Profile State Management for Secure Profile Export to a Target Device

    公开(公告)号:US20250088841A1

    公开(公告)日:2025-03-13

    申请号:US18830026

    申请日:2024-09-10

    Applicant: Apple Inc.

    Abstract: An apparatus configured to process, based on signaling received from a source device with which a target device is engaging in an embedded subscriber identity module (eSIM) transfer process to transfer an eSIM profile to the target device, a first message comprising a source embedded identity document (EID) of the source device, generate, for transmission to the source device, a second message comprising a target EID of the target device and process, based on signaling received from the source device, a third message comprising the eSIM profile and an identification of a first state that the eSIM profile is in on the source device, wherein the eSIM profile includes an Integrated Circuit Card Identification Number (ICCID).

    OFF-LINE PROFILE PROVISIONING FOR WIRELESS DEVICES

    公开(公告)号:US20230020828A1

    公开(公告)日:2023-01-19

    申请号:US17935081

    申请日:2022-09-23

    Applicant: Apple Inc.

    Abstract: This application describes a phased approach to provision eSIM profiles to a wireless device. Credentials are preloaded to an eUICC during manufacture of the eUICC and used subsequently to load eSIM profiles to the eUICC without requiring an active, real-time connection to an MNO provisioning server. Multiple bound profile packages (BPPs) can be pre-generated and encrypted by MNO provisioning servers for an eUICC and transferred to a BPP aggregator server before assembly of the eUICC in a respective wireless device. A local provisioning server in a manufacturing facility mutually authenticates and connects to the BPP aggregator server to download and store one or more of the encrypted BPPs for later installation on the eUICC. The local provisioning server subsequently mutually authenticates and connects to the eUICC to load at least one of the one or more pre-generated, encrypted BPPs to the eUICC during assembly and/or testing of the wireless device.

    LOGICAL CHANNEL MANAGEMENT FOR MULTIPLE eSIM PROFILES

    公开(公告)号:US20220329372A1

    公开(公告)日:2022-10-13

    申请号:US17658367

    申请日:2022-04-07

    Applicant: Apple Inc.

    Abstract: Techniques for managing logical channel communication for multiple electronic subscriber identity module (eSIM) profiles installed on an embedded universal integrated circuit card (eUICC), including mapping of logical channel identifier values between different logical channel labeling schemes are described herein. In a first scheme, logical channels are identified using logical channel values alone. In a second scheme, logical channels are identified using a combination of eSIM port value and channel values. An interpreter in the eUICC and/or in processing circuitry external to the eUICC can map between the logical channel labeling schemes to allow internal state machines in the eUICC and/or the processing circuitry to use the first scheme for identifying logical channels.

    MOBILE DEVICE AUTHENTICATION WITHOUT ELECTRONIC SUBSCRIBER IDENTITY MODULE (ESIM) CREDENTIALS

    公开(公告)号:US20220295276A1

    公开(公告)日:2022-09-15

    申请号:US17634950

    申请日:2019-08-18

    Applicant: Apple Inc.

    Abstract: This application sets forth techniques for authenticating a mobile device with a cellular wireless network without electronic Subscriber Identity Module (eSIM) credentials by using an Extensible Authentication Protocol Transport Layer Security (EAP-TLS) procedure. The mobile device authenticates with an Authentication Server Function (AUSF) of the cellular wireless network using an embedded Universal Integrated Circuit Card (eUICC) certificate. Processing circuitry of the mobile wireless device external to the eUICC implements the EAP-TLS procedure and authenticates validity of the AUSF. In some embodiments, the eUICC provides key generation and storage for a session key for communication between the mobile device and the cellular wireless network. In some embodiments, a third-party managed Unified Data Management (UDM) broker authenticates the mobile device based on knowledge of the eUICC certificate and provides a session key to the cellular wireless network for subsequent communication with the mobile device, upon successful authentication of the mobile device.

    Profile State Management for Secure Profile Export from a Source Device

    公开(公告)号:US20250088840A1

    公开(公告)日:2025-03-13

    申请号:US18830065

    申请日:2024-09-10

    Applicant: Apple Inc.

    Abstract: An apparatus configured to process, based on signaling received from a target device with which a source device is engaging in an embedded subscriber identity module (eSIM) transfer process to transfer an eSIM profile to the target device, a first message comprising a target embedded identity document (EID) of the target device, generate, for transmission to the target device, a second message comprising a source EID of the source device and prepare, for transmission to the target device, the eSIM profile, a third message comprising the eSIM profile and an indication of a first state of the eSIM profile on the source device, wherein the eSIM profile includes an Integrated Circuit Card Identification Number (ICCID).

    Source Device Cross Platform eSIM Profile Transfer Using a Secure Tunnel

    公开(公告)号:US20250080971A1

    公开(公告)日:2025-03-06

    申请号:US18824563

    申请日:2024-09-04

    Applicant: Apple Inc.

    Abstract: An apparatus configured to engage in an embedded subscriber identity module (eSIM) profile transfer process to transfer an eSIM profile from a source device executing a first operating system (OS) that implements a first protocol stack related to eSIM profile transfers to a target device executing a second OS that implements a second protocol stack related to eSIM profile transfers, wherein the first protocol stack and the second protocol stack are different, process, based on signaling received from an entitlement server, a token for transferring the eSIM profile, generate, for transmission to the target device, a message comprising the token and establish a secure tunnel via a wireless communication connection with the target device.

    OFF-LINE PROFILE PROVISIONING FOR WIRELESS DEVICES

    公开(公告)号:US20250048086A1

    公开(公告)日:2025-02-06

    申请号:US18924311

    申请日:2024-10-23

    Applicant: Apple Inc.

    Abstract: This application describes a phased approach to provision eSIM profiles to a wireless device. Credentials are preloaded to an eUICC during manufacture of the eUICC and used subsequently to load eSIM profiles to the eUICC without requiring an active, real-time connection to an MNO provisioning server. Multiple bound profile packages (BPPs) can be pre-generated and encrypted by MNO provisioning servers for an eUICC and transferred to a BPP aggregator server before assembly of the eUICC in a respective wireless device. A local provisioning server in a manufacturing facility mutually authenticates and connects to the BPP aggregator server to download and store one or more of the encrypted BPPs for later installation on the eUICC. The local provisioning server subsequently mutually authenticates and connects to the eUICC to load at least one of the one or more pre-generated, encrypted BPPs to the eUICC during assembly and/or testing of the wireless device.

    ON-DEVICE SHARED PROVISIONING SIM/eSIM CONTROLLER FOR A WIRELESS DEVICE

    公开(公告)号:US20240276203A1

    公开(公告)日:2024-08-15

    申请号:US18166977

    申请日:2023-02-09

    Applicant: Apple Inc.

    CPC classification number: H04W8/20 H04W48/16 H04W60/00 H04W84/042

    Abstract: This application sets forth techniques for dynamically managing a shared provisioning electronic subscriber identity module (eSIM) for a wireless device. A shared (non-unique) provisioning eSIM is installed in the wireless device to provide limited functionality connectivity to services, such as for device activation and user eSIM provisioning. The shared provisioning eSIM includes records of IMSI values organized into groups of IMSI pools and priorities for selecting IMSI values for configuring the shared provisioning eSIM. An on-device shared provisioning SIM/eSIM controller resident on a cellular baseband processor of the wireless device selects and configures the shared provisioning eSIM with IMSI values based on the priorities and on results from scanning for available public land mobile networks (PLMNs). The shared provisioning eSIM can be re-configured with different IMSI values selected from different IMSI pools until successful registration using the configured provisioning eSIM occurs or a maximum number or retries occurs.

Patent Agency Ranking