IP Library Granted Patent US 9,185,561
Granted Patent B2
US 9,185,561 · App. 13/583,127 · Granted Nov 10, 2015

Protection against rerouting in an NFC circuit communication channel

Inventors: Thierry Huque (Ramillies, BE); Olivier Van Nieuwenhuyze (Wezembeek-Oppem, BE)
Assignee: PROTON WORLD INTERNATIONAL N.V.
H04W12/08H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,185,561
App. No.
13/583,127
Granted
Nov 10, 2015
Kind
B2
Abstract

A method for protecting information contained in a security module of a telecommunication device provided with a near-field communication router, wherein a routing table between the ports of the router contains at least one channel identifier calculated from an identifier of a radiofrequency port of a near-field communication circuit associated with the router.

Claims (34)

1. A method to protect data stored in a security module of a telecommunication device equipped with a near field communication (NFC) router, comprising:

storing at least one pipe identifier in a routing table between gates of said NFC router, said at least one pipe identifier calculated according to an identifier of a radio frequency gate of a near field communication circuit associated with the router; and

prohibiting access to the data stored in the security module when the at east one pipe identifier is absent.

2. The method of claim 1 , wherein the at least one pipe identifier is linked by a verification function to the identifier of the radio frequency gate.

3. The method of claim 2 , wherein the at least one pipe identifier comprises bits and,

wherein the bits forming the at least one pipe identifier depend on the identifier of the radio frequency gate.

4. The method claim 3 , wherein the at least one pipe identifier is coded over seven bits, among which five bits identify the radio frequency gate of the router to which a data communication pipe identified by the at least one pipe identifier is connected, and two other bits identify a gate of a peripheral with which the data communication pipe is connected.

5. The method of claim 3 , wherein the at least one pipe identifier corresponds to the identifier of the radio frequency gate.

6. The method of claim 1 , wherein the security module verifies that the at least one pipe identifier has been calculated according to the identifier of the radio frequency gate.

7. The method of claim 1 , wherein a provision of data from the security module to said router depends on a verification that the data are transmitted to the radio frequency gate.

8. A method comprising:

calculating, with a processor, an identifier of a data communication pipe based on an identifier of a radio frequency gate of a router, the data communication pipe linking the radio frequency gate of the router with a first gate of the router; and

storing the identifier of the data communication pipe in a routing table, the routing table formed in a security module of a telecommunication device equipped with a near field communication (NFC) router.

9. The method of claim 8 , wherein calculating the identifier of the data communication pipe based on the identifier of the radio frequency gate comprises calculating the identifier of the data communication pipe using an verification function for which the identifier of the radio frequency gate is an input.

10. The method of claim 9 , wherein calculating the identifier of the data communication pipe using the verification function comprises including the identifier of the radio frequency gate in the identifier of the data communication pipe.

11. The method of claim 8 , further comprising verifying that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate.

12. The method of claim 11 , wherein the router forms part of a telecommunication device, and wherein verifying that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate is performed by a security module of the telecommunication device.

13. The method of claim 11 , wherein verifying that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate involves executing instructions using the processor, wherein the instructions are protected from circumvention.

14. An apparatus, comprising:

a router configured to support a data communication pipe linking a first gate of the router and a radio frequency gate of the router;

a processor configured to calculate an identifier of the data communication pipe based on an identifier of the radio frequency gate;

a security module; and

a memory configured to store a routing table, wherein the routing table is configured to store the identifier of the data communication pipe, and wherein the apparatus is configured to prevent access data stored in the security module when the identifier of the communication pipe is absent.

15. The apparatus of claim 14 wherein the apparatus is a telecommunication device and wherein the router is a near field communication router.

16. The apparatus of claim 15 , further comprising:

a near field communication antenna coupled to the router.

17. The apparatus of claim 14 wherein the security module is integrated within the router.

18. The apparatus of claim 17 , further comprising:

a data communications link connecting the security module to the router.

19. The apparatus of claim 14 , wherein the processor is configured to calculate the identifier of the data communication pipe based on the identifier of the radio frequency gate using a verification function for which the identifier of the radio frequency gate is an input.

20. The apparatus of claim 19 , wherein using the verification function comprises including the identifier of the radio frequency gate in the identifier of the data communication pipe.

21. The apparatus of claim 14 , wherein the apparatus is configured to verify that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate.

22. The apparatus of claim 21 , wherein the router forms part of a telecommunication device, and wherein the security module of the telecommunication device is configured to verify that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate.

23. The apparatus of claim 21 , wherein the processor is configured to verify that the identifier of the data communication pipe has been calculated based on the identifier of the radio frequency gate by executing instructions, wherein the instructions are protected from circumvention.

Assignments (2)
CHANGE OF NAME Recorded Sep 26, 2024
From: PROTON WORLD INTERNATIONAL
To: STMICROELECTRONICS BELGIUM
Reel/Frame 069057/0620 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 16, 2012
From: HUQUE, THIERRY; VAN NIEUWENHUYZE, OLIVIER
To: PROTON WORLD INTERNATIONAL N.V.
Reel/Frame 029308/0260 →
Priority Claims (1)
FR 10 51693 · Mar 9, 2010 · national
Continuity (1)
Related Publication 20130059566A1 · Mar 7, 2013