Policy based techniques for managing access control

    公开(公告)号:US09626520B2

    公开(公告)日:2017-04-18

    申请号:US14815391

    申请日:2015-07-31

    Applicant: Apple Inc.

    CPC classification number: G06F21/604 H04L63/102 H04L63/105 H04L63/20 H04W12/08

    Abstract: A policy-based framework is described. This policy-based framework may be used to specify the privileges for logical entities to perform operations associated with an access-control element (such as an electronic Subscriber Identity Module) located within a secure element in an electronic device. Note that different logical entities may have different privileges for different operations associated with the same or different access-control elements. Moreover, the policy-based framework may specify types of credentials that are used by the logical entities during authentication, so that different types of credentials may be used for different operations and/or by different logical entities. Furthermore, the policy-based framework may specify the security protocols and security levels that are used by the logical entities during authentication, so that different security protocols and security levels may be used for different operations and/or by different logical entities.

    Electronic subscriber identity module selection
    87.
    发明授权
    Electronic subscriber identity module selection 有权
    电子用户识别模块选择

    公开(公告)号:US09451445B2

    公开(公告)日:2016-09-20

    申请号:US14502448

    申请日:2014-09-30

    Applicant: Apple Inc.

    CPC classification number: H04W8/183 H04W8/20

    Abstract: Embodiments are described for identifying and accessing an electronic subscriber identity module (eSIM) and associated content of the eSIM in a multiple eSIM configuration. An embedded Universal Integrated Circuit Card (eUICC) can include multiple eSIMs, where each eSIM can include its own file structures and applications. Some embodiments include a processor of a mobile device transmitting a special command to the eUICC, including an identification that uniquely identifies an eSIM in the eUICC. After selecting the eSIM, the processor can access file structures and applications of the selected eSIM. The processor can then use existing commands to access content in the selected eSIM. The special command can direct the eUICC to activate or deactivate content associated with the selected eSIM. Other embodiments include an eUICC platform operating system interacting with eSIMs associated with logical channels to facilitate identification and access to file structures and applications of the eSIMs.

    Abstract translation: 描述了用于在多个eSIM配置中识别和访问电子订户身份模块(eSIM)和eSIM的相关内容的实施例。 嵌入式通用集成电路卡(eUICC)可以包括多个eSIM,每个eSIM可以包括其自己的文件结构和应用程序。 一些实施例包括向eUICC发送特殊命令的移动设备的处理器,包括在eUICC中唯一地标识eSIM的标识。 选择eSIM后,处理器可以访问所选eSIM的文件结构和应用程序。 然后,处理器可以使用现有命令访问所选eSIM中的内容。 特殊命令可以指示eUICC激活或停用与所选eSIM相关联的内容。 其他实施例包括与与逻辑信道相关联的eSIM交互的eUICC平台操作系统,以便于识别和访问eSIM的文件结构和应用。

    METHOD AND APPARATUS FOR SELECTING BOOTSTRAP ESIMs
    88.
    发明申请
    METHOD AND APPARATUS FOR SELECTING BOOTSTRAP ESIMs 有权
    选择BOOTSTRAP ESIM的方法和设备

    公开(公告)号:US20160246611A1

    公开(公告)日:2016-08-25

    申请号:US14872067

    申请日:2015-09-30

    Applicant: Apple Inc.

    Abstract: Disclosed herein is a technique for selecting a bootstrap electronic Subscriber Identity Module (eSIM) from among multiple bootstrap eSIMs stored in a secure element of a mobile device. Specifically, the technique involves selecting the bootstrap eSIM based on location information associated with the mobile device. When the mobile device is located at a first location (for example, a first country) a first bootstrap eSIM associated with a Mobile Network Operator (MNO) local to the first country is selected. Similarly, when the mobile device is located at a second location (for example, a second country), a second bootstrap eSIM associated with an MNO local to the second country is selected.

    Abstract translation: 这里公开了一种用于从存储在移动设备的安全元件中的多个自举eSIM中选择自举电子订户身份模块(eSIM)的技术。 具体地,该技术涉及基于与移动设备相关联的位置信息来选择引导eSIM。 当移动设备位于第一位置(例如,第一国家)时,选择与第一国家本地的移动网络运营商(MNO)相关联的第一自举eSIM。 类似地,当移动设备位于第二位置(例如,第二国家)时,选择与第二国家本地的MNO相关联的第二引导eSIM。

    APPARATUS AND METHODS FOR NEAR-FIELD COMMUNICATION BASED DEVICE CONFIGURATION AND MANAGMENT
    89.
    发明申请
    APPARATUS AND METHODS FOR NEAR-FIELD COMMUNICATION BASED DEVICE CONFIGURATION AND MANAGMENT 有权
    用于基于近场通信的设备配置和管理的装置和方法

    公开(公告)号:US20150017910A1

    公开(公告)日:2015-01-15

    申请号:US13941230

    申请日:2013-07-12

    Applicant: Apple Inc.

    CPC classification number: H04B5/0031 H04B5/0056

    Abstract: Methods and apparatus for activating a mobile device for use with a service provider. In one embodiment, a powered-off mobile device having an inserted Subscriber Identity Module (SIM) may be programmed with configuration data while “in box” (e.g., at a point of sale (POS), in a warehouse, etc.) using a near field communication (NFC) data interface. In another exemplary embodiment, information that is stored to a NFC accessible memory can be accessed when the device is non-functional e.g., to retrieve backup data.

    Abstract translation: 用于激活与服务提供商一起使用的移动设备的方法和装置。 在一个实施例中,具有插入的订户身份模块(SIM)的关闭电力的移动设备可以在配置数据的同时使用配置数据进行编程(例如,在销售点(POS),仓库等)中使用 近场通信(NFC)数据接口。 在另一个示例性实施例中,当设备不起作用时,可以访问存储到NFC可访问存储器的信息,以检索备份数据。

Patent Agency Ranking