IP Library Granted Patent US 9,591,484
Granted Patent B2
US 9,591,484 · App. 13/839,189 · Granted Mar 7, 2017

Secure environment for subscriber device

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,591,484
App. No.
13/839,189
Granted
Mar 7, 2017
Kind
B2
Abstract

A secure operating environment for a telecommunication device is disclosed, where a trusted execution environment (TEE) can establish both first secure communication (SC) channel between the TEE and a security-enabled SIM card, and a second SC between a service provider entity and Trustlet application, which is a component of the TEE of the telecommunication device. The telecommunication device may include a processor(s), an identification module, and a memory including the TEE and a normal operating environment (NOE). The TEE can be operated by the one or more processors to establish the first SC channel, authenticate a service identifier of the identification module, and establish the second SC channel, prior to an execution of the NOE.

Claims (43)

1. A telecommunication device comprising:

one or more processors;

an identification module storing a service identifier; and

a memory coupled to the one or more processors, and having at least a trusted execution environment (TEE) and a normal operating environment (NOE), wherein the TEE is configured to be operated by the one or more processors to:

establish a first secure communication channel between the TEE and the identification module;

authenticate the service identifier of the identification module after the first secure communication channel has been established; and

establish a second secure communication channel between the telecommunication device and a provisioning server of a service provider,

wherein the first secure communication channel or the second secure communication channel is established prior to an execution of the NOE.

2. The telecommunication device of claim 1 , wherein the TEE comprises a security agent, wherein the identification module comprises a security client, and wherein the TEE is operable by the one or more processors to establish the first secure communication channel via a cryptographic authentication process.

3. The telecommunication device of claim 2 , wherein the cryptographic authentication process is an asymmetric authentication process, whereby the security client communicates with the security agent to validate one or more security keys of the identification module.

4. The telecommunication device of claim 1 , wherein the TEE is operable by the one or more processors to establish the second secure communication channel, at least in part, in response to the

i) establishment of the first secure communication channel, or

ii) authentication of the service identifier.

5. The telecommunication device of claim 1 , wherein the TEE is operable by the one or more processors to establish the second secure communication channel via a cryptographic authentication process between the service provider and at least one Trustlet application stored in a secure random access memory (RAM) of the TEE.

6. The telecommunication device of claim 1 , wherein the either the first secure communication channel or the second secure communication channel is established during a boot sequence of a security-enabled boot application that is stored in a secure read only memory (ROM) of the TEE.

7. A method comprising:

establishing, by a trusted execution environment (TEE) of a telecommunication device, a first secure communication channel between the TEE and an identification module, wherein the identification module is a component of the telecommunication device and the establishing is based on a cryptographic identifier received from the identification module;

authenticating a service identifier of the identification module after the first secure communication channel has been established; and

establishing a second secure communication channel between the telecommunication device and a provisioning server of a service provider,

wherein the first secure communication channel or the second secure communication channel is established prior to an execution of a high level operating system of the telecommunication device.

8. The method of claim 7 , wherein the TEE is associated with a secure partition in a memory of the telecommunication device.

9. The method of claim 7 , further comprising, prior to establishing the first secure communication channel, authenticating the cryptographic identifier via an asymmetric authentication process that includes validating, at the security client of the TEE, one or more security keys of the identification module.

10. The method of claim 7 , wherein the first secure communication channel is established during a secure boot sequence of a secure boot application that is stored in a secure read only memory (ROM) of the TEE.

11. A method comprising:

receiving, at a provisioning server, a cryptographic identifier from a trusted execution environment (TEE) of a telecommunication device, the telecommunication device having established a first secure communication channel between the TEE and an identification module that is a component of the telecommunication device and authenticated a service identifier of the identification module, the service identifier being associated with an operator of the provisioning server;

authenticating the cryptographic identifier received from TEE of the telecommunication device; and

establishing a second secure communication channel between the provisioning server and the telecommunication device, in response to received cryptographic identifier being determined to be valid,

wherein the first secure communication channel or the second secure communication channel is established prior to an execution of a high level operating system of the telecommunication device.

12. The method of claim 11 , wherein the cryptographic identifier is associated with at least one Trustlet application that is stored in a secure random access memory (RAM) of the TEE.

13. The method of claim 11 , wherein the secure communication channel is established during a secure boot sequence of a secure boot application that is stored in a secure read only memory (ROM) of the TEE.

14. The method of claim 11 , wherein the TEE is associated with a secure partition in a memory of the telecommunication device.

15. A non-transitory computer storage device with a stored computer-executable program for execution in a trusted execution environment (TEE) of a telecommunication device by one or more processors of the telecommunication device, which when executed in the TEE by the one or more processors, performs operations, comprising:

establishing a first secure communication channel between the TEE and an identification module, wherein the identification module is a component of the telecommunication device;

authenticating the service identifier of the identification module after the first secure communication channel has been established; and

establishing a second secure communication channel between the telecommunication device and a provisioning server of a service provider,

wherein the first secure communication channel or the second secure communication channel is established prior to an execution of a high level operating system of the telecommunication device.

16. The non-transitory computer storage device of claim 15 , wherein the TEE comprises a security agent, wherein the identification module comprises a security client, and wherein the first secure communication channel is established via a cryptographic authentication process.

17. The non-transitory computer storage device of claim 16 , wherein the cryptographic authentication process is an asymmetric authentication process, whereby the security client communicates with the security agent to validate one or more security keys of the identification module.

18. The non-transitory computer storage device of claim 15 , wherein the second secure communication channel is established, at least in part, in response to the

i) establishment of the first secure communication channel, or

ii) authentication of the service identifier.

19. The non-transitory computer storage device of claim 15 , wherein the operations performed by the execution of the computer-executable program, further comprise establishing the second secure communication channel via a cryptographic authentication process between the service provider and at least one Trustlet application stored in a secure random access memory (RAM) of the TEE.

20. The non-transitory computer storage device of claim 15 , wherein the operations performed by the execution of the computer-executable program, further comprise establishing either the first secure communication channel or the second secure communication channel during a boot sequence of a security-enabled boot application that is stored in a secure read only memory (ROM) of the TEE.

Assignments (7)
RELEASE OF SECURITY INTEREST Recorded Aug 23, 2022
From: DEUTSCHE BANK TRUST COMPANY AMERICAS
To: IBSV LLC; LAYER3 TV, LLC; PUSHSPRING, LLC; T-MOBILE CENTRAL LLC; T-MOBILE USA, INC.; ASSURANCE WIRELESS USA, L.P.; BOOST WORLDWIDE, LLC; CLEARWIRE COMMUNICATIONS LLC; CLEARWIRE IP HOLDINGS LLC; SPRINTCOM LLC; SPRINT COMMUNICATIONS COMPANY L.P.; SPRINT INTERNATIONAL INCORPORATED; SPRINT SPECTRUM LLC
Reel/Frame 062595/0001 →
SECURITY AGREEMENT Recorded Apr 2, 2020
From: T-MOBILE USA, INC.; ISBV LLC; T-MOBILE CENTRAL LLC; LAYER3 TV, INC.; PUSHSPRING, INC.; BOOST WORLDWIDE, LLC; CLEARWIRE COMMUNICATIONS LLC; CLEARWIRE IP HOLDINGS LLC; CLEARWIRE LEGACY LLC; SPRINT COMMUNICATIONS COMPANY L.P.; SPRINT INTERNATIONAL INCORPORATED; SPRINT SPECTRUM L.P.; ASSURANCE WIRELESS USA, L.P.
To: DEUTSCHE BANK TRUST COMPANY AMERICAS
Reel/Frame 053182/0001 →
RELEASE OF SECURITY INTEREST Recorded Apr 1, 2020
From: DEUTSCHE TELEKOM AG
To: T-MOBILE USA, INC.; IBSV LLC
Reel/Frame 052969/0381 →
RELEASE OF SECURITY INTEREST Recorded Apr 1, 2020
From: DEUTSCHE BANK AG NEW YORK BRANCH
To: T-MOBILE USA, INC.; IBSV LLC; METROPCS COMMUNICATIONS, INC.; METROPCS WIRELESS, INC.; T-MOBILE SUBSIDIARY IV CORPORATION; LAYER3 TV, INC.; PUSHSPRING, INC.
Reel/Frame 052969/0314 →
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Dec 30, 2016
From: T-MOBILE USA, INC.
To: DEUTSCHE TELEKOM AG
Reel/Frame 041225/0910 →
SECURITY AGREEMENT Recorded Nov 17, 2015
From: T-MOBILE USA, INC.; METROPCS COMMUNICATIONS, INC.; T-MOBILE SUBSIDIARY IV CORPORATION
To: DEUTSCHE BANK AG NEW YORK BRANCH, AS ADMINISTRATIVE AGENT
Reel/Frame 037125/0885 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 17, 2014
From: IONESCU, ALEXANDRU CATALIN; SILIS, ARTURO; FROELICH, RAYMOND; BUZESCU, ADRIAN; OBAIDI, AHMAD ARASH
To: T-MOBILE USA, INC.
Reel/Frame 033773/0216 →