Virtual access module distribution apparatus and methods
    1.
    发明授权
    Virtual access module distribution apparatus and methods 有权
    虚拟接入模块配送设备及方法

    公开(公告)号:US08738729B2

    公开(公告)日:2014-05-27

    申请号:US13183023

    申请日:2011-07-14

    IPC分类号: G06F15/16

    摘要: Apparatus and methods for distributing electronic access client modules for use with electronic devices. In one embodiment, the access client modules are virtual subscriber identity modules (VSIMs) that can be downloaded from online services for use with cellular-equipped devices such as smartphones. The online services may include a point of sale (POS) system that sells electronic devices to users. A broker may be used to facilitate the selection of a virtual subscriber identity module. A provisioning service may also be used to provision the selected VSIM.

    摘要翻译: 用于分发用于电子设备的电子访问客户端模块的装置和方法。 在一个实施例中,接入客户端模块是虚拟订户身份模块(VSIM),其可以从在线服务下载,以便与配备蜂窝的设备如智能电话一起使用。 在线服务可以包括向用户销售电子设备的销售点(POS)系统。 可以使用代理来促进对虚拟订户身份模块的选择。 还可以使用供应服务来配置所选择的VSIM。

    VIRTUAL ACCESS MODULE DISTRIBUTION APPARATUS AND METHODS
    4.
    发明申请
    VIRTUAL ACCESS MODULE DISTRIBUTION APPARATUS AND METHODS 有权
    虚拟访问模块分发设备和方法

    公开(公告)号:US20120047227A1

    公开(公告)日:2012-02-23

    申请号:US13183023

    申请日:2011-07-14

    IPC分类号: G06F13/00

    摘要: Apparatus and methods for distributing electronic access client modules for use with electronic devices. In one embodiment, the access client modules are virtual subscriber identity modules (VSIMs) that can be downloaded from online services for use with cellular-equipped devices such as smartphones. The online services may include a point of sale (POS) system that sells electronic devices to users. A broker may be used to facilitate the selection of a virtual subscriber identity module. A provisioning service may also be used to provision the selected VSIM.

    摘要翻译: 用于分发用于电子设备的电子访问客户端模块的装置和方法。 在一个实施例中,接入客户端模块是虚拟用户识别模块(VSIM),其可以从在线服务下载,以便与配备蜂窝的设备如智能电话一起使用。 在线服务可以包括向用户销售电子设备的销售点(POS)系统。 可以使用代理来促进对虚拟订户身份模块的选择。 还可以使用供应服务来配置所选择的VSIM。

    Simulacrum of physical security device and methods
    5.
    发明授权
    Simulacrum of physical security device and methods 有权
    物理安全设备和方法的仿真

    公开(公告)号:US09100393B2

    公开(公告)日:2015-08-04

    申请号:US13080533

    申请日:2011-04-05

    摘要: A simulacrum security device and methods. In one embodiment, a simulacrum or likeness of a physical security device is provided for use in conjunction with a software emulation of the security device. In one implementation, a “faux SIM card” is provided that does not contain Subscriber Identification Module (SIM) information itself, but instead enables a user to download Electronic SIM (eSIM) information (e.g., from a network or eSIM server) which is loaded into a software emulation of a Universal Integrated Circuit Card (UICC) device. The faux card is printed with an activation code, scan pattern, or other activation or access information. The subscriber purchases the faux card, and enters the activation code into a device; the entered activation code enables the device to log onto a network, and download the appropriate eSIM data. Delivery of eSIM information as enabled by the faux card addresses deficiencies in existing SIM distribution schemes, provides users with an enhanced perception of security, and further addresses various legal requirements.

    摘要翻译: 模拟安全设备和方法。 在一个实施例中,提供物理安全设备的模拟或相似性以与安全设备的软件仿真结合使用。 在一个实现中,提供了不包含用户识别模块(SIM)信息本身的“人造SIM卡”,而是使用户能够下载电子SIM(eSIM)信息(例如,从网络或eSIM服务器) 加载到通用集成电路卡(UICC)设备的软件仿真中。 虚拟卡被打印有激活码,扫描模式或其他激活或访问信息。 用户购买人造卡,并将激活码输入设备; 输入的激活码使设备登录到网络上,并下载相应的eSIM数据。 通过人造卡实现的eSIM信息交付解决了现有SIM分配方案中的缺陷,为用户提供了增强的安全认知,并进一步解决了各种法律要求。

    Methods and apparatus for storage and execution of access control clients
    6.
    发明授权
    Methods and apparatus for storage and execution of access control clients 有权
    用于存储和执行访问控制客户端的方法和设备

    公开(公告)号:US08924715B2

    公开(公告)日:2014-12-30

    申请号:US13080521

    申请日:2011-04-05

    摘要: Disclosed herein is a technique for securely provisioning access control entities (e.g., electronic Subscriber Identity Module (eSIM) components) to a user equipment (UE) device. In one embodiment, a UE device is assigned a unique key and an endorsement certificate that can be used to provide updates or new eSIMs to the UE device. The UE device can trust eSIM material delivered by an unknown third-party eSIM vendor, based on a secure certificate transmission with the unique key. In another aspect, an operating system (OS) is partitioned into various sandboxes. During operation, the UE device can activate and execute the OS in the sandbox corresponding to a current wireless network. Personalization packages received while connected to the network only apply to that sandbox. Similarly, when loading an eSIM, the OS need only load the list of software necessary for the current run-time environment. Unused software can be subsequently activated.

    摘要翻译: 本文公开了一种用于将访问控制实体(例如,电子订户身份模块(eSIM)组件)安全地提供给用户设备(UE)设备的技术。 在一个实施例中,向UE设备分配唯一密钥和可用于向UE设备提供更新或新eSIM的签注证书。 基于使用唯一密钥的安全证书传输,UE设备可以信任由未知的第三方eSIM供应商提供的eSIM资料。 在另一方面,操作系统(OS)被划分成各种沙盒。 在操作期间,UE设备可以在对应于当前无线网络的沙箱中激活并执行OS。 连接到网络时收到的个性化包仅适用于该沙盒。 同样,当加载eSIM时,操作系统只需加载当前运行时环境所需的软件列表。 未使用的软件可以随后激活。

    SIMULACRUM OF PHYSICAL SECURITY DEVICE AND METHODS
    7.
    发明申请
    SIMULACRUM OF PHYSICAL SECURITY DEVICE AND METHODS 有权
    物理安全装置和方法的模拟

    公开(公告)号:US20120117635A1

    公开(公告)日:2012-05-10

    申请号:US13080533

    申请日:2011-04-05

    IPC分类号: H04L9/32

    摘要: A simulacrum security device and methods. In one embodiment, a simulacrum or likeness of a physical security device is provided for use in conjunction with a software emulation of the security device. In one implementation, a “faux SIM card” is provided that does not contain Subscriber Identification Module (SIM) information itself, but instead enables a user to download Electronic SIM (eSIM) information (e.g., from a network or eSIM server) which is loaded into a software emulation of a Universal Integrated Circuit Card (UICC) device. The faux card is printed with an activation code, scan pattern, or other activation or access information. The subscriber purchases the faux card, and enters the activation code into a device; the entered activation code enables the device to log onto a network, and download the appropriate eSIM data. Delivery of eSIM information as enabled by the faux card addresses deficiencies in existing SIM distribution schemes, provides users with an enhanced perception of security, and further addresses various legal requirements.

    摘要翻译: 模拟安全设备和方法。 在一个实施例中,提供物理安全设备的模拟或相似性以与安全设备的软件仿真结合使用。 在一个实现中,提供了不包含用户识别模块(SIM)信息本身的“人造SIM卡”,而是使用户能够下载电子SIM(eSIM)信息(例如,从网络或eSIM服务器) 加载到通用集成电路卡(UICC)设备的软件仿真中。 虚拟卡被打印有激活码,扫描模式或其他激活或访问信息。 用户购买人造卡,并将激活码输入设备; 输入的激活码使设备登录到网络上,并下载相应的eSIM数据。 通过人造卡实现的eSIM信息交付解决了现有SIM分配方案中的缺陷,为用户提供了增强的安全认知,并进一步解决了各种法律要求。

    ACCESS DATA PROVISIONING APPARATUS AND METHODS
    8.
    发明申请
    ACCESS DATA PROVISIONING APPARATUS AND METHODS 有权
    访问数据提供设备和方法

    公开(公告)号:US20120108295A1

    公开(公告)日:2012-05-03

    申请号:US13078811

    申请日:2011-04-01

    IPC分类号: H04W88/02 G06F17/00

    摘要: Methods and apparatus for activating a purchased or previously deployed device by a subscriber. In one embodiment, activation includes authenticating the device to a service provider or carrier, and providing the device with data necessary for enabling the service to the device. In one variant, a user device is activated at a retail store, with the assistance of a carrier representative. In another variant, user equipment is activated via a communications network without the assistance of a representative. In yet another variant, the user equipment is activated via the Internet without the assistance of a representative. The provision of access data includes pre-assigning eSIM from a population of unassigned eSIMs to certain devices for various carrier networks. Alternatively, the eSIM may be assigned on an as-needed basis. Unassigned and/or unused eSIMs can be released (or sold back to the vendor) and/or reused. Solutions for eSIM backup and restoration are also described.

    摘要翻译: 用户激活购买或预先部署的设备的方法和装置。 在一个实施例中,激活包括将设备认证给服务提供商或运营商,以及向设备提供启用服务到设备所需的数据。 在一个变型中,在运营商代表的协助下,在零售商店激活用户设备。 在另一个变型中,用户设备通过通信网络被激活,而无需代表的帮助。 在又一变型中,用户设备在没有代表的帮助的情况下通过因特网被激活。 提供访问数据包括从未分配的eSIM群体向各种运营商网络的某些设备预先分配eSIM。 或者,可以根据需要分配eSIM。 未分配的和/或未使用的eSIM可以被释放(或销售给供应商)和/或重复使用。 还描述了eSIM备份和恢复的解决方案。

    MANAGEMENT SYSTEMS FOR MULTIPLE ACCESS CONTROL ENTITIES
    9.
    发明申请
    MANAGEMENT SYSTEMS FOR MULTIPLE ACCESS CONTROL ENTITIES 有权
    多个访问控制实体的管理系统

    公开(公告)号:US20120108204A1

    公开(公告)日:2012-05-03

    申请号:US13079614

    申请日:2011-04-04

    IPC分类号: H04W12/08

    CPC分类号: H04W8/205

    摘要: Methods and apparatus for managing multiple user access control entities or clients. For example, in one embodiment, a “wallet” of electronic subscriber identity modules (eSIMs) may be stored and used at a user device and/or distributed to other devices for use thereon. In another embodiment, a networked server may store and distribute eSIM to a plurality of user devices in communication therewith. A database of available eSIM is maintained at the wallet entity and/or at the network which enables request for a particular eSIM to be processed and various rules for the distribution thereof to be implemented. Security precautions are implemented to protect both user and network carrier specific data as the data is transmitted between networked entities. Solutions for eSIM backup and restoration are also described.

    摘要翻译: 用于管理多个用户访问控制实体或客户端的方法和装置。 例如,在一个实施例中,可以在用户设备处存储和使用电子用户识别模块(eSIM)的“钱包”和/或分发给其他设备以在其上使用。 在另一个实施例中,网络服务器可以将eSIM存储和分发到与其通信的多个用户设备。 可以在电子钱包实体和/或网络上维护可用eSIM的数据库,以使得能够处理特定eSIM的请求并实现其分发的各种规则。 实施安全预防措施以在网络实体之间传输数据时保护用户和网络运营商的特定数据。 还描述了eSIM备份和恢复的解决方案。

    Management systems for multiple access control entities

    公开(公告)号:US08983432B2

    公开(公告)日:2015-03-17

    申请号:US13079614

    申请日:2011-04-04

    IPC分类号: H04M1/66 H04W8/20

    摘要: Methods and apparatus for managing multiple user access control entities or clients. For example, in one embodiment, a “wallet” of electronic subscriber identity modules (eSIMs) may be stored and used at a user device and/or distributed to other devices for use thereon. In another embodiment, a networked server may store and distribute eSIM to a plurality of user devices in communication therewith. A database of available eSIM is maintained at the wallet entity and/or at the network which enables request for a particular eSIM to be processed and various rules for the distribution thereof to be implemented. Security precautions are implemented to protect both user and network carrier specific data as the data is transmitted between networked entities. Solutions for eSIM backup and restoration are also described.