IP Library Granted Patent US 11,997,495
Granted Patent B2
US 11,997,495 · App. 17/416,889 · Granted May 28, 2024

Transfer functionality between secure elements servers

Inventors: Joan Carles Laina Farell (Barcelona, ES); José Ignacio Honorato Garcia (Madrid, ES); David Patiño Piedra (Barcelona, ES); Blanca Esther Sanchez Muñoz (Madrid, ES)
H04W12/35H04W4/70H04W8/205H04W12/03
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,997,495
App. No.
17/416,889
Granted
May 28, 2024
Kind
B2
Abstract

It is provided a method for transferring and managing data packages between a first portable secure element, SE, server implemented in a portable device ( 100, 200 ) and a second portable SE server implemented in an embedded UICC, eUICC ( 120, 240 ), comprised in a user's device ( 110, 230 ) which is local to the portable device ( 100, 200 ), the first and second portable SE severs comprising Subscription Manager, SM, functionalities, the method comprises the first and the second portable SE servers establishing off-line communication using local data transport protocols in a secured mode, the first or the second portable SE server implementing first transfer functionalities ( 140 ) for performing secure transfer of the data packages and the first or the second portable SE server implementing second transfer functionalities ( 140 ) for performing end-to-end securing of the data packages after the secure transfer of the data packages.

Claims (30)

1. Method for transferring and managing data packages between a first portable secure element, SE, server implemented in a portable device ( 100 , 200 ) and a second portable SE server implemented in an embedded UICC, eUICC ( 120 , 240 ), comprised in a user's device ( 110 , 230 ) which is local to the portable device ( 100 , 200 ), the first and second portable SE severs comprising Subscription Manager, SM, functionalities, the method comprising:

a. the first and the second portable SE servers establishing off-line communication using local data transport protocols in a secured mode, wherein the off-line communication is performed via a connection without the requirement of an interact connection, based on local data transport protocol, peer-to-peer, P2P protocol that comprises Bluetooth, or Near Field Communication, NFC protocol or I Wi-Fi Direct;

b. the first or the second portable SE server implementing first transfer functionalities ( 140 , 260 ) for performing secure transfer of the data packages between the two portable SE servers via the off-line communication; and

c. the first or the second portable SE server implementing second transfer functionalities ( 140 , 260 ) for performing end-to-end securing of the data packages after the secure transfer of the data packages,

i. between the two portable SE servers via the off-line communication, wherein end-to-end securing refers to the data packages remaining with a status transferred in the first portable SE server implemented in the portable device or are deleted; and

ii. wherein the first and the second portable SE servers implement the first transfer functionalities ( 140 , 260 ) for transferring data packages comprising eUICC OS upgrades.

2. The method for transferring and managing data packages according to claim 1 , wherein the first and the second portable SE servers implement the first transfer functionalities ( 140 , 260 ) for transferring data packages comprising eSIM profiles.

3. The method for transferring and managing data packages according to claim 1 , wherein the first portable SE server implementing the first transfer functionalities ( 140 , 260 ) for transferring data packages comprises downloading the data packages into a Local Profile Assistant, LPA, in the user's device ( 110 ) for the second portable SE server, the LPA implementing third transfer functionalities for transferring the data packages in the second portable SE server.

4. The method for transferring and managing data packages according to claim 1 , wherein the first and the second portable SE servers implement the first and the second transfer functionalities with native code or any programming language supported by the first and, second portable SE servers.

5. A non-transitory digital data storage medium encoding a machine-executable program of instructions to perform the method carried out by the user's device ( 110 , 230 ) according to claim 1 .

6. A non-transitory digital data storage medium encoding a machine-executable program of instructions to perform the method carried out by the portable device ( 100 , 200 ) according to claim 1 .

7. A portable device ( 100 , 200 ) comprising a first portable secure element, SE, server configured to transfer and manage data packages with a second portable SE server implemented in an embedded UICC, eUICC, comprised in a user's device ( 110 , 230 ) the portable device ( 100 , 200 ) local to the user's device ( 110 , 230 ), the first portable SE server comprises:

a. means for establishing off-line communication with the second portable SE server using local data transport protocols in a secured mode wherein the off-line communication is performed via a connection without the requirement of an Internet connection, based on local data transport protocol, peer-to-peer, P2P protocol that comprises Bluetooth, or Near Field Communication, NFC protocol, or Wi-Fi Direct;

b. means for implementing first transfer functionalities ( 140 , 260 ) for performing secure transfer of the data packages between the two portable SE servers via the off-line communication; and

c. means for implementing second transfer functionalities ( 140 , 260 ) for performing end-to-end securing of the data packages after secure transfer of the data packages between the two portable SE servers the off-line communication,

i. wherein end-to-end securing refers to the data packages remaining with a status transferred in the first portable SE server implemented in the portable device or are deleted; and

ii. wherein the first and the second portable SE servers implement the first transfer functionalities ( 140 , 260 ) for transferring, data packages comprising eUICC OS upgrades.

8. The portable device ( 100 , 200 ) according to claim 7 , wherein the portable device ( 100 , 200 ) is a (contact/contactless) smart card or a secure memory card or any secure chip/tamper proof chip or token that runs in secure application by itself or as part of other device.

9. The portable device ( 100 , 200 ) according to claim 7 , wherein the portable device ( 100 , 200 ) is a smartphone, tablet or any wearable supporting an eUICC wherein the first portable SE server is implemented.

10. The portable device ( 100 , 200 ) according to claim 7 , further comprising a Local Profile Assistant, LPA implementing third transfer functionalities for transferring the data packages in the second portable SE server.

11. The portable device ( 100 , 200 ) according to claim 7 , wherein the data packages comprise eSIM profiles and/or eUICC OS upgrades.

12. A user's device ( 110 , 230 ) comprising a second portable secure element, SE, implemented in an embedded UICC, eUICC ( 120 , 240 ), configured to transfer and manage data packages with a first portable SE server implemented in a portable device ( 100 , 200 ) local to the user's device ( 110 , 230 ), the user's device ( 110 , 230 ) comprises:

a. means for establishing off-line communication with the first portable SE server using local data transport protocols in a secured mode; wherein the off-line communication is performed via a connection without the requirement of an Internet connection, based on local data transport protocol, peer-to-peer, P2P protocol that comprises Bluetooth, or Near Field Communication, NFC protocol, or Wi-Fi Direct;

b. means for implementing first transfer functionalities ( 140 , 260 ) for performing secure transfer of the data packages between the two portable SE servers via the off-line communication; and

c. means for implementing second transfer functionalities ( 140 , 260 ) for performing end-to-end securing of the data packages after secure transfer of the data packages between the two portable SE servers via the off-line communication,

i. wherein end-to-end securing refers to the data packages remaining with a status transferred in the first portable SE server implemented in the portable device or are deleted; and

ii. wherein the first and the second portable SE servers implement the first transfer functionalities ( 140 , 260 ) for transferring data packages comprising eUICC OS upgrades.

13. The user's device ( 110 , 230 ) according to claim 12 , wherein the user's device ( 110 , 230 ) is a smartphone, tablet or any wearable supporting eUICC.

14. The user's device ( 110 , 230 ) according to claim 12 , further comprising a Local Profile Assistant, LPA implementing third transfer functionalities for downloading, the data packages transferred from the second portable SE server.

15. The user's device ( 110 , 230 ) according to claim 12 , wherein the means for establishing off-line communication with the user s device ( 110 ) comprises means for establishing a Peer two Peer, P2P communication that comprises Bluetooth, or Near Field Communication, NFC protocol, or Wi-Fi Direct.

Assignments (2)
CHANGE OF NAME Recorded Jul 21, 2024
From: GIESECKE+DEVRIENT MOBILE SECURITY GMBH
To: GIESECKE+DEVRIENT EPAYMENTS GMBH
Reel/Frame 068465/0537 →
NUNC PRO TUNC ASSIGNMENT Recorded Jul 21, 2024
From: GIESECKE+DEVRIENT EPAYMENTS GMBH
To: GIESECKE+DEVRIENT MOBILE SECURITY GERMANY GMBH
Reel/Frame 068037/0735 →
Priority Claims (1)
EP 18382978 · Dec 21, 2018 · regional
Continuity (1)
Related Publication 20220086648A1 · Mar 17, 2022