IP Library Granted Patent US 10,715,527
Granted Patent B2
US 10,715,527 · App. 15/740,377 · Granted Jul 14, 2020

Method of managing profiles in a secure element

Inventors: Jerome Dumoulin (Colombes, FR); Alexis Michel (Colombes, FR)
Assignee: IDEMIA France
H04L63/102G06F21/31H04L9/3226H04L9/3234H04L63/083H04L63/0853H04L63/12H04L67/30
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,715,527
App. No.
15/740,377
Granted
Jul 14, 2020
Kind
B2
Abstract

A method of managing profiles in a secure element where the secure element includes an active first profile associated with a first communication network and a second profile associated with a second communication network. The method includes deactivating the first profile and activating the second profile, where the deactivation and the activation are implemented following detection of a failure during a local verification pertaining to the first profile for the use of this the first profile. A local verification may be a verification in the secure element of the authorization of access of a user to the first profile, for example three failures of PIN or PUK code or of biometric authentication data, the local verification being performed in the secure element, and the failure being relative to a security failure of the first profile or to an operating failure of the first profile.

Claims (34)

1. A method of managing profiles in a secure element, wherein the secure element comprises a first profile associated with a first communication network, and a second profile associated with a second communication network, wherein the first profile is active, and the method comprises:

deactivating said first profile; and

activating said second profile;

wherein the deactivation and the activation occur upon detection of a failure during a local verification pertaining to said first profile for the use of said first profile, said local verification being performed in the secure element, and said failure being relative to a security failure of the first profile or to an operating failure of the first profile.

2. The method of managing profiles as claimed in claim 1 , wherein the local verification comprises verification in said secure element of the authorization for access of a user to said first profile, wherein a security failure is detected in the secure element, in the event of the failure of verification.

3. The method of managing profiles as claimed in claim 2 , wherein the verification in the secure element of the authorization for the access of a user comprises the verification of a personal identification number associated with said first profile.

4. The method of managing profiles as claimed in claim 3 , wherein the verification in the secure element of the authorization for the access of a user comprises the verification of a personal unblocking key associated with said first profile.

5. The method of managing profiles as claimed in claim 3 , wherein the verification in the secure element of the authorization for the access of a user comprises the verification of authentication data for said user.

6. The method of managing profiles as claimed in claim 3 , wherein local verification comprises verification of the integrity of said first profile, in order to detect the corrupted operation of the latter.

7. The method of managing profiles as claimed in claim 2 , wherein the verification in the secure element of the authorization for the access of a user comprises the verification of a personal unblocking key associated with said first profile.

8. The method of managing profiles as claimed in claim 7 , wherein the verification in the secure element of the authorization for the access of a user comprises a verification of authentication data for said user.

9. The method of managing profiles as claimed in claim 2 , wherein the verification in the secure element of the authorization for the access of a user comprises the verification of authentication data for said user.

10. The method of managing profiles as claimed in claim 2 , wherein local verification comprises a verification of the integrity of said first profile, in order to detect the corrupted operation of the latter.

11. The method of managing profiles as claimed in claim 1 , wherein the local verification comprises a verification of the integrity of said first profile, in order to detect the corrupted operation of the latter.

12. The method of managing profiles as claimed in claim 11 , wherein the verification of the integrity of said first profile is executed during an activation phase of said first profile.

13. The method of managing profiles as claimed in claim 1 , further comprising a reactivation of said first profile, wherein the reactivation comprises the deactivation of said second profile and the activation of said first profile.

14. The method of managing profiles as claimed in claim 13 , wherein the reactivation of the first profile is deployed upon the reception, in said secure element, of a request for the activation of the first profile ( 210 ), wherein said activation request originates from the first communication network, associated with said first profile.

15. The method of managing profiles as claimed in claim 14 , wherein said request for the activation of said first profile is generated at the request of a user.

16. The method of managing profiles as claimed in claim 14 , wherein said request for the activation of said first profile is generated upon the expiry of a predetermined time interval, with effect from a notification of the deactivation of said first profile in the secure element.

17. A secure element comprising a first profile, associated with a first communication network, and a second profile, associated with a second communication network, wherein said first profile is active, and the secure element is configured to:

deactivate said first profile; and

activate said second profile;

wherein the secure element is configured such that the deactivation and the activation occur upon detection of a failure during a local verification pertaining to said first profile for the use of this said first profile, said local verification being performed in the secure element, and said failure being relative to a security failure of the first profile or to an operating failure of the first profile.

18. The secure element as claimed in claim 17 , wherein said secure element is a card of the embedded UICC type.

19. A host device, comprising:

a secure element that includes:

a first profile, associated with a first communication network; and

a second profile, associated with a second communication network, wherein said first profile is active, and the secure element is configured to:

deactivate said first profile, and

activate said second profile, wherein,

the secure element is configured such that the deactivation and the activation occur upon detection of a failure during a local verification pertaining to said first profile for the use of this said first profile,

said local verification is performed in the secure element, and

said failure is relative to a security failure of the first profile or to an operating failure of the first profile.

20. The host device as claimed in claim 19 , wherein said host device is a portable communication terminal.

Assignments (5)
CHANGE OF NAME Recorded Jun 4, 2024
From: OBERTHUR TECHNOLOGIES
To: IDEMIA FRANCE
Reel/Frame 067609/0169 →
CORRECTIVE ASSIGNMENT TO CORRECT THE LIST OF PROPERTIES TO REMOVE APPLICATION 15/185,870 PREVIOUSLY RECORDED ON REEL 045969 FRAME 0299. ASSIGNOR(S) HEREBY CONFIRMS THE CHANGE OF NAME. Recorded Jul 9, 2020
From: OBERTHUR TECHNOLOGIES
To: IDEMIA FRANCE
Reel/Frame 053169/0547 →
CORRECTIVE ASSIGNMENT TO REMOVE THE ERRONEOUS FILED APPLICATION NUMBER 15/185,870, PREVIOUSLY RECORDED ON REEL 045969 FRAME 0299. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT OF ASSIGNOR'S INTEREST. Recorded Jul 13, 2018
From: IDEMIA FRANCE
To: IDEMIA FRANCE
Reel/Frame 047644/0951 →
CHANGE OF NAME Recorded Apr 18, 2018
From: OBERTHUR TECHNOLOGIES
To: IDEMIA FRANCE
Reel/Frame 045969/0299 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Dec 28, 2017
From: DUMOULIN, JEROME; MICHEL, ALEXIS
To: OBERTHUR TECHNOLOGIES
Reel/Frame 044496/0954 →