IP Library Granted Patent US 9,930,069
Granted Patent B2
US 9,930,069 · App. 14/899,256 · Granted Mar 27, 2018

Operation of a security element with the set of operating parameters matched to the selected use profile

Inventor: Ulrich Wimbock (Tutzing, DE)
Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
H04L63/20H04L63/0853H04L67/306H04W4/028H04W8/183H04W12/06
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,930,069
App. No.
14/899,256
Granted
Mar 27, 2018
Kind
B2
Abstract

A method for operating a security element which is part of a mobile end device, and a security element, have functionality depending on a set of operating parameters that is deposited on the security element. The method comprises the following steps: operating the security element with the set of operating parameters that is deposited on the security element; collecting data about the use of the security element and/or of the mobile end device; selecting a use profile on the basis of the collected data, with the use profile being assigned a set of operating parameters that is matched thereto; and operating the security element with the set of operating parameters that is matched to the selected use profile.

Claims (18)

1. A method for operating a security element implemented in hardware, the security element being part of a mobile end device, with the functionality of the security element depending on a set of operating parameters that is deposited on the security element, wherein the method comprises the following steps:

operating the security element with the set of operating parameters that is deposited on the security element, the security element including an embedded microprocessor and a data memory, the embedded microprocessor including a secure area that hosts a trusted execution environment;

collecting data about the use of the security element and/or of the mobile end device;

the trusted execution environment hosted in the security element selecting a use profile on the basis of the collected data, with the use profile being assigned a set of optimized operating parameters that is matched thereto based on the collected data; and

operating the security element with the set of optimized operating parameters that is matched to the selected use profile, wherein at least one of the optimized security element operating parameters is different from the deposited set of operating parameters.

2. The method according to claim 1 , wherein the step of collecting data about the use of the security element and/or of the mobile end device is carried out by means of an application on the security element.

3. The method according to claim 1 , wherein the step of selecting a use profile is effected through the security element.

4. The method according to claim 1 , wherein the step of selecting a use profile is effected through a server entity which is in communication with the security element and which has access to a database having a multiplicity of use profiles.

5. The method according to claim 4 , wherein the security element is a subscriber identification module which is configured for authenticating a subscriber toward a mobile radio network and communicating with the server entity via the mobile radio network.

6. The method according to claim 5 , wherein the method is used for adapting an operating parameter of the security element, said parameter determining the size as of which access counters deposited in a volatile memory of the security element and respectively stating the number of accesses to a respective memory page of the non-volatile memory of the security element are stored in the non-volatile memory of the security element.

7. The method according to claim 5 , wherein the method is used for adapting an operating parameter of the security element, said parameter determining the length of the time window within which the security element can log into the mobile radio network.

8. The method according to claim 1 , wherein the steps of the method are carried out several times in succession in order to iteratively determine optimal operating parameters and/or to be able to take account of changes of the use of the security element and/or of the mobile end device.

9. A security element implemented in hardware which is part of a mobile end device, with the functionality of the security element depending on a set of operating parameters that is deposited on the security element, wherein the security element is configured to perform the following:

operate the security element with the set of operating parameters that is deposited on the security element, the security element including an embedded microprocessor and a data memory, the embedded microprocessor including a secure area that hosts a trusted execution environment;

collect data about the use of the security element and/or of the mobile end device;

select, using the trusted execution environment hosted in the security element, a use profile on the basis of the collected data, with the use profile being assigned a set of optimized operating parameters that is matched thereto based on the collected data; and

operate the security element with the set of optimized operating parameters that is matched to the selected use profile, wherein at least one of the optimized security element operating parameters is different from the deposited set of operating parameters.

10. The security element of claim 9 , wherein the security element is implemented in a mobile end device.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jul 18, 2017
From: GIESECKE & DEVRIENT GMBH
To: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
Reel/Frame 043230/0485 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 17, 2015
From: WIMBOCK, ULRICH
To: GIESECKE & DEVRIENT GMBH
Reel/Frame 037317/0981 →
Priority Claims (1)
DE 10 2013 010 261 · Jun 18, 2013 · national
Continuity (1)
Related Publication 20160134661A1 · May 12, 2016