Defence Signals Directorate Reveal their secrets....Protect our own

News

DATE TOPIC ANNOUNCEMENT
04/04/08 EPL DSD has accepted into “in evaluation” phase: Windows Mobile 6.1. Further details about the product can be found at Microsoft Windows Mobile Version 6.1
20/02/08 EPL DSD has accepted into “in evaluation” phase: Cisco Network Admission Control (NAC) solution. Further details about the product can be found at Cisco Network Admission Control (NAC) solution including the NAC Appliance, NAC Appliances network module (NME-NAC-K9) for Cisco Internet Services Routers (ISRs), NAC Agent, and NAC Profiler
29/01/08 EPL DSD has accepted into "in evaluation" phase: Xerox WorkCentre Multifunction Systems. Further details about the product can be found at Xerox WorkCentre 4150 / 4150s / 4050x / 4150xf Multifunction Systems
10/10/07 EPL DSD has accepted into "in evaluation" phase: Windows Vista and Windows Server 2008. Further details about the product can be found at Microsoft Windows Vista and Windows Server 2008
04/10/07 ACSI 33 The September 2007 release of the Australian Government Information and Communications Technology Security Manual (ACSI 33) has been released and is available for downloading.
Further details can be found on the ACSI 33 Information Page
03/08/07 EPL DSD has accepted into "in evaluation" phase: Microsoft Windows Mobile Version 6. Further details about the product can be found at Microsoft Windows Mobile Version 6
03/08/07 EPL DSD has accepted into "in evaluation" phase: Microsoft Windows Mobile Version 5 with the Messaging and Security Feature Pack (MSFP). Further details about the product can be found at Microsoft Windows Mobile Version 5 with the Messaging and Security Feature Pack (MSFP)
27/08/07 EPL DSD has accepted into "in evaluation" phase: Passlogix V-GO Sign-On Platform Product Suite. Further details about the product can be found at Passlogix_vgo.html
20/08/07 EPL Canon Australia Pty Ltd has made a business decision to withdraw the Canon MEAP Applications (SecureLogin 1.1.2, SecureFax 1.0.2, SecurePrint 3.1.2 and Canon Server) from Common Criteria evaluation under the Australasian Information Security Evaluation Program. Consequently the product's listing has been removed from the Evaluated Products List.
DATE TOPIC ANNOUNCEMENT
18/06/07 EPL Announcement: Nokia IPSO 3.5 and 3.51, which was certified to EAL4 in the UK in 2003, has recently completed a DSD Cryptographic Evaluation. Further details about the product and the scope of the evaluation can be found at NokiaIPSO.html
DATE TOPIC ANNOUNCEMENT
14/06/07 EPL Cisco Remote Access VPN 3000 Concentrator 4.1.7.N completed the Common Criteria evaluation to EAL 2 on 25 May 2007. Further details about the product and the scope of the evaluation can be found at Cisco_VPN3000Concentrator.html
DATE TOPIC ANNOUNCEMENT
09/05/07 EPL Thales e-Security Datacryptor 2000 3.4 and Datacryptor Advanced Processing 3.511 completed the Common Criteria evaluation to EAL 4 and the DSD Cryptrographic Evaluation on 4 May 2007. Further details about the product and the scope of the evaluation can be found at DataCryptor 2000.
29/03/07 EPL Cisco IOS/IPSec release 12.4(6)T3, 12.4(7) and 12.2(33)SRA completed evaluation at EAL 2 on 21 March 2007. Further details about the product and the scope of the evaluation can be found at Cisco ISOIPSec 1800 Router. Please note, a Consumer Guide will shortly be available on the EPL, against the Cisco IOS/IPSec (EAL 2) listing, within the Network Security Products section of Table 1 . The Guide is highly recommended reading for Australian or New Zealand government users with an interest in this Cisco product.
DATE TOPIC ANNOUNCEMENT
12/03/07 AISEP The Australasian Certification Authority, is pleased to announce the establishment of a new evaluation facility licenced to operate under the Australasian Information Security Evaluation Program (AISEP). Further information can be found on the AISEP Service Providers URL:
What is an AISEP?
DATE TOPIC ANNOUNCEMENT
18/01/07 EPL DSD has accepted Canon MEAP Applications Secure Login 1.1.2, Secure Fax 1.0.2, Secure Print 3.1.2 and the associated Canon Server into Common Criteria evaluation at EAL4. Further details about the product and the scope of the evaluation can be found at the Listing Canon Secure MEAP. Australian or New Zealand government users may wish to note that this evaluation is scheduled to complete in Q42007.
10/01/07 EPL DSD has accepted CISCO IOS/IPSec release 12.3(6f) into Common Criteria evaluation at EAL4. Further details about the product and the scope of the evaluation can be found at the CISCO IOS/IPSec 12.3(6f) Listing Cisco ISOIPSec. Australian or New Zealand government users may wish to note that this evaluation is scheduled to complete in Q12007 and provides assurance continuity for the IOS/IPSEC 12.3(6a) evaluation Cisco ISOIPSec12.3.6a which was certified in late 2006.
10/01/07 EPL CISCO IOS/IPSec release 12.3(6a) has completed evaluation (EAL 4). Further details about the product and the scope of the evaluation can be found at the CISCO IOS/IPSec 12.3(6a) Listing Cisco ISOIPSec12.3.6a. Please note, the Consumer Guide available within the section on Network Security Products of Table 1 on the EPL is highly recommended reading for Australian or New Zealand government users with an interest in this CISCO product.
10/01/07 EPL Cybertrust UniCERT version 5.2.1 has completed evaluation (EAL 4+)
Further details about the product and the scope of the evaluation can be found at the Cybertrust UniCERT 5.2.1 listing.
10/11/06 EPL The evaluation of NECSecure V1.0 has been terminated due to insufficient evaluation progress and the products listing has been removed from the Evaluated Products List.
9/10/06 EPL Effective from 9 Oct 2006, the status of the NEC Secure V1.0 listing on the EPL has been changed to 'Inactive', pending further action, due to insufficient evaluation progress.
29/09/06 Changes to the EPL Changes have been made to the Defence Signals Directorate's Evaluated Products List. To view the latest EPL, please click the link below:
Evaluation Product List
18/08/06 Changes to the EPL Changes will be made to the Defence Signals Directorate's Evaluated Products List from the 29th September 2006.
10/08/06 EPL Nortel Networks VPN Router has been removed from the evaluation process and therefore no longer appears on the "in-evaluation" page of the EPL.
4/08/06 Security Advisory New DSD Security advisory available on the Advisories page .
Haxdoor Trojan [PDF, 125 KB]
13/04/06 EPL HP OpenView Select Access v5.2 has completed evaluation (EAL 2). Further details about the product can be found at the HP OpenView Select Access v5.2 listing.
22/03/06 EPL DSD has accepted into "in evaluation" phase: NECSecure v1.0. Further details about the product can be found at the: NECSecure v1.0 listing.
20/09/05 EPL Eracom ProtectDrive version 7.0.3 has completed evaluation (EAL 2). Further details about the product can be found at the Eracom ProtectDrive 7.0.3 listing.
23/06/05 EPL DSD has accepted into "in evaluation" phase: Cisco IOS/IPSec, Versions 1800, 2800 series, 3800 series, 7200 series, 7300 series routers, Releases 12.3(8)T. Further details about the product can be found at the: Cisco IOS/IPSec, Versions 1800, 2800 series, 3800 series, 7200 series, 7300 series routers, Release 12.3(8)T listing.
08/06/2005 EPL BabylonMETA® ISDN Encryptor has been removed from the evaluation process and therefore no longer appears on the "in-evaluation" page of the EPL.
06/06/05 EPL DSD has accepted into "in evaluation" phase: Datacryptor 2000 Application Software Version 3.3. Further details about the product can be found at the: Datacryptor 2000 Application Software Version 3.3 listing.
26/05/05 EPL DSD has accepted into "in evaluation" phase: Eracom Technologies ProtectDrive V 7.02.01. Further details about the product can be found at the: Eracom Technologies ProtectDrive V 7.02.01 listing.
24/05/05 Information Security Policy Advice DSD has advice on the recent results by academic cryptographic researchers regarding hash functions, specifically SHA-1 and MD5. Further details can be found at the: DSD information security policy advice on the Hash Function Vulnerability
16/05/05 EPL DSD has listed Cisco Intrusion Detection System Sensor Appliance IDS-4200 Series Version 4.1(3) on the DSD Approved Products (DAP) page of the EPL. Further details about the product can be found at the: Cisco Intrusion Detection System Sensor Appliance IDS-4200 Series Version 4.1(3) listing.
03/05/05 EPL The AISEP has accepted into "in evaluation" phase: Secure Optical Switch. Further details about the product can be found at the: Secure Optical Switch listing.
28/04/05 EPL SQ-Phoenix has completed evaluation (EAL2). Further details about the product can be found at the: SQ-Phoenix listing.
20/04/05 EPL DSD has listed Sharp Data Security Kit AR-FR4 Version M.20, AR-FR5 Version E.20 on the DSD Approved Products (DAP) page of the EPL. Further details about the product can be found at the: Sharp Data Security Kit AR-FR4 Version M.20, AR-FR5 Version E.20 listing.
05/04/05 EPL The AISEP has accepted into "in evaluation" phase: HFMP Mobiles Trusted Filter Issue 1 Further details about the product can be found at the: HFMP Mobiles Trusted Filter listing.
30/03/05 EPL DSD has listed BlackBerry as an approved product. Further details about the product can be found at the: BlackBerry listing.
10/03/05 EPL The AISEP has mutually recognised Sharp Data Security Kit AR-FR4 V.M.10, AR-FR5 V.E.10, AR-FR6 V.J.10. Further details about the product can be found at the: Sharp Data Security Kit AR-FR4 V.M.10, AR-FR5 V.E.10, AR-FR6 V.J.10 listing.
01/03/05 ACSI 33 The March 2005 release of the Australian Government Information and Communications Technology Security Manual (ACSI 33) has been released and is available for downloading. A companion document has also been provided which identifies the changes that have been made since the last release. Further details can be found on the ACSI 33 Information Page.
20/01/05 EPL The AISEP has mutually recognised Sidewinder G2 Security Appliance Models 210, 310, 315, 410, 415, 510, 515, 1100, 1150, 2150, 4150 and Sidewinder G2 Software v6.1. Further details about the product can be found at the: Sidewinder G2 Security Appliance Models 210, 310, 315, 410, 415, 510, 515, 1100, 1150, 2150, 4150 and Sidewinder G2 Software v6.1 3 listing.
02/12/04 EPL The EPL has changed structure to encompass a broader listing of products. The EPL itself is now divided into three sub-pages:
  • DSD Approved Products, DAP. The products contained in this list have completed CC, ITSEC or some other form of DSD approved evaluation (including cryptographic evaluation where appropriate) and are approved for use by Australian Government departments and agencies, subject to any restrictions contained in ACSI 33 and/or the product specific listing.
  • Products In Evaluation. These products fall into one of two categories:
    1. Products that are currently undergoing evaluation in the AISEP.
    2. Products that have successfully completed CC or ITSEC evaluations in a CCRA scheme and are undergoing DSD approval.
  • Certified Products. Products that have successfully completed CC or ITSEC evaluations in a CCRA scheme and may be sponsored to become a DAP.
Departments and agencies who need assistance with interpreting the new structure should contact Advice and Assistance or the AISEP.
02/12/04 EPL The AISEP has mutually recognised Netscreen Appliances with ScreenOS 4.0.2 r7.0. Further detail about the product can be found at the: Netscreen Appliances with ScreenOS 4.0.2 r7.0 listing.
01/12/04 EPL The AISEP has mutually recognised Image Overwrite Security for Xerox WorkCentre M35/M45/M55 and WorkCentre Pro 35/45/55 Advanced Multifunction System. Further detail about the product can be found at the: Image Overwrite Security for Xerox WorkCentre M35/M45/M55 and WorkCentre Pro 35/45/55 Advanced Multifunction System listing.
03/11/04 Interim Guidance DSD has issued interim guidance on the use of BlackBerry by the Australian Government. It is available as a [PDF, 116KB] or [RTF, 44KB].
20/10/04 EPL The AISEP has mutually recognised Citrix MetaFrame XP Presentation Server with Feature Release 3. Further details about the product can be found at the: Citrix MetaFrame XP Preentation Server with Feature Release 3 listing.
21/09/2004 EPL The AISEP has mutually recognised Lucent Technologies Lucent VPN Firewall v7.0 (Patch 531). Further details about the product can be found at the: Lucent Technologies Lucent VPN Firewall v7.0 (Patch 531) listing.
02/09/2004 ACSI 57 Notification of Obsolescence ACSI 57(B) and ACSI 57 Appendix 1 are declared obsolete and are authorised for destruction. Information relevant to the protection of security classified information by commercial grade systems has been included in ACSI 33.
01/09/2004 EPL The AISEP has mutually recognised STAT® Scanner Professional V5.08 (EAL 2+). Further details about the product can be found at the: STAT® Scanner Professional V5.08 listing.
31/08/2004 EPL Rainbow Technologies iKey has completed evaluation (EAL 2). Further details about the product can be found at the: Rainbow Technologies iKey listing.
25/08/2004 EPL The AISEP has mutually recognised Windows 2000 Professional, Server and Advanced Server with SP3 and Q326886 Hotfix. Further details about the product can be found at the: Windows 2000 Professional, Server and Advanced Server with SP3 and Q326886 Hotfix listing.
25/08/2004 EPL The AISEP has mutually recognised VPN-1FireWall-1® Next Generation (NG) FP1 running on Microsoft NT 4.0 SP 6a, Solaris 8.0 (EAL4). Further details about the product can be found at the: VPN-1FireWall-1® Next Generation (NG) FP1 running on Microsoft NT 4.0 SP 6a, Solaris 8.0 EPL listing.
19/08/2004 EPL The AISEP has accepted into the "in-evaluation" phase: Nortel Networks Contivity VPN Switch. Further details about the product can be found at the:
Nortel Networks Contivity VPN Switch EPL listing
03/08/2004 Inquiry into Australian Intelligence Agencies The Report of the Inquiry into Australian Intelligence Agencies, released on 22 July, concludes that: "DSD is an impressive agency that provides a first-class sigint capability and represents a major national security asset for Australia. Its response to regional counter-terrorism has been excellent, and its support for Australian Defence Force operations highly valued. It is producing high-quality product with strong customer satisfaction levels. Its management and planning processes are effective and forward looking, and its investment programme well tailored to the technical challenges facing the organisation."
24/06/2004 EPL Starcos® SPK has completed evaluation (E4). Further details about the product can be found at the:
Starcos® SPK EPL listing.
13/05/2004 EPL TrustedNet Security Server Version 3.2 has been removed from the evaluation process and therefore no longer appears on the "in-evaluation" page of the EPL.
30/04/2004 Security Advisory DSD has issued a Security Advisory regarding a TCP vulnerability. A PDF providing further reading, recommendations and references on the topic is now available from the following link :
DA2004-02 TCP vulnerability [PDF, 207KB]
14/04/2004 ACSI 33 A limited number of hard copies of the UNCLASSIFIED version of the March 2004 release of ACSI 33 are available for $33 each (including GST). See the ACSI 33 Information Page for more details.
14/04/2004 DSD website unavailable The DSD website will be unavailable from 1600hrs (AEST) Friday 16 April until 1000hrs (AEST) Monday 19 April for routine maintenance.
01/04/2004 EPL The AISEP has mutually recognised ISA Server 2000 with Service Pack 1 and Feature Pack 1, Firewall (EAL2). Further details about the product can be found at the: ISA Server 2000 with Service Pack 1 and Feature Pack 1, Firewall EPL listing.
23/03/2004 EPL Nortel Networks Contivity VPN Switch has been removed from the evaluation process and therefore no longer appears on the "in-evaluation" page of the EPL.
18/03/2004 Policy Release The Australian Government Information Technology Security Manual (also known as ACSI 33) and the Gateway Certification Guide V3.0 were released on 18 March 2004. More information is available from the ACSI 33 information page, and the Gateway Certification Guide information page.
03/03/2004 Security Advisory DSD issued a Security Advisory regarding Remote code execution via Microsoft's ASN.1 vulnerability on the 11th of February 2004 A PDF providing further reading, recommendations and references on the topic is now available from the following link :
DA2004-01 Remote code execution via Microsoft's ASN.1 vulnerability [PDF, 156KB]
03/03/2004 EPL The AISEP has mutually recognised COSMOPOLIC 2.1 V4 JavaCard Open Platform (EAL4+). Further details about the product can be found at the:
COSMOPOLIC 2.1 V4 JavaCard Open Platform EPL listing.