UCF STIG Viewer Logo

Only DoD PKI issued or DoD approved software authentication certificates may be installed on BlackBerry PlayBook OS.


Overview

Finding ID Version Rule ID IA Controls Severity
V-38748 PB21-00-000310 SV-50553r1_rule High
Description
If unauthorized software authentication certificates are installed on the device, then the operating system would not block malware signed by the entity that published these certificates. Such malware could be used to obtain sensitive DoD information or to further breach system security. Eliminating unapproved software authentication certificates greatly mitigates the risk of malware passing authentication controls.
STIG Date
BlackBerry PlayBook OS V2.1 Security Technical Implementation Guide 2014-08-29

Details

Check Text ( C-46293r1_chk )
Navigate to "Options -> Security -> Certificates". Select each certificate listed under "All Certificates". In "Certificate Details", ensure "Issued By" states appropriate DoD certificate authority, or the certificate itself has been approved by DoD. Otherwise, this is a finding.
Fix Text (F-43703r1_fix)
On BlackBerry Device Service Server:
Remove the corresponding .pem file from :\\Shared\Certificates\ folder.