User guide

Managing certificates on a
device
Purpose of certificates on a device
A certificate is a digital document that binds the identity and public key of a certificate subject. Each certificate has a
corresponding private key that is stored separately. A certification authority signs the certificate to verify that it can be
trusted.
A BlackBerry device can use certificates to:
Authenticate using SSL when it connects to web pages that use HTTPS
Encrypt and sign email messages and PIN messages using S/MIME encryption
Authenticate with an enterprise Wi-Fi network
Importing certificates onto a device
To permit a BlackBerry device to use certificates, you or a BlackBerry device user must import the certificates into the key
store database in application storage. To import certificates, you or the user can use one or more of the following methods:
Download certificates from the user's computer using the certificate synchronization tool in BlackBerry Desktop
Software
Enroll certificates over the wireless network
Copy certificates from a media card or smart card
Import certificates from an email attachment
To enroll certificates over the wireless network or copy them from a media card or smart card, you must use a device that is
running BlackBerry Device Software 5.0 or later.
After you or the user imports the certificates, the device adds the certificates to the certificate list on the device.
For more information about how to import certificates, see the BlackBerry Enterprise Server Administration Guide and the
user guide for the device.
13
Security Technical Overview Managing certificates on a device
104