Common Criteria Security Certifications
Common Criteria (CC), also known as the Common Criteria for Information Technology Security Evaluation, is an international set of specifications and guidelines designed by the signatories of the Common Criteria Recognition Arrangement (CCRA), to evaluate information security products and systems. It was developed to ensure that products and systems meet a predefined security standard for government deployments. Products and systems that have been successfully tested and evaluated by a licensed laboratory are awarded a Common Criteria certification.
SUSE received Common Criteria Certificates for:
| Release | Evaluation Assurance Level | Certification | Date | Sunset |
|---|---|---|---|---|
SUSE Linux Enterprise Server 15 SP2 |
EAL4, ALC_FLR.3 (EAL4+) |
07/08/2021 |
07/07/2026 |
|
Operating System Protection Profile, Version 2.0, 01 June 2010, BSI-CC-PP-0067-2010, OSPP Extended Package – Advanced Management, Version 2.0, 28 May 2010, OSPP Extended Package – Advanced Audit, Version 2.0, 28 May 2010, OSPP Extended Package – Virtualization, Version 2.0, 28 May 2010 |
07/08/2021 |
07/07/2026 |
||
SUSE Linux Enterprise Server 15 SP4 |
Protection Profile for General Purpose Operating Systems Version 4.2.1, 22 April 2019, CCEVS-VR-PP-0047, NIAP, Functional Package for Secure Shell (SSH), Version 1.0, 13 May 2021, CCEVS-VR-PP-0075, NIAP |
12/15/2023 |
12/14/2028 |
|
Protection Profile - Protection Profile for Virtualization Version 1.1, 14 June 2021 |
01/27/2026 |
01/26/2031 |
||
EAL4, ALC_FLR.3 (EAL4+) Protection Profile - Operating System Protection Profile, Version 2.0, 01 June 2010, BSI-CC-PP-0067-2010, OSPP Extended Package – Virtualization, Version 2.0, May 28, 2010; OSPP Extended Package – Advanced Audit, Version 2.0, May 28, 2010; OSPP Extended Package – Advanced Management, Version 2.0, May 28, 2010; |
02/24/2026 |
02/23/2031 |
||
SUSE Linux Enterprise Server 15 SP7 |
Protection Profile for General Purpose Operating Systems, Version 4.3, September 27, 2022, CCEVS-VR-PP-0091; Functional Package for Transport Layer Security (TLS), Version 1.1, February 12, 2019, NIAP; Functional Package for Secure Shell (SSH), Version 1.0, 13 May 2021, CCEVS-VR-PP-0075, NIAP |
02/24/2026 |
02/23/2031 |
|
SUSE Linux Enterprise Micro 5.3 |
Protection Profile for General Purpose Operating Systems Version 4.2.1, 22 April 2019, CCEVS-VR-PP-0047, NIAP, Functional Package for Secure Shell (SSH), Version 1.0, 13 May 2021, CCEVS-VR-PP-0075, NIAP |
01/24/2025 |
01/23/2030 |
|
To achieve the certifications, the SUSE products, and processes for developing and maintaining its products, passed a rigorous security evaluation performed by Atsec Information Security. The certificates were issued by Bundesamt für Sicherheit in der Informationstechnik (BSI) the German Federal Office for IT Security. The Common Criteria for Information Technology Security Evaluation is an international standard (ISO/IEC 15408), recognized by 26 countries (CCRA) worldwide.