{"product_id":11136,"v_id":11136,"product_name":"Enveil ZeroReveal™ Compute Fabric Client v2.5.4","certification_status":"Certified","certification_date":"2021-06-02T00:00:00Z","tech_type":"Application Software","vendor_id":{"name":"Enveil","website":"www.enveil.com"},"vendor_poc":"Jacob Wilder","vendor_phone":"(443) 741-1021","vendor_email":"info@enveil.com","assigned_lab":{"cctl_name":"Acumen Security"},"product_description":"<p>The Target of Evaluation (TOE) is Enveil ZeroReveal&trade; Compute Fabric Client v2.5.4 and has been evaluated on the CentOS 8.1 on the Intel Core i7-10710U host platform. The TOE is the application software and required libraries only. The host platforms are not part of the evaluation. The TOE supports secure connectivity with several other IT environment devices as described in Table 1 IT Environments Components.&nbsp;</p>","evaluation_configuration":"<p class=\"MsoNormal\">The TOE has been evaluated on the following host platforms:</p>\r\n<p class=\"MsoNormal\" style=\"padding-left: 40px;\"><strong>-</strong> CentOS 8.1 on Intel Core i7-10710U</p>\r\n<p class=\"MsoNormal\">Note: The TOE is the application software and required libraries only. The host platforms are not part of the evaluation.</p>\r\n<p class=\"MsoNormal\">The TOE supports secure connectivity with several other IT environment devices as described below:</p>\r\n<div align=\"center\">\r\n<table class=\"MsoNormalTable\" style=\"border-collapse: collapse; mso-table-layout-alt: fixed; border: none; mso-border-alt: solid windowtext .5pt; mso-padding-alt: 0in .05in 0in .05in; mso-border-insideh: .5pt solid windowtext; mso-border-insidev: .5pt solid windowtext;\" border=\"1\" width=\"100%\" cellspacing=\"0\" cellpadding=\"0\">\r\n<thead>\r\n<tr style=\"mso-yfti-irow: 0; mso-yfti-firstrow: yes; height: 5.85pt;\">\r\n<td style=\"width: 85.25pt; border: solid windowtext 1.0pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"bottom\" width=\"114\">\r\n<p class=\"TableNormal1\"><strong>Component</strong></p>\r\n</td>\r\n<td style=\"width: .75in; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"72\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">Required</span></strong></p>\r\n</td>\r\n<td style=\"width: 328.25pt; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"438\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">Usage/Purpose Description</span></strong></p>\r\n</td>\r\n</tr>\r\n</thead>\r\n<tbody>\r\n<tr style=\"mso-yfti-irow: 1; height: 6.8pt;\">\r\n<td style=\"width: 85.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"114\">\r\n<p class=\"TableNormal1\">Enveil ZeroReveal&reg; Compute Fabric Server</p>\r\n</td>\r\n<td style=\"width: .75in; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"72\">\r\n<p class=\"TableNormal1\">Yes</p>\r\n</td>\r\n<td style=\"width: 328.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"438\">\r\n<p class=\"TableNormal1\">The TOE is a ZeroReveal&reg; Compute Fabric Client, which communicates with a server to process data queries in a way that does not disclose the nature of the query to any observer.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The TOE does not serve a useful function without the ZeroReveal&reg; server.</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 2; height: 6.8pt;\">\r\n<td style=\"width: 85.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"114\">\r\n<p class=\"TableNormal1\">Enveil ZeroReveal Compute Fabric Client platform</p>\r\n</td>\r\n<td style=\"width: .75in; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"72\">\r\n<p class=\"TableNormal1\">Yes</p>\r\n</td>\r\n<td style=\"width: 328.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"438\">\r\n<p class=\"TableNormal1\">This is the platform on which the TOE is installed; the client application which communicates with the ZeroReveal server to process data queries in a way that does not disclose the nature of the query to any observer.</p>\r\n<p class=\"TableNormal1\">The Client workstation must include the Java Runtime as shown in Figure 1 and the CentOS 8.1 OS as defined above.</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 3; height: 6.8pt;\">\r\n<td style=\"width: 85.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"114\">\r\n<p class=\"TableNormal1\">LDAP Server</p>\r\n</td>\r\n<td style=\"width: .75in; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"72\">\r\n<p class=\"TableNormal1\">Yes</p>\r\n</td>\r\n<td style=\"width: 328.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"438\">\r\n<p class=\"TableNormal1\">LDAP is used for external authentication and identification of users.</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 4; mso-yfti-lastrow: yes; height: 6.8pt;\">\r\n<td style=\"width: 85.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"114\">\r\n<p class=\"TableNormal1\">User Workstation</p>\r\n</td>\r\n<td style=\"width: .75in; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"72\">\r\n<p class=\"TableNormal1\">Yes</p>\r\n</td>\r\n<td style=\"width: 328.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"438\">\r\n<p class=\"TableNormal1\">The TOE executes on a user workstation which must support the REST APIs used to communicate with the TOE.</p>\r\n</td>\r\n</tr>\r\n</tbody>\r\n</table>\r\n</div>\r\n<p class=\"MsoCaption\" style=\"text-align: left;\" align=\"left\"><strong>Table 1 IT Environment Components</strong></p>","security_evaluation_summary":"<p class=\"MsoNormal\" style=\"margin-bottom: 0in;\">The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process and scheme. The criteria against which the Enveil ZeroReveal&reg; Compute Fabric Client v2.5.4 was evaluated are described in the Common Criteria for Information Technology Security Evaluation, Version 3.1 rev 5.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The evaluation methodology used by the evaluation team to conduct the evaluation is the Common Methodology for Information Technology Security Evaluation, Version 3.1 rev 5.<span style=\"mso-spacerun: yes;\">&nbsp; </span>Acumen Security determined that the evaluation assurance level (EAL) for the product is EAL 1.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The product, when delivered configured as identified in the ZeroReveal Compute Fabric Configuration Guide for Common Criteria v2.5.4, satisfies all of the security functional requirements stated in the <a name=\"_Hlk45117042\"></a>Enveil ZeroReveal&reg; Compute Fabric Client Security Target. The project underwent CCEVS Validator review.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The evaluation was completed in May 2021.<span style=\"mso-spacerun: yes;\">&nbsp; </span>Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report prepared by CCEVS.</p>","environmental_strengths":"<p class=\"MsoNormal\">The TOE provides the security functionality required by [SWAPP] and [TLS-PKG].</p>\r\n<h4 style=\"mso-list: none; tab-stops: .5in;\">3.1 Cryptographic Support</h4>\r\n<p class=\"MsoNormal\">The TOE performs two kinds of cryptographic functions: those necessary to the operation of the TOEs homomorphic encrypted search function, and those necessary to the operation of the trusted path and trusted channels.<span style=\"mso-spacerun: yes;\">&nbsp; </span>Because the homomorphic encryption functionality is outside the scope of this evaluation, only those cryptographic functions necessary to support the trusted path and trusted channels are described below:</p>\r\n<div align=\"center\">\r\n<table class=\"MsoNormalTable\" style=\"border-collapse: collapse; mso-table-layout-alt: fixed; border: none; mso-border-alt: solid windowtext .5pt; mso-padding-alt: 0in .05in 0in .05in; mso-border-insideh: .5pt solid windowtext; mso-border-insidev: .5pt solid windowtext;\" border=\"1\" width=\"100%\" cellspacing=\"0\" cellpadding=\"0\">\r\n<thead>\r\n<tr style=\"mso-yfti-irow: 0; mso-yfti-firstrow: yes; height: 5.85pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"bottom\" width=\"156\">\r\n<p class=\"TableNormal1\"><strong>Cryptographic Method</strong></p>\r\n</td>\r\n<td style=\"width: 350.75pt; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">Use within the TOE</span></strong></p>\r\n</td>\r\n</tr>\r\n</thead>\r\n<tbody>\r\n<tr style=\"mso-yfti-irow: 1; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">AES-GCM</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">TLS encryption</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 2; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">ECDSA</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">TLS key generation, signature generation and verification</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 3; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">RSA</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">TLS key generation, signature generation and verification</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 4; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">HMAC</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">Message integrity and authentication for TLS</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 5; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">AES-CCM</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">Storage of credentials</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 6; mso-yfti-lastrow: yes; height: 6.8pt;\">\r\n<td style=\"width: 116.75pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"156\">\r\n<p class=\"TableNormal1\">DRBG</p>\r\n</td>\r\n<td style=\"width: 350.75pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"468\">\r\n<p class=\"TableNormal1\">Random bit generation for all cryptographic functions</p>\r\n</td>\r\n</tr>\r\n</tbody>\r\n</table>\r\n</div>\r\n<p class=\"MsoCaption\" style=\"text-align: left;\" align=\"left\"><strong>Table 2 TOE Provided Cryptography</strong></p>\r\n<p class=\"MsoCaption\" style=\"text-align: left;\" align=\"left\">Each of these cryptographic algorithms have been validated for conformance to the requirements specified in their respective standards, as identified below:</p>\r\n<p class=\"MsoNormal\">&nbsp;</p>\r\n<div align=\"center\">\r\n<table class=\"MsoNormalTable\" style=\"border-collapse: collapse; mso-table-layout-alt: fixed; border: none; mso-border-alt: solid windowtext .5pt; mso-padding-alt: 0in .05in 0in .05in; mso-border-insideh: .5pt solid windowtext; mso-border-insidev: .5pt solid windowtext;\" border=\"1\" width=\"100%\" cellspacing=\"0\" cellpadding=\"0\">\r\n<thead>\r\n<tr style=\"mso-yfti-irow: 0; mso-yfti-firstrow: yes; height: 5.85pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"bottom\" width=\"90\">\r\n<p class=\"TableNormal1\"><strong>Algorithm</strong></p>\r\n</td>\r\n<td style=\"width: 157.5pt; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">Standard</span></strong></p>\r\n</td>\r\n<td style=\"width: 175.5pt; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">Mode/Keysize</span></strong></p>\r\n</td>\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-left: none; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; background: #D9D9D9; padding: 0in .05in 0in .05in; height: 5.85pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\"><strong><span style=\"color: black; mso-color-alt: windowtext;\">CAVP Cert. #</span></strong></p>\r\n</td>\r\n</tr>\r\n</thead>\r\n<tbody>\r\n<tr style=\"mso-yfti-irow: 1; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">HMAC_DRBG</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">NIST SP 800-90A</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">HMAC-SHA2-512 with 256 bits of entropy seeded by the platform DRBG</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 2; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">ECDSA KeyGen</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">ECDH Key Establishment</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">ECDSA SigGen/SigVer</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">FIPS Pub 186-4, Appendix B.4</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">NIST SP 800-56Arev3</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">FIPS Pub 186-4, Section 5</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">Curves P-256 and P-384</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 3; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">RSA KeyGen</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">RSA SigGen/SigVer</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">FIPS Pub 186-4, Appendix B.3</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">FIPS Pub 186-4, Section 4</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">2048 bits</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 4; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">AES-GCM</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">NIST SP 800-38D</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">256 bits</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 5; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">AES-CCM</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">NIST SP 800-38C</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">256 bits</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 6; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">SHA2-256</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">SHA2-384</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">SHA2-512</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">FIPS Pub 180-4</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">Digest size 256 bits</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">Digest size 384 bits</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">Digest size 512 bits</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n<tr style=\"mso-yfti-irow: 7; mso-yfti-lastrow: yes; height: 6.8pt;\">\r\n<td style=\"width: 67.25pt; border: solid windowtext 1.0pt; border-top: none; mso-border-top-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">HMAC-SHA2-256</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">HMAC-SHA2-384</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">HMAC-SHA-512</p>\r\n</td>\r\n<td style=\"width: 157.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"210\">\r\n<p class=\"TableNormal1\">FIPS Pub 198-1</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n</td>\r\n<td style=\"width: 175.5pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"234\">\r\n<p class=\"TableNormal1\">Key size 256 bits, block size 512 bits, digest size 256 bits</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">Key size 384 bits, block size 1024 bits, digest size 384 bits</p>\r\n<p class=\"TableNormal1\">&nbsp;</p>\r\n<p class=\"TableNormal1\">Key size 512 bits, block size 1024 bits, digest size 512 bits</p>\r\n</td>\r\n<td style=\"width: 67.25pt; border-top: none; border-left: none; border-bottom: solid windowtext 1.0pt; border-right: solid windowtext 1.0pt; mso-border-top-alt: solid windowtext .5pt; mso-border-left-alt: solid windowtext .5pt; mso-border-alt: solid windowtext .5pt; padding: 0in .05in 0in .05in; height: 6.8pt;\" valign=\"top\" width=\"90\">\r\n<p class=\"TableNormal1\">C1874</p>\r\n</td>\r\n</tr>\r\n</tbody>\r\n</table>\r\n</div>\r\n<h4 style=\"mso-list: none; tab-stops: .5in;\">Table 3 CAVP Algorithm Testing References</h4>\r\n<h4 style=\"mso-list: none; tab-stops: .5in;\">3.2 User Data Protection</h4>\r\n<p class=\"MsoNormal\">The ZeroReveal Client network communication is restricted to user-initiated communication for authentication via LDAP directory, responses to API requests, and initiation of communications with the ZeroReveal Server.</p>\r\n<h4 style=\"mso-list: none; tab-stops: .5in;\">3.3 Identification and Authentication</h4>\r\n<p class=\"MsoNormal\">The ZeroReveal client relies on X.509v3 certificate validation functions provided by the platform to authenticate the certificate(s) during the establishment of the TLS trusted channel.<span style=\"mso-spacerun: yes;\">&nbsp; </span>All trusted paths and channels are first authenticated using X.509v3 certificates.</p>\r\n<p class=\"MsoNormal\">Individual users are authenticated to the TOE by X.509v3 certificate during TLS with mutual authentication trusted channel establishment and by authentication via LDAP server (the first shows that the user is authorized to communicate with the TOE at all, the second shows that the user is authorized to run queries using the TOE).</p>\r\n<h4 style=\"margin-left: .25in; text-indent: -.25in; mso-list: l1 level2 lfo2; tab-stops: .5in;\"><!-- [if !supportLists]--><span style=\"mso-fareast-font-family: 'Calibri Light'; mso-fareast-theme-font: major-latin; mso-bidi-font-family: 'Calibri Light'; mso-bidi-theme-font: major-latin;\"><span style=\"mso-list: Ignore;\">3.4<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp; </span></span></span><!--[endif]-->Security Management</h4>\r\n<p class=\"MsoNormal\">An enterprise administrator manages the TOE via configuration files on each installation workstation or platform in the Operational Environment.<span style=\"mso-spacerun: yes;\">&nbsp; </span>There is no management GUI, CLI, or interface to manage the TOE over the network.</p>\r\n<p class=\"MsoNormal\">The TOE does not include any predefined or default credentials and utilizes the platform recommended storage process for configured credentials in the TOE&rsquo;s configuration files.</p>\r\n<h4 style=\"margin-left: .25in; text-indent: -.25in; mso-list: l1 level2 lfo2; tab-stops: .5in;\"><!-- [if !supportLists]--><span style=\"mso-fareast-font-family: 'Calibri Light'; mso-fareast-theme-font: major-latin; mso-bidi-font-family: 'Calibri Light'; mso-bidi-theme-font: major-latin;\"><span style=\"mso-list: Ignore;\">3.5<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp; </span></span></span><!--[endif]-->Privacy</h4>\r\n<p class=\"MsoNormal\">The TOE does not collect or transmit Personally Identifiable Information (PII) over the network.</p>\r\n<h4 style=\"margin-left: .25in; text-indent: -.25in; mso-list: l1 level2 lfo2; tab-stops: .5in;\"><!-- [if !supportLists]--><span style=\"mso-fareast-font-family: 'Calibri Light'; mso-fareast-theme-font: major-latin; mso-bidi-font-family: 'Calibri Light'; mso-bidi-theme-font: major-latin;\"><span style=\"mso-list: Ignore;\">3.6<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp; </span></span></span><!--[endif]-->Protection of the TSF</h4>\r\n<p class=\"MsoNormal\">The TOE leverages platform provided package management for secure installation and updates.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The TOE installation package includes only those third-party libraries necessary for its intended operation.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The TOE utilizes compiler-provided anti-exploitation capabilities.</p>\r\n<h4 style=\"margin-left: .25in; text-indent: -.25in; mso-list: l1 level2 lfo2; tab-stops: .5in;\"><!-- [if !supportLists]--><span style=\"mso-fareast-font-family: 'Calibri Light'; mso-fareast-theme-font: major-latin; mso-bidi-font-family: 'Calibri Light'; mso-bidi-theme-font: major-latin;\"><span style=\"mso-list: Ignore;\">3.7<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp; </span></span></span><!--[endif]-->Trusted Path/Channels</h4>\r\n<p class=\"MsoNormal\">The TOE communicates to the ZeroReveal&reg; Compute Fabric Server via REST API over mutually authenticated TLS.<span style=\"mso-spacerun: yes;\">&nbsp; </span>The TOE communicates to the LDAP server via mutually authenticated TLS.<span style=\"mso-spacerun: yes;\">&nbsp; </span>Users communicate with the TOE through the REST API over HTTPS/TLS.</p>","features":[]}