S/MIME Allowed Content Ciphers IT policy rule
Description
This rule specifies the encryption algorithms that the BlackBerry® device can use to encrypt S/MIME-protected messages.
Default setting
The default setting is to use all supported algorithms.
Usage
Set this IT policy rule to 0 to use AES (256-bit).
Set this IT policy rule to 1 to use AES (192-bit).
Set this IT policy rule to 2 to use AES (128-bit).
Set this IT policy rule to 3 to use CAST (128-bit).
Set this IT policy rule to 4 to use RC2 (128-bit).
Set this IT policy rule to 5 to use Triple DES encryption.
Set this IT policy rule to 6 to use RC2 (64-bit).
Set this IT policy rule to 7 to use RC2 (40-bit).
To maintain compatibility with most S/MIME clients, use Triple DES encryption and one of the RC2 algorithms. By default,
the BlackBerry device is designed to encrypt email messages using Triple DES encryption if it does not know the decryption
capabilities available to the recipient.
Dependencies
If the FIPS Level IT policy rule is set to 2, the BlackBerry device uses AES (256-bit), AES (192-bit), AES (128-bit), and Triple
DES encryption.
Minimum requirements
•
Java® based BlackBerry device
•
BlackBerry® Device Software Version 3.6
•
S/MIME Support Package for BlackBerry devices Version 1.5
•
BlackBerry® Enterprise Server Version 3.6
•
BlackBerry® Connect™ Transport Stack Version 4.0
Exceptions
The BlackBerry Enterprise Server for Novell® GroupWise® does not support this IT policy rule.
Policy Reference Guide
S/MIME Application policy group
115