Subscriber identity module which has multiple profiles and which is designed for an authentication command

US11716620B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-11716620-B2
Application numberUS-202117485642-A
CountryUS
Kind codeB2
Filing dateSep 27, 2021
Priority dateDec 1, 2015
Publication dateAug 1, 2023
Grant dateAug 1, 2023

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A subscriber identity module (eUICC), comprises profiles for the utilization of a mobile terminal that include at least a first profile and at least a second profile, of which the second profile (Pr1, Pr2) is devised as an active profile. The first profile is designed as a root profile (PrR) which in a normal state of the subscriber identity module is in an inactive state, and which is devised to be activated in response to an authentication command (AUTHENTICATE) received at the subscriber identity module. The authentication command is specially parameterized for the root profile (PrR) with a specific root value of the network parameter (P2) to be activated during a change-over period. The initially active second profile (Pr1, Pr2) is deactivated during the change-over period. After the end of the change-over period, the first profile (PrR) is again deactivated and the second profile (Pr1, Pr2) is again activated.

First claim

Opening claim text (preview).

The invention claimed is: 1. A subscriber identity module (eUICC), comprising profiles, stored in a non-transitory memory, for utilization of a mobile terminal in mobile communication networks, wherein the profiles comprise at least a first profile and at least a second profile, of which the second profile (Pr1, Pr2) is devised as an initially active second profile, the subscriber identity module devised to receive and to process an authentication command (AUTHENTICATE) parameterized with a network parameter (P2), and as a result of this to compute authentication data for a mobile communication network determined by a network value of the network parameter (P2), wherein the first profile is a root profile (PrR) which in a normal state of the subscriber identity module is in an inactive state, and which is devised to be activated a duration of processing of the authentication command (AUTHENTICATE) received at the subscriber identity module, said authentication command being specially parameterized for the root profile (PrR) with a predefined specific root value of the network parameter (P2) to be activated during a change-over period, wherein the initially active second profile (Pr1, Pr2) is deactivated during the change-over period, and wherein after the end of the change-over period, the first profile (PrR) is automatically deactivated and the second profile (Pr1, Pr2) is automatically activated; and wherein as the first profile, one of the following is provided: an emergency profile for outputting an emergency call in an emergency situation in an emergency call network; a test profile for carrying out an end-device test on a test network; a service profile for calling a service network of a service provider. 2. The subscriber identity module according to claim 1 , wherein as a value of the network parameter (P2) there is provided: P2=P3G as a network value for network 3G, P2=P2G as a network value for network 2G, a value P2=PR different from P2=P3G and P2=P2G and different from further pre-allocated values as a root value for a transient activation of the root profile. 3. The subscriber identity module according to claim 1 , wherein an application protocol data unit (APDU) command is provided as an authentication command. 4. The subscriber identity module according to claim 1 , wherein as the first profile, a profile of a manufacturer of the subscriber identity module is provided, and as the second profile, a profile of an owner of the subscriber identity module is provided, in particular of a network provider. 5. The subscriber identity module according to claim 1 , wherein a profile (P) comprises respectively an authentication key (Ki), and wherein the authentication command (AUTHENTICATE) is devised for computing, originating from the authentication key (Ki-1, Ki-2, Ki-R) of a currently active profile (Pr1, Pr2, PrR), the authentication data. 6. The subscriber identity module according to claim 1 , wherein the profile (Pr1, Pr2, PrR) comprises respectively an Issuer Security Domain (ISD-P1, ISD-P2, ISD-R). 7. The subscriber identity module according to claim 1 , which further comprises an Issuer Security Domain Root (ISD-R) which is devised in particular as an end point situated in the subscriber identity module of a channel provided for provisioning the subscriber identity module between a Sub Man Secure Router (SM-SR) and the subscriber identity module and wherein the first profile has an Issuer Security Domain (ISD-R).

Assignees

Inventors

Classifications

  • H04W12/06Primary

    Authentication · CPC title

  • using an additional device, e.g. smartcard, SIM or a different communication terminal (cryptographic mechanisms or cryptographic arrangements for entity authentication involving additional secure or trusted devices H04L9/3234) · CPC title

  • Terminal profiles · CPC title

  • Services for handling of emergency or hazardous situations, e.g. earthquake and tsunami warning systems [ETWS] · CPC title

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US11716620B2 cover?
A subscriber identity module (eUICC), comprises profiles for the utilization of a mobile terminal that include at least a first profile and at least a second profile, of which the second profile (Pr1, Pr2) is devised as an active profile. The first profile is designed as a root profile (PrR) which in a normal state of the subscriber identity module is in an inactive state, and which is devised …
Who is the assignee on this patent?
Giesecke & Devrient Mobile Security Gmbh
What technology area does this patent fall under?
Primary CPC classification H04W12/06. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Aug 01 2023 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 8 related publications on this page (citations in our corpus or others sharing the same primary CPC).