Advertisement

iPhone OS 3.1 now enforces Exchange encryption policy, may block pre-3GS iPhones

The Apple Support forums are a'buzz with reports of several users upgrading to iPhone OS 3.1 and discovering a new "feature" which was not available previously. As mentioned in our comments, after upgrading to 3.1, some original iPhone and iPhone 3G owners with Exchange accounts are having trouble accessing their email. Apparently the server-side encryption policy option for mobile devices (only available as of Exchange 2007 SP1) is now being appropriately enforced.

This is not affecting owners of the iPhone 3GS, due to the newer device's support for Exchange encryption. Prior to iPhone OS 3.1 the encryption policy was ignored for all models. Now that 3.1 is available, users are seeing this policy being correctly enforced and older iPhones without encryption support are left without access to Exchange services.

I have yet to find any reports of issues with the iPod touch, but I suspect that it will also be affected by this software change. We're awaiting confirmation from Apple on whether this will impact the newly announced iPod touch models as well.

While many are reacting to this issue as though it's a bug, and are reporting it as such, the reality is that the Exchange encryption requirement is a feature and the fact that it was not being correctly enforced was actually a security hole. IT administrators with Exchange 2007 SP1 servers and iPhone clients are probably going to be fielding an above-average level of incoming questions, but at least they can rest easy knowing that Exchange encryption is now working correctly. Cold comfort for their users, though.

If you are running into this issue, the straightforward (though pricey) solution is to upgrade to the iPhone 3GS; or consider bribing your IT guy with Red Bull so he will disable the encryption requirement for mobile devices. But we want to hear from you; are you using an Exchange account? Can you still access it following the upgrade to 3.1? Which device are you using, iPhone or iPod touch; 3G or 3GS? Is this a little thing that means a lot to you from a security perspective or have you been left high and dry without access to critical email?

Update: MacRumors points out that Apple has now covered this situation in a new KB article.

[Via Broadband Reports]