Unbinding The Smart Card From The Blackberry Device - Blackberry ENTERPRISE SOLUTION SECURITY - ENTERPRISE SOLUTION - SECURITY TECHNICAL Overview

Table of Contents

Advertisement

BlackBerry Enterprise Solution
The BlackBerry device user can also use the application loader tool in the BlackBerry Desktop Software to
erase all user and application data on the BlackBerry device, but choose not to erase the BlackBerry device
applications.
The BlackBerry Enterprise Server administrator clicks Wipe Handheld File System in the BlackBerry
Manager. This option deletes all data and applications from the BlackBerry device even if the service books
do not exist on the BlackBerry device (in other words, if there is no connection between the BlackBerry
Enterprise Server and the BlackBerry device).
Removing third-party applications during a user-initiated security wipe
When the user clicks Wipe Handheld (in the Security Options) on the BlackBerry device, the user can select the
Include third party applications option at the same time. If the user selects this option, when the BlackBerry
device permanently deletes its stored user data during the device wipe, it will also remove all of its third-party
applications and application data.
Requiring a delay on remote BlackBerry device wipes
The BlackBerry Enterprise Server administrator can set the following IT policy rules to require that the remote
BlackBerry device automatically delete its user and application data.
IT policy rule
Secure Wipe Delay After IT
Policy Received
Secure Wipe Delay After Lock
Secure Wipe if Low Battery

Unbinding the smart card from the BlackBerry device

When the BlackBerry Enterprise Server administrator or the user starts a BlackBerry device wipe, causing the
BlackBerry device to erase its stored user and application data, the BlackBerry device permanently deletes the
smart card binding information from the NV store so that a user can authenticate with the BlackBerry device
using a new smart card.
The BlackBerry Enterprise Server administrator can permanently delete the smart card binding information from
the BlackBerry device manually in the following ways.
Send the Erase Data and Disable Handheld IT administration command to the BlackBerry device to
permanently delete the binding between a user's current smart card and the BlackBerry device.
When the user turns off two-factor authentication, the BlackBerry device turns off two-factor authentication
with the installed smart card and permanently deletes the smart card binding information from the
BlackBerry device.
www.blackberry.com
Description
Set this IT policy rule to a period of time, in hours, after which, if the
BlackBerry device has not successfully received IT policy updates or IT
administration commands, the BlackBerry device permanently deletes its
user and application data.
Set this IT policy rule to a period of time, in hours, after which, if the user has
not unlocked the BlackBerry device, the BlackBerry device permanently
deletes its user and application data.
Set this IT policy rule to require that, if the BlackBerry device battery power
is insufficient to receive IT policy updates or IT administration commands,
the BlackBerry device permanently deletes its user and application data.
65

Advertisement

Table of Contents
loading

This manual is also suitable for:

Enterprise server 4.1

Table of Contents