FI108389B - Hantering av abonnentidentitetsmoduler - Google Patents

Hantering av abonnentidentitetsmoduler Download PDF

Info

Publication number
FI108389B
FI108389B FI990846A FI990846A FI108389B FI 108389 B FI108389 B FI 108389B FI 990846 A FI990846 A FI 990846A FI 990846 A FI990846 A FI 990846A FI 108389 B FI108389 B FI 108389B
Authority
FI
Finland
Prior art keywords
certificate
identity module
subscriber identity
card
verified
Prior art date
Application number
FI990846A
Other languages
English (en)
Finnish (fi)
Other versions
FI990846A0 (sv
FI990846A (sv
Inventor
Jukka Liukkonen
Marko Nordberg
Jarmo Miettinen
Original Assignee
Sonera Smarttrust Oy
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Sonera Smarttrust Oy filed Critical Sonera Smarttrust Oy
Priority to FI990846A priority Critical patent/FI108389B/sv
Publication of FI990846A0 publication Critical patent/FI990846A0/sv
Priority to CN00807981.1A priority patent/CN1351804A/zh
Priority to AU39702/00A priority patent/AU3970200A/en
Priority to EP00918923A priority patent/EP1175799A1/en
Priority to PCT/FI2000/000328 priority patent/WO2000064205A1/en
Publication of FI990846A publication Critical patent/FI990846A/sv
Priority to US09/977,669 priority patent/US20020138729A1/en
Application granted granted Critical
Publication of FI108389B publication Critical patent/FI108389B/sv

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/346Cards serving only as information carrier of service
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/38Payment protocols; Details thereof
    • G06Q20/40Authorisation, e.g. identification of payer or payee, verification of customer or shop credentials; Review and approval of payers, e.g. check credit lines or negative lists
    • G06Q20/409Device specific authentication in transaction processing
    • G06Q20/4097Device specific authentication in transaction processing using mutual authentication between devices and transaction partners
    • G06Q20/40975Device specific authentication in transaction processing using mutual authentication between devices and transaction partners using encryption therefor
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L9/00Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols
    • H04L9/32Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials
    • H04L9/3263Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements
    • H04L9/3265Cryptographic mechanisms or cryptographic arrangements for secret or secure communications; Network security protocols including means for verifying the identity or authority of a user of the system or for message authentication, e.g. authorization, entity authentication, data integrity or data verification, non-repudiation, key authentication or verification of credentials involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements using certificate chains, trees or paths; Hierarchical trust model
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/56Financial cryptography, e.g. electronic payment or e-cash
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L2209/00Additional information or applications relating to cryptographic mechanisms or cryptographic arrangements for secret or secure communication H04L9/00
    • H04L2209/80Wireless
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04MTELEPHONIC COMMUNICATION
    • H04M1/00Substation equipment, e.g. for use by subscribers
    • H04M1/66Substation equipment, e.g. for use by subscribers with means for preventing unauthorised or fraudulent calling
    • H04M1/667Preventing unauthorised calls from a telephone set
    • H04M1/67Preventing unauthorised calls from a telephone set by electronic means

Landscapes

  • Engineering & Computer Science (AREA)
  • Business, Economics & Management (AREA)
  • Physics & Mathematics (AREA)
  • Accounting & Taxation (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • Theoretical Computer Science (AREA)
  • Computer Security & Cryptography (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Signal Processing (AREA)
  • Finance (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Management, Administration, Business Operations System, And Electronic Commerce (AREA)

Claims (11)

1. Förfarande för kontrollerande av certifi-kat, sora sparats pä en abonnentidentitetsmodul, vilken abonnentidentitetsmodul omfattar: 5. en databehandlingsanordning (1), - en minnesanordning (2), vilken är förenad med nämnda databehandlingsanordning (1), - en kortcertifierare (CA) sparad pä minnes-anordningen, 10. en tillämpning (APP), vilken använder de pä abonnentidentitetsmodulen sparade certifikaten och - en dataöverföringsanordning (3) , vilken är förenad med nämnda databehandlingsanordning (1) och i vilken anordnats ett anslutningsgränssnitt (RP) för 15 överförande av data mellan en yttre anordning och abonnentidentitetsmodulen, vilket förfarande omfattar följande skeden: certifikatet emottas tili abonnentidentitetsmodulen, och 20. frän nämnda certifikat sparas data pä nämn da minnesanordning, kännetecknat därav, att förfarandet ytterligare omfattar följande skeden: - nämnda certifikats riktighet verifieras med nämnda kortcertifierare innan certifikatet sparas, och 25. frän nämnda certifikat, vars riktighet ve- rifierats, filtreras certifikationskedjan som ingär i ί ί : detta. ;*· ϊ
2. Förfarande enligt patentkrav 1, känne tecknat därav, att nämnda certifikat bestyrks 30 med kortcertif ieraren innan det används.
3. Förfarande enligt patentkrav 1, k ä n -*1* netecknat därav, att frän nämnda certifikat ! sparas en däri ingäende offentlig nyckel och en där- till hörande identitet. 35
4. Förfarande enligt patentkrav 1, kän netecknat därav, att nämnda certifikat förkas- 108389 tas ifall det verifieras som opälitligt innan dess sparande.
5. Förfarande enligt patentkrav 1, k ä n -netecknat därav, att nämnda certifikat förkas- 5 tas ifall det verifieras som opälitligt innan dess an-vändande.
6. Förfarande enligt patentkrav 1, k ä n -netecknat därav, att i filtreringsskedet: verifieras varje i nämnda certifikat ingäende 10 signatur, och frän nämnda certifikat filtreras endast de signaturer som verifierats som riktiga.
7. Abonnentidentitetsmodul för kontroll av certifikat, vilken abonnentidentitetsmodul omfattar: 15. en databehandlingsanordning (1), - en minnesanordning (2) , vilken är förenad med nämnda databehandlingsanordning (1) en kortcertifierare (CA) som sparats pa minnesanordningen 20. en tillämpning (APP), vilken använder cer- tifikaten, - en dataöverföringsanordning (3) , vilken är förenad med nämnda databehandlingsanordning (1) och till vilken anordnats ett anslutningsgränssnitt (RP) 25 för överförande av data mellan en yttre anordning och . . abonnentidentitetsmodulen, vilket förfarande omfattar följande skeden: - medel (4) för mottagande av certifikatet ;v*. tili abonnentidentitetsmodulen, och 30. medel (5) för sparande av det i nämnda cer- · tifikat ingäende data pä .den nämnda minnesanordningen, kännetecknad därav, att abonnentidentitets-modulen ytterligare innehäller: - medel (6) för verifierande av riktigheten 35 av nämnda certifikat med den nämnda kortcertifieraren innan certifikatets sparande, och >08389 - medel (8) för att filtrera certifikatkedjan fran certifikatet, vars riktighet verifierats.
8. Abonnentidentitetsmodul enligt patentkrav 7, kännetecknad därav, att abonnentidenti- 5 tetsmodulen ytterligare innehäller medel (8) för veri-fierande av nämnda certifikat med kortcertifieraren innan dess användande.
9. Abonnentidentitetsmodul enligt patentkrav 7, kännetecknad därav, att abonnentidenti- 10 tetsmodulen ytterligare omfattar medel (9) för förkas- tande av nämnda certifikat, ifall de verifieras som opalitligt innan sparandet.
10. Abonnentidentitetsmodul enligt patentkrav 7, kännetecknad därav, att abonnentidenti- 15 tetsmodulen ytterligare omfattar medel (10) för för- kastande av nämnda certifikat, ifall det verifieras som opalitligt innan användandet.
11. Abonnentidentitetsmodul enligt patentkrav 7, kännetecknad därav, att abonnentidenti- 20 tetsmodulen ytterligare omfattar medel (11) för veri- fierande av riktigheten av signaturen som ingär i vart och ett nämnt certifikat innan filtreringen. • · • · · • « • · · • t * • « · • » « 4 · · • · · ♦ · · • · ·«·
FI990846A 1999-04-15 1999-04-15 Hantering av abonnentidentitetsmoduler FI108389B (sv)

Priority Applications (6)

Application Number Priority Date Filing Date Title
FI990846A FI108389B (sv) 1999-04-15 1999-04-15 Hantering av abonnentidentitetsmoduler
CN00807981.1A CN1351804A (zh) 1999-04-15 2000-04-17 标识模块的管理
AU39702/00A AU3970200A (en) 1999-04-15 2000-04-17 Management of an identity module
EP00918923A EP1175799A1 (en) 1999-04-15 2000-04-17 Management of an identity module
PCT/FI2000/000328 WO2000064205A1 (en) 1999-04-15 2000-04-17 Management of an identity module
US09/977,669 US20020138729A1 (en) 1999-04-15 2001-10-15 Management of an identity module

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
FI990846 1999-04-15
FI990846A FI108389B (sv) 1999-04-15 1999-04-15 Hantering av abonnentidentitetsmoduler

Publications (3)

Publication Number Publication Date
FI990846A0 FI990846A0 (sv) 1999-04-15
FI990846A FI990846A (sv) 2000-10-16
FI108389B true FI108389B (sv) 2002-01-15

Family

ID=8554437

Family Applications (1)

Application Number Title Priority Date Filing Date
FI990846A FI108389B (sv) 1999-04-15 1999-04-15 Hantering av abonnentidentitetsmoduler

Country Status (6)

Country Link
US (1) US20020138729A1 (sv)
EP (1) EP1175799A1 (sv)
CN (1) CN1351804A (sv)
AU (1) AU3970200A (sv)
FI (1) FI108389B (sv)
WO (1) WO2000064205A1 (sv)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200344072A1 (en) * 2018-06-06 2020-10-29 Tencent Technology (Shenzhen) Company Limited Key management method, apparatus, and system, storage medium, and computer device

Families Citing this family (21)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7373512B1 (en) * 2000-03-27 2008-05-13 Entrust Limited Method and apparatus for providing information security to prevent digital signature forgery
FR2820231B1 (fr) * 2001-01-26 2005-01-21 Gemplus Card Int Carte a circuit(s) integre(s) ou carte a puce(s) integrant une couche de securisation et dispositif de communication cooperant avec une telle carte
GB2373074B (en) * 2001-03-10 2004-10-13 Ibm A method and apparatus for storage of security keys and certificates
JP3880451B2 (ja) * 2002-05-20 2007-02-14 富士通株式会社 Rsvpを用いた移動通信システム
US20060041760A1 (en) * 2002-06-26 2006-02-23 Zezhen Huang Trusted computer activity monitoring and recording system and method
GB0317571D0 (en) * 2003-07-26 2003-08-27 Koninkl Philips Electronics Nv Content identification for broadcast media
US8504849B2 (en) * 2004-12-21 2013-08-06 Sandisk Technologies Inc. Method for versatile content control
US20070168292A1 (en) * 2004-12-21 2007-07-19 Fabrice Jogand-Coulomb Memory system with versatile content control
US8051052B2 (en) * 2004-12-21 2011-11-01 Sandisk Technologies Inc. Method for creating control structure for versatile content control
US8601283B2 (en) 2004-12-21 2013-12-03 Sandisk Technologies Inc. Method for versatile content control with partitioning
US7748031B2 (en) * 2005-07-08 2010-06-29 Sandisk Corporation Mass storage device with automated credentials loading
US8245031B2 (en) * 2006-07-07 2012-08-14 Sandisk Technologies Inc. Content control method using certificate revocation lists
US20100138652A1 (en) * 2006-07-07 2010-06-03 Rotem Sela Content control method using certificate revocation lists
US20080010449A1 (en) * 2006-07-07 2008-01-10 Michael Holtzman Content Control System Using Certificate Chains
US8639939B2 (en) * 2006-07-07 2014-01-28 Sandisk Technologies Inc. Control method using identity objects
US8140843B2 (en) * 2006-07-07 2012-03-20 Sandisk Technologies Inc. Content control method using certificate chains
US8613103B2 (en) * 2006-07-07 2013-12-17 Sandisk Technologies Inc. Content control method using versatile control structure
US8266711B2 (en) * 2006-07-07 2012-09-11 Sandisk Technologies Inc. Method for controlling information supplied from memory device
EP2071898A1 (en) * 2007-12-10 2009-06-17 Telefonaktiebolaget LM Ericsson (publ) Method for alteration of integrity protected data in a device, computer program product and device implementing the method
US9104618B2 (en) * 2008-12-18 2015-08-11 Sandisk Technologies Inc. Managing access to an address range in a storage device
KR101612751B1 (ko) * 2013-04-26 2016-04-15 비자 인터네셔널 서비스 어소시에이션 디지털 인증서의 제공

Family Cites Families (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US5221838A (en) * 1990-12-24 1993-06-22 Motorola, Inc. Electronic wallet
FI107678B (sv) * 1992-11-11 2001-09-14 Sonera Smarttrust Oy Mobiltelefonsystem
US5497422A (en) * 1993-09-30 1996-03-05 Apple Computer, Inc. Message protection mechanism and graphical user interface therefor
US5712914A (en) * 1995-09-29 1998-01-27 Intel Corporation Digital certificates containing multimedia data extensions
US5835595A (en) * 1996-09-04 1998-11-10 At&T Corp Method and apparatus for crytographically protecting data
EP0869637A3 (en) * 1997-04-02 2000-12-06 Arcanvs Digital certification system
DE10008973B4 (de) * 2000-02-25 2004-10-07 Bayerische Motoren Werke Ag Autorisierungsverfahren mit Zertifikat

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20200344072A1 (en) * 2018-06-06 2020-10-29 Tencent Technology (Shenzhen) Company Limited Key management method, apparatus, and system, storage medium, and computer device
US11516020B2 (en) * 2018-06-06 2022-11-29 Tencent Technology (Shenzhen) Company Limited Key management method, apparatus, and system, storage medium, and computer device

Also Published As

Publication number Publication date
AU3970200A (en) 2000-11-02
CN1351804A (zh) 2002-05-29
US20020138729A1 (en) 2002-09-26
EP1175799A1 (en) 2002-01-30
WO2000064205A1 (en) 2000-10-26
FI990846A0 (sv) 1999-04-15
FI990846A (sv) 2000-10-16

Similar Documents

Publication Publication Date Title
FI108389B (sv) Hantering av abonnentidentitetsmoduler
US7362869B2 (en) Method of distributing a public key
US7925878B2 (en) System and method for creating a trusted network capable of facilitating secure open network transactions using batch credentials
KR100380508B1 (ko) 통신 접속시 참여자의 신뢰도 레벨 확립 방법
US20090182676A1 (en) Remote Electronic Payment System
CN101300808A (zh) 安全认证的方法和设置
US20040260928A1 (en) Wim manufacturer certificate
US20120101951A1 (en) Method and System for Secure Financial Transactions Using Mobile Communications Devices
CN101216923A (zh) 提高网上银行交易数据安全性的***及方法
CN101770619A (zh) 一种用于网上支付的多因子认证方法和认证***
CA2355928C (en) Method and system for implementing a digital signature
KR20040075321A (ko) Pki 기능성을 등록하고 인에이블링하는 방법
PT2195769E (pt) Método com base num cartão sim que realiza serviços com características de alta segurança
US7366911B2 (en) Methods and apparatus for computationally-efficient generation of secure digital signatures
Rosati et al. Elliptic curve certificates and signatures for nfc signature records
EP1437024B1 (en) Method and arrangement in a communications network
EP1323259B1 (en) Secured identity chain
Cobourne et al. Using the smart card web server in secure branchless banking
Khu-Smith et al. Enhancing e-commerce security using GSM authentication
Me Security overview for m-payed virtual ticketing
Munjal et al. Secure and cost effective transaction model for financial services
CN117057798A (zh) 一种量子安全的数字货币钱包开通方法及其装置
Assora et al. Using WPKI for security of web transaction
Zhang et al. Secure service-oriented architecture for mobile transactions

Legal Events

Date Code Title Description
MM Patent lapsed