Hi everyone.
On the C550/ C500, the 'Certificate Security disabling tool' from Orange provides 3 options (aka Security Levels):
1. Low Security
2. High Security
3. Security Disabled
attachment
From what I can recall, using 'Security Disabled' option is sufficient enough to have the phone run in so-called 'app-unlocked' state. In particular, the tool will:
1. Allow RAPI access (in effect, you can unlock the registry using SDA Security Unlocker)
HKLM\Security\Policies\Policies :00001001=dword:1
2. Allow unsigned Applications to run (you can run apps not signed with 'trusted' certificates)
HKLM\Security\Policies\Policies :00001006=dword:1
3. Allow unsigned CABS to install
HKLM\Security\Policies\Policies :00001005=dword:127
An 'unlocked' registry would have the following values
HKLM\Security\Policies\Policies :00001001=dword:1
HKLM\Security\Policies\Policies :00001005=dword:127
HKLM\Security\Policies\Policies :00001006=dword:1
HKLM\Security\Policies\Policies :00001007=dword:64
HKLM\Security\Policies\Policies :00001008=dword:1
HKLM\Security\Policies\Policies :00001009=dword:3
HKLM\Security\Policies\Policies :0000100b=dword:3024
HKLM\Security\Policies\Policies :0000100c=dword:2048
HKLM\Security\Policies\Policies :0000100d=dword:3072
HKLM\Security\Policies\Policies :0000100e=dword:64
HKLM\Security\Policies\Policies :0000100f=dword:3216
HKLM\Security\Policies\Policies :00001011=dword:1
HKLM\Security\Policies\Policies :00001013=dword:1
HKLM\Security\Policies\Policies :00001017=dword:4294967295
HKLM\Security\Policies\Policies :00001018=dword:22
HKLM\Security\Policies\Policies :00001019=dword:140
HKLM\Security\Policies\Policies :0000101a=dword:0
HKLM\Security\Policies\Policies :0000101b=dword:1
HKLM\Security\Policies\Policies :00001021=dword:3072
A locked one:
HKLM\Security\Policies\Policies :00001001=dword:2
HKLM\Security\Policies\Policies :00001005=dword:64
HKLM\Security\Policies\Policies :00001006=dword:0
HKLM\Security\Policies\Policies :00001007=dword:64
HKLM\Security\Policies\Policies :00001008=dword:1
HKLM\Security\Policies\Policies :00001009=dword:3
HKLM\Security\Policies\Policies :0000100b=dword:3024
HKLM\Security\Policies\Policies :0000100c=dword:2048
HKLM\Security\Policies\Policies :0000100d=dword:3072
HKLM\Security\Policies\Policies :0000100e=dword:64
HKLM\Security\Policies\Policies :0000100f=dword:3216
HKLM\Security\Policies\Policies :00001011=dword:1
HKLM\Security\Policies\Policies :00001013=dword:1
HKLM\Security\Policies\Policies :00001017=dword:128
HKLM\Security\Policies\Policies :00001018=dword:16
HKLM\Security\Policies\Policies :00001019=dword:140
HKLM\Security\Policies\Policies :0000101a=dword:0
HKLM\Security\Policies\Policies :00001021=dword:3072
If you have the 'Orange tool'...you are lucky. You can just use 'Security Disabled' then to ensure you have a fully unlocked phone, run SDA Security Unlocker (allows access to protected Smartphone registry entries)
HKEY_LOCAL_MACHINE\Comm
HKEY_LOCAL_MACHINE\Drivers
HKEY_LOCAL_MACHINE\HARDWARE
HKEY_LOCAL_MACHINE\SYSTEM
HKEY_LOCAL_MACHINE\Init
HKEY_LOCAL_MACHINE\Security
HKEY_LOCAL_MACHINE\WDMDrivers
HKEY_LOCAL_MACHINE\Services
HKEY CLASSES_ROOT (device specific)
One might ask... why not just run the SDA Unlocker? Theoretically, a phone under 'High Security' state won't allow RAPI access, thus SDA tool won't be able to do its thing. If the latest C600 ROM allows the 'HTC-signed' PHM Registry Editor (RegSTG) to run on the device error-free, then change HKLM\Security\Policies\Policies :00001001=dword to 1 and use the SDA Tool on your PC while phone is docked.
