Blackberry 8700 Series manual Change the trust status of a certificate, Revoke a certificate

Page 8

4.Click the trackwheel.

5.Click Fetch Status or Fetch Chain Status.

Change the trust status of a certificate

1.In the device options, click Security Options.

2.Click Certificates.

3.Highlight a certificate.

4.Click the trackwheel.

5.Click Trust or Distrust.

6.If necessary, perform one of the following actions:

To trust the highlighted certificate, click Selected Certificate.

To trust the highlighted certificate and all the other certificates in the chain, click Entire Chain.

Revoke a certificate

If you revoke a certificate, the certificate is revoked only in the key store on your BlackBerry® device. Your device does not update the revocation status on the certificate authority or CRL servers.

1.In the device options, click Security Options.

2.Click Certificates.

3.Highlight a certificate.

4.Click the trackwheel.

5.Click Revoke.

6.Click Yes.

7.Change the Reason field.

8.Click OK.

To cancel a certificate hold, highlight the certificate. Click the trackwheel. Click Cancel Hold.

Certificate revocation reasons

Unknown:

The revocation reason does not match any of the predefined reasons.

Key Compromise:

A person who is not the key subject might have discovered the private key value.

CA Compromise:

Someone might have revealed the private key of the certificate issuer.

Change in Affiliation:

The certificate subject no longer works for the organization.

6

Image 8
Contents User Guide Supplement SWD-327206-0324102627-001 Contents Page Certificates Certificate basics Download a certificate from an Ldap certificate server View properties for a certificateView one type of certificate in the certificate list Send a certificateCertificate status indicators Certificate statusDelete a certificate View the certificate chain for a certificateCertificate revocation reasons Change the trust status of a certificateRevoke a certificate Add an email address to a certificate Certificate optionsChange the display name for a certificate Certificate shortcuts Certificate troubleshooting Cannot download a certificatePage Certificate servers Add a certificate serverChange connection information for a certificate server Connection options for Ldap certificate serversDelete a certificate server Connection options for Ocsp and CRL serversSend connection information for a certificate server Change the key store password Change when your device deletes the key store passwordKey stores About the key storeTurn off automatic backup of key store data Change the Key Store Address Injector field to EnabledClick Key Stores Change the Certificate Service field Change the refresh rate for certificate revocation listsClick the trackwheel Click Save Page MIME-protected messages MIME-protected message basicsMIME-protected message status Encryption status indicators MIME-protected message optionsCheck the status of a certificate or certificate chain Change your signing or encryption certificateChange the default signing and encryption option Change the default message classificationClick Default Services About message classificationsChange the size of S/MIME indicators in messages Change the Message Viewer Icons fieldChange the Request S/MIME Receipts field to Yes Change the Warn about truncated messages field to NoMIME-protected message troubleshooting Cannot open an attachment in an encrypted messageAbout using a smart card with your device Smart cardsImport a certificate from a smart card Click Import Smart Card Certs