Policy Reference Guide

Local Navigation

Password policy group

A BlackBerry® device uses the IT policy rules in the Password policy group only if you configure the Password Required IT policy rule to Yes in the Device Only items. For more information about using passwords on BlackBerry devices, see the BlackBerry Enterprise Solution Security Technical Overview.

Forbidden Passwords IT policy rule

Description

This rule specifies the passwords that a BlackBerry® device user cannot use. You must separate multiple passwords with a comma (,).

Default value

The default value is a null value.

Usage

By default, a BlackBerry device prevents a user from configuring passwords that use a natural sequence of characters or numbers. The BlackBerry device also prevents common letter substitutions automatically. For example, if you include "password" in the forbidden passwords list, users cannot use "p@ssw0rd", "pa$zword", or "password123" on the BlackBerry device.

Dependencies

A BlackBerry device uses this rule only if the Password Required rule is configured to Yes.

Minimum requirements

  • Java® based BlackBerry device
  • BlackBerry® Application Suite 1.0
  • BlackBerry® Device Software 4.1
  • BlackBerry® Enterprise Server Express 5.0 SP1

Maximum Password History IT policy rule

Description

This rule specifies the maximum number of previous passwords that a BlackBerry® device checks new passwords against to prevent a BlackBerry® device user from reusing previous passwords.

Default values

The default value is 0. The BlackBerry device does not check for reused passwords.

Minimum requirements

  • Java® based BlackBerry device
  • BlackBerry® Application Suite 1.0
  • BlackBerry® Connect™ 1.2, 2.0, 2.1, or 4.0
  • BlackBerry® Device Software 3.6
  • BlackBerry® Enterprise Server Express 5.0 SP1

Set Maximum Password Attempts IT policy rule

Description

This rule specifies the number of password tries that a user can make before a BlackBerry® device deletes all of the application data permanently. The permitted range is 3 to 10 tries.

Default value

The default setting is 10 password tries.

Usage

The maximum number of password tries is 10. Use this rule to lower the number of possible password tries.

Minimum requirements

  • Java® based BlackBerry device
  • BlackBerry® Application Suite 1.0
  • BlackBerry® Connect™ 1.2, 2.0, 2.1, or 4.0
  • BlackBerry® Device Software 3.6
  • BlackBerry® Enterprise Server Express 5.0 SP1

Set Password Timeout IT policy rule

Description

This rule specifies the number of minutes of inactivity before the security timeout occurs and a BlackBerry® device user must type the password to unlock the BlackBerry device.

Default value

For BlackBerry® Device Software versions earlier than version 4.7, the default value is 2 minutes.

For BlackBerry Device Software version 4.7 and later, the default value is 30 minutes.

Usage

Use this rule to change the default security timeout interval.

Dependencies

A BlackBerry device uses this rule only if you change the Password Required IT policy rule to Yes.

If you do not change the User Can Change Timeout IT policy rule to No, the user can change the security timeout to any value.

By default, the maximum security timeout interval is 60 minutes.

Minimum requirements

  • Java® based BlackBerry device
  • BlackBerry® Application Suite 1.0
  • BlackBerry® Connect™ 1.2, 2.0, 2.1, or 4.0
  • BlackBerry Device Software 3.6
  • BlackBerry® Enterprise Server Express 5.0 SP1

Suppress Password Echo IT policy rule

Description

This rule specifies whether, after a given number of incorrect password attempts, the characters that a BlackBerry® device user types in the Password dialog box appear on the screen.

Default value

The default value is Yes.

Dependencies

The BlackBerry® device uses this rule only if a user configures a password on the BlackBerry device. To require a password, configure the Password Required rule to Yes.

To specify the number of incorrect password tries that the BlackBerry device permits before the characters that the user types appear on the screen, configure the Set Maximum Password Attempts rule.

Minimum requirements

  • Java® based BlackBerry® device
  • BlackBerry® Application Suite 1.0
  • BlackBerry® Connect™ 1.2, 2.0, 2.1, or 4.0
  • BlackBerry® Device Software 3.6
  • BlackBerry® Enterprise Server Express 5.0 SP1

Was this information helpful? Send us your comments.