BlackBerry Enterprise Solution security

The BlackBerry® Enterprise Solution is designed to encrypt data in transit at all points between BlackBerry devices and the BlackBerry® Enterprise Server to help protect your organization from data loss or alteration. Only the BlackBerry Enterprise Server and a BlackBerry device can decrypt the data that they send between each other. If events that threaten the wireless security of your organization occur, the BlackBerry Enterprise Server is designed to prevent third parties, including wireless service providers, from accessing your organization's potentially sensitive information in a decrypted format.

The BlackBerry Enterprise Solution uses symmetric key cryptography to encrypt messages and user data that it sends over the transport layer. Symmetric key cryptography provides the following criteria for the security of wired and wireless solutions.

Criteria

Description

confidentiality

The BlackBerry Enterprise Solution uses encryption to help ensure that only the intended message recipients can view the contents of the messages.

integrity

The BlackBerry Enterprise Solution helps protect each message that a BlackBerry device sends using one or more message keys. Designed to prevent a third party from decrypting or altering the message data, the message keys consist of random data.

The BlackBerry Enterprise Solution is designed so that only the BlackBerry Enterprise Server and a BlackBerry device know the value of a master encryption key, recognize the format of a decrypted and decompressed message, and automatically reject a message that is not encrypted with the correct master encryption key.

authenticity

A BlackBerry device authenticates itself with the BlackBerry Enterprise Server to prove that it knows the master encryption key before the BlackBerry Enterprise Server can send data to the BlackBerry device.

Index


Was this information helpful? Send us your comments.