Field revisions for a personal security device

US10042990B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-10042990-B2
Application numberUS-201314386900-A
CountryUS
Kind codeB2
Filing dateMar 26, 2013
Priority dateMar 26, 2012
Publication dateAug 7, 2018
Grant dateAug 7, 2018

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Atomically modifying a personal security device includes presenting the personal security device to a reader/writer coupled to an access module, the access module determining if the personal security device includes a factory security mechanism, and, if the personal security device includes a factory security mechanism, using the reader/writer and the access module to replace the factory security mechanism with another security mechanism. The access module may authenticate the personal security device in connection with replacing the factory security mechanism. Authenticating the personal security device may grant access to a user through a door controlled by the access module. Replacing the factory security mechanism may include replacing an application on the personal security device. An ISO/IEC 7816-13 application management request command may be used to replace the application.

First claim

Opening claim text (preview).

What is claimed is: 1. A method of atomically modifying a personal security device, comprising: presenting the personal security device to a reader/writer coupled to an access module; the access module determining when the personal security device includes a factory security mechanism loaded into the personal security device by the manufacturer thereof; when the personal security device includes the factory security mechanism, the access module determining when the personal security device had been previously presented to the access module; when the personal security device includes the factory security mechanism and the personal security device had been previously presented to the access module, denying access to a user without modifying the personal security device; and when the personal security device includes the factory security mechanism and the personal security device had not been previously presented to the access module, using the reader/writer and the access module to replace the factory security mechanism with another security mechanism that is used for subsequent accesses, wherein replacing the factory security mechanism with said another security mechanism includes replacing an application on the personal security device by sending an application request command that replaces the application or creates an application in a single atomic step. 2. The method, according to claim 1 , wherein the access module authenticates the personal security device in connection with replacing the factory security mechanism. 3. The method, according to claim 2 , wherein authenticating the personal security device grants access to a user through a door controlled by the access module. 4. The method, according to claim 1 , wherein the personal security device is one of: a smart card, an integrated circuit card, a subscriber identification module (SIM), a wireless identification module (WIM), an identification token, a secure application module (SAM), a hardware security module (HSM), a secure multi-media card (SMMC), and a USB token. 5. The method, according to claim 1 , wherein an ISO/IEC 7816-13 application management request command is used to replace the application. 6. The method, according to claim 1 , wherein the personal security device includes an application manager and a plurality of applications managed by the application manager. 7. A non-transitory computer-readable medium containing instructions executed in a processor that atomically modifies a personal security device, the instructions comprising: executable code that determines when the personal security device presented to a reader/writer coupled to an access module includes a factory security mechanism loaded into the personal security device by a manufacturer thereof; executable code that determines when the personal security device had been previously presented to the access module; executable code that denies access to a user without modifying the personal security device when the personal security device includes the factory security mechanism and the personal security device had been previously presented to the access module; and executable code that uses the reader/writer and the access module to replace the factory security mechanism with another security mechanism that is used for subsequent accesses when the personal security device includes the factory security mechanism and the personal security device had not been previously presented to the access module, wherein replacing the factory security mechanism with said another security mechanism includes replacing an application on the personal security device by sending an application request command that replaces the application or creates an application in a single atomic step. 8. The non-transitory computer-readable medium, according to claim 7 , the software further comprising: executable code that causes the access module to authenticate the personal security device in connection with replacing the factory security mechanism. 9. The non-transitory computer-readable medium, according to claim 8 , wherein authenticating the personal security device grants access to a user through a door controlled by the access module. 10. The non-transitory computer-readable medium, according to claim 7 , wherein the personal security device is one of: a smart card, an integrated circuit card, a subscriber identification module (SIM), a wireless identification module (WIM), an identification token, a secure application module (SAM), a hardware security module (HSM), a secure multi-media card (SMMC), and a USB token. 11. The non-transitory computer-readable medium, according to claim 7 , wherein an ISO/IEC 7816-13 application management request command is used to replace the application. 12. The non-transitory computer-readable medium, according to claim 7 , wherein the personal security device includes an application manager and a plurality of applications managed by the application manager. 13. A physical access system, comprising: a reader/writer for a personal security device; an access module coupled to the reader/writer; and the personal security device that is presented to the reader/writer, wherein the access module determines when the personal security device includes a factory security mechanism loaded into the personal security device by a manufacturer thereof, determines when the personal security device had been previously presented to the access module, denies access to a user without modifying the personal security device when the personal security device includes the factory security mechanism and the personal security device had been previously presented to the access module, and uses the reader/writer to replace the factory security mechanism with another security mechanism that is used for subsequent accesses when the personal security device includes the factory security mechanism and the personal security device had not been previously presented to the access module, wherein replacing the factory security mechanism with said another security mechanism includes replacing an application on the personal security device by sending an application request command that replaces the application or creates an application in a single atomic step. 14. The physical access system, according to claim 13 , wherein the access module authenticates the personal security device in connection with replacing the factory security mechanism. 15. The physical access system, according to claim 14 , wherein authenticating the personal security device grants access to a user through a door controlled by the access module. 16. The physical access system, according to claim 13 , wherein the personal security device is one of: a smart card, an integrated circuit card, a subscriber identification module (SIM), a wireless identification module (WIM), an identification token, a secure application module (SAM), a hardware security module (HSM), a secure multi-media card (SMMC), and a USB token. 17. The physical access system, according to claim 13 , wherein an ISO/IEC 7816-13 application management request command is used to replace the application. 18. The physical access system, according to claim 13 , wherein the personal security device includes an application manager and a plurality of applications managed by the application manager.

Assignees

Inventors

Classifications

  • G06F21/77Primary

    in smart cards · CPC title

  • where the code of the data carrier can be programmed · CPC title

  • G06F21/31Primary

    User authentication · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US10042990B2 cover?
Atomically modifying a personal security device includes presenting the personal security device to a reader/writer coupled to an access module, the access module determining if the personal security device includes a factory security mechanism, and, if the personal security device includes a factory security mechanism, using the reader/writer and the access module to replace the factory securi…
Who is the assignee on this patent?
Assa Abloy Ab
What technology area does this patent fall under?
Primary CPC classification G06F21/77. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Aug 07 2018 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 2 related publications on this page (citations in our corpus or others sharing the same primary CPC).