Facilitating use of a universal integrated circuit card (UICC) for secure device updates

US11216267B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11216267-B2
Application numberUS-201916424478-A
CountryUS
Kind codeB2
Filing dateMay 28, 2019
Priority dateSep 20, 2016
Publication dateJan 4, 2022
Grant dateJan 4, 2022

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Apparatus, methods and systems facilitating communications via a mobile internet-enabled connection interface are provided. One apparatus is configured to perform various operations, including performing a first type of security function associated with determining whether an information package is authorized to be received and downloaded to a device other than the apparatus, wherein the information package is associated with updating a functionality of the device; and performing a second type of security function associated with identifying an authorized user of the apparatus.

First claim

Opening claim text (preview).

What is claimed is: 1. An apparatus, comprising: a processor; and a memory that stores executable instructions that, when executed by the processor, facilitate performance of operations, comprising: performing a first type of security function associated with determining whether an information package, which facilitates a software update to a device other than the apparatus, is authorized to be downloaded to the device, wherein the apparatus comprises a universal integrated circuit card partitioned into different domains applicable to different functionalities associated with different entities, and wherein a functionality of the different functionalities, associated with a domain of the different domains, is to enable the software update to the device; and performing a second type of security function associated with identifying an authorized user of the apparatus. 2. The apparatus of claim 1 , wherein the first domain of the different domains is associated with a telecommunications carrier identity. 3. The apparatus of claim 2 , wherein the operations further comprise: performing a key negotiation with a server configured to transmit the information package to the device other than the apparatus and that facilitates the software update to the device; and validating a digital signature of the information package for the device prior to installation of the information package to cause the software update to the device. 4. The apparatus of claim 3 , wherein validating the digital signature comprises comparing the digital signature to a value stored in a firmware over the air partition of the apparatus, and wherein the firmware over the air partition is associated with the performing of the first type of security function. 5. The apparatus of claim 1 , wherein performing the second type of security function comprises performing the second type of security function associated with identifying the authorized user of the apparatus via a carrier domain partition of the apparatus. 6. The apparatus of claim 1 , wherein the device comprises a component of a connected car. 7. The apparatus of claim 1 , wherein the device comprises a sensor of a digital home environment. 8. The apparatus of claim 1 , wherein the device comprises an Internet of Things device. 9. A method, comprising: receiving, by a first device comprising a processor, an information package that facilitates a software update to the first device for updating a functionality of a component of the first device, wherein the information package is received from a distribution authority device comprising a key negotiated with a second device associated with providing security for the first device, wherein the second device comprises a universal integrated circuit card partitioned into different domains applicable to different functionalities associated with different entities, and wherein a functionality of the different functionalities, associated with a domain of the different domains, is to enable the software update to the first device; and validating, by the first device, the information package with the second device based on whether a first value of the information package corresponds to a second value stored at the second device. 10. The method of claim 9 , wherein the first domain of the domains is associated with a telecommunications carrier identity. 11. The method of claim 9 , further comprising: based on the software update, updating, by the first device, a software functionality of the component of the first device based on determining that the information package was successfully validated. 12. A non-transitory machine-readable storage medium, comprising executable instructions that, when executed by a processor of an apparatus, facilitate performance of operations, comprising: performing a first type of security function associated with determining whether an information package, which facilitates a software update to a device, is authorized to be employed to facilitate the software update to the device communicatively coupled to the apparatus, wherein the processor is associated with a universal integrated circuit card partitioned into different domains applicable to different functionalities associated with different entities, and wherein a functionality of the different functionalities associated with a domain of the different domains is to enable the software update to the device; and performing a second type of security function associated confirming a privilege associated with use of the apparatus. 13. The non-transitory machine-readable storage medium of claim 12 , wherein the operations further comprise: performing a key negotiation with a server configured to transmit the information package to the device communicatively coupled to the apparatus and that facilitates the software update to the device; and validating a digital signature of the information package for the device prior to installation of the information package on the device. 14. The non-transitory machine-readable storage medium of claim 13 , wherein the information package comprises a firmware over the air package. 15. The non-transitory machine-readable storage medium of claim 13 , wherein the first type of security function is associated with an executable instruction, and wherein the executable instruction is comprised in a partition of executable instructions. 16. The non-transitory machine-readable storage medium of claim 13 , wherein the first type of security function is associated with an identity of an original equipment manufacturer of the device. 17. The non-transitory machine-readable storage medium of claim 13 , wherein the second type of security function is associated with an executable instruction in a partition of executable instructions. 18. The non-transitory machine-readable storage medium of claim 13 , wherein the first domain of the different domains associated with a telecommunications carrier identity. 19. The non-transitory machine-readable storage medium of claim 12 , wherein the device comprises a component of a connected car. 20. The non-transitory machine-readable storage medium of claim 12 , wherein the device comprises an Internet of Things device.

Assignees

Inventors

Classifications

  • received data contents, e.g. message integrity · CPC title

  • involving digital signatures · CPC title

  • Key agreement, i.e. key establishment technique in which a shared key is derived by parties as a function of information contributed by, or associated with, each of these (network architectures or network communication protocols for key exchange in a packet data network H04L63/061) · CPC title

  • G06F8/65Primary

    Updates (security arrangements therefor G06F21/57) · CPC title

  • Multiple levels of security · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11216267B2 cover?
Apparatus, methods and systems facilitating communications via a mobile internet-enabled connection interface are provided. One apparatus is configured to perform various operations, including performing a first type of security function associated with determining whether an information package is authorized to be received and downloaded to a device other than the apparatus, wherein the inform…
Who is the assignee on this patent?
At & T Mobility Ii Llc, At & T Ip I Lp, At&T Iniellectual Property I L P
What technology area does this patent fall under?
Primary CPC classification G06F8/65. Mapped technology areas include Physics.
When was this patent published?
Publication date Tue Jan 04 2022 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 11 related publications on this page (citations in our corpus or others sharing the same primary CPC).