Blackberry ENTERPRISE SOLUTION SECURITY - ENFORCING ENCRYPTION OF INTERNAL AND EXTERNAL FILE SYSTEMS ON  DEVICES Manual
Blackberry ENTERPRISE SOLUTION SECURITY - ENFORCING ENCRYPTION OF INTERNAL AND EXTERNAL FILE SYSTEMS ON  DEVICES Manual

Blackberry ENTERPRISE SOLUTION SECURITY - ENFORCING ENCRYPTION OF INTERNAL AND EXTERNAL FILE SYSTEMS ON DEVICES Manual

Enforcing encryption of internal and external file systems on blackberry devices

Advertisement

Quick Links

Enforcing encryption of internal and external
file systems on BlackBerry devices
Technical Overview
©
2008 Research In Motion Limited. All rights reserved.
www.blackberry.com

Advertisement

Table of Contents
loading

Summary of Contents for Blackberry ENTERPRISE SOLUTION SECURITY - ENFORCING ENCRYPTION OF INTERNAL AND EXTERNAL FILE SYSTEMS ON DEVICES

  • Page 1 Enforcing encryption of internal and external file systems on BlackBerry devices Technical Overview © 2008 Research In Motion Limited. All rights reserved. www.blackberry.com...
  • Page 3: Table Of Contents

    System requirements for file encryption on BlackBerry devices............... 1 Using encryption to protect stored files on BlackBerry devices ............... 1 IT policy requirements for encryption of stored files on BlackBerry devices ..........3 Data that the BlackBerry device can encrypt in internal memory..............3 Protecting user data stored on a locked BlackBerry device................
  • Page 5: Data That Blackberry Devices Encrypt By Default

    BlackBerry Device Software Version 4.2 or later) Using encryption to protect stored files on BlackBerry devices You can configure the following options on the BlackBerry Enterprise Server to turn on encryption of stored files on supported BlackBerry devices. Internal files...
  • Page 6 Enforcing encryption of internal and external file systems on BlackBerry devices Users can configure the following options to turn on encryption of stored files on their supported BlackBerry devices. Internal files External files Master encryption keys Turn on the Content Turn on Media Card Support (Options >...
  • Page 7: It Policy Requirements For Encryption Of Stored Files On Blackberry Devices

    See the Policy Reference Guide for more information about using IT policy rules. Data that the BlackBerry device can encrypt in internal memory When you or BlackBerry device users turn on content protection on BlackBerry devices, the BlackBerry devices encrypt the following user data items:...
  • Page 8: Protecting User Data Stored On A Locked Blackberry Device

    Protecting user data stored on a locked BlackBerry device If content protection is turned on, on BlackBerry devices, user data that the BlackBerry devices store is always protected with the 256-bit AES encryption algorithm. Content protection of BlackBerry device user data is designed to perform the following actions: •...
  • Page 9: Setting The External Memory Encryption Level

    Moving the media card to a different BlackBerry device If the user removes the media card from the BlackBerry device and places it in a new BlackBerry device, the new BlackBerry device cannot decrypt any files that the first BlackBerry device encrypted on the media card using a randomly generated device key.
  • Page 10: Controlling Access To Objects In External Memory

    Protecting master encryption keys on a locked BlackBerry device If you turn on content protection of master encryption keys, the BlackBerry device uses the grand master key to encrypt the master encryption keys stored in flash memory and encrypts the grand master key using the content protection key.
  • Page 11 Part number: 20993644 Version 3 ©2008 Research In Motion Limited. All Rights Reserved. The BlackBerry and RIM families of related marks, images, and symbols are the exclusive properties of Research In Motion Limited. RIM, Research In Motion, BlackBerry, "Always On, Always Connected" and the "envelope in motion"...

This manual is also suitable for:

Enterprise solution enforcing

Table of Contents