Installation guide

BlackBerry Enterprise Solution Security
Extending BlackBerry device messaging security 16
SMS and MMS messaging
SMS and MMS messaging are available on some BlackBerry devices. Supported BlackBerry devices can send
SMS and MMS messages over the wireless TCP/IP connection between them. The BlackBerry device does not
encrypt SMS and MMS messages.
Controlling unsecured messaging
You can control unsecured messaging (PIN, SMS, and MMS communication) in your organization using the
following IT policy rules:
IT policy rule Description
Allow External
Connections
This IT policy rule controls whether applications can initiate external connections
(for example, to WAP, SMS, MMS or other public gateways) on the BlackBerry
device.
Confirm on Send This IT policy rule requires a user to confirm that they wish to send the message
before sending an email message, PIN message, SMS message, or MMS message.
Disable Forwarding
Between Services
This IT policy rule prevents a user from forwarding or replying to a message using a
different BlackBerry Enterprise Server from the one that delivered the original
message. This IT policy rule also prevents using an email account to forward or reply
to a PIN message or reply to an email message with a PIN message.
Disable Peer-to-Peer
Normal Send
This IT policy rule prevents a user from sending plain text PIN messages when using
a secure messaging package, such as the S/MIME Support Package or the PGP
Support Package.
Turning off unsecured messaging
You can turn off unsecured messaging to make sure that all communication originating at the BlackBerry devices
in your organization travels through the enterprise messaging environment.
Scenario Description
turn off PIN messaging Set the Allow Peer-to-Peer Messages IT policy rule to False.
Note: When you turn off PIN messaging, users cannot send PIN messages from
the BlackBerry device; however, they can still receive PIN messages on their
BlackBerry devices.
turn off SMS messaging Set the Allow SMS IT policy rule to False.
turn off MMS messaging Set the Disable MMS IT policy rule to True.
Extending BlackBerry device messaging security
In addition to standard BlackBerry encryption, you can enable S/MIME technology or PGP technology to offer an
additional layer of security between the sender and recipient of an email or PIN message. Using either one of
these technologies enables sender-to-recipient authentication and confidentiality, and helps maintain data
integrity and privacy from the time that a user sends a message from the BlackBerry device until the message
recipient decodes and reads the message.
PGP Support Package
The PGP Support Package is designed to provide support for using OpenPGP (RFC 2440) message formatting on
the BlackBerry device to enable users who already send and receive PGP protected messages in OpenPGP
format using their computer email applications to send and receive PGP protected messages in that format using
their BlackBerry devices.
www.blackberry.com