IP Library Granted Patent US 10,924,279
Granted Patent B2
US 10,924,279 · App. 16/054,264 · Granted Feb 16, 2021

Systems, methods, and computer program products for interfacing multiple service provider trusted service managers and secure elements

Inventor: Michael J. Gargiulo (Corinth, TX)
Assignee: Google LLC
H04L9/321G06F8/61H04L9/00H04L67/10H04L67/34H04W4/50H04W4/60H04W4/80H04W8/18H04W12/004H04W12/0023H04W12/0806H04L2209/80
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,924,279
App. No.
16/054,264
Granted
Feb 16, 2021
Kind
B2
Abstract

System, methods, and computer program products are provided for interfacing between one of a plurality of service provider (SP) trusted service managers (TSM) and one of a plurality of secure elements (SE). A first request to renew a service is received from an SP system over a communications network. The first request includes a service qualifier associated with the service. A secure element corresponding to the service qualifier is determined. A second request to delete data associated with the service qualifier from the secure element is transmitted to the secure element. A third request to install an application on the secure element is transmitted to the secure element. A fourth request to activate the application on the secure element is transmitted to the secure element.

Claims (39)

1. A method to interface with secure elements, comprising:

receiving, by a central trusted service manager computing system, a request to delete one or more services stored on a secure element, the request including a service qualifier identifying a particular instance of the one or more services to be deleted from the secure element;

transmitting, by the central trusted service manager computing system to a central security domain of the secure element, a request to execute one or more commands to delete data associated with the service qualifier identifying the particular instance of the one or more services from the secure element; and

executing, by the secure element, the one or more commands by:

identifying, by the secure element, data corresponding to each of the one or more services, the identified data comprising one or more unique numbers each identifying a different payment account, and

deleting, by the secure element via the central security domain, the one or more unique numbers each identifying the different payment account from the secure element.

2. The method of claim 1 , further comprising determining, by the computing system, that the secure element corresponds to the request to delete the one or more services stored on the secure element.

3. The method of claim 1 , further comprising determining, by the computing system, which commands are executable by the secure element to delete the data associated with the one or more services from the secure element.

4. The method of claim 1 , further comprising receiving, by the secure element, the request to execute the one or more commands to delete the data associated with the one or more services from the secure element.

5. The method of claim 1 , wherein the secure element comprises one or more instances of an application associated with each of the one or more services on the secure element.

6. The method of claim 5 , wherein each instance of the application is associated with a different service provider computing system.

7. The method of claim 1 , wherein executing the one or more commands further comprising locking an application associated with the data.

8. The method of claim 1 , wherein executing the one or more commands further comprises locking the secure element.

9. A system to interface with secure elements, comprising:

one or more computing devices comprising at least one memory and a processor communicatively coupled to the at least one memory, wherein the processor executes application code instructions that are stored in the at least one memory to cause the one or more computing devices to:

receive, by a central trusted service manager, a request to delete one or more services stored on a secure element, the request including a service qualifier identifying a particular instance of the one or more services to be deleted from the secure element, and

transmit, by the central trusted services manager to a central security domain of the secure element, a request to execute one or more commands to delete data associated with the service qualifier identifying the particular instance of the one or more services from the secure element; and

a secure element comprising at least one secure memory and a secure processor communicatively coupled to the at least one secure memory, wherein the secure processor executes application code instructions that are stored in the at least one secure memory to cause the secure element to:

execute the one or more commands by:

identifying data corresponding to each of the one or more services, the identified data comprising one or more unique numbers each identifying a different payment account, and

deleting, by the secure element via the central security domain, the identified data from the secure element.

10. The system of claim 9 , wherein the processor is further configured to execute computer-executable instructions stored in the at least one memory to cause the one or more computing devices to determine that the secure element corresponds to the request to delete the one or more services stored on the secure element.

11. The system of claim 9 , wherein the processor is further configured to execute computer-executable instructions stored in the at least one memory to cause the one or more computing devices to determine which commands are executable by the secure element to delete the data associated with the one or more services from the secure element.

12. The system of claim 9 , wherein the secure processor is further configured to execute computer-executable instructions stored in the at least one secure memory to cause the secure element to receive the request to execute the one or more commands to delete the data associated with the one or more services from the secure element.

13. The system of claim 9 , wherein the secure element comprises one or more instances of an application associated with each of the one or more services on the secure element.

14. The system of claim 13 , wherein each instance of the application is associated with a different service provider computing system.

15. The system of claim 9 , wherein executing the one or more commands further comprising locking an application associated with the data.

16. The system of claim 9 , wherein executing the one or more commands further comprises locking the secure element.

17. One or more non-transitory computer readable media that collectively store instructions that when executed by one or more processors cause the one or more processors to perform operations, the operations comprising:

receiving, by a central trusted service manager computing system, a request to delete one or more services stored on a secure element, the request including a service qualifier identifying a particular instance of the one or more services to be deleted from the secure element;

transmitting, by the central trusted service manager computing system to a central security domain of the secure element, a request to execute one or more commands to delete data associated with the service qualifier identifying the particular instance of the one or more services from the secure element; and

executing, by the secure element, the one or more commands by:

identifying, by the secure element, data corresponding to each of the one or more services, the identified data comprising one or more unique numbers each identifying a different payment account, and

deleting, by the secure element via the central security domain, the one or more unique numbers each identifying the different payment account from the secure element.

18. The one or more non-transitory computer readable media of claim 17 , wherein operations further comprise:

determining which commands are executable by the secure element to delete the data associated with the one or more services from the secure element.

19. The one or more non-transitory computer readable media of claim 17 , wherein operations further comprise:

receive the request to execute the one or more commands to delete the data associated with the one or more services from the secure element.

20. The one or more non-transitory computer readable media of claim 17 , wherein the secure element comprises one or more instances of an application associated with each of the one or more services on the secure element.

Assignments (3)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 26, 2018
From: JVL VENTURES, LLC
To: GOOGLE INC.
Reel/Frame 046974/0500 →
ENTITY CONVERSION Recorded Sep 26, 2018
From: GOOGLE INC.
To: GOOGLE LLC
Reel/Frame 047154/0736 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 20, 2018
From: GARGIULO, MICHAEL J.
To: JVL VENTURES, LLC
Reel/Frame 047223/0937 →