Methods and apparatus for user authentication and human intent verification in mobile devices
US-2018249333-A1 · Aug 30, 2018 · US
US10439823B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-10439823-B2 |
| Application number | US-201615566561-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 12, 2016 |
| Priority date | Apr 13, 2015 |
| Publication date | Oct 8, 2019 |
| Grant date | Oct 8, 2019 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
Disclosed are: a communication technique and a system therefor for fusing, with IoT technology, a 5G communication system for supporting a data transmission rate higher than that of a 4G system. Provided is a method for installing a profile of a terminal having an embed universal integrated circuit card (eUICC) in a mobile communication system, the method comprising: requesting for an eUICC authentication certificate to an eUICC and receiving the eUICC authentication certificate; and transferring a profile package to the eUICC so as to install a profile, wherein the received eUICC authentication certificate further comprises an eUICC manufacturer (EUM) authentication certificate.
Opening claim text (preview).
The invention claimed is: 1. A method of a terminal having an embedded universal integrated circuit card (eUICC) in a mobile communication system, the method comprising: transmitting at least one of requests for first information of the eUICC to the eUICC and receiving the first information of the eUICC from the eUICC; transmitting a first message including the first information of the eUICC to a server and receiving a first response message including at least one of certificates of the server, in response to the first message from the server; transmitting the at least one of certificates of the server to the eUICC and receiving second information of the eUICC including a one-time public key of the eUICC from the eUICC; transmitting a second message including the second information of the eUICC to the server and receiving a second response message including a profile package in response to the second message from the server; and transmitting the profile package to the eUICC so as to install the profile package, wherein the second information of the eUICC includes at least one of an eUICC manufacturer (EUM) certificate and an eUICC certificate. 2. The method of claim 1 , wherein the EUM certificate is used by the server to verify the eUICC certificate included in the second information. 3. The method of claim 1 , wherein the first response message further includes a transaction ID for identifying a profile download session. 4. The method of claim 3 , wherein the transaction ID is delivered to the eUICC, along with the at least one of certificates of the server. 5. The method of claim 1 , wherein the transmitting of the at least one of the requests to the eUICC for the first information of the eUICC is performed by sending an eUICC challenge request and an eUICC information request. 6. The method of claim 1 , wherein the first information of the eUICC includes a eUICC challenge. 7. The method of claim 1 , wherein the first information of the eUICC further includes an elliptic curve parameter of the eUICC certificate as encryption key information. 8. The method of claim 1 , wherein the eUICC certificate has a format including a tag for indicating whether the type of certificate corresponds to the EUM certificate or a certificate issuer (CI) certificate. 9. The method of claim 1 , further comprising obtaining profile information including a server address. 10. The method of claim 9 , wherein the first message includes the server address. 11. A terminal apparatus in a mobile communication system, the terminal apparatus comprising: an embedded universal integrated circuit card (eUICC); a transceiver unit for performing a reception or transmission; and a control unit controlling the transceiver unit and configured to: transmit at least one of a requests for first information of the eUICC to the eUICC and receive the first information of the eUICC from the eUICC, transmit a first message including the first information of the eUICC to a server and receive a first response message including at least one of certificates of the server, in response to the first message from the server, transmit the at least one of certificates of the server and receive second information of the eUICC including a one-time public key of the eUICC from the eUICC, transmit a second message including the second information of the eUICC to the server and receive a second response message including a profile package in response to the second message from the server, and transmit the profile package to the eUICC so as to install the profile package, wherein the second information of the eUICC includes at least one of an eUICC manufacturer (EUM) certificate and an eUICC certificate. 12. The terminal apparatus of claim 11 , wherein the EUM certificate is used by the server to verify a eUICC certificate included in the second information. 13. The terminal apparatus of claim 11 , wherein the first response message further includes a transaction ID for identifying a profile download session. 14. The terminal apparatus of claim 13 , wherein the transaction ID is delivered to the eUICC, along with the at least one of certificates of the server. 15. The terminal apparatus of claim 11 , wherein the control unit is further configured to transmit at least one of requests to the eUICC for the first information of the eUICC through an eUICC challenge request. 16. The terminal apparatus of claim 11 , wherein the first information of the eUICC includes a eUICC challenge. 17. The terminal apparatus of claim 11 , wherein the first information of the eUICC further includes an elliptic curve parameter of the eUICC certificate as encryption key information. 18. The terminal apparatus of claim 11 , wherein the eUICC certificate has a format including a tag for indicating whether the type of certificate corresponds to the EUM certificate or a certificate issuer (CI) certificate. 19. The terminal apparatus of claim 11 , wherein the control unit is further configured to obtain profile information including a server address. 20. The terminal apparatus of claim 19 , wherein the first message includes the server address.
using a predetermined code, e.g. password, passphrase or PIN (network architectures or network communication protocols for supporting authentication of entities using passwords in a packet data network H04L63/083) · CPC title
involving certificates, e.g. public key certificate [PKC] or attribute certificate [AC]; Public key infrastructure [PKI] arrangements (network architectures or network communication protocols for supporting authentication of entities using certificates in a packet data network H04L63/0823) · CPC title
Access security · CPC title
Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title
Applying verification of the received information (cryptographic mechanisms or cryptographic arrangements for data integrity or data verification H04L9/32) · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.