Security

Data Encryption

 

Encryption for Data-in-Motion

Data transferred between the server and devices can be encrypted using SSL (HTTPS). 

1.  Install an SSL certificate on the groupware server.  The secure certificates listed below have been tested and confirmed to work with all supported NotifySync devices.

      VeriSign/RSA Secure Server CA  “Secure Site” or “Secure Site Pro”

      Thawte Server CA “SSL Web Server Certificate”

NOTE: You are required to have a domain name when purchasing an SSL certificate for your website.  The domain name listed on the SSL certificate must match the domain name of the website you are using or the SSL handshake will fail.  GPRS and CDMA BlackBerry devices are using a WAP gateway – the gateway determines which CA’s are trusted.

2.  Have users enable SSL on their devices by checking the Use HTTPS box when they are registering or through the Account Settings on the NotifySync Preferences menu.

 

Encryption for Data-at-Rest

Users can enable data-at-rest encryption for the email database on the device storage disk.  This database contains all NotifySync email data. 

Through the General Security settings on the NotifySync Preferences menu, users may set one of the following encryption levels:

      Secure (128-bit)

      More Secure (192-bit)

      Most Secure (256-bit)

NOTE: Higher levels of encryption are more processor intensive and some users may experience a slight delay (several seconds or less) while opening and closing email when using them.