Parameters replaced with fixed values or deleted

The following table lists the old parameters present in the SBox.ini file, which have been replaced by fixed values in the SDS Enterprise solution code, or which have been deleted because they have become obsolete.

SBox.ini file section

Parameter

Modification

User HideCompletion The auto-completion of user names in the SDS Enterprise login window is permanently enabled.
Team CancelationEnabledDuration Deleted because not used
SBox.NewUserWizardEx AllowNewUser Deleted because not used
AllowNewUserCipher
AllowNewUserSign
ChangePinSO
UserPinLeft Default number of login attempts before SDS Enterprise account lockout: 3
SOPinLeft Deleted because not used
KeyPage
CreateForceKey
P12ImportPath
ShowKeyCertPage
ShowSaveKeyPage
SaveKeysInProfile
_AutoRandom
SelfCertMail
SelfCertOrganization
SelfCertOrganizationRW
SelfCertCity
  SelfCertCityRW Deleted because not used
SelfCertCountry
SelfCertCountryRW
DisableCreateSelf

KeyRenewal

NewUser

KEY_RSA_512BITS Deleted because not used
KEY_RSA_768BITS
KEY_RSA_1024BITS
HASH_SHA1 SHA256 forced
NewUser _ReadWriteRandom Deleted because not used
Pkcs12Export
AuthorityCommonName
MasterPath
DiffCertInfo
AddMRU
DirModelIsFolder
DirectoryModel
_KModifiable
MasterPolicies
EnciphermentKeyInCard
SigningKeyInCard
NoExtractableKeystoreKeys
SignEnciph
_PwdConfirmation When the SDS Enterprise account is created, the first password entry and confirmation are hidden.
HASH_SHA256 SHA256 forced
external PKCS11 policy CPLForcePKCS11Dll Deleted because not used
CPLPKCS11InfosEnabled The Information button in the Map Extension Configurator is permanently accessible.
CPLPKCS11InfosSaveAsEnabled The Save As button in the Map Extension Configurator Information window is permanently accessible.
CPLPKCS11KnownList Deleted because not used
  APICanChangePKCS11 Deleted because not used
CPLPkcs11SaveAsEnabled
Logon AllowLocal Unblock If the user’s SDS Enterprise session is blocked, local unblocking is always allowed.
AllowDistant Unblock If the user’s SDS Enterprise session is blocked, remote unblocking is always allowed.
GUILog Entering a password in the command line is always allowed.
LockOnWinSessLock When the Windows session is locked, SDS Enterprise is automatically locked.
UnlockOnWinSessUnlock When the Windows session is unlocked, SDS Enterprise remains locked (except for SSO user accounts).
P10RequestEmail Certificate requests must be submitted manually.
_LargeFont Deleted because not used
UsxUpdateSilently
NoHMACVerif
_RestartOnSuspendPwd
_RestartOnSuspendCard
NoPwdInCmdLine
LastUsers LastUser%d Deleted because not used
Directory AddCertAttrInLdapFilter To configure a custom search filter in the LDAP directory, see Configuring the filter to search for employees in the LDAP directory in the Advanced Configuration Guide.
AddProxyAddressesInLdapFilter
  WaitForNotConnectedLdapServer Deleted because not used
WaitForNotBindedLdapServer
WaitForNotRequestedLdapServer
LDAPStrictEmailSearch
  LDAPConfig

The LDAP directory version used by default is version 2.

You can enable version 1 via the registry key SOFTWARE\Policies\ARKOON\Security BOX Suite\LdapSearchEngine (DWORD value 1).

USER Deleted because not used
AUTO
LEGACY
Disk DefaultVolumesize The default size of an encrypted virtual volume when it is created is 10% of the size available on the selected drive.
Sign TmpFolder Deleted because not used
MRUSize Default value: 10
DirectoryUpdate TimerInHour Deleted because not used
CoworkerSelector EnableResearchByEmail To configure a custom search filter in the LDAP directory, see Configuring the filter to search for employees in the LDAP directory in the Advanced Configuration Guide.
EmailSeparatorCharacters
Mail SilentImportTrustedLdapCert Deleted because not used
DoNotCheckNativeCheckBox
NoEmailLookUp
DisplayComlogWindow Systematic display of the SDS Enterprise connection window.

DisplayComlogWindo

UserLocked

AllowSendClearIfEncryptAsked When a peer does not have a valid encryption certificate, the user can still send the message in plain text.