IP Library Granted Patent US 9,811,672
Granted Patent B2
US 9,811,672 · App. 14/855,364 · Granted Nov 7, 2017

Systems and methods for provisioning and using multiple trusted security zones on an electronic device

Inventors: Stephen J. Bye (Atlanta, GA); Lyle W. Paczkowski (Mission Hills, KS); William M. Parsel (Overland Park, KS); Carl J. Persson (Olathe, KS); Matthew C. Schlesener (Shawnee, KS); Trevor D. Shipley (Olathe, KS)
Assignee: Sprint Communications Company L.P.
G06F21/604G06F21/62G06F21/74
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 9,811,672
App. No.
14/855,364
Granted
Nov 7, 2017
Kind
B2
Abstract

A method of provisioning a subordinate trusted security zone in a processor having a trusted security zone. The method comprises receiving by a master trusted application executing in a master trusted security zone of the processor a request to provision a subordinate trusted security zone in the processor, wherein the request comprises a master trusted security zone key, wherein the request designates the subordinate trusted security zone, and wherein the request defines an independent key. The method further comprises provisioning by the master trusted application the subordinate trusted security zone to be accessible based on the independent key.

Claims (15)

1. A method of changing the memory size of a subordinate trusted security zone in a processor having a trusted security zone, comprising:

transmitting an indication of memory utilized by a first subordinate trusted security zone of the processor to a master trusted application executing in a master trusted security zone of the processor;

determining an average memory utilized by the first subordinate trusted security zone based on the indication of memory utilized by the first subordinate trusted security zone;

receiving, by the master trusted application from a second subordinate trusted security zone of the processor, a request to increase the memory size of the second subordinate trusted security zone of the processor, wherein the master trusted application is mediating transfer of memory resources to the first subordinate trusted security zone and the second subordinate trusted security zone without accessing or monitoring either of the first subordinate trusted security zone and the second subordinate trusted security zone, and wherein the master trusted application has no visibility into a first memory space associated with the first subordinate trusted security zone and has no visibility into the processing of a first trusted application that executes in the first subordinate trusted security zone;

in response to receiving the request from the second subordinate trusted security zone, reducing, by the master trusted application, the memory size of the first subordinate trusted security zone based at least in part on the indication of memory utilized by the first subordinate trusted security zone and the average memory utilized by the first subordinate trusted security zone; and

increasing, by the master trusted application, the memory size of the second subordinate trusted security zone.

2. The method of claim 1 , wherein the indication of memory utilized by the first subordinate trusted security zone is transmitted when the first trusted subordinate trusted security zone discontinues executing.

3. The method of claim 1 , wherein the average memory utilized by the first subordinate trusted security zone is determined based on a predefined number of the most recently transmitted indications of memory utilized by the first subordinate trusted security zone.

4. The method of claim 1 , further comprising determining a maximum quantity of memory utilized by the first subordinate trusted security zone based on the indication of memory utilized by the first subordinate trusted security zone, wherein reducing the memory size of the first subordinate trusted security zone is further based on the maximum quantity of memory utilized by the first subordinate trusted security zone.

5. The method of claim 1 , further comprising reducing the memory size of a third subordinate trusted security zone of the processor based at least in part on one of an average memory utilization of the third subordinate trusted security zone or a maximum memory utilization of the third subordinate trusted security zone determined from an indication of memory utilized by the third subordinate trusted security zone.

6. The method of claim 1 , wherein reducing the memory size of the first subordinate trusted security zone is further based on a daily schedule associated with a mobile device that comprises the processor having the trusted security zone.

7. The method of claim 1 , wherein the trusted security zone comprises at least four subordinate trusted security zones.

8. The method of claim 1 , further comprising installing, via the master trusted application executing in the master trusted security zone, a first trusted application in the first subordinate trusted security zone.

9. The method of claim 8 , further comprising disabling execution of the master trusted security zone and any other subordinate trusted security zones while a first trusted application in the first subordinate trusted security zone is executing.

10. The method of claim 1 , wherein an independent key corresponds to only one of the first subordinate trusted security zone or the second subordinate trusted security zone.

Assignments (6)
RELEASE OF SECURITY INTEREST Recorded Aug 23, 2022
From: DEUTSCHE BANK TRUST COMPANY AMERICAS
To: IBSV LLC; LAYER3 TV, LLC; PUSHSPRING, LLC; T-MOBILE CENTRAL LLC; T-MOBILE USA, INC.; ASSURANCE WIRELESS USA, L.P.; BOOST WORLDWIDE, LLC; CLEARWIRE COMMUNICATIONS LLC; CLEARWIRE IP HOLDINGS LLC; SPRINTCOM LLC; SPRINT COMMUNICATIONS COMPANY L.P.; SPRINT INTERNATIONAL INCORPORATED; SPRINT SPECTRUM LLC
Reel/Frame 062595/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Mar 4, 2021
From: SPRINT COMMUNICATIONS COMPANY L.P.
To: T-MOBILE INNOVATIONS LLC
Reel/Frame 055604/0001 →
SECURITY AGREEMENT Recorded Apr 2, 2020
From: T-MOBILE USA, INC.; ISBV LLC; T-MOBILE CENTRAL LLC; LAYER3 TV, INC.; PUSHSPRING, INC.; BOOST WORLDWIDE, LLC; CLEARWIRE COMMUNICATIONS LLC; CLEARWIRE IP HOLDINGS LLC; CLEARWIRE LEGACY LLC; SPRINT COMMUNICATIONS COMPANY L.P.; SPRINT INTERNATIONAL INCORPORATED; SPRINT SPECTRUM L.P.; ASSURANCE WIRELESS USA, L.P.
To: DEUTSCHE BANK TRUST COMPANY AMERICAS
Reel/Frame 053182/0001 →
TERMINATION AND RELEASE OF FIRST PRIORITY AND JUNIOR PRIORITY SECURITY INTEREST IN PATENT RIGHTS Recorded Apr 2, 2020
From: DEUTSCHE BANK TRUST COMPANY AMERICAS
To: SPRINT COMMUNICATIONS COMPANY L.P.
Reel/Frame 052969/0475 →
GRANT OF FIRST PRIORITY AND JUNIOR PRIORITY SECURITY INTEREST IN PATENT RIGHTS Recorded Mar 6, 2017
From: SPRINT COMMUNICATIONS COMPANY L.P.
To: DEUTSCHE BANK TRUST COMPANY AMERICAS
Reel/Frame 041895/0210 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 16, 2015
From: BYE, STEPHEN J.; PACZKOWSKI, LYLE W.; PARSEL, WILLIAM M.; PERSSON, CARL J.; SCHLESENER, MATTHEW C.; SHIPLEY, TREVOR D.
To: SPRINT COMMUNICATIONS COMPANY L.P.
Reel/Frame 036579/0873 →
Continuity (2)
Division 13571348 · Aug 10, 2012
Related Publication 20160004876A1 · Jan 7, 2016