
To offer an additional layer of messaging security between the sender and recipient of an email message or PIN message, you
can turn on S/MIME technology or PGP® technology for BlackBerry devices. When you use either one of these technologies, you
allow sender-to-recipient authentication and confidentiality. These technologies also help to maintain the integrity and privacy
of the data from the time that a BlackBerry device user sends a message from the BlackBerry device to when the message recipient
decrypts and opens the message.
Options for encrypting stored data
You can configure the BlackBerry® Enterprise Solution to encrypt the user data and encryption keys on locked BlackBerry devices.
Protection of user data on locked BlackBerry devices
When the content protection feature on BlackBerry® devices is turned on, the BlackBerry devices are designed to protect user
data in the following ways:
• use 256-bit AES encryption to encrypt stored data
• use ECC public keys to encrypt data that the BlackBerry devices receive
User data that BlackBerry devices can encrypt when the content protection feature is turned on
Item Description
AutoText all text that automatically replaces the text that BlackBerry® device users type
BlackBerry® Browser
• content that web sites or third-party applications push to BlackBerry devices
• web sites that users save on their BlackBerry devices
• browser cache
calendar
• subject
• location
• meeting organizer
• meeting participants
• notes included in calendar items
address book contacts all contact information except the contact title and category
For information about using the Force Include Address Book In Content Protection
IT policy rule to prevent users from turning off encryption for the address book,
see the BlackBerry Enterprise Server Policy Reference Guide.
message list
• subject
Feature and Technical Overview
BlackBerry Enterprise Solution security
46
Komentáře k této Příručce