Instruction/ maintenance manual of the product blackberry enterprise server for microsoft exchange Blackberry
Go to page of 110
BlackBerry Enterprise Server for Microsoft Exchange Version: 5.0 Service Pack: 4 Feature and Technical Overview.
Published: 2013-11-07 SWD-20131107160132924.
Contents 1 Document revision history................................................................................................................. 6 2 What's New in BlackBerry Enterprise Server 5.0 SP4..........................................
Managing a distributed environment for BlackBerry Enterprise Server components ............................................................ 47 Wireless activation ........................................................................................
Messaging process flows.................................................................................................................................................... 76 Process flow: Sending a message to a BlackBerry device......................
Document revision history Date Description 14 February 2013 Initial version 7 November 2013 Updated for maintenance release 6 1 Feature and Technical Overview Document revision history 6.
What's New in BlackBerry Enterprise Server 5.0 SP4 Feature Description Upgrade paths Administrators can upgrade to BlackBerry Enterprise Server 5.0 SP4 from the following software versions: • BlackBerry Enterprise Server 5.0 SP2 • BlackBerry Enterprise Server 5.
Feature Description Increased efficiency of reconciliation process BlackBerry Enterprise Server 5.0 SP4 includes enhancements that reduce the workload on the computer that hosts the BlackBerry Configuration Database. Enhancements to security features BlackBerry Enterprise Server 5.
Overview: BlackBerry Enterprise Server The BlackBerry Enterprise Server is designed to be a secure, centralized link between an organization's wireless network, communications software, applications, and BlackBerry smartphones.
BlackBerry Enterprise Server architecture Architecture: BlackBerry Enterprise Server The BlackBerry Enterprise Server consists of various components that are designed to perform the following actions:.
Feature and Technical Overview BlackBerry Enterprise Server architecture 11.
Component Description BlackBerry Administration Service The BlackBerry Administration Service connects to the BlackBerry Configuration Database. You can use the BlackBerry Administration Service to manage the BlackBerry Domain, which includes BlackBerry Enterprise Server components, user accounts, and features for BlackBerry device administration.
Component Description Agent connects to your organization's messaging server to provide messaging services, calendar management, address lookups, attachment viewing, attachment downloading, and encryption key generation.
Component Description Users can install the BlackBerry Device Manager when they install the BlackBerry Desktop Software or at another time. The BlackBerry Device Manager is an optional component, but it is required to support a bypass connection to the BlackBerry Router.
Component Description BlackBerry Administration Service The BlackBerry Administration Service permits you to manage the BlackBerry Collaboration Service and configure instant messaging features.
Architecture: Remote BlackBerry MDS Connection Service You can install the BlackBerry MDS Connection Service on a computer that is separate from the computer that hosts the BlackBerry Enterprise Server. The BlackBerry MDS Connection Service can use increased system resources when it processes requests for content.
Component Description BlackBerry Administration Service The BlackBerry Administration Service permits you to manage the BlackBerry MDS Connection Service, configure the central push server, and configure the browsing and application features.
Component Description BlackBerry Configuration Database The BlackBerry Configuration Database contains configuration data that the BlackBerry Administration Service manages. BlackBerry Device Manager The BlackBerry Device Manager permits BlackBerry devices to connect to the BlackBerry Router.
Architecture: Remote BlackBerry Administration Service You can install the BlackBerry Administration Service on a computer that is separate from the computer that hosts the BlackBerry Enterprise Server. The BlackBerry Administration Service can use increased system resources when it processes requests.
Component Description BlackBerry Administration Service The BlackBerry Administration Service permits you to manage the BlackBerry Enterprise Server, user accounts, and BlackBerry devices. BlackBerry Configuration Database The BlackBerry Configuration Database contains configuration data that the BlackBerry Administration Service manages.
Component Description BlackBerry Administration Service The BlackBerry Administration Service permits you to manage the BlackBerry Attachment Service instances and set up attachment conversion features.
Architecture: BlackBerry Web Desktop Manager The BlackBerry Web Desktop Manager consists of server-side services that are installed with the BlackBerry Administration Service and Microsoft ActiveX controls that are installed on the browser of the BlackBerry device user's computer.
Component Description user's computer with BlackBerry Web Desktop Manager browser application The BlackBerry Web Desktop Manager browser application is the Microsoft ActiveX controls that a user installs in a browser to manage the BlackBerry device.
BlackBerry Enterprise Server components and features BlackBerry Administration Service The BlackBerry Administration Service is a web application you use to manage user accounts; assign user groups, a.
Feature Description and known only to the BlackBerry Administration Service. Alternatively, you can use external authentication, which permits administrators to log in to the BlackBerry Administration Service using the same information that administrators use to access your organization's messaging server.
Database tables in the BlackBerry Configuration Database that store contact information The BlackBerry Mail Store Service synchronizes contact information to two database tables in the BlackBerry Configuration Database.
Contact information Database property name Database property name in BlackBerry Configuration Database version 4.1 Description mailbox path MailboxKey UserConfig.MailboxDN This property specifies the unique mailbox path. messaging server path ServerName UserConfig.
contact list, the BlackBerry Configuration Database might not contain the contact information for all user accounts on your organization's messaging server.
Feature Description email reconciliation The BlackBerry Enterprise Server reconciles the status of messages between users' BlackBerry devices and their email applications.
Feature Description • If an attachment exceeds 64 KB, the BlackBerry device sends the attachment in multiple data packets. Users can send messages with attachments only from supported BlackBerry devices that are running BlackBerry Device Software version 4.
Feature Description personal contact subfolders Users with BlackBerry devices that are running BlackBerry Device Software version 5.0 or later can view personal contact subfolders on their BlackBerry devices and change contact information.
• BlackBerry Client for use with Microsoft Office Communications Server 2007 • BlackBerry Client for use with Microsoft Office Communications Server 2007 R2 • BlackBerry Client for use with Micr.
Feature Description synchronized contact lists The instant messaging contact lists on users' BlackBerry devices are synchronized with the contact lists in their organization's instant messaging application. contact alerts Users can request alerts when specific contacts become available.
Feature Description BlackBerry Client for use with Microsoft Office Communications Server 2007, users can send instant messages to contacts that are not included in their contact lists. dormant mode The collaboration clients enter dormant mode after five minutes of inactivity.
Feature Description between BlackBerry devices and email applications. You can use IT policies to configure the settings for wireless data synchronization. support for different types of user access The BlackBerry Enterprise Server requires access to the organizer application databases for all users.
Format Extension audio .amr, .mp3, .wav, .wma Corel WordPerfect 7-10 .wpd HTML .htm, .html images .bmp, .gif, .jpeg, .jpg, .png, .ppm, .tif, .t iff, .wmf Microsoft Excel 97-2003, 2007, 2013*, and XP .xls, .xlsx Microsoft PowerPoint 97-2003, 2007, 2013*, and XP .
Feature Description protocol connections You can define connections to the web servers on your organization’s intranet or the Internet using standard Internet protocols such as HTTP, HTTPS, and TCP/IP.
BlackBerry Applications BlackBerry devices support BlackBerry Applications and BlackBerry Browser Applications. Application developers in your organization can create BlackBerry Applications using BlackBerry development tools or third-party development tools.
Developers can create BlackBerry Java Applications using BlackBerry developer tools or other Java authoring tools. BlackBerry devices run BlackBerry Java Applications using BlackBerry APIs and Java ME, which are standard on BlackBerry devices. For more information about developing and customizing BlackBerry Applications, visit www.
BlackBerry device management You can use the BlackBerry Enterprise Server to control how you implement, maintain, and upgrade BlackBerry devices across your organization.
Feature Description wireless delivery When you configure an IT policy, all rules take effect when the BlackBerry Policy Service delivers the IT policy to a BlackBerry device over the wireless network. The BlackBerry device stores new IT policy rule values in the user configurations on the BlackBerry device automatically.
When the BlackBerry Enterprise Server detects a BlackBerry Router, it identifies the IP address of the computer that hosts the BlackBerry Router and writes the IP address to the BlackBerry Configuration Database. When BlackBerry device users activate devices that are running BlackBerry Device Software 4.
Feature Description BlackBerry Device Software management Users can use the BlackBerry Web Desktop Manager to update the BlackBerry Device Software on their BlackBerry devices.
Supported feature BlackBerry Web Desktop Manager BlackBerry Desktop Software • option to choose not to save the backup file • BlackBerry services are not maintained if the users disconnect their B.
Supported feature BlackBerry Web Desktop Manager BlackBerry Desktop Software devices that belong to other users, the BlackBerry Web Desktop Manager prompts the users who connected the BlackBerry devic.
Supported feature BlackBerry Web Desktop Manager BlackBerry Desktop Software prompt for BlackBerry device password BlackBerry devices can connect without a prompt for the device password required befo.
Managing a distributed environment for BlackBerry Enterprise Server components You can install the BlackBerry Enterprise Server components on multiple computers so that you can manage the size of your organization's BlackBerry Domain.
BlackBerry Enterprise Solution security The BlackBerry Enterprise Solution consists of various products and components that are designed to extend your organization’s communication methods to BlackBerry devices.
Security features of the BlackBerry Enterprise Solution Feature Description data protection The BlackBerry Enterprise Solution is designed to protect data that is in transit between the BlackBerry Ent.
Encrypting data that the BlackBerry Enterprise Server and a BlackBerry device send to each other To encrypt data that is in transit between the BlackBerry Enterprise Server and a BlackBerry device in your organization, the BlackBerry Enterprise Solution uses BlackBerry transport layer encryption.
How the BlackBerry Enterprise Solution uses Triple DES to encrypt data The BlackBerry Enterprise Solution uses a two-key Triple DES encryption algorithm to generate message keys and device transport keys.
• if you use software tokens, contents of the .sdtid file seed that is stored in flash memory • all data that is associated with third-party applications that a user installs on the device • in .
You can configure an allowed list to determine which devices can access a BlackBerry Enterprise Server. A device that meets the criteria that you specify in the allowed list can associate with the BlackBerry Enterprise Server when the device activates over the wireless network.
For more information, see the BlackBerry Enterprise Server Policy Reference Guide. Using IT administration commands to protect a lost or stolen device The BlackBerry Enterprise Server includes IT administration commands that you can send over the wireless network to protect sensitive data on a BlackBerry device.
IT administration command Description You can also specify whether you want to delete or disable a user account from the BlackBerry Enterprise Server after the device deletes all user information and application data.
BlackBerry Enterprise Server high availability High availability permits you to provide minimum downtime for BlackBerry services if BlackBerry Enterprise Server components stop responding or if they require maintenance.
Both BlackBerry Enterprise Server instances in the BlackBerry Enterprise Server pair include, by default, the BlackBerry Attachment Service, BlackBerry Dispatcher, BlackBerry MDS Connection Service, BlackBerry Messaging Agent, BlackBerry Policy Service, BlackBerry Router, and BlackBerry Synchronization Service.
The BlackBerry Enterprise Server components calculate their health scores by examining their operating health, the stability of their connections to other components, and the health scores of the other components. The health score of the BlackBerry Enterprise Server consists of various health parameters.
• informs the standby BlackBerry Enterprise Server that it self-demoted Scenario: What happens after a primary BlackBerry Enterprise Server stops responding If a primary BlackBerry Enterprise Server.
Scenario: What happens after the health score of a primary BlackBerry Enterprise Server falls below the failover threshold The following scenario can occur if the messaging server, BlackBerry Infrastructure, and BlackBerry Configuration Database are available.
database stops responding, the BlackBerry Enterprise Server opens an active connection to the mirror database automatically. Database mirroring provides fault tolerance for the BlackBerry Enterprise Solution.
The primary BlackBerry Enterprise Server connects to the messaging server and processes the messaging data that it sends to and receives from BlackBerry devices. The standby BlackBerry Enterprise Server opens standby connections to the principal BlackBerry Configuration Database and the messaging server.
High availability in a distributed environment If you install multiple BlackBerry Enterprise Server components on different computers to create a distributed environment, you can configure the components for high availability.
Component High availability type Description assigns the active connection to another BlackBerry Collaboration Service instance. BlackBerry Configuration Database database mirroring If you install the BlackBerry Configuration Database on Microsoft SQL Server 2005 SP2 or later, you can configure database mirroring.
Wi-Fi enabled devices Wi-Fi enabled BlackBerry devices permit users with qualifying data plans to access BlackBerry services over a mobile network, Wi-Fi network, or both networks simultaneously. When users can access a mobile network and Wi-Fi network simulaneously, users can perform multiple tasks over both networks.
Type Description permit VPN connections through the firewall. You can configure a home Wi-Fi network with layer 2 security and password authentication. You must configure BlackBerry devices to support the authentication that the home Wi-Fi network requires.
Connections that BlackBerry devices make to mobile and Wi-Fi networks Wi-Fi enabled BlackBerry devices connect to different components in the mobile and Wi-Fi networks so that they can communicate with the BlackBerry Enterprise Server and provide BlackBerry services for users.
Component Description BlackBerry Internet Service The BlackBerry Internet Service is an email and Internet service for BlackBerry devices that is designed to provide subscribers with automatic delivery of email messages, mobile access to email message attachments, and convenient access to Internet content.
After BlackBerry devices connect to the Wi-Fi network using a Wi-Fi profile, the BlackBerry devices try to make a direct IP connection to the BlackBerry Router. With some network architectures, a VPN session might be required to complete the direct connection to the BlackBerry Router.
BlackBerry services that are available over Wi-Fi connections For more information about supported services and features, contact your organization's wireless service provider. Not all BlackBerry data plans support Wi-Fi access to BlackBerry data services.
BlackBerry services Service provider with GSM/EDGE network or UMA network Wi-Fi network and service provider with GSM/EDGE network Wi-Fi network and no service provider with GSM/EDGE network or UMA, a.
BlackBerry services Service provider with GSM/EDGE network or UMA network Wi-Fi network and service provider with GSM/EDGE network Wi-Fi network and no service provider with GSM/EDGE network or UMA, a.
Characteristic Description nonoverlapping channels up to 19 sources of interference • Bluetooth wireless technology • some satellite systems • 5 GHz cordless phones throughput speed 23 Mbps Characteristics of the IEEE 802.
Characteristics of the IEEE 802.11g wireless networking standard that Wi-Fi enabled BlackBerry devices support Characteristic Description fallback speeds 48, 36, 24, 18, 12, 9, and 6 Mbps frequency 2.4 GHz maximum speed 54 Mbps nonoverlapping channels 3 sources of interference • Bluetooth wireless technology • microwave ovens • 2.
Feature Description Direct access to the BlackBerry Infrastructure over a Wi-Fi connection Direct access to the BlackBerry Infrastructure over a Wi-Fi connection permits Wi-Fi enabled devices to access BlackBerry services over the Internet, even if UMA is not available.
BlackBerry Enterprise Server process flows Messaging process flows Process flow: Sending a message to a BlackBerry device 1. A message arrives in a user’s mailbox.
7. The BlackBerry device sends a delivery confirmation to the BlackBerry Dispatcher. The BlackBerry Dispatcher sends the delivery confirmation to the BlackBerry Messaging Agent. If the BlackBerry Messaging Agent does not receive a delivery confirmation within four hours, it sends the message to the wireless network again.
Process flow: Sending a message that contains an attachment from a BlackBerry device 1. A user attaches a file to a message on a BlackBerry device and sends the message. • If the BlackBerry device is not running BlackBerry Device Software version 4.
7. The BlackBerry Messaging Agent verifies the validity of the attachment content, and stores the content in memory as the content arrives. During the delivery of the attachment content, if the BlackB.
8. The BlackBerry device sends a delivery confirmation to the BlackBerry Dispatcher, which sends it to the BlackBerry Messaging Agent. If the BlackBerry Enterprise Server does not receive a delivery confirmation within four hours, it resubmits the contact lookup results to the wireless network.
4. The BlackBerry Collaboration Service checks the BlackBerry Configuration Database to find out if the maximum number of sessions has been reached, and performs one of the following actions: • If t.
1. A user logs in to a collaboration client on a BlackBerry device. 2. The device compresses and encrypts the user ID and password, and sends them through the BlackBerry Router to the BlackBerry Dispatcher over port 3101. 3. The BlackBerry Dispatcher sends the request to the BlackBerry Collaboration Service over port 3200.
7. The Microsoft Office Communicator Web Access server sends the acceptance to the BlackBerry Collaboration Service. 8. The BlackBerry Collaboration Service sends the acceptance message, in encrypted .
• If the maximum number of sessions was reached and you configured a timeout limit, the BlackBerry Collaboration Service logs out any instant messaging sessions on devices that are outside of a wireless coverage area, and any instant messaging sessions that are no longer sending status messages to the BlackBerry Collaboration Service.
1. A user logs in to a collaboration client on a BlackBerry device. 2. The BlackBerry device compresses and encrypts the user ID and password, and sends them through the BlackBerry Router to the BlackBerry Dispatcher over port 3101. 3. The BlackBerry Dispatcher sends the request to the BlackBerry Collaboration Service over port 3200.
1. A user logs in to a collaboration client on a BlackBerry device. 2. The BlackBerry device compresses and encrypts the user ID and password and sends them through the BlackBerry Router to the BlackBerry Dispatcher over port 3101. 3. The BlackBerry Dispatcher sends the request to the BlackBerry Collaboration Service over port 3200.
Process flow: Sending a file to a contact using the BlackBerry Client for IBM Sametime 1. A user opens a conversation with a contact, clicks Send File on the menu, and selects a file to send to the contact. 2. The BlackBerry Client for IBM Sametime creates an invitation request and sends it to the BlackBerry Collaboration Service.
9. The BlackBerry Collaboration Service requests the file size from the IBM Sametime server, and sends data to the IBM Sametime server to begin the file transfer process. By default, the media transfer state on the BlackBerry Collaboration Service is set to transfer.
1. A user receives a message with an attachment on a BlackBerry device. 2. The BlackBerry Messaging Agent verifies that the format of the attachment is valid for conversion. If the format is not valid and the user’s BlackBerry device is based, the Open Attachment menu item does not appear on the user’s BlackBerry device.
1. A user clicks the Get Link menu item to view an attachment on a BlackBerry device. 2. The BlackBerry device sends the request to the BlackBerry Enterprise Server over port 3101. 3. The BlackBerry Dispatcher sends the request to the BlackBerry MDS Connection Service over port 3200.
Organizer data process flows Process flow: Synchronizing organizer data for the first time on a BlackBerry device 1. A user activates a new BlackBerry device or upgrades an existing BlackBerry device and receives the service book for the BlackBerry Synchronization Service.
the appropriate location. The BlackBerry device and BlackBerry Enterprise Server do not delete records during the initial synchronization process. After the BlackBerry Synchronization Service registers a database for wireless data synchronization, it can no longer be synchronized or restored using the BlackBerry Desktop Software.
The BlackBerry Synchronization Service sends other changes, including BlackBerry device information, time zone information, and backup and restore data, at the batch synchronization interval that is set on the BlackBerry Enterprise Server. By default, the batch synchronization interval is 10 minutes.
The BlackBerry device compresses and encrypts the request, and sends the request to the BlackBerry Dispatcher over port 3101. 3. The BlackBerry Dispatcher uses the device transport key of the BlackBerry device to decrypt and decompress the request, and sends the request to the BlackBerry Synchronization Service.
1. A user requests Internet or intranet content from your organization's content server using the BlackBerry Browser on a BlackBerry device. 2. The BlackBerry device sends the request to the BlackBerry Enterprise Server over port 3101. 3. The BlackBerry Dispatcher sends the request to the BlackBerry MDS Connection Service over port 3200.
Process flow: Requesting BlackBerry Browser content while access control is turned on for the BlackBerry MDS Connection Service 1. A user requests Internet or intranet content from your organization's content server using the BlackBerry Browser on a BlackBerry device.
9. The wireless network verifies that the PIN belongs to a valid BlackBerry device that is registered with the wireless network and sends the encrypted content to the BlackBerry device.
5. The BlackBerry Dispatcher compresses the content, encrypts it using the device transport key of the BlackBerry device, and sends the encrypted content to the BlackBerry Router. 6. The BlackBerry Router sends the encrypted content to the wireless network over port 3101.
User accounts that do not appear in the BlackBerry Configuration Database, or that are pending deletion, cannot receive the push content. The central push server responds to the push application to ac.
3. You create a software configuration and add the BlackBerry Java Application to the software configuration. You specify that the application is required, assign an application control policy to the application, and specify wireless delivery to BlackBerry devices.
BlackBerry device management process flows Process flow: Activating a BlackBerry device over the wireless network A user receives or purchases a new BlackBerry device. 1. The user contacts your organization's IT department to activate the BlackBerry device.
Process flow: Resending an IT policy to a BlackBerry device manually 1. You click a user account, and then click Resend IT Policy. 2. The BlackBerry Policy Service reads the current IT policy settings for the user account from the BlackBerry Configuration Database to determine which IT policy to send to the BlackBerry device.
Glossary AES Advanced Encryption Standard AJAX Asynchronous JavaScript and XML API application programming interface ASCII American Standard Code for Information Interchange BlackBerry Domain A BlackBerry Domain consists of the BlackBerry Configuration Database with its users and any BlackBerry Enterprise Server instances that connect to it.
Enterprise Service Policy The Enterprise Service Policy controls which BlackBerry devices can connect to a BlackBerry Enterprise Server. GAL Global Address List GAN generic access network GANC generic.
Kerberos protocol The Kerberos protocol is a Microsoft Active Directory authentication protocol that permits a trusted third-party application to authenticate clients by exchanging encrypted service tickets with Microsoft Active Directory.
UCS Universal Content Stream UMA Unlicensed Mobile Access UNC Universal Naming Convention USB Universal Serial Bus VPN virtual private network WAP Wireless Application Protocol XML Extensible Markup L.
Provide feedback To provide feedback on this content, visit www.blackberry.com/docsfeedback . 11 Feature and Technical Overview Provide feedback 107.
Legal notice © 2013 BlackBerry. All rights reserved. BlackBerry ® and related trademarks, names, and logos are the property of BlackBerry Limited and are registered and/or used in the U.S. and countries around the world. Adobe and Acrobat are trademarks of Adobe Systems Incorporated.
DOCUMENTATION TO THE EXTENT THEY CANNOT BE EXCLUDED AS SET OUT ABOVE, BUT CAN BE LIMITED, ARE HEREBY LIMITED TO NINETY (90) DAYS FROM THE DATE YOU FIRST ACQUIRED THE DOCUMENTATION OR THE ITEM THAT IS THE SUBJECT OF THE CLAIM.
separate licenses and other agreements applicable thereto with third parties, except to the extent expressly covered by a license or other agreement with BlackBerry. Certain features outlined in this documentation require a minimum version of BlackBerry Enterprise Server, BlackBerry Desktop Software, and/or BlackBerry Device Software.
An important point after buying a device Blackberry blackberry enterprise server for microsoft exchange (or even before the purchase) is to read its user manual. We should do this for several simple reasons:
If you have not bought Blackberry blackberry enterprise server for microsoft exchange yet, this is a good time to familiarize yourself with the basic data on the product. First of all view first pages of the manual, you can find above. You should find there the most important technical data Blackberry blackberry enterprise server for microsoft exchange - thus you can check whether the hardware meets your expectations. When delving into next pages of the user manual, Blackberry blackberry enterprise server for microsoft exchange you will learn all the available features of the product, as well as information on its operation. The information that you get Blackberry blackberry enterprise server for microsoft exchange will certainly help you make a decision on the purchase.
If you already are a holder of Blackberry blackberry enterprise server for microsoft exchange, but have not read the manual yet, you should do it for the reasons described above. You will learn then if you properly used the available features, and whether you have not made any mistakes, which can shorten the lifetime Blackberry blackberry enterprise server for microsoft exchange.
However, one of the most important roles played by the user manual is to help in solving problems with Blackberry blackberry enterprise server for microsoft exchange. Almost always you will find there Troubleshooting, which are the most frequently occurring failures and malfunctions of the device Blackberry blackberry enterprise server for microsoft exchange along with tips on how to solve them. Even if you fail to solve the problem, the manual will show you a further procedure – contact to the customer service center or the nearest service center