IP Library Granted Patent US 11,606,685
Granted Patent B2
US 11,606,685 · App. 16/718,074 · Granted Mar 14, 2023

Apparatuses, methods and systems for implementing a trusted subscription management platform

Inventor: Ismaila Wane (Mountain View, CA)
Assignee: Gigsky, Inc.
H04W8/205G06F9/45533G06F21/64H04B1/3816H04L63/0861H04L67/30H04L67/306H04M15/56H04M15/63H04M15/7556H04M15/8038H04W4/24H04W4/50H04W4/60H04W8/183H04W12/0023H04W12/00401H04W12/04H04W12/06H04W84/042H04W88/06H04W88/02
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 11,606,685
App. No.
16/718,074
Granted
Mar 14, 2023
Kind
B2
Abstract

Apparatuses, methods, and computer readable storage media are provided for implementing a trusted subscription management platform. An example server device is configured to transmit, to a trusted UI client of a mobile station, information regarding a set of virtual SIM cards associated with the mobile station, and receive, from the trusted UI client of the mobile station, a request to provision a particular virtual SIM card. The server device is further configured to initiate, by an SM-SR module and via a trusted baseband client of the mobile device, a secure proxy channel between the server device and a profile manager that hosts the particular virtual SIM card, and transmit, via the secure proxy channel and to the profile manager, an instruction regarding the particular virtual SIM card. Corresponding methods and computer readable storage media are provided.

Claims (48)

1. A server system that includes at least one processor and at least one memory storing computer-executable instructions that, when executed by the at least one processor, cause the server system to implement a method comprising:

transmitting, by the server system, to a trusted user interface (UI) of a mobile station, information regarding a set of virtual subscriber identity module (SIM) cards associated with the mobile station;

receiving, from the trusted UI of the mobile station, at the server, a request to provision a particular virtual SIM card;

sending or receiving communications, by the server system, associated with a subscription manager module of the server system related to initiating a secure channel between the server system and a profile manager that hosts the particular virtual SIM card, the communications being associated with a trusted baseband module of the mobile device that participates in establishing the secure channel; and

transmitting, via the secure channel and via the trusted baseband module, to the profile manager, an instruction regarding the particular virtual SIM card.

2. The server system of claim 1 , wherein the method further comprises

transmitting, to the trusted UI of the mobile station, information regarding a set of virtual SIM cards offered by a trusted virtual store associated with the server system,

wherein the request to provision the particular virtual SIM card includes at least a request to purchase a virtual SIM card selected from the set of virtual SIM cards offered by the trusted virtual store.

3. The server system of claim 1 , wherein

the sending or receiving of the communications, by the server system, related to the initiating of the secure channel includes at least the server system participating in a mutual authentication procedure with the mobile station.

4. The server system of claim 1 , wherein the computer-executable instructions, when executed by the at least one processor, further cause the server system to register the mobile station.

5. The server system of claim 4 , wherein the computer-executable instructions, when executed by the at least one processor, further cause the server system to register the mobile station by causing the server system to assign the mobile station a unique random cryptographic key.

6. The server system of claim 4 , wherein registration of the mobile station establishes that no additional registrations are required for newly purchased virtual SIM cards.

7. The server system of claim 1 , wherein the request to provision the particular virtual SIM card of the set of virtual SIM cards comprises a request to:

purchase a virtual SIM card;

activate a virtual SIM card;

deactivate a virtual SIM card; or

delete a virtual SIM card.

8. The server system of claim 7 , wherein the request to provision the particular virtual SIM card of the set of virtual SIM cards is received from the trusted UI of the mobile station via an internet protocol (IP) channel.

9. A method comprising:

transmitting, by a server system and to a trusted user interface (UI) of a mobile station, information regarding a set of virtual subscriber identity module (SIM) cards associated with the mobile station;

receiving, from the trusted UI of the mobile station, a request to provision a particular virtual SIM card;

sending or receiving communications, by the server system, associated with a subscription manager—secure routing (SM-SR) module of the server system related to initiating a secure channel between the server system and a profile manager that hosts the particular virtual SIM card, the communications also being associated with a trusted baseband module of the mobile device that participates in establishing the secure channel; and

transmitting, via the secure channel and via the trusted baseband module, to the profile manager, an instruction regarding the particular virtual SIM card.

10. The method of claim 9 , further comprising: transmitting, to the trusted UI of the mobile station, information regarding a set of virtual SIM cards offered by a trusted virtual store associated with the server system,

wherein the request to provision the particular virtual SIM card includes at least a request to purchase a virtual SIM card selected from the set of virtual SIM cards offered by the trusted virtual store.

11. The method of claim 9 , further comprising:

the sending or receiving communications, by the server system, related to the initiating of the secure channel including at least a mutual authentication procedure.

12. The method of claim 9 , further comprising: registering the mobile station.

13. The method of claim 12 , wherein registering the mobile station includes at least causing the server system to assign the mobile station a unique random cryptographic key.

14. The method of claim 12 , wherein registration of the mobile station establishes that no additional registrations are required for newly purchased virtual SIM cards.

15. The method of claim 9 , wherein the request to provision the particular virtual SIM card of the set of virtual SIM cards comprises a request to:

purchase a virtual SIM card;

activate a virtual SIM card;

deactivate a virtual SIM card; or

delete a virtual SIM card.

16. The method of claim 15 , wherein the request to provision the particular virtual SIM card of the set of virtual SIM cards is received from the trusted UI of the mobile station via an internet protocol (IP) channel.

17. A non-transitory computer readable storage medium storing computer executable instructions that, when executed, cause a server system to implement a method comprising:

transmitting, by a server system and to a trusted user interface (UI) of a mobile station, information regarding a set of virtual subscriber identity module (SIM) cards associated with the mobile station;

receiving, from the trusted UI of the mobile station, a request to provision a particular virtual SIM card;

sending or receiving communications, by the server system, associated with a subscription manager-secure routing (SM-SR) module of the server system related to initiating a secure channel between the server system and a profile manager that hosts the particular virtual SIM card, the communications also being associated a trusted baseband module of the mobile device that participates in establishing the secure channel; and

transmitting, via the secure channel and via the trusted baseband module, to the profile manager, an instruction regarding the particular virtual SIM card.

18. The non transitory computer readable storage medium system of claim 17 , the method further comprising:

further comprising: transmitting, to the trusted UI of the mobile station, information regarding a set of virtual SIM cards offered by a trusted virtual store associated with the server system,

wherein the request to provision the particular virtual SIM card includes at least a request to purchase a virtual SIM card selected from the set of virtual SIM cards offered by the trusted virtual store.

19. The non transitory computer readable storage medium system of claim 17 , wherein the request to provision the particular virtual SIM card of the set of virtual SIM cards comprises a request to:

purchase a virtual SIM card; activate a virtual SIM card; deactivate a virtual SIM card; or delete a virtual SIM card.

20. The non transitory computer readable storage medium system of claim 19 , wherein the computer executable instructions, when executed, further cause the server system to receive the request to provision the particular virtual SIM card of the set of virtual SIM cards from the trusted UI of the mobile station, via an internet protocol (IP) channel.

Assignments (2)
INTELLECTUAL PROPERTY SECURITY AGREEMENT Recorded Feb 26, 2024
From: GIGSKY, INC.
To: HIGHLANDS ADVISORY LLC
Reel/Frame 066679/0403 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 25, 2022
From: WANE, ISMAILA
To: GIGSKY, INC.
Reel/Frame 061524/0931 →
Continuity (9)
Continuation In Part 16124136 · Sep 6, 2018
Continuation In Part 15838611 · Dec 12, 2017
Continuation 15040410 · Feb 10, 2016
Continuation In Part 14856991 · Sep 17, 2015
Provisional Application 62171246 · Jun 5, 2015
Provisional Application 62162740 · May 16, 2015
Provisional Application 62078006 · Nov 11, 2014
Provisional Application 62051311 · Sep 17, 2014
Related Publication 20200128393A1 · Apr 23, 2020