Evaluated Product - Details

Return to the EPL index


Product type: ICs, Smart Cards and Smart Card related Devices and Systems
Product Status: Archived
Assurance Level: E4

Version: 2.3

Product Details

Product Description

Certification Country: AUSTRALIA/NEW ZEALAND (2004)
Certificate Details: 2004/32, June 2004
Certification Method: ITSEC
Crypt Evaluation: Completed
Evaluation Facility: CSC
Manufacturer/Vendor/Distributor: Giesecke & Devrient

Giesecke & Devrient

Prinzregentenstr. 159 Postfach 80 07 29
Munich 81607 Germany


David Curtis
Manager Marketing and Business Development

Phone: +61 3 9765 1200
Email: david.curtis@au.gi-de.com
Website: http://au.gi-de.com/


Security Target - includes Certification Report

Giesecke & Devrient has developed the Smart Card Chip Operating System/Standard with Public Key extension, version number 2.3 (STARCOS SPK 2.3) as a complete multi-application operating system for smart cards.

The STARCOS SPK 2.3 card is manufactured in Australia and has the following features:

  • Fast on-card generation of asymmetric key pairs up to 1024 bit key length. Protection against manipulation of keys and digital signatures.
  • RSA signature generation/verification and RSA encipher/decipher according to PKCS#1 and ISO 9796-2.
  • Support of SHA-1: on-card padding of imported SHA-1 values plus calculation of last SHA-1 hash cycle on card.
  • RSA encipher/decipher up to 1024 bit key length.
  • Access control via user authentication by PIN mechanism and support of transport PIN mechanism for secure delivery.
  • Definition of access conditions: card blocking and card terminate state.
  • Loading of additional key pairs into the card and termination of single keys.
  • Contributes to SDA/DPA resistance.
  • Asymmetric device authentication by means of card verifiable certificates
  • Supports secure messaging through the provision of digital signatures.
  • Storage of certificate data objects (such as X.509 certificates)