12
User Guide Supplement
• To use the common name that is associated with
the certificate, click
Use Common Name.
Set the security level of private keys
In the BlackBerry
®
Certificate Synchronization
Manager, click a server tab. Right-click a certificate.
Click
Edit Certificate Properties.
In the
Private Key
Security Level
section, perform one of the following
actions:
• To prompt users for their key store password each
time an program attempts to access their private
key, select
High.
• To prompt users for their key store password when
a program attempts to access their private key for
the first time or when their private key password
timeout is expired, select
Medium.
• To display no notification when an application
attempts to access a user’s private key, select
Low.
Note:
Private key security levels apply to private keys
synchronized to the BlackBerry device.
View OCSP or CRL certificate server
information
In the BlackBerry
®
Certificate Synchronization
Manager, click
Options.
Click the
OCSP Servers
or
CRL Servers
tab.
•
Friendly Name:
This parameter specifies the
common name that is associated with the server.
•
Use OCSP or Use CRL:
A selected check box
indicates that OCSP or CRL server use is enabled.
You must enable OCSP or CRL server use before
you can configure and connect to OCSP or CRL
servers.
•
Server URL:
This parameter specifies the web
address URL of the server.
•
Certificate Extensions:
A selected check box
indicates that certificate extension use is enabled.
Certificate extensions can include the URL of the
Certificate Authority, OCSP responder and/or a
CRL location which the BlackBerry Certificate
Synchronization Manager uses to check certificate
status.
•
Use specified servers:
A selected check box
indicates that servers that are specified in the
server pane are used to check certificate status.
You must enable Use Specified Servers before you
can add and configure OCSP or CRL servers.
•
Update Now:
Click to download the certificate
revocation lists from the CRL servers and update
the certificate status accordingly. When you
synchronize your certificates, the certificate
revocation lists are queried for the certificates’
revocation status.
•
Update the cached CRL:
This parameter indicates
(in hours) how frequently the certificate
revocation lists are downloaded to the cache.
When you synchronize your certificates, the
certificate revocation lists are queried for the
certificates’ revocation status. 0 indicates that the
automatic CRL cache updates feature is disabled.
View LDAP certificate server
information
In the BlackBerry
®
Certificate Synchronization
Manager, click
Options.
Click the
LDAP Servers
tab.
•
Friendly Name:
This parameter specifies the
common name that is associated with the server.
•
Server Name:
This parameter specifies the name
of the server.
•
Base Query:
This parameter specifies query
information as it is configured in your LDAP
server. Content appears in X.509 DN syntax.
•
Port:
This parameter specifies the port as it is
configured on your company network.
• Crawl Server
:
This parameter indicates whether
the BlackBerry Certificate Synchronization
Summary of Contents for S-MIME SUPPORT PACKAGE VERSION 4.1 -
Page 1: ...S MIME Support Package Version 4 1 User Guide Supplement...
Page 4: ......
Page 6: ......
Page 8: ...8 User Guide Supplement...
Page 20: ...20 User Guide Supplement...
Page 22: ...22 User Guide Supplement...
Page 28: ...28 User Guide Supplement...
Page 30: ...30 User Guide Supplement...
Page 32: ...32 User Guide Supplement...