
BlackBerry Enterprise Solution Security
Extending BlackBerry device messaging security 16
SMS and MMS messaging
SMS and MMS messaging are available on some BlackBerry devices. Supported BlackBerry devices can send
SMS and MMS messages over the wireless TCP/IP connection between them.
Controlling unsecured messaging
You can control PIN, SMS, and MMS messaging in your organization using the following IT policy rules:
IT policy rule Description
Allow External
Connections
This rule controls whether applications can initiate external connections (for
example, to WAP, SMS, MMS or other public gateways) on the BlackBerry device.
Confirm on Send This rule requires a user to confirm that they wish to send the message before
sending an email message, PIN message, SMS message, or MMS message.
Disable Forwarding
Between Services
This rule prevents a user from forwarding or replying to a message using a different
BlackBerry Enterprise Server from the one that delivered the original message. This
rule also prevents using an email account to forward or reply to a PIN message or
reply to an email message with a PIN message.
Disable Peer-to-Peer
Normal Send
This rule prevents a user from sending plain text PIN messages when using a secure
messaging package, such as the S/MIME Support Package or the PGP Support
Package.
Turning off unsecured messaging
You can turn off unsecured messaging (PIN, SMS, and MMS communication) to make sure that all
communication originating at the BlackBerry devices in your organization travels through the enterprise
messaging environment.
Scenario Description
turn off PIN messaging Set the Allow Peer-to-Peer Messages IT policy rule to False.
Note: When you turn off PIN messaging, users cannot send PIN messages from
the BlackBerry device; however, they can still receive PIN messages on their
BlackBerry devices.
turn off SMS messaging Set the Allow SMS IT policy rule to False.
turn off MMS messaging Set the Disable MMS IT policy rule to True.
Extending BlackBerry device messaging security
In addition to BlackBerry standard encryption, you can enable S/MIME technology or PGP technology to offer an
additional layer of security between the sender and recipient of an email or PIN message. Using either one of
these technologies enables sender-to-recipient authentication and confidentiality, and helps maintain data
integrity and privacy from the time that a user sends a message from the BlackBerry device until the message
recipient decodes and reads the message.
PGP Support Package
The PGP Support Package is designed to provide an OpenPGP (RFC 2440) implementation on the BlackBerry
device. The implementation enables a user who is already sending and receiving PGP protected messages using
their desktop email program to send and receive PGP protected messages using their BlackBerry device.
The PGP Support Package includes tools for obtaining PGP keys and transferring them to the BlackBerry device.
This means that users can sign, encrypt, and send PGP protected messages using their BlackBerry devices, and
www.blackberry.com
Commenti su questo manuale