{"product_id":11178,"v_id":11178,"product_name":"Imprivata OneSign Version 7.9","certification_status":"Certified","certification_date":"2023-10-09T00:00:00Z","tech_type":"Enterprise Security Management","vendor_id":{"name":"Imprivata, Inc","website":"www.imprivata.com"},"vendor_poc":"Troy Kuehl","vendor_phone":"508.277.5923","vendor_email":"tkuehl@imprivata.com","assigned_lab":{"cctl_name":"atsec information security corporation"},"product_description":"<p>The Target of Evaluation (TOE) is Imprivata OneSign Version 7.9 Hot Fix 9 (HF9) (build 7.9.009.58). OneSign is a policy management product developed by Imprivata, Inc. for managing endpoints in an enterprise. It manages access to endpoint features through the use of policies and provides single sign-on (SSO) capabilities for endpoints. The product consists of two main components:</p>\r\n<p style=\"padding-left: 40px;\"><!-- [if !supportLists]-->1.&nbsp;&nbsp;&nbsp;&nbsp; <!--[endif]-->Imprivata Appliance&mdash;A virtual appliance (a.k.a. appliance) containing software called OneSign that performs policy management (i.e., the TOE)</p>\r\n<p style=\"padding-left: 40px;\"><!-- [if !supportLists]-->2.&nbsp;&nbsp;&nbsp;&nbsp; <!--[endif]-->Imprivata Agent&mdash;Agent software (a.k.a. agent) for enforcing policies on endpoints</p>\r\n<p>The TOE is the Imprivata Appliance. The Imprivata Agents and endpoints reside in the operational environment.</p>\r\n<p>The TOE is a single virtual appliance instance running in a VMware ESXi virtual machine. The TOE contains the SUSE Linux Enterprise Server (SLES) OS as its base OS, an Apache HTTP Server, Apache SSHD using Apache Multipurpose Infrastructure for Network Applications (MINA), Java, OpenJDK, and syslog-ng.</p>\r\n<p>In ESM Protection Profile terms, the TOE is a Policy Manager. The Access Control products are the agents located on each endpoint. The TOE is used to create, manage, and provide policies to the enrolled endpoints. The agents enforce the policies on the endpoints.</p>","evaluation_configuration":"<p>The evaluated configuration consists of Imprivata OneSign Version 7.9 Hot Fix 9 (HF9) (build 7.9.009.58) running as a virtual appliance in a VMware ESXi virtual machine. The following configuration specifics apply to the evaluated configuration of the TOE:</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>The TOE is a single virtual appliance instance</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Offline Authentication mode is disabled in the Computer Policies and User Policies</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Only the internal password authentication mechanism is supported (i.e., external authentication servers were not tested)</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Only users in the Imprivata domain are supported</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Temporary codes for Windows Access are disallowed</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Apache HTTP Server TLS 1.3 support is disabled</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Network Time Protocol (NTP) is disabled</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>File servers for backup functionality are disallowed</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>Computer Policy Settings as specified in the Security Target</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: 0.75in; text-indent: -0.25in; line-height: normal; border: none;\"><span style=\"font-size: 12pt; font-family: Symbol;\">&middot;<span style=\"font-variant-numeric: normal; font-variant-east-asian: normal; font-variant-alternates: normal; font-kerning: auto; font-optical-sizing: auto; font-feature-settings: normal; font-variation-settings: normal; font-variant-position: normal; font-stretch: normal; font-size: 7pt; line-height: normal; font-family: 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span>User Policy settings as specified in the Security Target</p>\r\n<p>&nbsp;</p>","security_evaluation_summary":"<p class=\"Applecontent\">The evaluation was carried out in accordance with the Common Criteria Evaluation and Validation Scheme (CCEVS) process. The criteria against which the <!-- [if supportFields]><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span\r\nstyle='mso-element:field-begin'></span><span\r\nstyle='mso-spacerun:yes'> </span>DOCPROPERTY \"TOE\"<span\r\nstyle='mso-spacerun:yes'>  </span>\\* MERGEFORMAT <span style='mso-element:field-separator'></span></span><![endif]-->Imprivata OneSign Version 7.9<!-- [if supportFields]><span style='font-size:12.0pt;\r\nline-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span style='mso-element:\r\nfield-end'></span></span><![endif]--> was judged are described in the Common Criteria for Information Technology Security Evaluation, Version 3.1 R5. The evaluation methodology used by the evaluation team to conduct the evaluation was the Common Methodology for Information Technology Security Evaluation, Version 3.1, R5 supplemented by that found in the Protection Profile cited&nbsp;above. The product, when delivered and configured as identified in the <em>Imprivata OneSign Version 7.9 Common Criteria Administration Guide</em><span style=\"font-size: 12.0pt; line-height: 115%; font-family: 'DEJAVU SANS',sans-serif;\">,</span> meets the requirements of the <!-- [if supportFields]><span style='font-size:12.0pt;\r\nline-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span style='mso-element:\r\nfield-begin'></span><span style='mso-spacerun:yes'> </span>DOCPROPERTY\r\n\"PP\"<span style='mso-spacerun:yes'>  </span>\\* MERGEFORMAT <span\r\nstyle='mso-element:field-separator'></span></span><![endif]-->Standard Protection Profile for Enterprise Security Management Policy Management, Version 2.1<!-- [if supportFields]><span style='font-size:12.0pt;\r\nline-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span style='mso-element:\r\nfield-end'></span></span><![endif]-->.</p>\r\n<p class=\"Applecontent\"><!-- [if supportFields]><b><span style='font-size:12.0pt;\r\nline-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span style='mso-element:\r\nfield-begin'></span><span style='mso-spacerun:yes'> </span>DOCPROPERTY\r\n\"TOE\"<span style='mso-spacerun:yes'>  </span>\\* MERGEFORMAT <span\r\nstyle='mso-element:field-separator'></span></span></b><![endif]--><strong>Imprivata OneSign Version 7.9</strong><!-- [if supportFields]><b><span style='font-size:\r\n12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span\r\nstyle='mso-element:field-end'></span></span></b><![endif]--></p>\r\n<p class=\"Applecontent\"><em>The Imprivata OneSign Version 7.9 Common Criteria Administration Guide</em> document satisfies all of the security functional requirements stated in the <!-- [if supportFields]><i><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif;\r\ncolor:#353535'><span style='mso-element:field-begin'></span></span></i><i><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif;\r\ncolor:#353535'><span style='mso-spacerun:yes'> </span>DOCPROPERTY\r\n\"TOE\"<span style='mso-spacerun:yes'>  </span>\\* MERGEFORMAT </span></i><i><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif;\r\ncolor:#353535'><span style='mso-element:field-separator'></span></span></i><![endif]--><em>Imprivata OneSign Version 7.9<!-- [if supportFields]><i><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif;\r\ncolor:#353535'><span style='mso-element:field-end'></span></span></i><![endif]--> Security Target, </em>version 1.3. The evaluation was subject to CCEVS Validator review. The evaluation was completed in October 2023. Results of the evaluation can be found in the Common Criteria Evaluation and Validation Scheme Validation Report number CCEVS-VR-VID<!-- [if supportFields]><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span\r\nstyle='mso-element:field-begin'></span> DOCPROPERTY \"VID No\"<span\r\nstyle='mso-spacerun:yes'>  </span>\\* MERGEFORMAT <span style='mso-element:field-separator'></span></span><![endif]-->11178<!-- [if supportFields]><span\r\nstyle='font-size:12.0pt;line-height:115%;font-family:\"DEJAVU SANS\",sans-serif'><span\r\nstyle='mso-element:field-end'></span></span><![endif]-->-2023, prepared by CCEVS.</p>","environmental_strengths":"<p class=\"Body\">The TOE provides the security functions described below.</p>\r\n<h3>Enterprise Security Management</h3>\r\n<p>The TOE supports policy definition and transmission. It allows administrators to define security policies and distribute the policies over a secure connection to the managed endpoints.</p>\r\n<p class=\"MsoNormal\" style=\"mso-layout-grid-align: none; text-autospace: none; margin: 6.0pt 0in 6.0pt .25in;\">The TOE supports the following policies:</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: .75in; text-indent: -.25in; line-height: normal; mso-list: l0 level1 lfo1; mso-layout-grid-align: none; text-autospace: none; border: none; mso-padding-alt: 0in 0in 0in 0in;\"><!-- [if !supportLists]--><span style=\"font-size: 12.0pt; font-family: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol;\"><span style=\"mso-list: Ignore;\">&middot;<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; </span></span></span><!--[endif]-->Computer Policy &ndash; Capabilities and restrictions placed on the endpoint</p>\r\n<p class=\"MsoListParagraph\" style=\"margin-left: .75in; text-indent: -.25in; line-height: normal; mso-list: l0 level1 lfo1; mso-layout-grid-align: none; text-autospace: none; border: none; mso-padding-alt: 0in 0in 0in 0in;\"><!-- [if !supportLists]--><span style=\"font-size: 12.0pt; font-family: Symbol; mso-fareast-font-family: Symbol; mso-bidi-font-family: Symbol;\"><span style=\"mso-list: Ignore;\">&middot;<span style=\"font: 7.0pt 'Times New Roman';\">&nbsp; &nbsp; &nbsp; &nbsp;</span></span></span>User Policy &ndash; Capabilities and restrictions placed on the user</p>\r\n<p>The agent combines and enforces the two policies when a user authenticates an endpoint.</p>\r\n<p><span style=\"text-decoration: underline;\">Computer Policy</span></p>\r\n<p>In general, Computer Policies apply to every user attempting to use the endpoint. These policies define the set of features accessible to any user on that endpoint.</p>\r\n<p>The TOE supports the creation (including modification and deletion) of multiple Computer Policies and the application of different Computer Policies to different endpoints.</p>\r\n<p><span style=\"text-decoration: underline;\">User Policy</span></p>\r\n<p>User Policies apply to a specific user attempting to use any endpoint. These policies define the set of endpoint features the user is allowed to use on any endpoint.</p>\r\n<p>The TOE supports the creation (including modification and deletion) of multiple User Policies and the application of different User Policies to different users.</p>\r\n<h3>Auditing</h3>\r\n<p><a name=\"_Toc402861905\"></a>The TOE generates audit records for the PP-required events.</p>\r\n<p>The TOE supports two separate mechanisms for storing its audit records externally. Some audit records can be transmitted as individual audit records to an external audit server (a.k.a. syslog server) over a protected communications channel. The remaining audit records can be transmitted in log files to external audit log storage over a protected communications channel.</p>\r\n<h3>Cryptographic Support</h3>\r\n<p>The TOE employs the HTTPS protocol, SSH (a.k.a. SSHv2) protocol, and TLS protocol to protect communication channels.</p>\r\n<p>The HTTPS protocol is implemented by the Apache HTTP Server which uses Apache's Network Security Services (NSS) for both the TLS protocol and cryptographic algorithms.</p>\r\n<p>The SSH protocol is implemented using Apache SSHD which uses the Java Secure Socket Extension (JSSE) application programming interface (API) to perform its cryptographic operations in the SSH protocol.</p>\r\n<p>The syslog-ng client uses OpenSSL which implements both the TLS protocol and cryptographic algorithms.</p>\r\n<h3>Identification and Authentication</h3>\r\n<p><span style=\"text-decoration: underline;\">Admin Console</span></p>\r\n<p>For the Admin Console, the TOE contains an internal authentication server used to authenticate users. The authentication server uses an internal database to store user data and credentials. The TOE requires the Admin Console users to be identified and authenticated prior to accessing any management functions.</p>\r\n<p>The Admin Console supports multiple administrator roles.</p>\r\n<p><span style=\"text-decoration: underline;\">Appliance Console</span></p>\r\n<p>For the Appliance Console, the TOE uses a separate password file to store and authenticate users. The TOE also enforces authentication failure handling on the Appliance Console.</p>\r\n<p>The Appliance Console supports two administrator accounts: Super Administrator and Administrator. These accounts are used to perform low-level configuration and maintenance.</p>\r\n<h3>Security Management</h3>\r\n<p>The TOE supports multiple security management functions including user account management and policy management functions.</p>\r\n<h3>Protection of the TSF</h3>\r\n<p>The TOE obscures authentication data before storing them in non-volatile memory. No interface is provided by the TOE to view the passwords in plaintext. Similarly, the TOE provides no interface to view pre-shared keys, symmetric keys, and private keys.</p>\r\n<p>The TOE also provides its own reliable time stamp capabilities.</p>\r\n<h3>TOE Access</h3>\r\n<p>The TOE terminates the remote sessions of the Admin Console and Appliance Console after an administrator-configurable time interval of inactivity. It also allows administrators to terminate their own sessions on the Admin Console and Appliance Console (i.e., logout).</p>\r\n<p>The Admin Console and Appliance Console display configurable advisory messages prior to authentication. Depending on which console, administrators can deny session establishment based on day, time, duration, or username.</p>\r\n<h3>Trusted Path/Channels</h3>\r\n<p>The TOE acts as an HTTPS server supporting TLS 1.2 when communicating with the agents. Administrators externally manage the TOE using a web browser (i.e., Admin Console and Appliance Console) over HTTPS with TLS 1.2.</p>\r\n<p>The TOE uses the secure copy protocol (SCP) (i.e., SSHv2) to protect the communication channel when transferring audit data from the TOE to external audit log storage.</p>\r\n<p>The TOE uses TLS 1.2 to protect the communication channel when transferring audit data from the TOE to the external audit server (syslog).</p>","features":[]}