Controlling the BlackBerry environment
9
Protecting BlackBerry device data in transit
From the time that the user sends data (for example, an email message) from the BlackBerry® device until the BlackBerry®
Professional Software receives the data, and from the time that the BlackBerry Professional Software receives and forwards
data to the user until the user receives the data on the BlackBerry device, standard BlackBerry encryption uses a symmetric
algorithm to protect the data.
By default, the BlackBerry Professional Software uses both the Triple Data Encryption Standard (Triple DES or 3DES) and
the Advanced Encryption Standard (AES) algorithms to encrypt all communication with BlackBerry devices.
Encryption algorithm
Description
Notes
Triple DES
enables the use of the Triple DES
algorithm to encrypt and decrypt all data
communication between the BlackBerry
Professional Software and all BlackBerry
devices
provides Triple DES encryption only on
BlackBerry devices
AES
enables the use of the AES algorithm to
encrypt and decrypt all data
communication between the BlackBerry
Professional Software and all BlackBerry
devices
•
uses a longer encryption key,
which is designed to provide a
better combination of security
and performance than Triple DES
•
helps to protect user data and
encryption keys from traditional
and side-channel attacks
Triple DES and AES
provides Triple DES encryption on
BlackBerry device that do not support AES
(BlackBerry devices that run BlackBerry®
Device Software versions earlier than 4.0)
provides the default encryption
method
Change the encryption type
1.
In the BlackBerry® Manager, click the Home tab.
2.
Click Edit Server Properties.
3.
In the left pane, click General.
Administration Guide
Controlling the BlackBerry environment
77