User guide

If the BlackBerry Infrastructure rejects the challenge response, the authentication process is not successful. The BlackBerry
Infrastructure and BlackBerry Enterprise Server close the SRP connection. If a BlackBerry Enterprise Server uses the same
SRP authentication key and SRP identifier to connect to (and then disconnect from) the BlackBerry Infrastructure 5 times
in 1 minute, the BlackBerry Infrastructure deactivates the SRP identifier to help prevent a potentially malicious user from
using the SRP identifier to create conditions for a DoS attack.
How a BlackBerry Enterprise Server and messaging server protect a
connection to each other
A BlackBerry® Enterprise Server is designed to connect to the following messaging servers in a highly secure manner.
Messaging server Description
IBM® Lotus® Domino® The BlackBerry Enterprise Server and the Lotus Domino server communicate using
the IBM® Lotus Notes® RPC protocol.
A user who activates a BlackBerry device when the BlackBerry device is connected
to a computer can encrypt data that is in transit between the Lotus Domino server
and a Lotus Notes Inbox.
For more information, see the online help for Lotus Domino.
Microsoft® Exchange The BlackBerry Enterprise Server and Microsoft Exchange Server® communicate
using the Microsoft Exchange Server RPC protocol.
A user can use 128-bit encryption to encrypt RPC communication over the MAPI
connection between the Microsoft Exchange server and Microsoft® Outlook®.
For more information about turning on encryption, see the documentation for
Microsoft Exchange.
Novell® GroupWise® The BlackBerry Enterprise Server is designed to use a trusted application key to
open a connection to the Novell GroupWise server. To generate the trusted
application key, an administrator of Novell GroupWise runs the trusted application
key generator, specifies the location of the primary domain of Novell GroupWise,
and specifies the application name that the BlackBerry Enterprise Server can use
to connect to the Novell GroupWise server. The trusted application key is a 64-byte
ASCII string.
Security Technical Overview
How a BlackBerry Enterprise Server and messaging server protect a connection to each other
70