Apparatus and methods for controlling distribution of electronic access clients

US9788209B2 · US · B2

Patent metadata
FieldValue
Publication numberUS-9788209-B2
Application numberUS-201615263306-A
CountryUS
Kind codeB2
Filing dateSep 12, 2016
Priority dateApr 5, 2011
Publication dateOct 10, 2017
Grant dateOct 10, 2017

How to read this patent

A practical reading order for non-experts. Skip the full description unless you need deep technical detail.

  1. Title

    What the patent document calls the invention.

  2. Abstract

    A short plain-language summary of the technical disclosure.

  3. Assignees and inventors

    Who owns or filed the patent and who is credited as inventor.

  4. Key dates

    Filing, priority, publication, and grant dates set the timeline.

  5. First independent claim

    The legal scope of protection — read this for what is actually claimed.

  6. CPC / IPC classifications

    Technology tags used to group this patent with similar filings.

  7. Citations and related patents

    Prior art links and similar publications in this corpus.

Abstract

Official abstract text for this publication.

Apparatus and methods for controlling the distribution of electronic access clients to a device. In one embodiment, a virtualized Universal Integrated Circuit Card (UICC) can only load an access client such as an electronic Subscriber Identity Module (eSIM) according to an activation ticket. The activation ticket ensures that the virtualized UICC can only receive eSIMs from specific carriers (“carrier locking”). Unlike prior art methods which enforce carrier locking on a software application launched from a software chain of trust (which can be compromised), the present invention advantageously enforces carrier locking with the secure UICC hardware which has, for example, a secure code base.

First claim

Opening claim text (preview).

What is claimed is: 1. A mobile device configured to selectively enable and disable different hardware components included in the mobile device, the mobile device comprising: a wireless interface; and a secure element, wherein the secure element includes: an interface to different hardware components included in the mobile device; a secure processor; a first secure storage configured to store at least one access control client that enables the mobile device to access services provided by a cellular network associated with the at least one access control client; and a second secure storage configured to store instructions that, when executed by the secure processor, cause the secure processor to carry out operations that include: verifying activation information that specifies at least one limitation for operating the mobile device to be enforced by the secure element, wherein the activation information includes at least one record, and each record: corresponds to a hardware component of the different hardware components, includes a shared secret associated with the hardware component, and indicates whether to enable or disable the hardware component; and upon verifying the activation information: downloading an access control client, storing the access control client in the first secure storage, and for each record included in the activation information: causing an enablement or a disablement of the hardware component in accordance with the record and in response to a verification of the shared secret by the hardware component. 2. The mobile device of claim 1 , wherein the different hardware components included in the mobile device are selected from a group that includes: the first secure storage, an application processor, and the wireless interface. 3. The mobile device of claim 2 , wherein the wireless interface includes a first baseband processor and a second baseband processor that is different from the first baseband processor, and the group further includes: the first baseband processor and the second baseband processor. 4. The mobile device of claim 1 , wherein the activation information includes a digital signature that is associated with a trusted signatory entity. 5. The mobile device of claim 4 , wherein verifying the activation information comprises verifying the digital signature. 6. The mobile device of claim 1 , wherein the at least one access control client comprises an electronic Subscriber Identity Module (eSIM) that is specific to the cellular network. 7. The mobile device of claim 1 , wherein the operations further comprise: issuing, to the cellular network, a request to register to access the services provided by the cellular network; and receiving, from the cellular network, the activation information in response to the request. 8. The mobile device of claim 1 , wherein each of the activation information and the access control client is received via the wireless interface. 9. A hardware secure element included in a mobile device, the hardware secure element comprising: an interface to different hardware components included in the mobile device; a secure processor; a first secure storage configured to store at least one access control client that enables the mobile device to access services provided by a cellular network associated with the at least one access control client; and a second secure storage configured to store instructions that, when executed by the secure processor, cause the secure processor to carry out operations that include: verifying activation information that specifies at least one limitation for operating the mobile device to be enforced by the hardware secure element, wherein the activation information includes at least one record, and each record: corresponds to a hardware component of the different hardware components, includes a shared secret associated with the hardware component, and indicates whether to enable or disable the hardware component; and upon verifying the activation information: downloading an access control client, storing the access control client in the first secure storage, and for each record included in the activation information: causing an enablement or a disablement of the hardware component in accordance with the record and in response to a verification of the shared secret by the hardware component. 10. The hardware secure element of claim 9 , wherein the different hardware components included in the mobile device are selected from a group that includes: the first secure storage, an application processor, and a wireless interface in the mobile device. 11. The hardware secure element of claim 10 , wherein the wireless interface includes a first baseband processor and a second baseband processor that is different from the first baseband processor, and the group further includes: the first baseband processor and the second baseband processor. 12. The hardware secure element of claim 9 , wherein the activation information includes a digital signature that is associated with a trusted signatory entity. 13. The hardware secure element of claim 12 , wherein verifying the activation information comprises verifying the digital signature. 14. The hardware secure element of claim 9 , wherein the at least one access control client comprises an electronic Subscriber Identity Module (eSIM) that is specific to the cellular network. 15. The hardware secure element of claim 9 , wherein the operations further comprise: issuing, to the cellular network, a request to register to access the services provided by the cellular network; and receiving, from the cellular network, the activation information in response to the request. 16. A method for selectively enabling and disabling different hardware components included in a wireless device, the method comprising: at a secure element included the wireless device: receiving activation information that specifies at least one limitation for operating the wireless device to be enforced by the secure element, wherein the activation information includes at least one record, and each record: corresponds to a hardware component of the different hardware components, includes a shared secret associated with the hardware component, and indicates whether to enable or disable the hardware component; verifying the activation information; and upon verifying the activation information: downloading an access control client that enables the wireless device to access services provided by a cellular network associated with the access control client, storing the access control client in a first secure storage included in the secure element, and for each record included in the activation information: causing an enablement or a disablement of the hardware component in accordance with the record and in response to a verification of the shared secret by the hardware component. 17. The method of claim 16 , wherein the different hardware components included in the wireless device are selected from a group that includes: the first secure storage, an application processor, and a wireless interface in the wireless device. 18. The method of claim 17 , wherein the wireless interface includes a first baseband processor and a second baseband processor that is different from the first baseband processor, and the group further includes: the first baseband processor and the second baseband processor. 19. The method of claim 16 , wherein the activation information includes a digital signature that is asso

Assignees

Inventors

Classifications

  • from a network towards a terminal · CPC title

  • for achieving mutual authentication (cryptographic mechanisms or cryptographic arrangements for mutual authentication H04L9/3273) · CPC title

  • Authentication · CPC title

  • Key management, e.g. using generic bootstrapping architecture [GBA] · CPC title

  • H04L63/061Primary

    for key exchange, e.g. in peer-to-peer networks (cryptographic mechanisms or cryptographic arrangements for key agreement H04L9/0838) · CPC title

Patent family

Related publications grouped by family.

External sources

Frequently asked questions

Answers are generated from the same data shown on this page.

What does patent US9788209B2 cover?
Apparatus and methods for controlling the distribution of electronic access clients to a device. In one embodiment, a virtualized Universal Integrated Circuit Card (UICC) can only load an access client such as an electronic Subscriber Identity Module (eSIM) according to an activation ticket. The activation ticket ensures that the virtualized UICC can only receive eSIMs from specific carriers (“…
Who is the assignee on this patent?
Apple Inc
What technology area does this patent fall under?
Primary CPC classification H04L63/061. Mapped technology areas include Electricity.
When was this patent published?
Publication date Tue Oct 10 2017 00:00:00 GMT+0000 (Coordinated Universal Time) (B2). Legal status and post-grant events are not shown on this page.
What related patents are in patentsdb?
We list 1 related publication on this page (citations in our corpus or others sharing the same primary CPC).