摘要:
This Application sets forth techniques for binding and dynamic provisioning of international mobile equipment identifier (IMEI) values with cellular wireless service profiles, such as subscriber identity modules (SIMS) on physical SIM (pSIM) cards and electronic SIMs (eSIMs) on an embedded universal integrated circuit card (eUICC) of the mobile wireless device. When pSIMs and/or eSIMs change on the mobile wireless device, e.g., based on installation, activation, deactivation, de-installation, etc., IMEI binding logic accounts for the changes and maps IMEI values to pSIMs and/or eSIMs as required. IMEI values can be assigned based on a history of bindings between IMEI values and ICCID values of one or more eSIMS on an eUICC. A most recently used or a newly assigned IMEI value can be associated with an eSIM. Whether to assign an identical IMEI value to multiple eSIMs depends on requirements of associated cellular wireless service subscriptions.
摘要:
Methods and apparatus for user authentication and human intent verification of administrative operations for eSIMs of an eUICC included in a mobile device are disclosed. Certain administrative operations, such as import, modification, and/or export, of an eSIM and/or for an eUICCs firmware can require user authentication and/or human intent verification before execution of the administrative operations are performed or completed by the mobile device. A user of the mobile device provides information to link an external user account to an eSIM upon (or subsequent to) installation on the eUICC. User credentials, such as a user name and password, and/or information generated therefrom, can be used to authenticate the user with an external server. In response to successful user authentication, the administrative operations are performed. Human intent verification can also be performed in conjunction with user authentication to prevent malware from interfering with eSIM and/or eUICC functions of the mobile device.
摘要:
Representative embodiments described herein set forth techniques for provisioning bootstrap electronic Subscriber Identity Modules (eSIMs) to mobile devices. According to some embodiments, a mobile device can be configured to issue, to an eSIM selection server, a bootstrap eSIM request that includes (i) metadata associated with the mobile device, and (ii) metadata associated with an electronic Universal Integrated Circuit Card (eUICC) included in the mobile device. In turn, the eSIM selection server selects and binds a particular bootstrap eSIM to the mobile device, and provides information to the mobile device that enables the mobile device to obtain the particular bootstrap eSIM from one or more eSIM servers. When the mobile device obtains the particular bootstrap eSIM, the mobile device can interface with a mobile network operator (MNO) and obtain a complete eSIM that enables the mobile device to access services provided by the MNO.
摘要:
This application sets forth techniques for transfer of a cellular wireless service plan associated with a SIM or an eSIM between non-linked wireless devices. A target wireless device broadcasts an advertisement beacon requesting transfer of a cellular wireless service plan. After successful authentication with a source wireless device, using a manually entered verification code or a QR verification code, the target wireless device selects a cellular wireless service plan to transfer. The source wireless device obtains a transfer token from an MNO entitlement server for transfer of the selected cellular wireless service plan and provides the transfer token to the target wireless device via a secure, short distance Bluetooth connection or, alternatively, embedded in an encrypted QR code. The target wireless device uses the transfer token to obtain a new eSIM associated with transfer of the cellular wireless service plan.
摘要:
This application describes a phased approach to provision eSIM profiles to a wireless device. Credentials are preloaded to an eUICC during manufacture of the eUICC and used subsequently to load eSIM profiles to the eUICC without requiring an active, real-time connection to an MNO provisioning server. Multiple bound profile packages (BPPs) can be pre-generated and encrypted by MNO provisioning servers for an eUICC and transferred to a BPP aggregator server before assembly of the eUICC in a respective wireless device. A local provisioning server in a manufacturing facility mutually authenticates and connects to the BPP aggregator server to download and store one or more of the encrypted BPPs for later installation on the eUICC. The local provisioning server subsequently mutually authenticates and connects to the eUICC to load at least one of the one or more pre-generated, encrypted BPPs to the eUICC during assembly and/or testing of the wireless device.
摘要:
Techniques for flexible electronic subscriber identity module (eSIM) deployment to a wireless device by a network server, including generation of multiple eSIMs using an identical eSIM identifier value, such as an identical integrated circuit card identifier (ICCID) value, and subsequent selection of an eSIM based on capabilities of the wireless device. Multiple eSIMs that correspond to different sets of wireless device capabilities are generated without knowledge of the wireless communication standards that a wireless device supports. The multiple eSIMs include a first eSIM that includes fifth generation (5G) wireless communication protocol information and a second eSIM that excludes 5G wireless communication protocol information. The network server selects an eSIM from the multiple eSIMs based on whether the wireless device is 5G capable. After selection and binding of a profile package that includes the eSIM, the remaining eSIMs that use the identical ICCID value are deleted, for security enforcement against cloning.
摘要:
Methods and apparatus to manage communication sessions to handover between a direct connection at a secondary wireless device and a relayed connection to the secondary wireless device via a primary wireless device. A connection manager of a secondary wireless device can trigger transfer of a communication session based on measurements of performance metrics for the communication session. Upon detection of performance degradation in a local connection or a backhaul connection or both, the connection manager of the secondary wireless device can determine proximity of and/or capabilities for connections of the primary wireless device and instigate transfer of the communication session between different connection types, such as between a direct connection and a relayed connection. The transfer of the communication session can occur without user intervention or in response to input from the user without interrupting or reestablishing the communication session.
摘要:
This Application sets forth techniques for binding and dynamic provisioning of international mobile equipment identifier (IMEI) values with cellular wireless service profiles, such as subscriber identity modules (SIMs) on physical SIM (pSIM) cards and electronic SIMs (eSIMs) on an embedded universal integrated circuit card (eUICC) of the mobile wireless device. When pSIMs and/or eSIMs change on the mobile wireless device, e.g., based on installation, activation, deactivation, de-installation, etc., IMEI binding logic accounts for the changes and maps IMEI values to pSIMs and/or eSIMs as required. IMEI values can be assigned based on a history of bindings between IMEI values and ICCID values of one or more eSIMS on an eUICC. A most recently used or a newly assigned IMEI value can be associated with an eSIM. Whether to assign an identical IMEI value to multiple eSIMs depends on requirements of associated cellular wireless service subscriptions.
摘要:
Techniques for flexible electronic subscriber identity module (eSIM) deployment to a wireless device by a network server, including generation of multiple eSIMs using an identical eSIM identifier value, such as an identical integrated circuit card identifier (ICCID) value, and subsequent selection of an eSIM based on capabilities of the wireless device. Multiple eSIMs that correspond to different sets of wireless device capabilities are generated without knowledge of the wireless communication standards that a wireless device supports. The multiple eSIMs include a first eSIM that includes fifth generation (5G) wireless communication protocol information and a second eSIM that excludes 5G wireless communication protocol information. The network server selects an eSIM from the multiple eSIMs based on whether the wireless device is 5G capable. After selection and binding of a profile package that includes the eSIM, the remaining eSIMs that use the identical ICCID value are deleted, for security enforcement against cloning.
摘要:
This application describes a phased approach to provision eSIM profiles to a wireless device. Credentials are preloaded to an eUICC during manufacture of the eUICC and used subsequently to load eSIM profiles to the eUICC without requiring an active, real-time connection to an MNO provisioning server. Multiple bound profile packages (BPPs) can be pre-generated and encrypted by MNO provisioning servers for an eUICC and transferred to a BPP aggregator server before assembly of the eUICC in a respective wireless device. A local provisioning server in a manufacturing facility mutually authenticates and connects to the BPP aggregator server to download and store one or more of the encrypted BPPs for later installation on the eUICC. The local provisioning server subsequently mutually authenticates and connects to the eUICC to load at least one of the one or more pre-generated, encrypted BPPs to the eUICC during assembly and/or testing of the wireless device.