IP Library › Granted Patent US 10,367,644
Granted Patent B2
US 10,367,644 · App. 15/001,074 · Granted Jul 30, 2019

Methods for managing content, computer program products and secure element

Inventors: Dimitri Warnez (Hamburg, DE); Thierry Gouraud (Leuven, BE)
Assignee: NXP B.V.
H04L9/3234G06F21/77G06Q20/3227G06Q20/3825G06Q20/40H04L9/3263H04L63/123H04L67/34H04W12/10G06F2221/2141H04L63/0823H04L63/12
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 10,367,644
App. No.
15/001,074
Granted
Jul 30, 2019
Kind
B2
Abstract

There is disclosed a method for managing content, including generating, by a service provider, an authenticable management script configured to manage content comprised in a secure element; providing, by the service provider, the authenticable management script to the secure element. Furthermore, there is disclosed a method for managing content, comprising: receiving, by a secure element, an authenticable management script for managing content comprised in the secure element; authenticating, by the secure element, the authenticable management script; executing, by the secure element, the management script if the management script is authentic. Furthermore, there are disclosed corresponding computer program products and a corresponding secure element.

Claims (28)

1. A method for managing content, comprising:

generating, by a service provider, an authenticable management script configured to manage content comprised in a secure element;

adding, by the service provider, a management certificate provided by a certificate authority to the authenticable management script, wherein the management certificate comprises a definition of rights of specific management operations permitted to be performed by the service provider using an authenticated management script on content of the secure element; and

providing, by said service provider, the authenticable management script to the secure element, wherein the authenticable management script is authenticated by the secure element, the authenticated management script is verified to have a right to execute specific management operations by the definition of rights on the content of the secure element, and the specific management operations are executed with the authenticated management script by the secure element.

2. The method as claimed in claim 1 , wherein said generating further comprises:

signing, by said service provider, the authenticable management script using a private key of a public-private key pair.

3. A method for managing content, comprising:

receiving, by a secure element, from a service provider, an authenticable management script for managing content comprised in said secure element;

receiving, by the secure element, from the service provider, a management certificate provided by a certificate authority, wherein the management certificate comprises a definition of rights of specific management operations permitted to be performed by the service provider using an authenticated management script on content of the secure element;

authenticating, by said secure element, said authenticable management script;

verifying, using the definition of rights, that the authenticated management script has a right to execute specific management operations on the content of the secure element; and

executing, by said secure element, the specific management operations with the authenticated management script.

4. The method as claimed in claim 3 , wherein said authenticating further comprises:

verifying a signature of the authenticable management script using a first public key of a public-private key pair.

5. The method as claimed in claim 4 , further comprising:

wherein said first public key is contained in said management certificate.

6. The method as claimed in claim 5 , further comprising:

verifying a signature of the management certificate using a second public key.

7. The method as claimed in claim 3 , further comprising:

recording, by the secure element, a history of management operations performed by the service provider.

8. The method of claim 3 , wherein the secure element is coupled to a receiver in a smart card.

9. The method of claim 3 , wherein the secure element is coupled to a receiver in a mobile device.

10. A non-transitory computer-readable medium comprising instructions which, when being executed by a processing unit, cause said processing unit to carry out a method for managing content, the non-transitory computer-readable medium comprising:

instructions for receiving, by a secure element, from a service provider, an authenticable management script for managing content comprised in said secure element;

instructions for receiving, by the secure element, from the service provider, a management certificate provided by a certificate authority, wherein the management certificate comprises a definition of rights of specific management operations permitted to be performed by the service provider using an authenticated management script on content of the secure element;

instructions for authenticating, by said secure element, said authenticable management script;

instructions for verifying, using the definition of rights, that the authenticated management script has a right to execute specific management operations on the content of the secure element; and

instructions for executing, by said secure element, the specific management operations with the authenticated management script.

Assignments (1)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 20, 2016
From: WARNEZ, DIMITRI; GOURAUD, THIERRY
To: NXP B.V.
Reel/Frame 037539/0236 →
Priority Claims (1)
EP 15152143 · Jan 22, 2015 · regional
Continuity (1)
Related Publication 20160218876A1 · Jul 28, 2016