Installation of a secure-element-related service application in a secure element in a communication device, system and telecommunications

US2016366137A1 · US · A1

Patent metadata
FieldValue
Publication numberUS-2016366137-A1
Application numberUS-201615175088-A
CountryUS
Kind codeA1
Filing dateJun 7, 2016
Priority dateJun 9, 2015
Publication dateDec 15, 2016
Grant date

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

A method for installation of a secure-element-related service application in a secure element of a user equipment (UE) associated with a subscriber of a telecommunications network includes: transmitting an initial request, transmitting a request to install, receiving token information, transmitting the token information, transmitting an access and/or installation request together with the token information, and establishing a communication link. The secure-element-related service application, when installed within the secure element, is configured to allow the first server entity, together with a UE-related application installed on the user equipment, to provide a service to the subscriber of the telecommunications network.

First claim

Opening claim text (preview).

1 . A method for installation of a secure-element-related service application in a secure element of a user equipment (UE) associated with a subscriber of a telecommunications network, wherein the secure element corresponds to a secure element issuer, the method comprising: in a first step, transmitting an initial request, via a request message, from a UE-related service application of the user equipment towards a first server entity to request installation of the secure-element-related service application in the secure element, wherein the first server entity corresponds to a service provider; in a second step, subsequent to the first step, transmitting, by the first server entity, a request to install the secure-element-related service application to a second server entity, and receiving, by the first entity, token information related to the request to install the secure-element-related service application from the second server entity, wherein the second server entity relates to the secure element issuer; in a third step, subsequent to the second step, transmitting, by the first server entity, the token information to the UE-related service application of the user equipment; in a fourth step, subsequent to the third step, transmitting, by the UE-related service application of the user equipment, an access and/or installation request, together with the token information, to a proxy application of the secure element issuer, the proxy application being configured to access the secure element and/or to install secure-element-related applications on the secure element, wherein the proxy application is further configured to interact with the secure element and is installed in the user equipment as a link between the second server entity and the secure element; and in a fifth step, subsequent to the fourth step, establishing a communication link between the proxy application and the second server entity for transmission of the token information, together with Secure Element Identifier (SEID) information of the user equipment to the second server entity for validation by the second server entity; wherein, during the fifth step, the token information is assigned to the SEID information; and wherein the secure-element-related service application, when installed within the secure element, is configured to allow the first server entity, together with the UE-related application installed on the user equipment, to provide a service to the subscriber of the telecommunications network. 2 . The method according to claim 1 , wherein, during the fifth step, installation commands from the second server entity are received by the proxy application for installation of the secure-element-related service application in the secure element. 3 . The method according to claim 2 , wherein the installation commands received by the proxy application are transmitted in encrypted form. 4 . The method according to claim 1 , wherein the second server entity is part of the telecommunications network. 5 . A system for installation of a secure-element-related service application in a secure element of a user equipment (UE)_associated with a subscriber of a telecommunications network, wherein the system comprises: the telecommunications network; a first server entity, wherein the first server entity corresponds to a service provider; a second server entity, wherein the second server entity is related to a secure element issuer related to the secure element; and the user equipment; wherein the secure-element-related service application, when installed within the secure element, is configured to allow the first server entity, together with a UE-related application installed on the communication device, to provide a service to the subscriber of the telecommunications network; wherein the UE-related application of the user equipment is configured to transmit, via a request message, an initial request towards the first server entity to request installation of the secure-element-related service application in the secure element; wherein the first server entity is configured to transmit a request to install the secure-element-related service application to the second server entity; wherein the second server entity is configured to generate token information related to the request to install the secure-element-related service application, and to transmit the token information to the first server entity; wherein the first server entity is configured to transmit the token information to the UE-related service application of the user equipment; wherein the UE-related service application of the user equipment is configured to transmit an access and/or installation request, related to the secure-element-related service application, together with the token information, to a proxy application of the secure element issuer, the proxy application being configured to access the secure element and/or to install secure-element-related applications on the secure element, wherein the proxy application is configured to interact with the secure element and is installed in the user equipment as a link between the second server entity and the secure element; wherein the proxy application and the second server entity are configured to establish a communication link for transmission of that the token information, together with Secure Element Identifier (SEID) information of the user equipment to the second server entity for validation by the second server entity, wherein the token information is assigned to the SEID information upon the establishment of the communication link between the proxy application and the second server entity. 6 . The system according to claim 5 , wherein the second server entity is configured to transmit installation commands to the proxy application for installation of the secure-element-related service application in the secure element. 7 . The system according to claim 6 , wherein the second server entity is configured to transmit the installation commands in encrypted form. 8 . One or more non-transitory, computer-readable mediums having processor-executable instructions stored thereon for installation of a secure-element-related service application in a secure element of a user equipment (UE) associated with a subscriber of a telecommunications network, wherein the secure element corresponds to a secure element issuer, the processor-executable instructions, when executed, facilitating performance of the following steps: in a first step, transmitting an initial request, via a request message, from a UE-related service application of the user equipment towards a first server entity to request installation of the secure-element-related service application in the secure element, wherein the first server entity corresponds to a service provider; in a second step, subsequent to the first step, transmitting, by the first server entity, a request to install the secure-element-related service application to a second server entity, and receiving, by the first entity, token information related to the request to install the secure-element-related service application from the second server entity, wherein the second server entity relates to the secure element issuer; in a third step, subsequent to the second step, transmitting, by the first server entity, the token information to the UE-related service application of the user equipment; in a fourth step, subsequent to the third step, transmitting, by the UE-related service application of the user equipment, an access and/or installation request, together with the token information, to a proxy application of the secure element issuer, the proxy application being configured to access the secure element and/or to install secure-element-related app

Assignees

Inventors

Classifications

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • for authentication of entities (cryptographic mechanisms or cryptographic arrangements for entity authentication H04L9/32) · CPC title

  • Service provisioning or reconfiguring · CPC title

  • H04W12/08Primary

    Access security · CPC title

  • H04L63/10Primary

    for controlling access to devices or network resources · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US2016366137A1 cover?
A method for installation of a secure-element-related service application in a secure element of a user equipment (UE) associated with a subscriber of a telecommunications network includes: transmitting an initial request, transmitting a request to install, receiving token information, transmitting the token information, transmitting an access and/or installation request together with the token…
Who is the assignee on this patent?
Deutsche Telekom Ag
What technology area does this patent fall under?
Primary CPC classification H04W12/08. Mapped technology areas include Electricity.
When was this patent published?
Publication date Thu Dec 15 2016 00:00:00 GMT+0000 (Coordinated Universal Time) (A1). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 3 related publications on this page (citations in our corpus or others sharing the same primary CPC).