PP for a Secure Signature Creation Device - Part 4: Extension for device with key generation and trusted communication with certificate generation application

SSCD / Smart card and similar devices

Certification Body

Bundesamt fĂźr Sicherheit in der Informationstechnik (BSI)



Point of Contact

  • CEN/ISSS, Rue de Stassart 36, 1050, Brussels, Belgium
  • commoncriteria@bsi.bund.de

Certification ID

BSI-CC-PP-0071-2012-MA-01 which updates


PP Version

EN 419211-4:2013, V1.0.1

The official version of the Protection Profile is available via the regular distribution path for EN standards or its national translations (see here for details)

CC Version

3.1 Revision 4

CC Conformance Claim

CC part 2 extended
CC part 3 conformant
EAL 4 augmented by AVA_VAN.5
Conformance claims to this protection profile requires strict conformance

Certification status

Maintained 30 June 2016
Certified 12 December 2012




The Protection Profile (PP) has been provided by the Technical Committee CEN/TC 224. It is referenced by the Commission Implementing Decision (EU) 2016/650 of 25 April 2016 laying down standards for the security assessment of qualified signature and seal creation devices pursuant to Articles 30(3) and 39(2) of Regulation (EU) No 910/2014 of the European Parliament and of the Council on electronic identification and trust services for electronic transactions in the internal market.

The intent of the Protection Profile is to specify functional and assurance requirements defined in the Directive for a secure signature-creation device (SSCD) which is the target of evaluation (TOE). The Protection Profile describes core security requirements for a secure device that can generate a signing key (signature-creation data, SCD), operates to create electronic signatures with the generated key and export the verification key (signature-verification data, SVD) for certification through a trusted channel to the Certificate Generation Application (CGA).

Relation to other PPs

This Protection Profile is strictly conforming to the PP for a Secure Signature Creation Device - Part 2: Device with key generation.

The maintained Protection Profile is an update of the following Protection Profile :

  • V1.0.1 (BSI-CC-PP-0071-2012) due to editorial issues from publishing the official version of the CEN standard