For example, when a user browses to a secure web site that uses a 512-bit RSA key in its certificate, the BlackBerry device
prompts the user to trust the web site. If the user trusts the web site and selects the Don't Ask Again option, the minimum
key size on the BlackBerry device is set to 512 bits. If you set the minimum key size on the BlackBerry Enterprise Server to
2048 bits, the BlackBerry device continues to prompt the user to trust every secure web site that uses a key size in its
certificate that is less than 2048 bits.
Minimum requirements
•
Java® based BlackBerry device
•
BlackBerry® Device Software version 3.6.1
•
BlackBerry Enterprise Server version 3.6
•
BlackBerry® Connect™ Transport Stack version 4.0
TLS Restrict FIPS Ciphers IT policy rule
Description
This rule specifies whether the BlackBerry® device can use an algorithm with TLS that is not FIPS-compliant.
Default setting
The default setting is False.
Usage
If the FIPS Level IT policy rule is set to 2, by default, the BlackBerry device ignores this IT policy rule and uses only algorithms
that are FIPS-compliant.
Minimum requirements
•
Java® based BlackBerry device
•
BlackBerry® Device Software Version 3.6.1
•
BlackBerry® Enterprise Server Version 3.6
•
BlackBerry® Connect™ Transport Stack Version 4.0
Wireless Software Upgrades policy group
Allow Non Enterprise Upgrade IT policy rule
Description
This rule specifies whether to permit Research In Motion® or the wireless service provider to request that the BlackBerry®
device download wireless software upgrades.
Default setting
Policy Reference Guide
Wireless Software Upgrades policy group
169