IP Library › Granted Patent US 10,499,248
Granted Patent B2
US 10,499,248 · App. 15/435,507 · Granted Dec 3, 2019

Secure interaction method and device

Inventors: Wenhao Li (Shanghai, CN); Yubin Xia (Shanghai, CN); Haibo Chen (Shanghai, CN)
Assignee: HUAWEI TECHNOLOGIES CO., LTD.
H04W12/08G06F12/14G06F13/28G06F13/4022G06F21/57G06F21/62G06F21/74G06F21/84G06F21/606G06F2212/1052
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,499,248
App. No.
15/435,507
Granted
Dec 3, 2019
Kind
B2
Abstract

A secure interaction method includes receiving, by a processor, a secure processing request sent by an application program, where the application program operates in a normal mode, and the processor operates in the normal mode when receiving the secure processing request, switching, by the processor, from the normal mode to a secure mode according to the secure processing request, reading, by the processor operating in the secure mode, data information into a memory operating in the secure mode, where the data information is data that the processor operating in the secure mode generates after parsing the secure processing request, and controlling, by the processor operating in the secure mode, an accessed device to operate according to the data information stored in the memory operating in the secure mode.

Claims (46)

1. A secure interaction method, implemented by a secure interaction device comprising memory operating in a normal mode and memory operating in a secure mode, wherein the secure interaction method comprises:

receiving, by a processor, a secure processing request from an application program, wherein the application program is comprised in the memory operating in the normal mode and operates in the normal mode, and wherein the processor operates in the normal mode when receiving the secure processing request;

switching, by the processor, from the normal mode to the secure mode when receiving the secure processing request;

reading, by the processor operating in the secure mode, data information into the memory operating in the secure mode, wherein the data information is data that the processor operating in the secure mode generates after parsing the secure processing request; and

controlling, by the processor operating in the secure mode, an accessed device to operate according to the data information stored in the memory operating in the secure mode, wherein the accessed device operates in the normal mode, wherein the accessed device responds to control of the processor when the processor operates in the secure mode, wherein the accessed device operates after being invoked by the application program, wherein driver code for driving the application program and driver code for driving the accessed device operate in the normal mode, wherein the secure mode and the normal mode are two mutually isolated running environments, wherein the processor, when operating in the normal mode, cannot access the memory operating in the secure mode, and wherein the processor, when operating in the secure mode, can access the application program operating in the normal mode.

2. The secure interaction method of claim 1 , wherein after switching from the normal mode to the secure mode, the secure interaction method further comprises:

reading, by the processor operating in the secure mode, a security indicator from the memory operating in the secure mode; and

notifying, according to the security indicator by the processor operating in the secure mode, a user that a current environment is in a secure state.

3. The secure interaction method of claim 2 , wherein notifying the user that the current environment is in the secure state comprises controlling, according to the security indicator by the processor operating in the secure mode, a security indication device to operate, wherein the security indication device operates in the secure mode, and wherein the security indication device responds to control of the processor only when the processor operates in the secure mode.

4. The secure interaction method of claim 2 , wherein notifying the user that the current environment is in the secure state comprises controlling, by the processor operating in the secure mode, a display to display the security indicator read from the memory operating in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

5. The secure interaction method of claim 1 , wherein reading the data information into the memory operating in the secure mode comprises reading, by the processor operating in the secure mode, frame buffer information into the memory operating in the secure mode, wherein the frame buffer information is obtained, by the processor operating in the secure mode, from an interface provided by a frame buffer device, and wherein the frame buffer device operates in the normal mode.

6. The secure interaction method of claim 5 , wherein the accessed device is a display, and wherein controlling the accessed device to operate according to the data information stored in the memory operating in the secure mode comprises controlling, by the processor operating in the secure mode, the display to display the frame buffer information read from the memory operating in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

7. The secure interaction method of claim 6 , wherein controlling the display to display the frame buffer information read from the memory operating in the secure mode comprises controlling, by the processor operating in the secure mode, the display to display a foreground layer and a background layer, wherein the frame buffer information is displayed at the foreground layer, wherein a background is displayed at the background layer, and wherein the foreground layer and the background layer are displayed in different colors.

8. The secure interaction method of claim 1 , wherein reading the data information into the memory operating in the secure mode comprises:

obtaining, by the processor operating in the secure mode, user data entered into an input device by a user, wherein the input device operates in the normal mode;

performing, by the processor operating in the secure mode, verification processing on the user data to obtain result data; and

reading, by the processor operating in the secure mode, the result data into the memory operating in the secure mode.

9. The secure interaction method of claim 8 , wherein the accessed device is a display, and wherein controlling the accessed device to operate according to the data information stored in the memory operating in the secure mode comprises controlling, by the processor operating in the secure mode, the display to display the result data read from the memory operating in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

10. The secure interaction method of claim 1 , wherein before receiving the secure processing request from the application program, the secure interaction method further comprises:

setting, by the processor, the accessed device to accessible by the processor operating in the secure mode; and

loading, by the processor, an operating system to the memory operating in the normal mode such that driver code starts and executes the application program operating in the normal mode.

11. A secure interaction device, comprising:

a processor;

a memory coupled to the processor, wherein the memory comprises memory operating in a normal mode and memory operating in a secure mode; and

an accessed device coupled to the processor,

wherein the processor is configured to:

receive a secure processing request from an application program, wherein the application program is comprised in the memory operating in the normal mode and operates in the normal mode, and wherein the processor operates in the normal mode when receiving the secure processing request;

switch from the normal mode to the secure mode when receiving the secure processing request;

read data information into the memory operating in the secure mode, wherein the data information is data that the processor operating in the secure mode generates after parsing the secure processing request, and wherein the processor operates in the secure mode; and

control the accessed device to operate according to the data information stored in the memory operating in the secure mode, wherein the accessed device operates in the normal mode, wherein the processor operates in the secure mode, wherein the accessed device responds to control of the processor when the processor operates in the secure mode, wherein the accessed device operates after being invoked by the application program, wherein driver code for driving the application program and driver code for driving the accessed device operate in the normal mode, wherein the secure mode and the normal mode are two mutually isolated running environments, wherein the processor, when operating in the normal mode, cannot access the memory operating in the secure mode, and wherein the processor, when operating in the secure mode, can access the application program operating in the normal mode.

12. The secure interaction device of claim 11 , wherein when operating in the secure mode, the processor is further configured to:

read a security indicator from the memory operating in the secure mode; and

notify, according to the security indicator, a user that a current environment is in a secure state.

13. The secure interaction device of claim 12 , further comprising a security indication device coupled to the processor, wherein when operating in the secure mode, the processor is further configured to control, according to the security indicator, the security indication device to operate, wherein the security indication device operates in the secure mode, and wherein the security indication device responds to control of the processor only when the processor operates in the secure mode.

14. The secure interaction device of claim 12 , wherein when operating in the secure mode, the processor is further configured to control a display to display the security indicator read from the memory operating in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

15. The secure interaction device of claim 11 , wherein when operating in the secure mode, the processor is further configured to read frame buffer information into the memory operating in the secure mode, wherein the frame buffer information is obtained, by the processor operating in the secure mode, from an interface provided by a frame buffer device, and wherein the frame buffer device operates in the normal mode.

16. The secure interaction device of claim 15 , wherein the accessed device is a display, wherein the processor is further configured to control, when operating in the secure mode, the display to display the frame buffer information read from the memory operating in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

17. The secure interaction device of claim 16 , wherein when operating in the secure mode, the processor is further configured to control the display to display a foreground layer and a background layer, wherein the frame buffer information is displayed at the foreground layer, wherein a background is displayed at the background layer, and wherein the foreground layer and the background layer are displayed in different colors.

18. The secure interaction device of claim 11 , wherein when operating in the secure mode, the processor is further configured to:

obtain user data entered into an input device by a user, wherein the input device operates in the normal mode;

perform verification processing on the user data to obtain result data; and

read the result data into the memory operating in the secure mode.

19. The secure interaction device of claim 18 , wherein the accessed device is a display, wherein when operating in the secure mode, the processor is further configured to control the display to display the result data read from the memory in the secure mode, wherein the display operates in the normal mode, and wherein the display responds to control of the processor only when the processor operates in the secure mode.

20. The secure interaction device of claim 11 , wherein the processor is further configured to:

set the accessed device to accessible by the processor operating in the secure mode; and

load an operating system to the memory operating in the normal mode such that driver code starts and executes the application program operating in the normal mode.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 16, 2017
From: LI, WENHAO; XIA, YUBIN; CHEN, HAIBO
To: HUAWEI TECHNOLOGIES CO., LTD.
Reel/Frame 041592/0170 →
Continuity (1)
Related Publication 20170164201A1 · Jun 8, 2017
Cited By (1)
US 12,189,726