User guide

BlackBerry Smart Card Reader Security 5
New in this release
Feature Description
BlackBerry Smart Card Reader
connections to Bluetooth
enabled computers
The BlackBerry Smart Card Reader supports connections to Bluetooth
enabled computers that have the BlackBerry Smart Card Reader driver
and a supported smart card driver installed.
The BlackBerry Smart Card Reader uses the same security protocols to
establish a secure pairing with the computer that it uses to establish a
secure pairing with the BlackBerry device.
The BlackBerry Smart Card Reader supports connections to one
supported Bluetooth enabled computer and one supported Bluetooth
enabled BlackBerry device at the same time.
You can set BlackBerry Enterprise Server IT policy rules in the
BlackBerry Manager and use a user interface on the computer to
manage BlackBerry Smart Card Reader connections to the computer.
System requirements
The BlackBerry Smart Card Reader Version 1.5 and later supports the following software and BlackBerry devices.
BlackBerry Enterprise Server Computer BlackBerry devices
BlackBerry Enterprise Server
Version 4.0 Service Pack 2 or
later for Microsoft Exchange
Microsoft® Windows® XP Service
Pack 2 with support for Bluetooth
technology enabled
Java™ based Bluetooth enabled
BlackBerry devices that run
BlackBerry Device Software Version
4.0 or later
BlackBerry Smart Card Reader upgrades
Before you can upgrade the BlackBerry Smart Card Reader, you must first reset the BlackBerry Smart Card
Reader to remove the Bluetooth pairing information and the secure pairing key. See the BlackBerry Smart Card
Reader Getting Started Guide for more information on resetting the BlackBerry Smart Card Reader. See
“Appendix G: BlackBerry Smart Card Reader reset process” on page 26 for more information on the actions that
the Blackberry Smart Card Reader performs when it resets.
System architecture
The BlackBerry Smart Card Reader is designed to connect to Bluetooth enabled BlackBerry devices, Bluetooth
enabled computers, and PKIs. When the BlackBerry device pushes an IT policy to the BlackBerry Smart Card
Reader, the BlackBerry Smart Card Reader preserves the BlackBerry Enterprise Server signature on the IT policy.
The BlackBerry Smart Card Reader cannot communicate with the BlackBerry Enterprise Server directly.
BlackBerry Enterprise Solution security
The BlackBerry Enterprise Solution (consisting of a BlackBerry device, BlackBerry Device Software, BlackBerry
Desktop Software, and the BlackBerry Enterprise Server) is designed to preserve the integrity, confidentiality,
and authenticity of your corporate data.
The BlackBerry Enterprise Solution is designed so that data remains encrypted (in other words, it is not
decrypted) at all points between the BlackBerry device and the BlackBerry Enterprise Server. Only the
BlackBerry Enterprise Server and the BlackBerry device can access the data that they send between them.
The BlackBerry Enterprise Solution uses a symmetric key encryption algorithm, which is designed to provide
strong security, to protect all data that the BlackBerry device and the BlackBerry Enterprise Server send between
them while the data is in transit. The BlackBerry Enterprise Solution uses either the Triple DES algorithm or the
AES algorithm for this standard BlackBerry encryption, which is designed to verify that a BlackBerry message
remains protected in transit to the BlackBerry Enterprise Server while the message data is outside the corporate
firewall.
www.blackberry.com