VIRTUAL SUBSCRIBER IDENTITY MODULE
    1.
    发明申请
    VIRTUAL SUBSCRIBER IDENTITY MODULE 有权
    虚拟订阅者身份识别模块

    公开(公告)号:US20120246481A1

    公开(公告)日:2012-09-27

    申请号:US13487748

    申请日:2012-06-04

    IPC分类号: H04L9/32

    摘要: A mobile trusted platform (MTP) configured to provide virtual subscriber identify module (vSIM) services is disclosed. In one embodiment, the MTP includes: a device manufacturer-trusted subsystem (TSS-DM) configured to store and provide credentials related to a manufacturer of the MTP; a mobile network operator—trusted subsystem (MNO-TSS) configured to store and provide credentials related to a mobile network operator (MNO); and a device user/owner—trusted subsystem (TSS-DO/TSS-U) configured to store and provide credentials related to user of the MTP. The TSS-MNO includes a vSIM core services unit, configured to store, provide and process credential information relating to the MNO. The TSS-DO/TSS-U includes a vSIM management unit, configured to store, provide and process credential information relating to the user/owner of the MTP. The TSS-DO/TSS-U and the TSS-MNO communicate through a trusted vSIM service.

    摘要翻译: 公开了一种被配置为提供虚拟用户识别模块(vSIM)服务的移动信任平台(MTP)。 在一个实施例中,MTP包括:被配置为存储和提供与MTP的制造商有关的凭证的设备制造商信任子系统(TSS-DM); 被配置为存储和提供与移动网络运营商(MNO)相关的凭证的移动网络运营商信任子系统(MNO-TSS); 以及被配置为存储和提供与MTP的用户相关的凭证的设备用户/所有者信任的子系统(TSS-DO / TSS-U)。 TSS-MNO包括一个vSIM核心服务单元,用于存储,提供和处理与MNO有关的凭证信息。 TSS-DO / TSS-U包括一个vSIM管理单元,用于存储,提供和处理与MTP的用户/所有者有关的凭证信息。 TSS-DO / TSS-U和TSS-MNO通过可信的vSIM服务进行通信。

    Virtual subscriber identity module
    2.
    发明授权
    Virtual subscriber identity module 有权
    虚拟用户识别模块

    公开(公告)号:US08788832B2

    公开(公告)日:2014-07-22

    申请号:US13487748

    申请日:2012-06-04

    IPC分类号: H04L9/32

    摘要: A mobile trusted platform (MTP) configured to provide virtual subscriber identify module (vSIM) services is disclosed. In one embodiment, the MTP includes: a device manufacturer-trusted subsystem (TSS-DM) configured to store and provide credentials related to a manufacturer of the MTP; a mobile network operator-trusted subsystem (MNO-TSS) configured to store and provide credentials related to a mobile network operator (MNO); and a device user/owner-trusted subsystem (TSS-DO/TSS-U) configured to store and provide credentials related to user of the MTP. The TSS-MNO includes a vSIM core services unit, configured to store, provide and process credential information relating to the MNO. The TSS-DO/TSS-U includes a vSIM management unit, configured to store, provide and process credential information relating to the user/owner of the MTP. The TSS-DO/TSS-U and the TSS-MNO communicate through a trusted vSIM service.

    摘要翻译: 公开了一种被配置为提供虚拟用户识别模块(vSIM)服务的移动信任平台(MTP)。 在一个实施例中,MTP包括:被配置为存储和提供与MTP的制造商有关的凭证的设备制造商信任子系统(TSS-DM); 被配置为存储和提供与移动网络运营商(MNO)相关的凭证的移动网络运营商信任子系统(MNO-TSS); 以及被配置为存储和提供与MTP的用户相关的凭证的设备用户/所有者信任的子系统(TSS-DO / TSS-U)。 TSS-MNO包括一个vSIM核心服务单元,用于存储,提供和处理与MNO有关的凭证信息。 TSS-DO / TSS-U包括一个vSIM管理单元,用于存储,提供和处理与MTP的用户/所有者有关的凭证信息。 TSS-DO / TSS-U和TSS-MNO通过可信的vSIM服务进行通信。

    TECHNIQUES FOR SECURE CHANNELIZATION BETWEEN UICC AND A TERMINAL
    4.
    发明申请
    TECHNIQUES FOR SECURE CHANNELIZATION BETWEEN UICC AND A TERMINAL 有权
    UICC和终端之间安全通道的技术

    公开(公告)号:US20090209232A1

    公开(公告)日:2009-08-20

    申请号:US12246064

    申请日:2008-10-06

    IPC分类号: H04M1/66

    摘要: The present invention is related to a wireless communication system. 3G UMTS mobile phone systems rely on a protected smart card called the UMTS integrated circuit card (UICC) that provides UMTS subscriber identity module (USIM) applications as a basis or root of various security measures protecting the communication path between the 3G mobile terminal and the UMTS wireless network (or UTRAN). Disclosed is a method by which the UICC exchanges information with a terminal, such as an Internal Key Center (IKC 1250) and a Bootstrapping Server Function (BSF 1270) enables a procedure where multiple local keys specific to applications and Network Application Functions (NAFs) (Ks_local) are used for authentication and to encrypt and decrypt messages.

    摘要翻译: 本发明涉及无线通信系统。 3G UMTS移动电话系统依赖于被称为UMTS集成电路卡(UICC)的受保护的智能卡,其提供UMTS用户识别模块(USIM)应用,作为保护3G移动终端与3G移动终端之间的通信路径的各种安全措施的基础或根源 UMTS无线网络(或UTRAN)。 本发明公开了一种UICC与诸如内部密钥中心(IKC 1250)和引导服务器功能(BSF 1270)之类的终端交换信息的方法,能够实现特定于应用和网络应用功能(NAF)的多个本地密钥的过程, (Ks_local)用于认证和加密和解密消息。

    Techniques for secure channelization between UICC and a terminal
    5.
    发明授权
    Techniques for secure channelization between UICC and a terminal 有权
    UICC与终端安全通道化技术

    公开(公告)号:US08503376B2

    公开(公告)日:2013-08-06

    申请号:US12246064

    申请日:2008-10-06

    IPC分类号: H04W4/00 H04W74/00

    摘要: The present invention is related to a wireless communication system. 3G UMTS mobile phone systems rely on a protected smart card called the UMTS integrated circuit card (UICC) that provides UMTS subscriber identity module (USIM) applications as a basis or root of various security measures protecting the communication path between the 3G mobile terminal and the UMTS wireless network (or UTRAN). Disclosed is a method by which the UICC exchanges information with a terminal, such as an Internal Key Center (IKC 1250) and a Bootstrapping Server Function (BSF 1270) enables a procedure where multiple local keys specific to applications and Network Application Functions (NAFs) (Ks_local) are used for authentication and to encrypt and decrypt messages.

    摘要翻译: 本发明涉及无线通信系统。 3G UMTS移动电话系统依赖于被称为UMTS集成电路卡(UICC)的受保护的智能卡,其提供UMTS用户识别模块(USIM)应用,作为保护3G移动终端与3G移动终端之间的通信路径的各种安全措施的基础或根源 UMTS无线网络(或UTRAN)。 本发明公开了一种UICC与诸如内部密钥中心(IKC 1250)和引导服务器功能(BSF 1270)之类的终端交换信息的方法,能够实现特定于应用和网络应用功能(NAF)的多个本地密钥的过程, (Ks_local)用于认证和加密和解密消息。

    SYSTEM OF MULTIPLE DOMAINS AND DOMAIN OWNERSHIP
    10.
    发明申请
    SYSTEM OF MULTIPLE DOMAINS AND DOMAIN OWNERSHIP 有权
    多域和域所有权系统

    公开(公告)号:US20110099605A1

    公开(公告)日:2011-04-28

    申请号:US12763827

    申请日:2010-04-20

    IPC分类号: G06F15/173 G06F21/00

    CPC分类号: H04W12/06 H04L63/20 H04W12/04

    摘要: Methods and instrumentalities are disclosed that enable one or more domains on one or more devices to be owned or controlled by one or more different local or remote owners, while providing a level of system-wide management of those domains. Each domain may have a different owner, and each owner may specify policies for operation of its domain and for operation of its domain in relation to the platform on which the domain resides, and other domains. A system-wide domain manager may be resident on one of the domains. The system-wide domain manager may enforce the policies of the domain on which it is resident, and it may coordinate the enforcement of the other domains by their respective policies in relation to the domain in which the system-wide domain manager resides. Additionally, the system-wide domain manager may coordinate interaction among the other domains in accordance with their respective policies.

    摘要翻译: 公开了使一个或多个设备上的一个或多个域由一个或多个不同的本地或远程所有者拥有或控制的方法和手段,同时提供这些域的系统范围管理级别。 每个域可以具有不同的所有者,并且每个所有者可以指定用于其域的操作的策略以及关于域所在的平台以及其他域的其域的操作。 系统范围的域管理员可能驻留在其中一个域上。 全系统域管理员可以强制执行其驻留的域的策略,并且可以通过其相关于与全系统域管理员所在的域相关的策略来协调其他域的强制。 另外,系统范围的域管理器可以根据各自的策略协调其他域之间的交互。