BlackBerry UEM Cloud architecture and data flows
    
  
    BlackBerry UEM Cloud
 architecture and data flowsBlackBerry UEM Cloud
 is a unified endpoint management solution from BlackBerry
. With BlackBerry UEM Cloud
 you can manage iOS
, macOS
, Android
, and Windows 10
 devices using a simple web-based interface and protect business information on BYOD, COPE, and COBO devices. The 
BlackBerry UEM Cloud
 architecture was designed to help you manage mobile devices for your organization in a cloud environment and provide a secure link for data to travel between your organization's mail and content servers and your user's devices.Architecture: BlackBerry UEM Cloud solution
    
  
    BlackBerry UEM Cloud
 solution
| Component | Description | 
|---|---|
| BlackBerry UEM Cloud | BlackBerry UEM Cloudis a service that allows you to manage devices used in your organization's environment. | 
| BlackBerry Infrastructure and BlackBerry Dynamics NOC | The  BlackBerry Infrastructureregisters user information for device activation and validates licensing information for BlackBerry UEM Cloud. If you enable BlackBerry Secure Connect Plusor the BlackBerry Secure Gateway, data in transit that uses these services passes through the BlackBerry Infrastructure. The  BlackBerry Dynamics NOCis a separately located NOC that provides secure communications between BlackBerry
        Dynamicsapps on devices and BlackBerry Proxyinstalled behind the firewall as part of the BlackBerry Connectivity Node. | 
| Devices | BlackBerry UEM Cloudsupports iOS, macOS, Android, and Windows 10devices. | 
| Notification services | BlackBerry UEM Cloudsends notifications to devices to contact BlackBerry UEMfor updates and to report information for your organization's device inventory. These notifications are sent to the BlackBerry Infrastructure, where they are sent to the devices using the appropriate notification service: 
 | 
| BlackBerry Connectivity Node | The  BlackBerry Connectivity Nodeis an optional component that you install inside your organization's firewall. It includes five components that add functionality to BlackBerry UEM Cloud: 
 The  BlackBerry Connectivity Nodeuses port 3101 to communicate with BlackBerry UEM Cloud. | 
| BlackBerry Enterprise Mobility Server | If you have installed the  BlackBerry Connectivity Node, you can also install an on-premises BEMS. BEMSconsolidates several services used to send work data to and from BlackBerry
        Dynamicsapps: 
 | 
| BlackBerry Enterprise Mobility Serverdatabases | The  BEMSdatabases store user, app, policy, and configuration information. | 
| Company directory | BlackBerry UEM Cloudsupports connectivity with your organization's Microsoft Active
  Directoryor LDAP company directory behind the firewall using the BlackBerry Connectivity Node. | 
| Microsoft
        Azure Active
  Directory | Microsoft
        Azure Active
  Directoryis a cloud-based directory management service. If your organization uses Azure Active
  Directoryyou can connect to it instead of, or in addition to, a company directory behind the firewall. | 
| Content, application, and mail servers | When you enable  BlackBerry Secure Connect Plusor when users have BlackBerry
        Dynamicsapps, devices can connect to your organization's servers without requiring you to open a direct connection between the server and the Internet. Work data in transit between your servers and devices is sent through BlackBerry Secure Connect Plusand the BlackBerry Infrastructure. BlackBerry
        Dynamicsapp data is sent through BlackBerry Proxyand the BlackBerry Dynamics NOC. The  BlackBerry Secure Gatewayprovides a secure connection through the BlackBerry Infrastructureand BlackBerry Connectivity Nodebetween your organization's mail server and iOSdevices. | 
| BlackBerryplug-ins and BEMS | The cloud version of  BlackBerry Enterprise Mobility Serverprovides BlackBerry Push Notifications, which accepts push registration requests from iOSand Androiddevices and then communicates with Microsoft
  Exchangeto monitor the user's work mail account for changes. When you specify the on-premises Microsoft Exchange Server or Microsoft Office 365 server information, you specify the settings to create the BEMS Cloud tenant for your organization. You can also integrate the cloud version of BEMS with  BlackBerry Docs, which lets your BlackBerry
        Dynamicsapp users access, synchronize, and share documents using their work file server, SharePoint, Box, and content management systems supporting CMIS, without the need for VPN software, firewall reconfiguration, or duplicate data stores. BlackBerry UEM Cloudworks with additional BlackBerryenterprise products such as BlackBerry Enterprise Identity, BlackBerry 2FA, and BlackBerry Workspaces, to allow you to extend UEMcapabilities in your organization. |