PGP Allowed Content Ciphers IT policy rule
Description
This rule specifies the encryption algorithms that the BlackBerry® device can use to encrypt PGP® protected messages.
Default setting
The default setting is to use all supported algorithms.
Usage
Set this IT policy rule to 0 to use AES (256-bit).
Set this IT policy rule to 1 to use AES (192-bit).
Set this IT policy rule to 2 to use AES (128-bit).
Set this IT policy rule to 3 to use CAST (128-bit).
Set this IT policy rule to 5 to use Triple DES encryption.
To maintain compatibility with most PGP clients, use Triple DES encryption and CAST. By default, the BlackBerry device is
designed to encrypt email messages using Triple DES encryption if it does not know the decryption capabilities available to
the recipient.
Dependencies
If the FIPS Level IT policy rule is set to 2, the BlackBerry device uses AES (256-bit), AES (192-bit), AES (128-bit), and Triple
DES encryption.
Minimum requirements
•
Java® based BlackBerry device
•
BlackBerry® Device Software Version 4.1
•
PGP Support Package for BlackBerry devices Version 4.1
•
BlackBerry® Enterprise Server Version 4.0 SP2
Exceptions
The BlackBerry Enterprise Server for Novell® GroupWise® does not support this IT policy rule.
PGP Allowed Encrypted Attachment Mode
Description
This rule specifies the mode for retrieving PGP® protected attachment information on the BlackBerry® device.
Default setting
Policy Reference Guide
PGP Application policy group
105