Procedure for the preparation and performing of a post issuance process on a secure element
Abstract
A method for enabling post issuance operation on a secure element connectable to a communication device is disclosed. The method allows an SE controlling party to perform remotely operations such as creation of new security domains for an external party, loading, and installation of applications of an external party and management functions including personalization and activation of applications loaded on the SE for an external party. The method includes the steps of: collecting data stored on the SE suitable for identification of the SE and data for contacting the SE controlling party; creating an initial data packet from the collected data, sending the data packet to a party which can be the external party, an agent of the external party, the SE controlling party, an agent of the SE controlling party. A communication device and a software application for implementing the method are also disclosed.
Claims
exact text as granted — not AI-modified1 . A method for enabling a post issuance operation on a secure element (SE) controlled by a SE controlling party, which element is connectable to a communication device, comprising the steps of:
collecting from the SE data suitable for the identification of the SE and data for contacting the SE controlling party; creating an initial data packet from the collected data; and sending the data packet to a party selected from a group consisting of an external party, an agent of the external party, and the SE controlling party.
2 . The method according to claim 1 , wherein the external party's agent is a trusted service manager.
3 . The method according to claim 1 , wherein the SE controlling party includes SE issuer and SE issuer's agent, and the SE issuer's agent is a trusted service manager.
4 . The method according to claim 1 , wherein the step of creating the initial data packet also includes the collection of data stored on the communication device.
5 . The method according to claim 1 , wherein the data for contacting the SE controlling party comprises a pointer to a remote database containing direct contact details of the SE controlling party.
6 . The method according to claim 1 , wherein the initial data packet further comprises information identifying user of the communication device and the external party.
7 . The method according to claim 1 , wherein the initial data packet includes character series identifying the communication device.
8 . The method according to claim 1 , wherein the initial data packet includes CPLC data for identification of the SE and an associated SE controlling party.
9 . The method according to claim 1 , wherein the contact data of the SE controlling party is stored in an information network identifier located in the secure element.
10 . The method according to claim 1 , wherein sending the data packet is performed over an information forwarding network.
11 . The method according to claim 1 , wherein sending the data packet is performed using a proximity interface supporting direct data communication between the communication device and an SE issuer.
12 . A method for preparing post issuance operation on a secure element (SE) controlled by a SE controlling party to a communication device, which method comprises the steps of:
receiving an initial data packet from the communication device to which the SE is connected, the data packet comprising data suitable for identification of the SE and data for contacting the SE controlling party, processing the initial data packet received from the communication device, including determining from the initial data packet contact information of the SE controlling party, creating from the initial data packet a position request data packet comprising data suitable for the identification of the SE and comprising the requested information, and sending the position request data packet to an address defined by the contact data of the SE controlling party.
13 . The method according to claim 12 , wherein the data for contacting the SE controlling party comprises a pointer to a remote database containing direct contact address of the SE controlling party.
14 . The method according to claim 12 , wherein the data for contacting the SE controlling party comprises contact information of an agent of an SE issuer.
15 . The method according to claim 12 , further including in the position request data packet data relating to size of a security domain to be created and data suitable for the identification of the external party and its application.
16 . The method according to claim 12 , wherein the position request data packet is sent over an information forwarding network.
17 . The method according to claim 1 , wherein a requested operation on the secure element is performed using an interface supporting direct data communication between the communication device and the SE controlling party.
18 . A communication device for reading a secure element (SE), programmed to:
collect data stored on the SE comprising data suitable for identification of the SE and data for contacting a party controlling the SE, create a data packet comprising at least data suitable for identification of the SE and data for contacting the party controlling the SE, and send the data packet to an addressee chosen from a group consisting of an external party, an agent of the external party and the party controlling the SE.
19 . The communication device according to claim 18 , wherein the agent of the external party is a trusted service manager and the party controlling the SE includes an SE issuer and a trusted service manager of the SE issuer.
20 . The communication device according to claim 18 , wherein the communication device is selected from a group consisting of mobile handsets, personal computers, laptops, netbooks, notepads, handheld computers and stationary service terminals.
21 . A software application configured for installation on a communication device connectable to a secure element (SE) and adapted for:
collecting from the SE data suitable for identification of the SE and data for contacting an SE controlling party, creating a data packet comprising at least data suitable for identification of the SE and data for contacting the SE controlling party, and sending the data packet to an addressee chosen from the group consisting of an external party, an agent of the external party, and the SE controlling party.Join the waitlist — get patent alerts
Track US2010275269A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.