
BlackBerry Enterprise Solution
BlackBerry architecture component security .................................................................................................... 33
BlackBerry Infrastructure .................................................................................................................................34
BlackBerry Enterprise Server ...........................................................................................................................34
Messaging server ...............................................................................................................................................34
BlackBerry Configuration Database ...............................................................................................................34
Protecting the BlackBerry Enterprise Solution connections...........................................................................36
SRP authentication ............................................................................................................................................ 37
How the BlackBerry Enterprise Server and the BlackBerry Infrastructure handle undeliverable
messages .............................................................................................................................................................38
BlackBerry Router protocol authentication ...................................................................................................38
Authentication during wireless enterprise activation .................................................................................39
TCP/IP connection..............................................................................................................................................41
Messaging server to computer email application connection ....................................................................41
Connections between the BlackBerry Desktop Manager and its components .......................................42
BlackBerry MDS connections...........................................................................................................................43
Using two-factor authentication to protect connections to enterprise Wi-Fi networks........................44
How the BlackBerry Enterprise Solution authenticates requests for wireless software upgrades......45
WAP gateway connections ...............................................................................................................................45
Instant messaging server connections...........................................................................................................45
Using segmented network architecture to prevent the spread of malware on your organization’s
network ................................................................................................................................................................46
Protecting Wi-Fi connections to the BlackBerry Enterprise Solution............................................................46
Enterprise Wi-Fi network solution architecture security features ............................................................. 47
Accessing the BlackBerry Infrastructure ....................................................................................................... 47
Supported security features of Wi-Fi enabled BlackBerry devices............................................................ 47
IEEE 802.1X environment components...........................................................................................................48
How the IEEE 802.1x environment controls access to the enterprise Wi-Fi network............................ 49
Administering enterprise Wi-Fi network solution security using IT policy rules.................................... 49
Requiring protected connections to enterprise Wi-Fi networks ............................................................... 49
Using VPNs to protect connections to enterprise Wi-Fi networks .............................................................51
Using enterprise captive portals to protect connections to enterprise Wi-Fi networks or Wi-Fi
hotspots ............................................................................................................................................................... 52
Authenticating a BlackBerry device user ........................................................................................................... 52
Authenticating a user to a BlackBerry device using a password ............................................................... 52
Authenticating a BlackBerry device user using a smart card.....................................................................52
Controlling BlackBerry devices ............................................................................................................................54
Controlling BlackBerry device behavior using IT policy rules ....................................................................54
©
2009 Research In Motion Limited. All rights reserved.
www.blackberry.com