Secure management of a smart card
US-2015294095-A1 · Oct 15, 2015 · US
US9785939B2 · US · B2
| Field | Value |
|---|---|
| Publication number | US-9785939-B2 |
| Application number | US-201514689817-A |
| Country | US |
| Kind code | B2 |
| Filing date | Apr 17, 2015 |
| Priority date | Apr 18, 2014 |
| Publication date | Oct 10, 2017 |
| Grant date | Oct 10, 2017 |
A practical reading order for non-experts. Skip the full description unless you need deep technical detail.
What the patent document calls the invention.
A short plain-language summary of the technical disclosure.
Who owns or filed the patent and who is credited as inventor.
Filing, priority, publication, and grant dates set the timeline.
The legal scope of protection — read this for what is actually claimed.
Technology tags used to group this patent with similar filings.
Prior art links and similar publications in this corpus.
Official abstract text for this publication.
The invention concerns a method for deactivating a payment module attachable to a communications terminal, comprising: a phase for deactivating comprising at least one step for erasing the main memory of said payment module with the exception of a non-volatile memory zone in which an encryption key k is stored, said encryption key k being available only when said main memory is empty; a phase for verifying comprising: a step for verifying that said main memory is empty, delivering a positive or negative result of verification; if said result of verification is positive: a step for computing a response to a challenge preliminarily received by said payment module from an entity distinct from said payment module, said computation being implemented by means of said encryption key k; a step for transmitting said response to said entity.
Opening claim text (preview).
The invention claimed is: 1. A method for deactivating a payment module attachable to a communications terminal, the method comprising the following phases: a phase of deactivating comprising at least one act of erasing an entire memory of the payment module, called a main memory, with the exception of a non-volatile memory zone in which an encryption key is stored, said encryption key being available only when the main memory of the payment module is empty; and at least one phase of verifying said deactivation comprising the following acts: verifying that said main memory is empty, delivering a positive or negative result of verification; if said result of verification is positive: computing a response to a challenge preliminarily received by said payment module from an entity distinct from said payment module, said computation being implemented by using said encryption key; and for transmitting said response to said entity. 2. The method for deactivating a payment module according to claim 1 , wherein said phase of deactivating is triggered by reception, by said payment module, of at least one request for deactivation coming from said entity. 3. The method for deactivating a payment module according to claim 1 , wherein said encryption key stored in said non-volatile memory of said payment module is never accessible in read mode. 4. The method for deactivating a payment module according to claim 2 , wherein said computing a response to a challenge also uses at least one piece of data representing said request for deactivation, piece of data belonging to the group consisting of: an identifier of said entity; a timestamp of said request for deactivation. 5. A method for deactivating a payment module according to claim 1 , wherein said phase of deactivating is triggered after an act of validating an authorization of said entity to deactivate said payment module. 6. A payment module attachable to a communications terminal and comprising means of deactivation comprising: a main memory comprising a non-volatile memory zone in which there is stored an encryption key; means for erasing the entire main memory of said payment module, except for the non-volatile memory zone, said encryption key being available only when said main memory of said payment module is empty; means for verifying that said main memory is empty, delivering a positive or negative result of verification; means for computing a response to a challenge preliminarily received by said payment module, coming from an entity distinct from said payment module, said computation being implemented by using said encryption key, said computation means being activated by a positive result of verification; means for transmitting said response to said entity. 7. A computer readable and non-transient storage medium storing a computer program comprising a set of instructions executable by a computer or a processor to implement a method for deactivating a payment module attachable to a communications terminal, the method comprising the following phases: a phase of deactivating comprising at least one act of erasing an entire memory of the payment module, called a main memory, with the exception of a non-volatile memory zone in which an encryption key is stored, said encryption key being available only when the main memory of the payment module is empty; and at least one phase of verifying said deactivation comprising the following acts: verifying that said main memory is empty, delivering a positive or negative result of verification; if said result of verification is positive: computing a response to a challenge preliminarily received by said payment module from an entity distinct from said payment module, said computation being implemented by using said encryption key; and transmitting said response to said entity.
involving key management · CPC title
Use of secure elements separate from M-devices · CPC title
Business processing using cryptography · CPC title
comprising security or operator identification provisions, e.g. password entry · CPC title
using hash chains, e.g. blockchains or hash trees · CPC title
Related publications grouped by family.
Answers are generated from the same data shown on this page.