', 'pp_name': "Protection Profile for Machine Readable Travel Document with 'ICAO Application', Basic Acce...", 'pp_link': 'https://www.commoncriteriaportal.org/files/ppfiles/pp0055b.pdf', 'pp_ids': None}]}.

    The state of the certificate object was updated.

    • The _type property was set to sec_certs.sample.common_criteria.CommonCriteriaCert.InternalState.

    The PDF extraction data was updated.

    • The _type property was set to sec_certs.sample.common_criteria.CommonCriteriaCert.PdfData.

    The computed heuristics were updated.

    • The _type property was set to sec_certs.sample.common_criteria.CommonCriteriaCert.Heuristics.
    • The st_references property was updated, with the {'_type': 'sec_certs.sample.certificate.References'} data.
    • The report_references property was updated, with the {'_type': 'sec_certs.sample.certificate.References'} data.
    • The extracted_sars property was set to {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_INT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_ECD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_OBJ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_INT', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_SPM', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_TDS', 'level': 6}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_OBJ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_TSS', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_ARC', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DEL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_FUN', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_DPT', 'level': 4}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_LCD', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_DVS', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AVA_VAN', 'level': 5}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_REQ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_CCL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_INT', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_IMP', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_CCL', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ADV_FSP', 'level': 6}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_COV', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_REQ', 'level': 2}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_TAT', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_FLR', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ATE_IND', 'level': 3}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMC', 'level': 5}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_ECD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_OPE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'APE_SPD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'AGD_PRE', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ASE_SPD', 'level': 1}, {'_type': 'sec_certs.sample.sar.SAR', 'family': 'ALC_CMS', 'level': 5}]}.
  • 24.09.2022 The certificate data changed.
    Certificate changed

    The PDF extraction data was updated.

    • The following values were inserted: {'report_filename': '0911a_pdf.pdf', 'st_filename': '0911b_pdf.pdf'}.
    • The report_keywords property was updated, with the {'cc_cert_id': {'__update__': {'DE': {'__update__': {'BSI-DSZ-CC-0911-2014': 46, 'BSI-DSZ-CC-0912-2014': 10}}}}, 'cc_security_level': {'__update__': {'EAL': {'__update__': {'EAL 4': 13, 'EAL 2': 4, 'EAL 6': 4}}}}, 'cc_sar': {'__update__': {'ALC': {'__update__': {'ALC_DVS.2': 7}, '__delete__': ['ALC_LCD']}}}, 'tee_name': {}, 'os_name': {'JCOP': {'JCOP 2': 4}}, 'standard_id': {'__update__': {'BSI': {'__update__': {'AIS 36': 4}}, 'ISO': {'__insert__': {'ISO/IEC 18045': 4}, '__update__': {'ISO/IEC 15408': 4}}, 'ICAO': {'__update__': {'ICAO': 8}}}}, 'certification_process': {'__update__': {'ConfidentialDocument': {'Technical Report, Version 2, BSI-DSZ-CC-0911-2014, 27 November 2014, TÜV Informationstechnik GmbH (confidential document) [9] Configuration list for the TOE BSI-DSZ-CC-0911-2014, 13 November 2014, cv cryptovision': 1, 'J2E082_M65 Secure Smart Card Controller Revision 3 EAL5+, version 6, 12 August 2014, Brightsight (confidential document) [16] ETR for composition Crypto Library V2.7/V2.9 on SmartMX P5Cx128/P5Cx145, according to AIS36': 1, '14-RPT-169, Revision 1.0, 26 June 2014 (confidential document) [17] ETR for composition according to AIS36 on P5CD128V0A/B, P5CD128V0B(s), P5CC128V0A/B': 1, 'IC Dedicated Software, BSI-DSZ-CC-0858-2013, Version 1.0, 22 April 2013, T-Systems GEI GmbH (confidential document) [18] NXP J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart': 1}}}} data.
    • The st_keywords property was updated, with the {'cc_sar': {'__update__': {'ADV': {'__update__': {'ADV_ARC.1': 2}}, 'ALC': {'__insert__': {'ALC_DVS': 1}, '__update__': {'ALC_DVS.2': 5}}}}, 'cc_sfr': {'__insert__': {'FCO': {'FCO_NRO': 1}, 'FRU': {'FRU_FLT': 1}}, '__update__': {'FAU': {'__update__': {'FAU_SAS.1': 13, 'FAU_SAS': 8}}, 'FCS': {'__insert__': {'FCS_COP': 52, 'FCS_RNG': 1, 'FCS_CKM': 3}, '__update__': {'FCS_CKM.1': 29, 'FCS_CKM.4': 22, 'FCS_COP.1': 45}}, 'FDP': {'__insert__': {'FDP_ACC': 9, 'FDP_IFC': 2, 'FDP_IFF': 2, 'FDP_RIP': 8, 'FDP_ROL': 1, 'FDP_ITC': 3, 'FDP_UIT': 4, 'FDP_UCT': 2}, '__update__': {'FDP_ACF': 10, 'FDP_ACF.1': 11}}, 'FIA': {'__insert__': {'FIA_ATD': 1, 'FIA_UID': 3, 'FIA_USB': 1, 'FIA_AFL': 2, 'FIA_UAU': 6}, '__update__': {'FIA_UAU.4': 18, 'FIA_UID.1': 12, 'FIA_UAU.1': 10, 'FIA_UAU.5': 9, 'FIA_UAU.5.2': 6}}, 'FMT': {'__insert__': {'FMT_MSA': 16, 'FMT_MTD': 27, 'FMT_SMR': 6, 'FMT_SMF': 5}, '__update__': {'FMT_LIM': 12, 'FMT_LIM.2': 22, 'FMT_MTD.1': 14}}, 'FPT': {'__insert__': {'FPT_FLS': 5, 'FPT_RCV': 1, 'FPT_PHP': 1}, '__update__': {'FPT_FLS.1': 16, 'FPT_PHP.3': 15, 'FPT_TST.1': 11}}, 'FTP': {'__insert__': {'FTP_ITC': 2}}}}, 'cc_claims': {'__update__': {'T': {'__insert__': {'T.EXE-CODE': 2}, '__update__': {'T.RND': 1, 'T.SID': 2, 'T.NATIVE': 1, 'T.RESOURCES': 1, 'T.OBJ-DELETION': 1, 'T.DELETION': 1, 'T.INSTALL': 1, 'T.INTEG-APPLI-CODE': 2, 'T.INTEG-APPLI-DATA': 2}, '__delete__': ['T.SEC_BOX_FW', 'T.IDENTIFICATION', 'T.MF_FW', 'T.FIREWALL', 'T.GLOBAL_ARRAYS_CONFID', 'T.GLOBAL_ARRAYS_INTEG', 'T.OPERATE', 'T.REALLOCATION', 'T.ALARM', 'T.CIPHER', 'T.KEY-MNGT', 'T.PIN-MNGT', 'T.REMOTE', 'T.TRANSACTION', 'T.LOAD', 'T.CARD-MANAGEMENT', 'T.SCP.IC', 'T.SCP.RECOVERY', 'T.SCP.SUPPORT', 'T.EXT-MEM', 'T.INTEG-APPLI-CODE.LOAD', 'T.INTEG-APPLI-DATA.LOAD']}, 'A': {'__update__': {'A.APPLET': 1, 'A.USE_DIAG': 1}, '__delete__': ['A.LOAD']}, 'OT': {'__insert__': {'OT.SCP': 3}, '__delete__': ['OT.SCP.IC', 'OT.SCP.RECOVERY', 'OT.SCP.SUPPORT']}}, '__delete__': ['D', 'OSP']}, 'symmetric_crypto': {'__update__': {'DES': {'__update__': {'DES': {'__update__': {'DES': 10}}, '3DES': {'__update__': {'Triple-DES': 15, 'TDES': 3}, '__delete__': ['TripleDES']}}}, 'constructions': {'__update__': {'MAC': {'__update__': {'CMAC': 5}}}}}}, 'hash_function': {'__update__': {'SHA': {'__update__': {'SHA1': {'__update__': {'SHA-1': 7}}}}}}, 'crypto_scheme': {'__update__': {'MAC': {'__update__': {'MAC': 13}}}}, 'randomness': {'__update__': {'RNG': {'__update__': {'RND': 3, 'RNG': 3}}}, '__delete__': ['TRNG']}, 'side_channel_analysis': {'__update__': {'SCA': {'__update__': {'physical probing': 5}}, 'FI': {'__update__': {'Physical Tampering': 5, 'Malfunction': 3, 'malfunction': 8}}}}, 'os_name': {'JCOP': {'JCOP 2': 3}}, 'ic_data_group': {'__update__': {'EF': {'__update__': {'EF.DG4': 8, 'EF.DG16': 32, 'EF.COM': 12}}}}, 'standard_id': {'__update__': {'FIPS': {'__insert__': {'FIPS 180-4': 1}, '__update__': {'FIPS 46-3': 5, 'FIPS 197': 4}}, 'PKCS': {'__delete__': ['PKCS#1']}, 'ISO': {'__insert__': {'ISO/IEC 7816-4': 1}}, 'ICAO': {'__update__': {'ICAO': 18}}, 'CC': {'__update__': {'CCMB-2012-09-001': 2, 'CCMB-2012-09-002': 2, 'CCMB-2012-09-003': 2}}}}, 'certification_process': {'__update__': {'OutOfScope': {'__insert__': {'chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall': 1, 'internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine': 1, 'internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall': 1, ' No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall': 1, 'internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall': 1, 'chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm': 1, 'managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall': 1, 'chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality': 1, 'ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality': 1, 'platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality': 1, ' FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality': 1, 'chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport': 1, ' No contradiction to this ST. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, ' No contradiction to this ST. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality': 1, 'of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out': 1, 'internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out': 1, 'internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No': 1, 'Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 2, 'of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User': 1, 'of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of': 1, 'internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface': 1, '6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No': 1, 'Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The requirements are': 1, 'platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No': 1, '14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The': 1, 'ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional': 1, 'which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional': 1, 'manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence': 1, 'of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional': 1, 'that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The': 1, 'verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC': 1, '16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence': 1, 'internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional': 1, 'group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements': 2, 'ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope': 1, 'platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements': 1, '6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1': 1, 'requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No': 1, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the': 1, '80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST. OT': 1, 'no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST': 1, 'FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No': 1, 'to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST': 1, 'OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to': 1, 'ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST': 1, 'corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this': 1, 'OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to': 1, 'ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this': 1, 'OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-': 1, 'The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this': 1, 'Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to': 1, 'ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction': 1, 'this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST': 1, 'INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No': 1, 'SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this': 1, 'T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST': 1, 'RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST': 1, 'T.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. T.PHYSICAL T.Phys-Tamper No contradiction to this ST. Table 5': 1}, '__update__': {'Out of scope': 115, 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC': 1}, '__delete__': ['(chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall', '. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall', '. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine', '. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine', '. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall', '. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall', '. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall', '. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall', '. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall', '. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall', '. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall', '. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall', '. Application Programming Interface (chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm', '.2 No correspondence Out of scope (managed within JCOP', '. FCS_CKM.3 No correspondence Out of scope (managed within JCOP', '.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/bArray No correspondence. Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/TRANSIENT No correspondence. Out of scope (internal Java Card func- tionality', '. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall', '.1 No correspondence Out of scope (internal Java Card func- tionality', '. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality', '. Aid Management (chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality', '. FIA_UID.2/AID No correspondence Out of scope (internal Java Card func- tionality', '. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MTD.1/JCRE No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality', '. FPT_FLS.1/Installer No correspondence Out of scope (internal Java Card func- tionality', '. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality', '(ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '.3/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality', '. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality', '. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality', '. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality', '. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality', '.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality', '. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality', '. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality', '. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality', '. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality', '. FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACF.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality', '.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality', '. Further Functional Requirements (chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport', '. FTP_ITC.1/ LifeCycle No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality', '. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.3/SecureBox No correspondence Out of scope (internal Java Card func- tionality', '. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality', '. FMT_SMF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality', '.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST', '. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST', '.SID No correspondence Out of scope. No contradiction to this ST', '.FIREWALL No correspondence Out of scope. No contradiction to this ST', '.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No contradiction to this ST', '.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST', '.NATIVE No correspondence Out of scope. No contradiction to this ST', '.OPERATE No correspondence Out of scope. No contradiction to this ST', '.REALLOCATION No correspondence Out of scope. No contradiction to this ST', '.RESOURCES No correspondence Out of scope. No contradiction to this ST', '.ALARM No correspondence Out of scope. No contradiction to this ST', '. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST', '.PIN-MNGT No correspondence Out of scope. No contradiction to this ST', '.REMOTE No correspondence Out of scope. No contradiction to this ST', '.TRANSACTION No correspondence Out of scope. No contradiction to this ST', '.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST', '.DELETION No correspondence Out of scope. No contradiction to this ST', '.LOAD No correspondence Out of scope. No contradiction to this ST', '.INSTALL No correspondence Out of scope. No contradiction to this ST', '.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST', '. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST', '.EXT-MEM No correspondence Out of scope. No contradiction to this ST', '. Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST', '.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to this ST', '.RND No correspondence Out of scope. No contradiction to this ST', '.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction to this ST', '.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST', '.Information_Leakage No contradiction to this ST. T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST', '.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No contradiction to this ST', '.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST', '.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to this ST', '.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST', '.SID.1 No correspondence Out of scope. No contradiction to this ST', '.SID.2 No correspondence Out of scope. No contradiction to this ST', '.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST', '.EXE-CODE.2 No correspondence Out of scope. No contradiction to this ST', '.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST', 'Guidance of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User', 'rences/Remarks Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out', '(internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out', 'cope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No', 'correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User', 'Guidance of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User', 'Guidance of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of', 'scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface ', 'chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No', 'correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope ', 'platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No', 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No', 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No', 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No', 'correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No', 'correspondence. Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User', 'rget 14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The', 'platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional', 'pplets, which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional', 'ion manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. RMIG Security Functional', 'low of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional', 't that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The', 'ode verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence', 't 16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence', 'Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional', 's group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements', 'his ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope', '(platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements ', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements ', 'chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1', 'nal requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No', 'correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the', '80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST', 't no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST', 'OT.FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No', 'contradiction to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this', 'ST. OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to', 'this ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST', 'o corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this', 'ST. OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to', 'this ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this', 'ST. OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-', 'unction The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this', 'hreats. Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to', 'this ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction', 'to this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST', 'T.INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No', 'T.SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this', 'ST. T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST', 'T.RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this', 'ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST. T.OBJ-DELETION No correspondence Out of scope. No contradiction to']}}}} data.

    The computed heuristics were updated.

    • The report_references property was updated, with the {'indirectly_referencing': {'__add__': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0707-2012']}}} data.
  • 28.09.2022 The certificate data changed.
    Certificate changed

    The computed heuristics were updated.

    • The st_references property was updated, with the {'directly_referencing': {'__discard__': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0750-V2', 'NSCIB-CC-13-37760']}}, 'indirectly_referencing': {'__discard__': {'_type': 'Set', 'elements': ['BSI-DSZ-CC-0750-V2', 'NSCIB-CC-13-37760']}}} data.
    • The report_references property was updated, with the {'indirectly_referencing': {'__discard__': {'_type': 'Set', 'elements': ['NSCIB-CC-13-37760', 'NSCIB-CC-13-37761']}}} data.
  • 04.10.2022 The certificate data changed.
    Certificate changed

    The Protection profiles of the certificate were updated.

    • The new value is {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.protection_profile.ProtectionProfile', 'pp_name': "Protection Profile for Machine Readable Travel Document with 'ICAO Application', Basic Acce...", 'pp_eal': 'http://www.commoncriteriaportal.org/files/ppfiles/pp0055b.pdf', 'pp_link': None, 'pp_ids': None}]}.
  • 05.10.2022 The certificate data changed.
    Certificate changed

    The Protection profiles of the certificate were updated.

    • The new value is {'_type': 'Set', 'elements': [{'_type': 'sec_certs.sample.protection_profile.ProtectionProfile', 'pp_name': "Protection Profile for Machine Readable Travel Document with 'ICAO Application', Basic Acce...", 'pp_eal': None, 'pp_link': 'https://www.commoncriteriaportal.org/files/ppfiles/pp0055b.pdf', 'pp_ids': None}]}.

    The state of the certificate object was updated.

    • The following values were inserted: {'st_convert_garbage': False, 'report_convert_garbage': False}.

Raw data

{
  "_type": "sec_certs.sample.common_criteria.CommonCriteriaCert",
  "category": "ICs, Smart Cards and Smart Card-Related Devices and Systems",
  "cert_link": null,
  "dgst": "f9d96d0eb2bc85cc",
  "heuristics": {
    "_type": "sec_certs.sample.common_criteria.CommonCriteriaCert.Heuristics",
    "cert_id": "BSI-DSZ-CC-0911-2014",
    "cert_lab": [
      "BSI"
    ],
    "cpe_matches": null,
    "direct_dependency_cves": null,
    "extracted_sars": {
      "_type": "Set",
      "elements": [
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_OPE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_SPD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_INT",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_INT",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_CCL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_ARC",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_TAT",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DEL",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_FUN",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_OBJ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AVA_VAN",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "AGD_PRE",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_REQ",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_IND",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ASE_TSS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_COV",
          "level": 3
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_SPM",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_TDS",
          "level": 6
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "APE_ECD",
          "level": 1
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_FSP",
          "level": 6
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMC",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ADV_IMP",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_LCD",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ATE_DPT",
          "level": 4
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_DVS",
          "level": 2
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_CMS",
          "level": 5
        },
        {
          "_type": "sec_certs.sample.sar.SAR",
          "family": "ALC_FLR",
          "level": 3
        }
      ]
    },
    "extracted_versions": {
      "_type": "Set",
      "elements": [
        "2.1"
      ]
    },
    "indirect_dependency_cves": null,
    "related_cves": null,
    "report_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0914-2014",
          "BSI-DSZ-CC-0913-2014",
          "BSI-DSZ-CC-0912-2014"
        ]
      },
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0913-2014",
          "BSI-DSZ-CC-0858-2013",
          "BSI-DSZ-CC-0912-2014",
          "NSCIB-CC-13-37760-CR2",
          "BSI-DSZ-CC-0914-2014",
          "BSI-DSZ-CC-0750-V2-2014"
        ]
      },
      "indirectly_referenced_by": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0914-2014",
          "BSI-DSZ-CC-0911-2014",
          "BSI-DSZ-CC-0913-2014",
          "BSI-DSZ-CC-0912-2014"
        ]
      },
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0913-2014",
          "BSI-DSZ-CC-0645-2010",
          "BSI-DSZ-CC-0707-2012",
          "BSI-DSZ-CC-0914-2014",
          "BSI-DSZ-CC-0912-2014",
          "NSCIB-CC-13-37760-CR2",
          "BSI-DSZ-CC-0858-2013",
          "BSI-DSZ-CC-0911-2014",
          "NSCIB-CC-13-37762",
          "BSI-DSZ-CC-0750-V2-2014"
        ]
      }
    },
    "st_references": {
      "_type": "sec_certs.sample.certificate.References",
      "directly_referenced_by": null,
      "directly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0858-2013",
          "NSCIB-CC-13-37760-CR2",
          "BSI-DSZ-CC-0750-V2-2014"
        ]
      },
      "indirectly_referenced_by": null,
      "indirectly_referencing": {
        "_type": "Set",
        "elements": [
          "BSI-DSZ-CC-0858-2013",
          "NSCIB-CC-13-37760-CR2",
          "BSI-DSZ-CC-0750-V2-2014"
        ]
      }
    },
    "verified_cpe_matches": null
  },
  "maintenance_updates": {
    "_type": "Set",
    "elements": []
  },
  "manufacturer": "NXP Semiconductors Germany GmbH Business Line Identification",
  "manufacturer_web": "https://www.nxp.com",
  "name": "cv act ePasslet Suite v2.1 \u2013 Java Card applet configuration providing Machine Readable Travel Document with \u201cICAO Application\u201d, Basic Access Control (BAC)",
  "not_valid_after": null,
  "not_valid_before": "2014-12-22",
  "pdf_data": {
    "_type": "sec_certs.sample.common_criteria.CommonCriteriaCert.PdfData",
    "report_filename": "0911a_pdf.pdf",
    "report_frontpage": {
      "anssi": {},
      "bsi": {
        "cc_security_level": "Common Criteria Part 3 conformant EAL 4 augmented by ALC_DVS.2 SOGIS Recognition Agreement",
        "cc_version": "PP conformant Common Criteria Part 2 extended",
        "cert_id": "BSI-DSZ-CC-0911-2014",
        "cert_item": "cv act ePasslet Suite v2.1 \u2013 Java Card applet configuration providing Machine Readable Travel Document with \u201cICAO Application\u201d, Basic Access Control (BAC",
        "cert_lab": "BSI",
        "developer": "NXP Semiconductors Germany GmbH",
        "match_rules": [
          "(BSI-DSZ-CC-.+?) (?:for|For) (.+?) from (.*)"
        ],
        "ref_protection_profiles": "Machine Readable Travel Document with \"ICAO Application\" Basic Access Control, Version 1.10, 25 March 2009, BSI-CC-PP-0055-2009"
      },
      "canada": {},
      "niap": {},
      "nscib": {}
    },
    "report_keywords": {
      "asymmetric_crypto": {},
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0750-V2-2014": 6,
          "BSI-DSZ-CC-0858-2013": 10,
          "BSI-DSZ-CC-0911-2014": 46,
          "BSI-DSZ-CC-0912-2014": 10,
          "BSI-DSZ-CC-0913-2014": 4,
          "BSI-DSZ-CC-0914-2014": 4
        },
        "NL": {
          "NSCIB-CC-13-37760-CR2": 15
        }
      },
      "cc_claims": {
        "OE": {
          "OE.MRTD_": 1
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP-0055-2009": 5
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC": 1,
          "ADV_ARC.1": 1,
          "ADV_FSP": 1,
          "ADV_FSP.1": 1,
          "ADV_FSP.2": 1,
          "ADV_FSP.3": 1,
          "ADV_FSP.4": 1,
          "ADV_FSP.5": 1,
          "ADV_FSP.6": 1,
          "ADV_IMP": 1,
          "ADV_IMP.1": 1,
          "ADV_IMP.2": 1,
          "ADV_INT": 1,
          "ADV_INT.1": 1,
          "ADV_INT.2": 1,
          "ADV_INT.3": 1,
          "ADV_SPM": 1,
          "ADV_SPM.1": 1,
          "ADV_TDS": 1,
          "ADV_TDS.1": 1,
          "ADV_TDS.2": 1,
          "ADV_TDS.3": 1,
          "ADV_TDS.4": 1,
          "ADV_TDS.5": 1,
          "ADV_TDS.6": 1
        },
        "AGD": {
          "AGD_OPE": 1,
          "AGD_OPE.1": 1,
          "AGD_PRE": 1,
          "AGD_PRE.1": 1
        },
        "ALC": {
          "ALC_CMC": 1,
          "ALC_CMC.1": 1,
          "ALC_CMC.2": 1,
          "ALC_CMC.3": 1,
          "ALC_CMC.4": 2,
          "ALC_CMC.5": 1,
          "ALC_CMS": 1,
          "ALC_CMS.1": 1,
          "ALC_CMS.2": 1,
          "ALC_CMS.3": 1,
          "ALC_CMS.4": 2,
          "ALC_CMS.5": 1,
          "ALC_DEL": 1,
          "ALC_DEL.1": 2,
          "ALC_DVS": 1,
          "ALC_DVS.1": 1,
          "ALC_DVS.2": 7,
          "ALC_FLR": 3,
          "ALC_FLR.1": 1,
          "ALC_FLR.2": 1,
          "ALC_FLR.3": 1,
          "ALC_LCD.1": 2,
          "ALC_LCD.2": 1,
          "ALC_TAT": 1,
          "ALC_TAT.1": 2,
          "ALC_TAT.2": 1,
          "ALC_TAT.3": 1
        },
        "APE": {
          "APE_CCL.1": 1,
          "APE_ECD.1": 1,
          "APE_INT.1": 1,
          "APE_OBJ.1": 1,
          "APE_OBJ.2": 1,
          "APE_REQ.1": 1,
          "APE_REQ.2": 1,
          "APE_SPD.1": 1
        },
        "ASE": {
          "ASE_CCL": 1,
          "ASE_CCL.1": 1,
          "ASE_ECD": 1,
          "ASE_ECD.1": 1,
          "ASE_INT": 1,
          "ASE_INT.1": 1,
          "ASE_OBJ": 1,
          "ASE_OBJ.1": 1,
          "ASE_OBJ.2": 1,
          "ASE_REQ.1": 1,
          "ASE_REQ.2": 1,
          "ASE_SPD": 1,
          "ASE_SPD.1": 1,
          "ASE_TSS": 1,
          "ASE_TSS.1": 1,
          "ASE_TSS.2": 1
        },
        "ATE": {
          "ATE_COV": 1,
          "ATE_COV.1": 1,
          "ATE_COV.2": 1,
          "ATE_COV.3": 1,
          "ATE_DPT": 1,
          "ATE_DPT.1": 1,
          "ATE_DPT.2": 1,
          "ATE_DPT.3": 1,
          "ATE_DPT.4": 1,
          "ATE_FUN": 1,
          "ATE_FUN.1": 1,
          "ATE_FUN.2": 1,
          "ATE_IND": 1,
          "ATE_IND.1": 1,
          "ATE_IND.2": 1,
          "ATE_IND.3": 1
        },
        "AVA": {
          "AVA_VAN": 2,
          "AVA_VAN.1": 1,
          "AVA_VAN.2": 1,
          "AVA_VAN.3": 1,
          "AVA_VAN.4": 1,
          "AVA_VAN.5": 1
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 1": 7,
          "EAL 2": 4,
          "EAL 3": 4,
          "EAL 4": 13,
          "EAL 4 augmented": 3,
          "EAL 5": 10,
          "EAL 5+": 1,
          "EAL 6": 4,
          "EAL 7": 4,
          "EAL5+": 1
        },
        "ITSEC": {
          "ITSEC Evaluation": 1
        }
      },
      "cc_sfr": {},
      "certification_process": {
        "ConfidentialDocument": {
          "14-RPT-169, Revision 1.0, 26 June 2014 (confidential document) [17] ETR for composition according to AIS36 on P5CD128V0A/B, P5CD128V0B(s), P5CC128V0A/B": 1,
          "IC Dedicated Software, BSI-DSZ-CC-0858-2013, Version 1.0, 22 April 2013, T-Systems GEI GmbH (confidential document) [18] NXP J3E145_M64, J3E120_M65, J3E082_M65, J2E145_M64, J2E120_M65, and J2E082_M65 Secure Smart": 1,
          "J2E082_M65 Secure Smart Card Controller Revision 3 EAL5+, version 6, 12 August 2014, Brightsight (confidential document) [16] ETR for composition Crypto Library V2.7/V2.9 on SmartMX P5Cx128/P5Cx145, according to AIS36": 1,
          "Technical Report, Version 2, BSI-DSZ-CC-0911-2014, 27 November 2014, T\u00dcV Informationstechnik GmbH (confidential document) [9] Configuration list for the TOE BSI-DSZ-CC-0911-2014, 13 November 2014, cv cryptovision": 1
        }
      },
      "cipher_mode": {},
      "cplc_data": {},
      "crypto_engine": {
        "SmartMX": {
          "SmartMX": 2
        }
      },
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 2
        }
      },
      "crypto_scheme": {
        "MAC": {
          "MAC": 1
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {
        "BrightSight": {
          "Brightsight": 2
        },
        "TUV": {
          "T\u00dcV Informationstechnik": 3
        }
      },
      "hash_function": {},
      "ic_data_group": {},
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "JCOP": {
          "JCOP 2": 4
        }
      },
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RNG": 1
        }
      },
      "side_channel_analysis": {
        "other": {
          "JIL": 2
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 1": 1,
          "AIS 20": 2,
          "AIS 25": 1,
          "AIS 26": 2,
          "AIS 31": 2,
          "AIS 32": 1,
          "AIS 34": 2,
          "AIS 36": 4,
          "AIS 38": 1,
          "AIS 46": 1,
          "AIS36": 2
        },
        "ICAO": {
          "ICAO": 8
        },
        "ISO": {
          "ISO/IEC 15408": 4,
          "ISO/IEC 17065": 2,
          "ISO/IEC 18045": 4,
          "ISO/IEC 7816-4": 1
        }
      },
      "symmetric_crypto": {},
      "technical_report_id": {
        "BSI": {
          "BSI 7125": 2,
          "BSI 7138": 2,
          "BSI 7148": 1,
          "BSI TR-03105": 1
        }
      },
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 17,
          "NXP Semiconductors": 6
        }
      },
      "vulnerability": {}
    },
    "report_metadata": {
      "/Author": "Bundesamt f\u00fcr Sicherheit in der Informationstechnik",
      "/CreationDate": "D:20150120142600+01\u002700\u0027",
      "/Creator": "Writer",
      "/Keywords": "\"Common Criteria, Certification, Zertifizierung, NXP, cryptovision, BAC, BSI-DSZ-CC-0911-2014\"",
      "/ModDate": "D:20150120144746+01\u002700\u0027",
      "/Producer": "LibreOffice 4.2",
      "/Subject": "Common Criteria Certification",
      "/Title": "Certification Report BSI-DSZ-CC-0911-2014",
      "pdf_file_size_bytes": 1218749,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "http://www.commoncriteriaportal.org/",
          "https://www.bsi.bund.de/",
          "https://www.bsi.bund.de/zertifizierung"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 38
    },
    "st_filename": "0911b_pdf.pdf",
    "st_frontpage": {
      "anssi": {},
      "bsi": {},
      "canada": {},
      "niap": {},
      "nscib": {}
    },
    "st_keywords": {
      "asymmetric_crypto": {
        "ECC": {
          "ECC": {
            "ECC": 1
          }
        }
      },
      "cc_cert_id": {
        "DE": {
          "BSI-DSZ-CC-0750-V2": 3,
          "BSI-DSZ-CC-0750-V2-2014": 2,
          "BSI-DSZ-CC-0858-2013": 2
        },
        "NL": {
          "NSCIB-CC-13-37760": 2,
          "NSCIB-CC-13-37760-CR2": 3
        }
      },
      "cc_claims": {
        "A": {
          "A.APPLET": 1,
          "A.PPROCESS-SEC-IC": 3,
          "A.USE_DIAG": 1,
          "A.USE_KEYS": 1,
          "A.VERIFICATION": 1
        },
        "OE": {
          "OE.APPLET": 1,
          "OE.CODE-EVIDENCE": 1,
          "OE.MRTD_": 2,
          "OE.PROCESS_SEC_IC": 2,
          "OE.USE_DIAG": 1,
          "OE.USE_KEYS": 1,
          "OE.VERIFICATION": 6
        },
        "OT": {
          "OT.ALARM": 1,
          "OT.CARD-MANAGEMENT": 1,
          "OT.CIPHER": 1,
          "OT.DELETION": 1,
          "OT.EXT-MEM": 1,
          "OT.FIREWALL": 1,
          "OT.GLOBAL_ARRAYS_CONFID": 1,
          "OT.GLOBAL_ARRAYS_INTEG": 1,
          "OT.IDENTIFICATION": 1,
          "OT.INSTALL": 1,
          "OT.KEY-MNGT": 1,
          "OT.LOAD": 1,
          "OT.MF_FW": 1,
          "OT.NATIVE": 1,
          "OT.OBJ-DELETION": 1,
          "OT.OPERATE": 1,
          "OT.PIN-MNGT": 1,
          "OT.REALLOCATION": 1,
          "OT.REMOTE": 1,
          "OT.RESOURCES": 1,
          "OT.RND": 1,
          "OT.SCP": 3,
          "OT.SEC_BOX_FW": 1,
          "OT.SID": 1,
          "OT.TRANSACTION": 1
        },
        "T": {
          "T.CONFID-APPLI-DATA": 1,
          "T.CONFID-JCS-CODE": 1,
          "T.CONFID-JCS-DATA": 1,
          "T.DELETION": 1,
          "T.EXE-CODE": 2,
          "T.EXE-CODE-REMOTE": 1,
          "T.INSTALL": 1,
          "T.INTEG-APPLI-CODE": 2,
          "T.INTEG-APPLI-DATA": 2,
          "T.INTEG-JCS-CODE": 1,
          "T.INTEG-JCS-DATA": 1,
          "T.NATIVE": 1,
          "T.OBJ-DELETION": 1,
          "T.OS_OPERATE": 1,
          "T.PHYSICAL": 1,
          "T.RESOURCES": 1,
          "T.RND": 1,
          "T.SEC_BOX_BORDER": 1,
          "T.SID": 2
        }
      },
      "cc_protection_profile_id": {
        "BSI": {
          "BSI-CC-PP0055": 3,
          "BSI-PP-0002-2001": 1,
          "BSI-PP-0035-2007": 1,
          "BSI-PP-0055": 1,
          "BSI-PP-0056": 1
        }
      },
      "cc_sar": {
        "ADV": {
          "ADV_ARC.1": 2
        },
        "ALC": {
          "ALC_DVS": 1,
          "ALC_DVS.2": 5
        }
      },
      "cc_security_level": {
        "EAL": {
          "EAL 4+": 1,
          "EAL 5+": 2,
          "EAL4": 8,
          "EAL4 augmented": 2
        }
      },
      "cc_sfr": {
        "FAU": {
          "FAU_ARP.1": 1,
          "FAU_GEN": 1,
          "FAU_SAS": 8,
          "FAU_SAS.1": 13,
          "FAU_SAS.1.1": 2
        },
        "FCO": {
          "FCO_NRO": 1
        },
        "FCS": {
          "FCS_CKM": 3,
          "FCS_CKM.1": 29,
          "FCS_CKM.1.1": 2,
          "FCS_CKM.2": 3,
          "FCS_CKM.3": 1,
          "FCS_CKM.4": 22,
          "FCS_CKM.4.1": 4,
          "FCS_COP": 52,
          "FCS_COP.1": 45,
          "FCS_LIM": 1,
          "FCS_RND": 7,
          "FCS_RND.1": 16,
          "FCS_RND.1.1": 3,
          "FCS_RNG": 1,
          "FCS_RNG.1": 2
        },
        "FDP": {
          "FDP_ACC": 9,
          "FDP_ACC.1": 18,
          "FDP_ACC.1.1": 3,
          "FDP_ACF": 10,
          "FDP_ACF.1": 11,
          "FDP_ACF.1.1": 3,
          "FDP_ACF.1.2": 4,
          "FDP_ACF.1.3": 3,
          "FDP_ACF.1.4": 4,
          "FDP_IFC": 2,
          "FDP_IFC.1": 4,
          "FDP_IFF": 2,
          "FDP_ITC": 3,
          "FDP_ITC.1": 10,
          "FDP_ITC.2": 10,
          "FDP_RIP": 8,
          "FDP_ROL": 1,
          "FDP_SDI.2": 1,
          "FDP_UCT": 2,
          "FDP_UCT.1": 11,
          "FDP_UCT.1.1": 3,
          "FDP_UIT": 4,
          "FDP_UIT.1": 10,
          "FDP_UIT.1.1": 3,
          "FDP_UIT.1.2": 2
        },
        "FIA": {
          "FIA_AFL": 2,
          "FIA_AFL.1": 8,
          "FIA_AFL.1.1": 2,
          "FIA_AFL.1.2": 2,
          "FIA_ATD": 1,
          "FIA_SOS.2": 1,
          "FIA_UAU": 6,
          "FIA_UAU.1": 10,
          "FIA_UAU.1.1": 2,
          "FIA_UAU.1.2": 2,
          "FIA_UAU.4": 18,
          "FIA_UAU.4.1": 2,
          "FIA_UAU.5": 9,
          "FIA_UAU.5.1": 4,
          "FIA_UAU.5.2": 6,
          "FIA_UAU.6": 12,
          "FIA_UAU.6.1": 2,
          "FIA_UID": 3,
          "FIA_UID.1": 12,
          "FIA_UID.1.1": 2,
          "FIA_UID.1.2": 1,
          "FIA_USB": 1
        },
        "FMT": {
          "FMT_LIM": 12,
          "FMT_LIM.1": 25,
          "FMT_LIM.1.1": 6,
          "FMT_LIM.2": 22,
          "FMT_LIM.2.1": 7,
          "FMT_MSA": 16,
          "FMT_MSA.1": 1,
          "FMT_MSA.3": 3,
          "FMT_MTD": 27,
          "FMT_MTD.1": 14,
          "FMT_SMF": 5,
          "FMT_SMF.1": 22,
          "FMT_SMF.1.1": 2,
          "FMT_SMR": 6,
          "FMT_SMR.1": 22,
          "FMT_SMR.1.1": 4,
          "FMT_SMR.1.2": 4
        },
        "FPR": {
          "FPR_UNO.1": 1
        },
        "FPT": {
          "FPT_FLS": 5,
          "FPT_FLS.1": 16,
          "FPT_FLS.1.1": 3,
          "FPT_PHP": 1,
          "FPT_PHP.3": 15,
          "FPT_PHP.3.1": 2,
          "FPT_RCV": 1,
          "FPT_RVM.1": 1,
          "FPT_SEP.1": 1,
          "FPT_TDC.1": 1,
          "FPT_TST.1": 11,
          "FPT_TST.1.1": 2,
          "FPT_TST.1.2": 2,
          "FPT_TST.1.3": 2
        },
        "FRU": {
          "FRU_FLT": 1
        },
        "FTP": {
          "FTP_ITC": 2,
          "FTP_ITC.1": 5,
          "FTP_TRP.1": 5
        }
      },
      "certification_process": {
        "OutOfScope": {
          " FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FDP_ACF.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FDP_ACF.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FDP_ROL.1/FIREWALL No correspondence. Out of scope (internal Java Card Fire- wall": 1,
          " No contradiction to this ST. FMT_MSA.1/SecureBox No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No correspondence Out of scope (internal Java Card Fire- wall": 1,
          " No contradiction to this ST. FMT_MSA.3/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_MSA.3/LifeCycle No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FMT_SMR.1/Installer No correspondence Out of scope (internal Java Card func- tionality": 1,
          " No contradiction to this ST. FPT_RCV.3/Installer No correspondence Out of scope (internal Java Card func- tionality": 1,
          "14 of 80 Platform SFR Correspondence in this ST References/Remarks FPR_UNO.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1 FPT_FLS.1 The": 1,
          "15 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.3/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence": 1,
          "16 of 80 Platform SFR Correspondence in this ST References/Remarks FMT_SMF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence": 1,
          "19 of 80 Platform Objective Correspondence in this ST References/Remarks OT.LOAD No correspondence Out of scope. No contradiction to this ST. OT.INSTALL No correspondence Out of scope. No contradiction to this": 1,
          "6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport). No contradic- tion to this ST. FTP_ITC.1/ LifeCycle No": 1,
          "6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm. FCS_CKM.2 No": 1,
          "80 Platform Objective Correspondence in this ST References/Remarks OT.SEC_BOX_FW No correspondence Out of scope. No contradiction to this ST. OT.IDENTIFICATION OT.Identification No contradiction to this ST. OT": 1,
          "80 Platform SFR Correspondence in this ST References/Remarks FMT_MSA.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/LifeCycle No": 1,
          "80 Platform Threat Correspondence in this ST References/Remarks T.INTEG-JCS-DATA No correspondence Out of scope. No contradiction to this ST. T.SID.1 No correspondence Out of scope. No contradiction to this ST": 1,
          "ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality": 1,
          "FIREWALL No correspondence Out of scope. No contradiction to this ST. OT.GLOBAL_ARRAYS_CONFID No correspondence Out of scope. No": 1,
          "Guidance of the TOE. No contradic- tion to this ST. FDP_IFC.1/JCVM No correspondence Out of scope (internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out": 1,
          "INTEG-APPLI-CODE No correspondence Out of scope. No contradiction to this ST. T.INTEG-APPLI-CODE.LOAD No correspondence Out of scope. No": 1,
          "OT.CARD-MANAGEMENT No correspondence Out of scope. No contradiction to this ST. OT.SCP.IC OT.Prot_Phys-Tamper The objectives are related. No con-": 1,
          "OT.OPERATE No correspondence Out of scope. No contradiction to this ST. OT.REALLOCATION No correspondence Out of scope. No contradiction to": 1,
          "OT.REMOTE No correspondence Out of scope. No contradiction to this ST. OT.TRANSACTION No correspondence Out of scope. No contradiction to": 1,
          "Out of scope": 115,
          "Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 2,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. ADELG Security Functional": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FAU_SAS.1/SCP FAU_SAS.1": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/TRANSIENT No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/bArray No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ROL.1/FIREWALL No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/EXT_MEM No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/SecureBox No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/EXT_MEM No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/SecureBox No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/EXT_MEM No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/SecureBox No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/Installer No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_RCV.3/Installer No": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. Further Functional Requirements": 2,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. ODELG Security Functional": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. Table 3: Assessment of the": 1,
          "Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC": 1,
          "Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP). No contradiction to this ST. FCS_CKM.4 FCS_CKM.4 The requirements are": 1,
          "Platform Threat Correspondence in this ST References/Remarks T.OS_OPERATE No correspondence Out of scope. No contradiction to this ST. T.SEC_BOX_BORDER No correspondence Out of scope. No contradiction to": 1,
          "RESOURCES No correspondence Out of scope. No contradiction to this ST. T.DELETION No correspondence Out of scope. No contradiction to this ST. T.INSTALL No correspondence Out of scope. No contradiction to this ST": 1,
          "SFR is part of the basis of the fulfillment of the SFR of this ST. FRU_FLT.2/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FPT_PHP.3/SCP FPT_PHP.3 The fulfillment of": 1,
          "SID.2 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.1 No correspondence Out of scope. No contradiction to this ST. T.EXE-CODE.2 No correspondence Out of scope. No contradiction to this": 1,
          "ST is based on the platform SFR. No con- tradiction to this ST. FDP_ACC.1/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope": 1,
          "ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FIA_UID.2/AID No correspondence": 1,
          "ST. OT.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. OT.DELETION No correspondence Out of scope. No contradiction to this": 1,
          "ST. OT.RESOURCES No correspondence Out of scope. No contradiction to this ST. OT.ALARM No correspondence Out of scope. No contradiction to this ST": 1,
          "ST. T.RND No correspondence Out of scope. No contradiction to this ST. T.CONFID-APPLI-DATA No correspondence Out of scope. No contradiction": 1,
          "T.EXE-CODE-REMOTE No correspondence Out of scope. No contradiction to this ST. T.NATIVE No correspondence Out of scope. No contradiction to this ST": 1,
          "T.INTEG-APPLI-DATA T.Forgery No contradiction to this ST. T.INTEG-APPLI-DATA.LOAD No correspondence Out of scope. No contradiction to this ST. T.INTEG-JCS-CODE No correspondence Out of scope. No contradiction to": 1,
          "T.OBJ-DELETION No correspondence Out of scope. No contradiction to this ST. T.PHYSICAL T.Phys-Tamper No contradiction to this ST. Table 5": 1,
          "The objectives are related. No con- tradiction to this ST. OT.SCP.SUPPORT No correspondence Out of scope. No contradiction to this ST. OT.EXT-MEM No correspondence Out of scope. No contradiction to this": 1,
          "chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "chapter 6.1.14 in platform ST) FIA_AFL.1/PIN No correspondence Out of scope (PINs are not used within a BAC passport": 1,
          "chapter 6.1.2 in platform ST) FCS_CKM.1 No correspondence Out of scope. The TOE uses the spe- cific Document Basic Access Key Der- ivation Algorithm": 1,
          "chapter 6.1.4 in platform ST) FIA_ATD.1/AID No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "corresponding objectives for the TOE of this ST. No contradictions. OT.KEY-MNGT No correspondence Out of scope. No contradiction to this ST. OT.PIN-MNGT No correspondence Out of scope. No contradiction to this": 1,
          "group includes requirements for managing the external memory. FDP_ACC.1/EXT_MEM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/EXT_MEM No": 1,
          "in platform ST) Firewall Policy (chapter 6.1.1 in platform ST) FDP_ACC.2/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.2/FIREWALL_JCVM No": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of scope (internal Java Card Fire- wall": 1,
          "internal Java Card Fire- wall). No contradiction to this ST. FMT_SMR.1 No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. Application Programming Interface": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_IFF.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/ADEL No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/KEYS No correspondence. Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FDP_UIT.1/CM No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_UID.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FIA_USB.1/AID No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.1/JCRE No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.1/CM No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MSA.3/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. cv act ePasslet2.1/MRTD-BAC": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_MTD.3/JCRE No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. INSTG Security Functional": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMF.1/ADEL No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/CM No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ADEL No correspondence Out of scope (internal Java Card func- tionality": 1,
          "internal Java Card func- tionality). No contradiction to this ST. FTP_ITC.1/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. EMG Security Functional": 1,
          "internal Java Virtual Machine). No contradiction to this ST. FDP_IFF.1/JCVM No correspondence Out of scope (internal Java Virtual Machine": 1,
          "internal Java Virtual Machine). No contradiction to this ST. FDP_RIP.1/OBJECTS No correspondence. Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_MSA.1/JCRE No correspondence Out": 1,
          "managed within JCOP). No contradiction to this ST. FCS_CKM.3 No correspondence Out of scope (managed within JCOP": 1,
          "manager (ADEL) policy on security aspects outside the runtime. FDP_ACC.2/ADEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/ADEL No correspondence": 1,
          "no corresponding objectives for the TOE of this ST. No contradictions. OT.MF_FW No correspondence Out of scope. No contradiction to this ST. OT.SID No correspondence Out of scope. No contradiction to this ST": 1,
          "of information that takes place when the RMI service is used. FDP_ACC.2/JCRMI No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/JCRMI No": 1,
          "of the TOE. No contradic- tion to this ST. FDP_ACF.1/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "of the TOE. No contradic- tion to this ST. FMT_MSA.3/FIREWALL No correspondence Out of scope (internal Java Card Fire- wall). The resulting requirements for applets are reflected in the User": 1,
          "of the TOE. No contradic- tion to this ST. FMT_MSA.3/JCVM No correspondence Out of scope (internal Java Card Fire- wall). No contradiction to this ST. FMT_SMF.1 No correspondence Out of": 1,
          "out of scope": 1,
          "platform SFR FCS_COP.1.1/ DESMAC. No contradictions to this ST. FDP_RIP.1/ABORT No correspondence. Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_RIP.1/APDU No correspondence": 1,
          "platform functionality). No contradiction to this ST. FDP_ACF.1/SCP No correspondence Out of scope (platform functionality": 1,
          "platform functionality). No contradiction to this ST. FMT_MSA.3/SCP No correspondence Out of scope (platform functionality). No contradiction to this ST. LifeCycle Security Functional Requirements": 1,
          "requirements for the Secure Box which is part of the TOE. FDP_ACC.2/SecureBox No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/SecureBox No": 1,
          "that owns the deleted objects by invoking a specific API method. FDP_RIP.1/ODEL No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FPT_FLS.1/ODEL FPT_FLS.1 The": 1,
          "the security requirements for life cycle control mechanism . FDP_ACC.1/LifeCycle No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_ACF.1/LifeCycle No": 1,
          "this ST. T.CONFID-JCS-CODE No correspondence Out of scope. No contradiction to this ST. T.CONFID-JCS-DATA T.Information_Leakage No contradiction to this ST": 1,
          "to this ST. OT.GLOBAL_ARRAYS_INTEG No correspondence Out of scope. No contradiction to this ST. OT.NATIVE No correspondence Out of scope. No contradiction to this ST": 1,
          "variants of this composite TOE provide MIFARE functionality; please note that this functionality is out of scope of the TOE\u2019s security functionality claimed by this Security Target. 1.3.3 TOE usage and security": 1,
          "verified, or that has been modified after bytecode verification. FCO_NRO.2/CM No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FDP_IFC.2/CM No correspondence": 1,
          "vio- lations complement JCOP mecha- nisms. No contradiction to this ST. FPT_TDC.1 No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. Aid Management (chapter 6.1.4 in": 1,
          "which addresses security aspects outside the runtime. FDP_ITC.2/Installer No correspondence Out of scope (internal Java Card func- tionality). No contradiction to this ST. FMT_SMR.1/Installer No": 1
        }
      },
      "cipher_mode": {
        "CBC": {
          "CBC": 11
        }
      },
      "cplc_data": {},
      "crypto_engine": {
        "SmartMX": {
          "SmartMX": 2
        }
      },
      "crypto_library": {},
      "crypto_protocol": {
        "PACE": {
          "PACE": 1
        }
      },
      "crypto_scheme": {
        "KEX": {
          "Key exchange": 1
        },
        "MAC": {
          "MAC": 13
        }
      },
      "device_model": {},
      "ecc_curve": {},
      "eval_facility": {},
      "hash_function": {
        "MD": {
          "MD5": {
            "MD5": 1
          }
        },
        "RIPEMD": {
          "RIPEMD-160": 1
        },
        "SHA": {
          "SHA1": {
            "SHA-1": 7
          },
          "SHA2": {
            "SHA-224": 2,
            "SHA-256": 3
          }
        }
      },
      "ic_data_group": {
        "EF": {
          "EF.COM": 12,
          "EF.DG1": 32,
          "EF.DG13": 3,
          "EF.DG14": 3,
          "EF.DG15": 1,
          "EF.DG16": 32,
          "EF.DG2": 9,
          "EF.DG3": 9,
          "EF.DG4": 8,
          "EF.DG5": 8,
          "EF.SOD": 13
        }
      },
      "javacard_api_const": {},
      "javacard_packages": {},
      "javacard_version": {},
      "os_name": {
        "JCOP": {
          "JCOP 2": 3
        }
      },
      "pq_crypto": {},
      "randomness": {
        "RNG": {
          "RND": 3,
          "RNG": 3
        }
      },
      "side_channel_analysis": {
        "FI": {
          "Malfunction": 3,
          "Physical Tampering": 5,
          "Physical tampering": 1,
          "fault injection": 1,
          "malfunction": 8,
          "physical tampering": 1
        },
        "SCA": {
          "DPA": 2,
          "SPA": 1,
          "physical probing": 5,
          "timing attacks": 1
        },
        "other": {
          "JIL": 1,
          "reverse engineering": 1
        }
      },
      "standard_id": {
        "BSI": {
          "AIS 20": 3,
          "AIS20": 6,
          "AIS31": 3
        },
        "CC": {
          "CCMB-2012-09-001": 2,
          "CCMB-2012-09-002": 2,
          "CCMB-2012-09-003": 2,
          "CCMB-2012-09-004": 1
        },
        "FIPS": {
          "FIPS 180-2": 1,
          "FIPS 180-4": 1,
          "FIPS 180-410": 1,
          "FIPS 197": 4,
          "FIPS 46-3": 5,
          "FIPS PUB 46-3": 1,
          "FIPS180-2": 1,
          "FIPS180-4": 2,
          "FIPS197": 4,
          "FIPS46-3": 5
        },
        "ICAO": {
          "ICAO": 18
        },
        "ISO": {
          "ISO/IEC 7816-2": 1,
          "ISO/IEC 7816-4": 1
        },
        "PKCS": {
          "PKCS#15": 1
        },
        "RFC": {
          "RFC3369": 1
        },
        "X509": {
          "X.509": 1
        }
      },
      "symmetric_crypto": {
        "AES_competition": {
          "AES": {
            "AES": 25,
            "AES-": 1
          }
        },
        "DES": {
          "3DES": {
            "TDES": 3,
            "Triple-DES": 15
          },
          "DES": {
            "DES": 10
          },
          "Lucifer": {
            "Lucifer": 1
          }
        },
        "constructions": {
          "MAC": {
            "CMAC": 5,
            "KMAC": 1
          }
        }
      },
      "technical_report_id": {},
      "tee_name": {},
      "tls_cipher_suite": {},
      "vendor": {
        "NXP": {
          "NXP": 11,
          "NXP Semiconductors": 1
        }
      },
      "vulnerability": {}
    },
    "st_metadata": {
      "/Author": "bdrisch",
      "/CreationDate": "D:20141112132321+01\u002700\u0027",
      "/Creator": "Microsoft\u00ae Word 2013",
      "/Keywords": "Security Target, ePasslet Suite, ICAO LDS, BAC",
      "/ModDate": "D:20141112132321+01\u002700\u0027",
      "/Producer": "Microsoft\u00ae Word 2013",
      "/Subject": "deutsch",
      "/Title": "cv act ePasslet/MRTD-BAC Security Target",
      "pdf_file_size_bytes": 3206057,
      "pdf_hyperlinks": {
        "_type": "Set",
        "elements": [
          "file:///C:/tzeggel/Desktop/glossar.htm%23aes"
        ]
      },
      "pdf_is_encrypted": false,
      "pdf_number_of_pages": 80
    }
  },
  "protection_profiles": {
    "_type": "Set",
    "elements": [
      {
        "_type": "sec_certs.sample.protection_profile.ProtectionProfile",
        "pp_eal": null,
        "pp_ids": null,
        "pp_link": "https://www.commoncriteriaportal.org/files/ppfiles/pp0055b.pdf",
        "pp_name": "Protection Profile for Machine Readable Travel Document with \u0027ICAO Application\u0027, Basic Acce..."
      }
    ]
  },
  "report_link": "https://www.commoncriteriaportal.org/files/epfiles/0911a_pdf.pdf",
  "scheme": "DE",
  "security_level": {
    "_type": "Set",
    "elements": [
      "EAL4+",
      "ALC_DVS.2"
    ]
  },
  "st_link": "https://www.commoncriteriaportal.org/files/epfiles/0911b_pdf.pdf",
  "state": {
    "_type": "sec_certs.sample.common_criteria.CommonCriteriaCert.InternalState",
    "errors": [],
    "report_convert_garbage": false,
    "report_convert_ok": true,
    "report_download_ok": true,
    "report_extract_ok": true,
    "report_pdf_hash": "c8f50a1311ba3b82b4e2743d3e1211d3a1252d3ce9106e5b4d854366f3fa95c4",
    "report_txt_hash": "8b49c51eb934cdf7f8b316d45b0f6bbb6ed9ebfdf7b7ce6a43fa0e607269385b",
    "st_convert_garbage": false,
    "st_convert_ok": true,
    "st_download_ok": true,
    "st_extract_ok": true,
    "st_pdf_hash": "22758f70533d728d644585c9a99daef8ce3acb50638217a1e5af81b2efc5bbb0",
    "st_txt_hash": "69b7307cbaadac03bfe122feab9535afd47188f96ae00b44e1f3a067f44aac4d"
  },
  "status": "active"
}