IP Library Granted Patent US 12,500,896
Granted Patent B2
US 12,500,896 · App. 17/213,658 · Granted Dec 16, 2025

Offline scripting for remote file management

Inventors: Luis Miguel Amoros (Barcelona, ES); Jordi Monter Prat (Dulles, VA)
Assignee: GIESECKE+DEVRIENT MOBILE SECURITY GERMANY GMBH
H04L63/105G06F16/183H04L63/0823H04L63/0869
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,500,896
App. No.
17/213,658
Granted
Dec 16, 2025
Kind
B2
Abstract

Methods, devices and systems are provided for performing remote file management (RFM) operations at a secure element (SE). A secure file update script is received at an OfflineRFMAgent, located within the SE, from an off-card entity (OCE). The secure file update script has been generated offline by an SE issuer managing the OCE, using a decentralized remote file management (DRFM) platform and comprises a plurality of remote management commands for carrying out file management operations on the SE. In a further step, a security level authentication between the OCE and SE based on the secure file update script is performed. If the security level authentication is successful, in a subsequent step a secure channel session between the OCE and the SE is established through the OfflineRFMAgent. Finally, the plurality of remote management commands is processed to remotely manage a file system on the SE.

Claims (48)

1 . A method for performing remote file management operations at a secure element by an offline remote file management agent, the method comprising:

receiving by the offline remote file management agent of the secure element a secure file update script from an off-card entity,

the offline remote file management agent being located within the secure element,

the secure file update script being transmitted to a target group that includes a plurality of secure elements of a respective plurality of mobile devices,

the secure file update script being usable by each of the plurality of secure elements of the target group to perform file management operations,

the secure file update script comprising a plurality of remote management commands for carrying out file management operations on the secure element including updating a directory and/or files of the secure element and/or managing applications on the secure element;

performing by the offline remote file management agent located within the secure element a security level authentication of the off-card entity with the secure element based on a security level of the secure file update script;

establishing by the offline remote file management agent located within the secure element a secure channel session between the off-card entity and the secure element in a case that the security level authentication is successful; and

processing by the offline remote file management agent located within the secure element the plurality of remote management commands to manage a file system on the secure element, wherein said processing the plurality of remote management commands comprises creating and/or updating a content of the file system on the secure element by using a file access application programming interface.

2 . The method according to claim 1 , wherein the method is carried out using a secure channel communication protocol that provides mutual authentication based on a pair of ephemeral keys of the off-card entity.

3 . The method according to claim 1 , wherein the offline remote file management agent receives the secure file update script through a plurality of messages from the off-card entity, each of the plurality of message comprising one command from the plurality of remote management commands.

4 . The method according to claim 1 , wherein said performing security level authentication comprises checking whether the security level of the secure file update script is set to AUTHENTICATED.

5 . The method according to claim 4 , wherein the method further comprises rejecting the secure file update script in a case that the security level is not AUTHENTICATED.

6 . The method according to claim 1 , wherein the secure file update script comprises a PERFORM SECURITY OPERATION command and a MUTUAL AUTHENTICATE command, wherein the PERFORM SECURITY OPERATION command comprises an off-card entity certificate and the MUTUAL AUTHENTICATE command comprise an ephemeral public key of the off-card entity.

7 . The method according to claim 6 , wherein said establishing the secure channel session comprises requesting a security domain located at an operating system of the secure element to perform a security operation for verifying the off-card entity certificate.

8 . The method according to claim 6 , wherein said establishing the secure channel session comprises requesting a security domain located at an operating system of the secure element to perform a security operation for verifying the off-card entity certificate and, further comprises requesting the security domain to extract the public key from the off-card entity certificate and to perform a mutual authenticate operation.

9 . The method according to claim 1 ,

wherein the secure file update script further comprises a SELECT command indicating a remote management application for executing the plurality of remote management commands on the file system of the secure element during the established secure channel session, and wherein the offline remote file management agent handles the SELECT command without closing the established secure channel session.

10 . The method according to claim 1 , wherein the secure file update script is broadcast and multicast to each of the plurality of secure elements of the target group.

11 . The method according to claim 1 , wherein the plurality of secure elements of the target group share the same credentials.

12 . The method according to claim 1 , wherein the secure file update script comprises a card group ID identifying the plurality of secure elements of the target group having same off-card entity credentials.

13 . The method according to claim 1 , wherein the secure file update script comprises a plurality of remote management commands for carrying out file management operations on the secure element including updating a directory of the secure element.

14 . The method according to claim 1 , wherein the secure file update script comprises a plurality of remote management commands for carrying out file management operations on the secure element including updating files of the secure element.

15 . The method according to claim 1 , wherein the secure file update script comprises a plurality of remote management commands for carrying out file management operations on the secure element including managing applications on the secure element.

16 . A computer program product stored on a storage device, the computer program product including an offline remote file management agent, the offline remote file management agent comprising:

means for receiving a secure file update from an off-card entity,

the offline remote file management agent being configured to be located within the secure element,

the secure file update script being transmitted to a target group that includes a plurality of secure elements of a respective plurality of mobile devices,

the secure file update script being usable by each of the plurality of secure elements of the target group to perform file management operations, and

the secure file update script comprising a plurality of remote management commands for carrying out file management operations on the secure element including updating a directory and/or files of the secure element and/or managing applications on the secure element;

means for performing a security level authentication of the off-card entity with the secure element based on a security level of the secure file update script;

means for establishing a secure channel session between the off-card entity and the secure element in a case that the security level authentication is successful;

means for processing the plurality of remote management commands by calling corresponding methods to manage a file system on the secure element, wherein said processing the plurality of remote management commands comprises creating and/or updating a content of the file system on the secure element by using a file access application programming interface.

17 . The offline remote file management agent according to claim 16 , wherein

the offline remote file management agent is configured to receive the secure file update script through a plurality of messages from the off-card entity, each of the plurality of messages comprising one command from the plurality of remote management commands and

wherein the offline remote file management agent receives the secure file update script through a plurality of messages from the off-card entity, each of the plurality of message comprising one command from the plurality of remote management commands.

18 . The offline remote file management agent according to claim 16 , further comprising means for restricting an execution of a set of remote management commands, the set of remote management commands comprising VERIFY PIN, CHANGE PIN, DISABLE PIN, ENABLE PIN, and UNBLOCK PIN.

19 . The offline remote file management agent according to claim 16 , further comprising an access domain configuration defining at least one access domain parameter, for controlling an application instance to the file system of the secure element, and/or an application provider identifier defining an ownership relation between the offline remote file management agent and the secure element, wherein a value of the application provider identifier corresponds to a subject identifier in an OCE certificate used during the authentication process.

20 . A remote file management system comprising:

a secure element that includes one or more processors and a memory storage configured to store one or more files; and

an offline remote file management agent located within the secure element, wherein the offline remote file management agent located within the secure element is configured to:

receive a secure file update script from an off-card entity,

the secure file update script being transmitted to a target group that includes a plurality of secure elements of a respective plurality of mobile devices,

the secure file update script being usable by each of the plurality of secure elements of the target group to perform file management operations,

the secure file update script comprising a plurality of remote management commands for carrying out file management operations on the secure element including updating a directory and/or files of the secure element and/or managing applications on the secure element;

perform a security level authentication of the off-card entity with the secure element based on a security level of the secure file update script;

establish a secure channel session between the off-card entity and the secure element in a case that the security level authentication is successful; and

process the plurality of remote management commands to manage a file system on the secure element, wherein said processing the plurality of remote management commands comprises creating and/or updating a content of the file system on the secure element by using a file access application programming interface.

Assignments (6)
CHANGE OF NAME Recorded Jul 21, 2024
From: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
To: GIESECKE+DEVRIENT EPAYMENTS GMBH
Reel/Frame 068465/0537 →
NUNC PRO TUNC ASSIGNMENT Recorded Jul 21, 2024
From: GIESECKE+DEVRIENT EPAYMENTS GMBH
To: GIESECKE+DEVRIENT MOBILE SECURITY GERMANY GMBH
Reel/Frame 068037/0735 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 26, 2021
From: AMOROS, LUIS MIGUEL
To: GIESECKE+DEVRIENT MOBILE SECURITY IBERIA S.A.
Reel/Frame 055732/0127 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 26, 2021
From: MONTER PRAT, JORDI
To: GIESECKE+DEVRIENT MOBILE SECURITY AMERICA, INC
Reel/Frame 055732/0130 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 26, 2021
From: GIESECKE+DEVRIENT MOBILE SECURITY AMERICA, INC
To: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
Reel/Frame 055732/0143 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 26, 2021
From: GIESECKE+DEVRIENT MOBILE SECURITY IBERIA S.A.
To: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
Reel/Frame 055732/0154 →
Continuity (2)
Provisional Application 63000984 · Mar 27, 2020
Related Publication 20210306347A1 · Sep 30, 2021
References Cited (21)
US 20100178945A1 · Millet · 2010 [cited by examiner]
US 20120190354A1 · Merrien · 2012 [cited by examiner]
US 20130109308A1 · Singh · 2013 [cited by examiner]
US 20140024343A1 · Bradley · 2014 [cited by examiner]
US 20140031024A1 · Xie · 2014 [cited by examiner]
US 20170013442A1 · Li · 2017 [cited by examiner]
US 20170099285A1 · Ziat · 2017 [cited by examiner]
US 20170245137A1 · Cho · 2017 [cited by examiner]
US 20170289115A1 · Lessiak · 2017 [cited by examiner]
US 20190121797A1 · Dumoulin · 2019 [cited by examiner]
US 20190208407A1 · Ding · 2019 [cited by examiner]
US 20190327236A1 · Ahuja · 2019 [cited by examiner]
US 20200128390A1 · Lee · 2020 [cited by examiner]
US 20210153166A1 · Kamat · 2021 [cited by examiner]
US 20210219138A1 · Comarmond · 2021 [cited by examiner]
GlobalPlatform Technology Secure Channel Protocol ‘11’ Card Specification v2.3—Amendment F, Version 1.2, Jul. 2018, pp. 1-62. (Year: 2018). [cited by examiner]
Security and Trust Services API (SATSA) for Java™ 2 Platform, Micro Edition, Version 1.0, Release: Jul. 28, 2004, pp. 1-214. (Year: 2004). [cited by examiner]
Wu Zhou et al., AlwaysUp-to-date-ScalableOfflinePatchingofVM ImagesinaComputeCloud, Dec. 6, 2010, ACM, pp. 377-386. (Year: 2010). [cited by examiner]
Charles P. Wright et al., Extending ACID Semantics to the File System, Jun. 1, 2007, ACM, vol. 3, Issue 2, pp. 1-42. (Year: 2007). [cited by examiner]
Laurent Bobelin et al., An Autonomic Cloud Management System for Enforcing Security and Assurance Properties, Jun. 16, 2015, ACM, pp. 1-8. (Year: 2015). [cited by examiner]
Gregory Linklater et al., Toward Distributed Key Management for Offline Authentication, Sep. 26, 2018, ACM, pp. 10-19. (Year: 2018). [cited by examiner]