CN102917351B - Method and device for realizing application in user identification card and user identification card - Google Patents

Method and device for realizing application in user identification card and user identification card Download PDF

Info

Publication number
CN102917351B
CN102917351B CN201110224599.3A CN201110224599A CN102917351B CN 102917351 B CN102917351 B CN 102917351B CN 201110224599 A CN201110224599 A CN 201110224599A CN 102917351 B CN102917351 B CN 102917351B
Authority
CN
China
Prior art keywords
application
information
unified
account
subscriber identity
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN201110224599.3A
Other languages
Chinese (zh)
Other versions
CN102917351A (en
Inventor
黄更生
朱本浩
葛欣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN201110224599.3A priority Critical patent/CN102917351B/en
Publication of CN102917351A publication Critical patent/CN102917351A/en
Application granted granted Critical
Publication of CN102917351B publication Critical patent/CN102917351B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Abstract

The invention discloses a method and device for realizing application in a user identification card and the user identification card; in a main technical scheme, the method comprises the following steps of: enabling the user identification card to receive an application loading request transmitted by first external equipment, wherein the application loading request carries an application identifier to be loaded and applied and a first key; determining a loading key corresponding to the application identifier to be loaded and applied in the application loading request according to corresponding relations between saved application identifiers and loading keys; when the first loading key is matched with the first key, obtaining and saving an application program file corresponding to the application; and configuring account information of the application in the application program file as saved uniform account information associated with unloaded and/or loaded application. According to the technical scheme, the uniformity of each application account in the user identification card is achieved, and a problem that the application of the partial corresponding accounts with insufficient balances cannot be realized because the account corresponding to each application is independent is solved; therefore, the success rate of realizing the application on the user identification card is increased.

Description

Method, device and the Subscriber Identity Module applied is realized in Subscriber Identity Module
Technical field
The present invention relates to communication technical field, particularly relate to a kind of in Subscriber Identity Module, realize applying method, device and Subscriber Identity Module.
Background technology
Along with the development of the communication technology and the universal of communication terminal, communication terminal has occupied more and more important effect in daily life.Communication terminal realizes various application mainly through built-in Subscriber Identity Module (as SIM card), the application type realized to enable communication terminal is abundanter, Subscriber Identity Module loads the important trend that more application is Subscriber Identity Module technical development, in order to meet the diversified needs of communication terminal application.
Fig. 1 shows the logical construction schematic diagram of the Subscriber Identity Module being loaded with many application, and as shown in Figure 1, this Subscriber Identity Module comprises application module 101 and card operating system (COS) 102; Wherein, application module 101 comprises multiple application (2 application shown in Fig. 1 exemplarily) of loading, namely preserve the application file that each application that loads is corresponding respectively, this application file comprises the accounts information of this application correspondence, application file, applied logic information and key information etc.; Card operating system 102, the execution of application file to each application of each application being mainly used in preserving according to application module 101 controls, and accesses to external world for the key information that the application file of each application of preserving according to application module 101 comprises and carry out security verification.As required, this Subscriber Identity Module also needs the running environment configuring each application.
Based on the Subscriber Identity Module shown in Fig. 1, when card operating system 102 receives the application use request from extraneous (as Pos terminal), first determine that this application uses the application of request institute request access, the application file execution to this application corresponding with this application determined of then preserving according to application module 101 controls, and use the transmit leg of request to carry out security verification according to this application of double secret key of this application correspondence, after being verified, from the account of this application correspondence, deduct corresponding expense.
Above-mentioned Subscriber Identity Module achieves the demand loading multiple application, but according to the above-mentioned processing logic of Subscriber Identity Module, all separate between each application that existing Subscriber Identity Module loads, the accounts information of each application correspondence is applied with other and is strictly divided, therefore, in order to ensure that application can normally be used, the account of each application correspondence should have the corresponding amount of money, and in the application process of reality, there are the following problems for possibility:
Because the frequency of utilization of different application is generally different, the account insufficient in amount that some application are corresponding may be there is, some apply the more situation of the corresponding account amount of money, therefore, in order to ensure that application can normally be used, user needs to remember the different application account amount of money corresponding respectively, to supplement with money when applying corresponding account insufficient in amount, if user is not in time for the account that certain application is corresponding is supplemented with money, even if the account of other application correspondence has the sufficient amount of money, this application also can not be used, and namely this application cannot realize.
In sum, there is the low problem of success rate that the application that causes for above-mentioned reasons realizes in many application identifications card of existing techniques in realizing.
Summary of the invention
In view of this, the embodiment of the present invention provides a kind of in Subscriber Identity Module, realize applying method, device and Subscriber Identity Module, adopts this technical scheme, can improve the success rate realizing applying in Subscriber Identity Module.
The embodiment of the present invention is achieved through the following technical solutions:
According to an aspect of the embodiment of the present invention, provide a kind of method realizing applying in Subscriber Identity Module, comprising:
Subscriber Identity Module receives the application load request that the first external equipment sends, and carries application identities and first key of application to be loaded in described application load request;
According to the application identities of preserving and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in described application load request is corresponding;
During first cipher key match of carrying in the described loading key determined and described application load request, obtain and preserve application file corresponding to described application, and configuring the unified accounts information for associating the application do not loaded and/or loaded that the accounts information applied described in described application file is preservation.
According to another aspect of the embodiment of the present invention, additionally provide a kind of device realizing applying in Subscriber Identity Module, comprising:
Unified account management unit, for preserving application identities and the corresponding relation loading key, and preserves the unified accounts information for associating the application do not loaded and/or loaded;
Application adaptation unit, for receiving the application load request that the first external equipment sends, application identities and first key of application to be loaded is carried in described application load request, according to described unified the account management unit application identities of preserving and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in described application load request is corresponding, and during first cipher key match of carrying in the described loading key determined and described application load request, obtain and preserve application file corresponding to described application, and configure the unified accounts information for associating the application do not loaded and/or loaded that the accounts information applied described in described application file is described unified account management unit preservation.
According to another aspect of the embodiment of the present invention, additionally provide a kind of Subscriber Identity Module, comprise the above-mentioned device realizing applying in Subscriber Identity Module.
By at least one technical scheme above-mentioned that the embodiment of the present invention provides, after Subscriber Identity Module receives the application identities of carrying application to be loaded of the first external equipment transmission and the application load request of the first key, according to the application identities of preserving and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in this application load request is corresponding, and during first cipher key match of carrying in the loading key determined with application load request, obtain and preserve the application file of this application correspondence, and configure the unified accounts information for associating the application do not loaded and/or loaded that the accounts information applied in this application file is preservation.According to this technical scheme, achieve the unification of the account of each application in Subscriber Identity Module, thus the problem that the application avoiding account balance deficiency corresponding to the independent and part that causes of account corresponding to each application cannot realize, thus improve success rate Subscriber Identity Module realizing apply.
Other features and advantages of the present invention will be set forth in the following description, and, partly become apparent from specification, or understand by implementing the present invention.Object of the present invention and other advantages realize by structure specifically noted in write specification, claims and accompanying drawing and obtain.
Accompanying drawing explanation
Accompanying drawing is used to provide a further understanding of the present invention, and forms a part for specification, is used from explanation the present invention, is not construed as limiting the invention with the embodiment of the present invention one.In the accompanying drawings:
The logical construction schematic diagram of the Subscriber Identity Module that Fig. 1 provides for prior art;
The schematic flow sheet of load application in Subscriber Identity Module that Fig. 2 provides for the embodiment of the present invention one;
The schematic flow sheet of the determination Subscriber Identity Module state that Fig. 3 provides for the embodiment of the present invention one;
The schematic flow sheet of the synchronous unified account that Fig. 4 provides for the embodiment of the present invention one;
The schematic flow sheet of the application that the use that Fig. 5 provides for the embodiment of the present invention two loads;
Fig. 6 unifies the schematic flow sheet of account status for determination that the embodiment of the present invention two provides;
The structural representation realizing the device applied in Subscriber Identity Module that Fig. 7 provides for the embodiment of the present invention three;
The structural representation of the Subscriber Identity Module that Fig. 8 provides for the embodiment of the present invention four;
The structural representation of another Subscriber Identity Module that Fig. 9 provides for the embodiment of the present invention four;
The schematic flow sheet of the load application that Figure 10 provides for the embodiment of the present invention four;
The schematic flow sheet of the use application that Figure 11 provides for the embodiment of the present invention four.
Embodiment
In order to provide the implementation improving and realize the success rate applied in Subscriber Identity Module, embodiments provide a kind of in Subscriber Identity Module, realize applying method, device and Subscriber Identity Module, below in conjunction with Figure of description, the preferred embodiments of the present invention are described, be to be understood that, preferred embodiment described herein, only for instruction and explanation of the present invention, is not intended to limit the present invention.And when not conflicting, the embodiment in the application and the feature in embodiment can combine mutually.
Embodiments provide a kind of method realizing applying in Subscriber Identity Module, the account of the method by respectively applying in unification user identification card, to improve in Subscriber Identity Module the success rate applying realization.Particularly, in Subscriber Identity Module, realize application mainly comprises in two, load application in Subscriber Identity Module on the one hand, be use the application in Subscriber Identity Module on the other hand, be described below in conjunction with the process of different embodiments to the application in the process of load application in Subscriber Identity Module and use Subscriber Identity Module.
Embodiment one
This embodiment one gives the implementation method of load application in Subscriber Identity Module.
In Subscriber Identity Module before load application, need to be handled as follows Subscriber Identity Module in advance:
On the one hand, need to arrange the unified accounts information for associating the application do not loaded and/or loaded; On the other hand, in order to the fail safe of application loaded in adding users identification card, authentication can be carried out to the loading side of application.Particularly, can write application identities and the corresponding relation loading key in advance in Subscriber Identity Module, this corresponding relation is stored in the setting regions of Subscriber Identity Module.Wherein, the application identities that the corresponding relation write comprises is the application identities of the application that this Subscriber Identity Module can be supported, namely allows the application identities of the application in this Subscriber Identity Module of write.The loading key corresponding with application identities, for carrying out authentication to the loading side of request Subscriber Identity Module load application, under normal circumstances, legal application loading side all has this loading key.
The schematic flow sheet of load application in Subscriber Identity Module that Fig. 2 shows that the embodiment of the present invention one provides, as shown in Figure 2, this loading procedure completed in Subscriber Identity Module side, mainly comprises the steps:
Step 201, Subscriber Identity Module receive the application load request that the first external equipment sends, and carry application identities and first key of application to be loaded in this application load request.
In this step 201, the first key is the loading key that the first equipment is preserved.First external equipment can be contact kind equipment or noncontact kind equipment, when the first external equipment is for contact kind equipment, this equipment is specifically as follows read write line terminal equipment, and this first external equipment can send application load request by less radio-frequency function to Subscriber Identity Module; When the first external equipment is noncontact kind equipment, this equipment is specifically as follows the server that network side is disposed, and this first external equipment can send application load request by wireless network to Subscriber Identity Module.
Step 202, Subscriber Identity Module, according to the application identities of preserving in advance and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in this application load request is corresponding.
In this step 202, after Subscriber Identity Module receives application load request, read the loading key corresponding with the application identities of application to be loaded of carrying this application load request from for preserving application identities and the storage area of corresponding relation of loading key.
Whether the loading key that step 203, judgement are determined mates with the first key carried in this application load request, if so, performs step 204, if not, performs step 205.
In this step 203, determine that whether load key mates with the first key, can determine according to concrete enciphering and deciphering algorithm, particularly, can contrast this loading key and the first key with clear-text way, if contrast two key agreements, then determine coupling; Also ciphertext can contrast this loading key and the first key, such as, utilize the first double secret key application load request to be encrypted, then utilize the managing keys determined to the application load request deciphering through encryption, if successful decryption, then determine two cipher key match.Determine in the embodiment of the present invention that the method whether two keys mate can be determined according to actual needs flexibly, will not enumerate herein.
Step 204, Subscriber Identity Module obtain and preserve the application file of this application correspondence, and configure the accounts information of this application in this application file for unified accounts information.
Step 205, Subscriber Identity Module load failure response to the first external equipment feedback application.
So far, the loading flow process of the application completed in Subscriber Identity Module side terminates.
In the preferred implementation of the load application that the embodiment of the present invention one provides, in order to improve the success rate of load application, whether can support that this application detects to the state and Subscriber Identity Module of unifying account in advance, particularly, before above-mentioned steps 201, namely receive the application load request of the first external equipment transmission at Subscriber Identity Module before, also need to perform the flow process determining Subscriber Identity Module state, as shown in Figure 3, this flow process mainly comprises the steps:
Step 301, Subscriber Identity Module receive the application loading initialization request that the first external equipment sends, and this application loads the application identities of carrying application to be loaded in initialization request.
Step 302, according to preserve unified accounts information determine this unify account whether be in normal condition, if so, perform step 303, if not, execution step 305.
Step 303, according to the application identities of preserving with load the corresponding relation of key, determine whether there is the application identities of this application to be loaded and the corresponding relation loading key, if so, perform step 304, if not, perform step 305.
Step 304, Subscriber Identity Module to the first external equipment feedback response information, this response message comprise for identify this unify account be in normal condition information and for identifying the application identities that there is application to be loaded and the information of corresponding relation loading key.
Step 305, Subscriber Identity Module load failure response to the first external equipment feedback application.
So far, the Subscriber Identity Module state confirmation flow process performed in Subscriber Identity Module side terminates.According to the execution of above-mentioned flow process, if Subscriber Identity Module loads failure response to the first external equipment feedback application, then without the need to performing the flow process corresponding to Fig. 2, application loads unsuccessfully.
By the execution of flow process corresponding to Fig. 3, in above-mentioned steps 304, after Subscriber Identity Module feeds back above-mentioned response message to the first external equipment, this first external equipment according to the state of this response message determination Subscriber Identity Module for load application can be continued, in order to improve the fail safe of Subscriber Identity Module further, this first external equipment can also carry out authentication to application provider, after application provider authentication is passed through, send to Subscriber Identity Module and carry the application identities of application to be loaded and the application load request of the first key, namely in above-mentioned steps 201, the application load request that Subscriber Identity Module receives is that this first external equipment is in the above-mentioned response message receiving Subscriber Identity Module feedback, and rear transmission is verified to the application provider of this application.
Application loading procedure above mainly for Subscriber Identity Module side is illustrated, in practical application, for the ease of the charging of application provider to application, need the unified accounts information configured for this application to be synchronized to application provider, so that application provider carries out synchronous charging according to the service condition of application to this application.Particularly, after execution above-mentioned steps 203, namely Subscriber Identity Module configures the accounts information of this application for after unified accounts information, and also perform the flow process of synchronous unified account, as shown in Figure 4, this flow process unifying account synchronous mainly comprises the steps:
Step 401, Subscriber Identity Module send the response of account configuration successful to the first external equipment, and account configuration successful response comprises the unified accounts information of configuration.
In this step 401, Subscriber Identity Module sends the response of account configuration successful to the first external equipment and also comprises application identities further.
Step 402, the first external equipment respond according to the account configuration successful application identities comprised, and forward account configuration successful respond to the application provider corresponding with this application identities.
Step 403, application provider respond according to the account configuration successful received the unified accounts information and application identification information that comprise, the accounts information configuring the application corresponding with this application identities unifies accounts information for this, and to the first external equipment feedback account sync response.
In this step 403, the accounts information of the application that application provider configuration is corresponding with this application identities unifies accounts information for this, for the follow-up service condition according to this application, unifies to deduct corresponding expense account from this.
Step 404, the first external equipment are to Subscriber Identity Module feedback account sync response.
So far, unify the synchronous flow process of account to terminate.
By at least one technical scheme above-mentioned that the embodiment of the present invention one provides, can configure the accounts information applied in the application file of loading is the unified accounts information preserved, thus achieve the unification of the account of each application in Subscriber Identity Module, thus the problem that the application avoiding account balance deficiency corresponding to the independent and part that causes of account corresponding to each application cannot realize, thus improve success rate Subscriber Identity Module realizing apply.
Embodiment two
This embodiment two gives the flow process of the application used in Subscriber Identity Module.
In order to the fail safe of application loaded in adding users identification card, authentication can be carried out to the user of application.Particularly, can write the corresponding relation of application identities and managing keys in advance in Subscriber Identity Module, this corresponding relation is stored in the setting regions of Subscriber Identity Module.Wherein, the corresponding relation of the corresponding relation of application identities and managing keys and application identities and loading key can be preserved simultaneously, and the loading key that same application identities is corresponding and managing keys can be identical or different.Wherein, the application identities that the corresponding relation write comprises, generally includes the application identities of the application that Subscriber Identity Module can be supported, namely allows the application identities of the application in this Subscriber Identity Module of write.The managing keys corresponding with application identities, for using the requesting party of the application loaded in Subscriber Identity Module to carry out authentication to request, under normal circumstances, legal application user has this managing keys.
Fig. 5 shows the schematic flow sheet of the application loaded in the use Subscriber Identity Module that the embodiment of the present invention two provides, and as shown in Figure 5, the process of the application that the use completed in Subscriber Identity Module side loads, mainly comprises the steps:
The application of the application that step 501, the use receiving the second external equipment transmission load uses request, the application identities of the application that the request of carrying uses during this application uses and asks.
In this step 501, second external equipment can be contact kind equipment or noncontact kind equipment, when the second external equipment is for contact kind equipment, this equipment is specifically as follows read write line terminal equipment, and this second external equipment can send application by less radio-frequency function to Subscriber Identity Module and use request; When the second external equipment is noncontact kind equipment, this equipment is specifically as follows the server that network side is disposed, and this second external equipment can send application by wireless network to Subscriber Identity Module and use request.Further, in practical application, this second external equipment can be same equipment with the first external equipment.
Step 502, determine the managing keys that this application uses request institute and asks the application file of application correspondence of use to comprise.
In this step 502, according to the corresponding relation of the application identities of preserving in advance and managing keys, determine the managing keys that this application uses request institute and asks the application file of the application correspondence of use to comprise.
Step 503, according to the application identities of preserving and the corresponding relation of managing keys, determine to use with this application ask ask the application identities of the application used corresponding managing keys.
Above-mentioned steps 502 and step 503 there is no strict execution sequence, also can first perform step 503 and perform step 502 again, or perform simultaneously.
Step 504, judge whether the managing keys determined according to application file mates with the managing keys determined according to corresponding relation, if so, then perform step 505, if not, then perform step 506.
In this step 504, determine whether two managing keys mate with reference to determining the method whether loading key mates with the first key in above-mentioned steps 203, can repeat no more herein.
Step 505, from configuration unified accounts information deduct the amount of money that this uses this application.
Step 506, refuse this application use request.
So far, the flow process of the application that the use completed in Subscriber Identity Module side loads terminates.
Above-mentioned flow process is performed after load application success in Subscriber Identity Module in the method provided by above-described embodiment one usually, namely configures the accounts information of application for performing after unified accounts information.
In above-mentioned steps 505, directly can unify amount deducted account from this, also whether can have permission this application further and use the amount of money in unified account to verify.Particularly, the limit information of this application correspondence is preserved in advance for this application, such as, the message limit flag of this application, whether this flag identifies this application has ceiling restriction, such as, the flag arranging application is 0, then change application without ceiling restriction, can directly deduct the fee; The flag arranging application is 1, then this application has ceiling restriction.When application has ceiling restriction, also need the amount information that restriction is set further.When preserving the limit information of this application correspondence, deduct the amount of money of this use application from the unified accounts information of configuration before, also need further according to the limit information of preserving, determine that this uses the amount of money of this application to meet the requirement of limit information, such as, limit information shows that this higher limit of consuming is A, the spending amount of this reality is B, then when determining that B is less than A, allowing to use the amount of money in unified account, namely allowing amount deducted B from unified account.
In the preferred implementation of the use application that the embodiment of the present invention two provides, in order to improve the success rate using application, can detect the state of unified account in advance, particularly, before execution above-mentioned steps 501, namely after the accounts information configuring this application at user ID card is unified accounts information and before the application receiving the application that use that the second external equipment sends loads uses request, also need to perform the flow process determining unified account status, as shown in Figure 6, this flow process mainly comprises the steps:
The initialization request of the application that step 601, the use receiving the second external equipment transmission load, the application identities of the application that the request of carrying in this initialization request uses.
Step 602, according to preserve unified accounts information determine this unify account whether be in normal condition, if so, perform step 603, if not, execution step 604.
Step 603, to the second external equipment feedback response information, this response message comprises unifies for identifying this information that account is in normal condition.
Step 604, Subscriber Identity Module use failure response to the second external equipment feedback application.
So far, the unified account status performed in Subscriber Identity Module side confirms that flow process terminates.According to the execution of above-mentioned flow process, if Subscriber Identity Module loads failure response to the second external equipment feedback application, then without the need to performing the flow process corresponding to Fig. 5, application uses unsuccessfully; If Subscriber Identity Module has fed back above-mentioned response message to the second external equipment, the unified account of this application correspondence in this second external equipment determination Subscriber Identity Module is normal, then send above-mentioned application to this Subscriber Identity Module further and use request.
In the preferred implementation of the use application that the embodiment of the present invention two provides, in order to the multiple application tackling initiation use request, preserving each application precedence information corresponding respectively.Correspondingly, before execution step 603, namely before feeding back described response message to the second external equipment, also need further execution: according to the precedence information of this application correspondence preserved, determine that the priority of this application is higher than to receive and in the initialization request of other application loaded of the use of non-feedback response information, institute asks the priority of the application correspondence of use.
By at least one technical scheme above-mentioned that the embodiment of the present invention two provides, because application each in Subscriber Identity Module has been configured unified accounts information, thus the problem that the application avoiding account balance deficiency corresponding to the independent and part that causes of account corresponding to each application cannot realize, thus improve success rate Subscriber Identity Module realizing apply.
Embodiment three
Corresponding with the flow process that said method embodiment one and embodiment two provide, the embodiment of the present invention three additionally provides a kind of device realizing applying in Subscriber Identity Module, and this device can be included in Subscriber Identity Module.
Fig. 7 shows the structural representation realizing the device applied in Subscriber Identity Module that the embodiment of the present invention three provides, and as shown in Figure 7, this device comprises:
Unified account management unit 701 and application adaptation unit 702;
Wherein:
Unified account management unit 701, for preserving application identities and the corresponding relation loading key, and preserves the unified accounts information for associating the application do not loaded and/or loaded;
Application adaptation unit 702, for receiving the application load request that the first external equipment sends, application identities and first key of application to be loaded is carried in this application load request, according to unified account management unit 701 application identities of preserving and the corresponding relation loading key, determine to apply the loading key that the application identities of the application to be loaded of carrying in load request is corresponding, and during first cipher key match of carrying in the loading key determined with application load request, obtain and preserve application file corresponding to application, and the accounts information applied in configuring application program file is the unified accounts information for associating the application do not loaded and/or loaded that unified account management unit is preserved.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, also for before the application load request that sends at reception first external equipment, receive the application loading initialization request that the first external equipment sends, application loads the application identities of carrying application to be loaded in initialization request; And determining that according to the unified accounts information preserved unified account is in normal condition and after determining to exist the application identities of application to be loaded and the corresponding relation of loading key according to the application identities of preserving and the corresponding relation loading key, to the first external equipment feedback response information, response message comprise for identify unified account be in normal condition information and for identifying the application identities that there is application to be loaded and the information of corresponding relation loading key.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, specifically for receive the first external equipment receive response message and to application application provider be verified after send application load request.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, after accounts information also for applying in configuration is unified accounts information, send the response of account configuration successful to the first external equipment, the response of account configuration successful comprises the unified accounts information of configuration; And receive the account sync response of the first external equipment feedback, account sync response be application provider respond according to account configuration successful that the unified accounts information that comprises synchronously preserves with apply corresponding accounts information after send.
So far, the function that realizes of this device is corresponding with the technical scheme that embodiment one provides.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, time also for comprising the managing keys applying correspondence at application file, the application receiving the application of the use loading that the second external equipment sends uses asks; Determining the managing keys that the application file of the application correspondence loaded comprises, when mating with the managing keys corresponding with the application identities of the application loaded determined with the corresponding relation of managing keys according to the application identities of preserving, from the unified accounts information of configuration, deduct the amount of money that this uses application.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, also for when preserving the limit information of application correspondence, deduct the amount of money of this use application in the unified accounts information from configuration before, according to the limit information of preserving, determine that this uses the amount of money of application to meet the requirement of limit information.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, also for after configuring the accounts information applied and being unified accounts information and before the application use request of the application of the use loading of reception second external equipment transmission, receive the initialization request of the application of the use loading of the second external equipment transmission; After determining that unified account is in normal condition, to the second external equipment feedback response information, response message comprises the information being in normal condition for identifying unified account.
In the preferred implementation that the embodiment of the present invention three provides, the application adaptation unit 702 that Fig. 7 shown device comprises, also for when preserving the precedence information of application correspondence, before the second external equipment feedback response information, according to the precedence information of application correspondence preserved, determine that the priority applied is higher than to receive and in the initialization request of other application loaded of the use of non-feedback response information, institute asks the priority of the application correspondence of use.
So far, the function that realizes of this device is corresponding with the technical scheme that embodiment two provides.
Should be appreciated that the logical partitioning that the above unit that comprises of device realizing applying in Subscriber Identity Module is only the function that realizes according to this device and carries out, in practical application, superposition or the fractionation of said units can be carried out.And this embodiment carries the method flow one_to_one corresponding realizing applying in Subscriber Identity Module that the function that realizes of device realizing applying in Subscriber Identity Module of three confessions and above-described embodiment one and embodiment two provide, for the handling process specifically that this device realizes, be described in detail in said method embodiment one and embodiment two, be not described in detail herein.
Further, the device realizing applying in Subscriber Identity Module in the present embodiment three also has the functional module that can realize embodiment one and embodiment two scheme, repeats no more herein.
Embodiment four
The embodiment of the present invention four gives the embody rule scene of the technical scheme that the above embodiment of the present invention provides.
The technique scheme that the embodiment of the present invention provides can be applied to various Subscriber Identity Module, such as, and SIM card, usim card.Fig. 8 show the above embodiment of the present invention the logical construction schematic diagram of Subscriber Identity Module that is suitable for, as shown in Figure 8, this Subscriber Identity Module, on the basis of Subscriber Identity Module shown in Fig. 1, comprises unified account management unit 103 and application adaptation unit 104 further; Wherein:
The account of each application loaded in application module 101 is by the unified unified account being configured to preserve in unified account management unit 103;
The function that unified account management unit 103 realizes and the unified account management unit 701 described in above-described embodiment three basically identical, repeat no more herein.In practical application, this unifies account management unit 103 is the account of different application be incorporated in the same account on card, mainly comprise accounts information and key part, wherein house the essential information of unified account in accounts information, as account balance, cumulative spend amount, the overdraw amount of money, Spending Limit, the limit of overdrawn account etc., under normal conditions, directly can be read by application program; Key part provides the management to key needed for application access account, and in application load phase, judges whether that carrying out account with the application loaded associates according to loading key.
The application function that realizes of adaptation unit 104 and the application adaptation unit 702 described in above-described embodiment three basically identical, repeat no more herein.In practical application, this application adaptation unit 104 provides different safety managements and application processing mode mainly for the demand of different application,
Particularly, as shown in Figure 9, this application adaptation unit, specifically comprises:
AIM 104A, application processing list 104B, secure processing module 104C and adaptive management module interface 104D; Wherein:
AIM 104A, is mainly the interface that different application provides unified account, and according to the logic of application, carry out alternately with unified account, shielding different application is to the otherness of unified account interface; This AIM 104A mainly comprises application call interface, is responsible for different application calling application adaptation unit; Read interface and write interface, being responsible for the read-write operation to unified accounts information; Operating right verification interface, is responsible for the verification etc. read-write operation being carried out to authority;
Application processing list 104B can be as shown in table 1, mainly comprises the parameter such as account status, application safety grade, enable account management key (carrying out safety verification the need of according to loading key or managing keys for identifying this application), application priority, Spending Limit flag bit and the limit of overdrawn account.Each application obtains the state of unified account in Subscriber Identity Module, as the state such as normal, no initializtion, locking by application adaptation unit 104.Can according to the level of security of different application, different account management keys is set and conducts interviews control; According to different application priority, Spending Limit flag and the overdraw amount of money, the sequencing of unified account is used to manage to different application.
Table one
Secure processing module 104C is responsible for providing the safe access control to unified account.According to the application processing list of different application correspondences, safety verification is carried out in the request of application access being unified to account, and in application load phase, judges whether application can be loaded or whether can associate with unified account.
The adaptive adaptive administration module managed in module interface 104D primary responsibility and card operating system 102 carries out data interaction, completes setting and the data management of information reading, each parameter in card operating system 102 correspondence processing list 104B.
Further, whether the adaptive administration module in this card operating system 102 also can arrange application adaptation unit 104 forces all application to use unified account, force if arrange all application to use unified account, then card does not use the application of unified account will be prohibitted the use by system.
Above-mentioned Subscriber Identity Module, owing to having done above-mentioned improvement on the basis of existing technology, therefore, needs to carry out initialization to Subscriber Identity Module in advance, and this initialization procedure is undertaken by card issuing side usually before Subscriber Identity Module distribution.Particularly, Subscriber Identity Module carries out initialization, mainly comprises following several aspect:
(1) in Subscriber Identity Module, write program file and the application runtime environment (as needs) of card operating system, wherein, in Subscriber Identity Module, write card operating system program file is essential operation;
(2) in Subscriber Identity Module, the program file of adaptation unit is applied in write, and use the adaptive administration module in card operating system to carry out initialization to it, such as, whether configuration requires Subscriber Identity Module to be forced use unified account, and this process is essential operation:
(3) the unified account of write configuration in Subscriber Identity Module, this process is essential operation;
(4) write application (i.e. load application) in Subscriber Identity Module, carries out unifying the association of account and relevant setting according to application demand, and this process is can selection operation, and application can subsequent load;
(5) carry out initialization to the personal information in Subscriber Identity Module, this process is can selection operation, and personal information can write after card issuing.
Figure 10 shows the schematic flow sheet realizing application loading based on the Subscriber Identity Module shown in Fig. 8, the process that this realization application loads relates generally in Subscriber Identity Module and applies adaptation unit and COS, and read write line terminal (the first external equipment namely described in embodiment one), applies provider; Wherein, this read write line terminal can be special application initializes terminal, and difference has the common read write line terminal used in transaction flow, possesses the function to Subscriber Identity Module write application program.As shown in Figure 10, the process that this realization application loads, mainly comprises the steps:
Step 1001, read write line terminal send application initializes request to the card operating system COS in Subscriber Identity Module;
Step 1002, COS are to the request response of read write line terminal feedback for application initializes request;
Step 1003, read write line terminal select the application that will generate;
Above-mentioned steps 1001 to step 1003 constitutes the flow process whether read write line terminal determination Subscriber Identity Module normally works, determine that Subscriber Identity Module is in normal operating conditions, namely this Subscriber Identity Module can for the initialization request feedback response message sent, if the non-feedback response information of Subscriber Identity Module, then determine that this Subscriber Identity Module is in abnormal operating state, then no longer perform follow-up flow process.
Step 1004, read write line terminal send application to COS and load initialization request;
Step 1005, COS determine whether that pressure is associated with unified account after receiving application loading initialization request, if so, perform step 1006, otherwise according to existing procedure process.
Step 1006, COS send the request determining unified account status and linkability to application adaptation unit;
Step 1007, application adaptation unit determine that whether the state of the unified account that unified account management unit is preserved is normal, and determine whether unified account management unit is preserved this application identities and (namely determined whether linkability with the corresponding relation loading key, if exist, determine to associate, otherwise independent);
The response message comprising determination result is sent to OCS by step 1008 ~ step 1009, application adaptation unit, and the response message that this is comprised determination result by OCS further sends to read write line terminal;
Step 1010, read write line terminal the determination result that the response message received comprises be time, to application provider carry out authentication, otherwise, process ends.
Step 1011, read write line terminal send application application to application provider;
Step 1012, application provider respond to read write line terminal pins application application feedback request;
Above-mentioned steps 1004 to step 1012 constitutes Subscriber Identity Module state constant current journey really.
Step 1013, read write line terminal send application load request to the OCS in Subscriber Identity Module;
Step 1014, OCS create this application;
Step 1015, COS send security verification request to application adaptation unit;
Step 1016, application adaptation unit carry out security verification (proof procedure refers to above-mentioned steps 202 to step 204) to current application load request;
Step 1016, application adaptation unit, after being verified, obtaining and preserve the application file of this application correspondence, and the accounts information configuring this application in this application file is for unifying accounts information;
Step 1017 ~ step 1019, application adaptation unit send the response message comprising the unified accounts information of association to OCS, this response message is sent to read write line terminal by OCS, and read write line terminal feeds back to application provider further;
Step 1020, synchronous this of application provider unify accounts information;
Step 1021 ~ step 1022, application provider send sync response to read write line terminal, and this sync response is sent to OCS by read write line terminal.
So far, flow process terminates.
By the execution of above-mentioned flow process, COS in Subscriber Identity Module first need judge the support situation of Subscriber Identity Module to application, judge successfully, read unified accounts information, carry out associating ability to judge, and the essential information (comprising account status information) on the Subscriber Identity Module obtained is returned to read write line terminal with card ability (result that namely whether can associate); First read write line carries out the safety verification applying provider, after checking, obtains required application to application provider (or being called application management platform); In the load application stage, the essential information of this application is created by the COS on card, as file, logic, key etc., then carry out the association of unifying account, namely configure the account of this application correspondence for unified accounts information, before association, first can carry out key authentication, judge whether application has permission to associate with unified account, by configuring corresponding application processing list after certification, then generate the unified accounts information of Subscriber Identity Module application provider, so that the unified charging of system and management.
Figure 11 shows the schematic flow sheet using application based on the Subscriber Identity Module shown in Fig. 8, this realization uses the process of application to relate generally in Subscriber Identity Module and applies adaptation unit and application, and read write line terminal (the second external equipment namely described in embodiment two), wherein, read write line terminal is the read write line terminal used in vanilla transaction flow process, such as, Pos terminal.As shown in figure 11, the process of this use application, mainly comprises the steps:
The application that will use that step 1101, read write line terminal load in Subscriber Identity Module sends the initialization request that application uses;
Step 1102, apply and respond to the request of read write line terminal feedback;
Above-mentioned steps 1101 ~ step 1102 constitute determine to apply whether can flow process.
Step 1103, read write line terminal send unified account status to application and determine request;
Step 1104, apply and send unified account status to application adaptation unit and determine request;
Step 1105, application adaptation unit obtain unified state information from unified account management unit, and judge unified account status;
Step 1106, application adaptation unit send the response message comprising the determination result of unified account status to application;
Step 1107, apply to send to read write line terminal and comprise the response message of the determination result of unified account status;
Above-mentioned steps 1105 ~ step 1107 constitutes and performs unified account status constant current journey really.
Step 1108, read write line terminal send application to application and use request;
Step 1109, application request application adaptation unit carry out safety verification;
Step 1110, application adaptation unit carry out security verification to this application, by after deduct the fee from unified account;
Step 1111 ~ step 1112, application adaptation unit to be withholdd operation response to application transmission, apply operation response of this being withholdd and send to read write line terminal;
Step 1113, read write line terminal synchronizes network side account balance.
So far, flow process terminates.
By the flow process that Figure 11 is corresponding, when user carries out transactional operation when the application on Subscriber Identity Module (user use), Subscriber Identity Module is after the initialization request receiving read write line terminal, according to the application processing list safeguarded, carry out this application safety rank and priority judges, return initialized response message.After the application receiving read write line uses request, after key authentication (proof procedure refers to step 503 ~ step 504) is carried out to the managing keys obtained from application side (symmetrical or asymmetric), corresponding operating is carried out to unified account, after having operated, response message is fed back to read write line and carry out this transaction verification, generate application message as this voucher of concluding the business.The read write line of different application correspondences generates different keys, but all uses unified account to carry out corresponding account operation.
By the above-mentioned Subscriber Identity Module that the embodiment of the present invention provides, the account of application each in Subscriber Identity Module is unified, thus the problem that the application avoiding account balance deficiency corresponding to the independent and part that causes of account corresponding to each application cannot realize, thus improve success rate Subscriber Identity Module realizing apply.
Although described the preferred embodiment of the application, those skilled in the art once obtain the basic creative concept of cicada, then can make other change and amendment to these embodiments.So claims are intended to be interpreted as comprising preferred embodiment and falling into all changes and the amendment of the application's scope.
Obviously, those skilled in the art can carry out various change and modification to the present invention and not depart from the spirit and scope of the present invention.Like this, if these amendments of the present invention and modification belong within the scope of the claims in the present invention and equivalent technologies thereof, then the present invention is also intended to comprise these change and modification.

Claims (15)

1. in Subscriber Identity Module, realize the method applied, it is characterized in that, comprising:
Subscriber Identity Module receives the application load request that the first external equipment sends, and carries application identities and first key of application to be loaded in described application load request;
According to the application identities of preserving and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in described application load request is corresponding;
During first cipher key match of carrying in the described loading key determined and described application load request, obtain and preserve application file corresponding to described application, and configuring the unified accounts information for associating the application do not loaded and/or loaded that the accounts information applied described in described application file is preservation;
Described application file comprises managing keys corresponding to described application;
The accounts information configuring described application also comprises after being described unified accounts information:
The application receiving the described application of the use loading that the second external equipment sends uses request;
At the managing keys that the application file that the described application determining to load is corresponding comprises, when mating with the managing keys corresponding with the application identities of the described application loaded determined with the corresponding relation of managing keys according to the application identities of preserving, from the described unified accounts information of configuration, deduct the amount of money that this uses described application.
2. the method for claim 1, is characterized in that, Subscriber Identity Module also comprises before receiving the application load request of the first external equipment transmission:
Described Subscriber Identity Module receives the application loading initialization request that described first external equipment sends, and described application loads the application identities of carrying described application to be loaded in initialization request; And
Determine according to the described unified accounts information preserved described unified account be in normal condition and according to the application identities of preserving with load application identities that the corresponding relation of key determines to exist described application to be loaded and the corresponding relation loading key after, to described first external equipment feedback response information, described response message comprise for identify described unified account be in normal condition information and for identifying the application identities that there is described application to be loaded and the information of corresponding relation loading key.
3. method as claimed in claim 2, it is characterized in that, the described application load request that described Subscriber Identity Module receives is that described first external equipment sends after being verified the application provider of described application in the described response message receiving described Subscriber Identity Module feedback.
4. the method for claim 1, is characterized in that, the accounts information configuring described application also comprises after being described unified accounts information:
Send the response of account configuration successful to described first external equipment, described account configuration successful response comprises the described unified accounts information of configuration; And
Receive the account sync response of described first external equipment feedback, described account sync response be described application provider respond according to described account configuration successful that the described unified accounts information that comprises synchronously preserves with described apply corresponding accounts information after send.
5. the method for claim 1, is characterized in that, preserves the limit information that described application is corresponding in described Subscriber Identity Module; Deduct before this uses the amount of money of described application from the described unified accounts information of configuration, also comprise:
According to the limit information of preserving in described Subscriber Identity Module, determine that this uses the amount of money of described application to meet the requirement of described limit information.
6. the method for claim 1, is characterized in that, after the accounts information configuring described application is described unified accounts information and before the application receiving the described application that use that the second external equipment sends loads uses request, also comprises:
Receive the initialization request of the described application of the use loading that the second external equipment sends;
After determining that described unified account is in normal condition, to described second external equipment feedback response information, described response message comprises the information being in normal condition for identifying described unified account.
7. method as claimed in claim 6, is characterized in that, preserves the precedence information that described application is corresponding in described Subscriber Identity Module;
Before feeding back described response message to described second external equipment, also comprise:
The precedence information corresponding according to the described application of preserving in described Subscriber Identity Module, determines that the priority of described application is higher than to receive and in the initialization request of other application loaded of the use of non-feedback response information, institute asks the priority of the application correspondence of use.
8. in Subscriber Identity Module, realize the device applied, it is characterized in that, comprising:
Unified account management unit, for preserving application identities and the corresponding relation loading key, and preserves the unified accounts information for associating the application do not loaded and/or loaded;
Application adaptation unit, for receiving the application load request that the first external equipment sends, application identities and first key of application to be loaded is carried in described application load request, according to described unified the account management unit application identities of preserving and the corresponding relation loading key, determine the loading key that the application identities of the application to be loaded of carrying in described application load request is corresponding, and during first cipher key match of carrying in the described loading key determined and described application load request, obtain and preserve application file corresponding to described application, and configure the unified accounts information for associating the application do not loaded and/or loaded that the accounts information applied described in described application file is described unified account management unit preservation,
Described application adaptation unit, time also for comprising managing keys corresponding to described application at described application file, the application receiving the described application that use that the second external equipment sends loads uses request; At the managing keys that the application file that the described application determining to load is corresponding comprises, when mating with the managing keys corresponding with the application identities of the described application loaded determined with the corresponding relation of managing keys according to the application identities of preserving, from the described unified accounts information of configuration, deduct the amount of money that this uses described application.
9. device as claimed in claim 8, it is characterized in that, described application adaptation unit, also for before the application load request that sends at reception first external equipment, receive the application loading initialization request that described first external equipment sends, described application loads the application identities of carrying described application to be loaded in initialization request; And determine according to the described unified accounts information preserved described unified account be in normal condition and according to the application identities of preserving with load application identities that the corresponding relation of key determines to exist described application to be loaded and the corresponding relation loading key after, to described first external equipment feedback response information, described response message comprise for identify described unified account be in normal condition information and for identifying the application identities that there is described application to be loaded and the information of corresponding relation loading key.
10. device as claimed in claim 9, is characterized in that, described application adaptation unit, is receiving described response message and the application load request sent after being verified the application provider of described application specifically for receiving described first external equipment.
11. devices as claimed in claim 8, it is characterized in that, described application adaptation unit, also for configuration described application accounts information be described unified accounts information after, send the response of account configuration successful to described first external equipment, described account configuration successful response comprises the described unified accounts information of configuration; And receive the account sync response of described first external equipment feedback, described account sync response be described application provider respond according to described account configuration successful that the described unified accounts information that comprises synchronously preserves with described apply corresponding accounts information after send.
12. devices as claimed in claim 8, it is characterized in that, described application adaptation unit, also for when preserving the limit information of described application correspondence, deduct before this uses the amount of money of described application in the described unified accounts information from configuration, according to the limit information of preserving, determine that this uses the amount of money of described application to meet the requirement of described limit information.
13. devices as claimed in claim 8, it is characterized in that, described application adaptation unit, also for after being described unified accounts information at the accounts information of the described application of configuration and before the application receiving the described application that use that the second external equipment sends loads uses request, receive the initialization request of described application that use that the second external equipment sends loads; After determining that described unified account is in normal condition, to described second external equipment feedback response information, described response message comprises the information being in normal condition for identifying described unified account.
14. devices as claimed in claim 13, it is characterized in that, described application adaptation unit, also for when preserving the precedence information of described application correspondence, before feeding back described response message to described second external equipment, the precedence information corresponding according to the described application of preserving, determines that the priority of described application is higher than to receive and in the initialization request of other application loaded of the use of non-feedback response information, institute asks the priority of the application correspondence of use.
15. 1 kinds of Subscriber Identity Modules, is characterized in that, also comprise the device realizing applying in Subscriber Identity Module described in any one of claim 8 to 14.
CN201110224599.3A 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card Active CN102917351B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110224599.3A CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110224599.3A CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Publications (2)

Publication Number Publication Date
CN102917351A CN102917351A (en) 2013-02-06
CN102917351B true CN102917351B (en) 2015-04-01

Family

ID=47615546

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110224599.3A Active CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Country Status (1)

Country Link
CN (1) CN102917351B (en)

Families Citing this family (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104185179B (en) * 2013-05-27 2018-06-12 中国移动通信集团公司 It is a kind of for the control device of Subscriber Identity Module, method and Subscriber Identity Module
CN104283852B (en) * 2013-07-08 2019-01-25 中国电信股份有限公司 The single sign-on authentication method and system and client and server-side of mobile application
CN104036180B (en) * 2014-06-23 2017-12-26 联想(北京)有限公司 Electronic equipment, pluggable equipment, electronic system and its information processing method
CN105205658A (en) * 2014-06-24 2015-12-30 中兴通讯股份有限公司 Electronic card applying method and electronic card applying device
CN104811310B (en) * 2015-03-30 2018-11-13 赵宇翔 A kind of methods of exhibiting and wearable device
CN109670832A (en) * 2018-12-21 2019-04-23 西安长安通支付有限责任公司 A kind of city one-card data processing method and system

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040117574A1 (en) * 2002-12-17 2004-06-17 Massard Yves Michel Pascal Security token sharable data and synchronization cache
CN101005701A (en) * 2006-01-18 2007-07-25 华为技术有限公司 Connection set-up method
CN101102190A (en) * 2006-07-04 2008-01-09 华为技术有限公司 Method for generating local interface secret key
CN101383095A (en) * 2008-08-25 2009-03-11 武汉市路安电子科技有限公司 Ultrasonic fixing type traffic flow investigation equipment
WO2009065417A1 (en) * 2007-11-19 2009-05-28 Net Signature For Advanced Solutions (I.N.K.) M. currency- net sense
CN101500224A (en) * 2008-01-31 2009-08-05 中国移动通信集团公司 Multi-application management server for telecommunication smart card, multi-application management method and system
CN101646150A (en) * 2008-10-22 2010-02-10 中国科学院声学研究所 Financial management system and financial management method applied to business operation supporting system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040117574A1 (en) * 2002-12-17 2004-06-17 Massard Yves Michel Pascal Security token sharable data and synchronization cache
CN101005701A (en) * 2006-01-18 2007-07-25 华为技术有限公司 Connection set-up method
CN101102190A (en) * 2006-07-04 2008-01-09 华为技术有限公司 Method for generating local interface secret key
WO2009065417A1 (en) * 2007-11-19 2009-05-28 Net Signature For Advanced Solutions (I.N.K.) M. currency- net sense
CN101500224A (en) * 2008-01-31 2009-08-05 中国移动通信集团公司 Multi-application management server for telecommunication smart card, multi-application management method and system
CN101383095A (en) * 2008-08-25 2009-03-11 武汉市路安电子科技有限公司 Ultrasonic fixing type traffic flow investigation equipment
CN101646150A (en) * 2008-10-22 2010-02-10 中国科学院声学研究所 Financial management system and financial management method applied to business operation supporting system

Also Published As

Publication number Publication date
CN102917351A (en) 2013-02-06

Similar Documents

Publication Publication Date Title
CN102917351B (en) Method and device for realizing application in user identification card and user identification card
EP2731381B1 (en) Method for changing the mobile network operator in an embedded sim on basis of special privilege
US9572025B2 (en) Method, server, computer program and computer program product for communicating with secure element
US20150032865A1 (en) Methods, Secure Element, Server, Computer Programs and Computer Program Products for Improved Application Management
JP4252034B2 (en) System and method for managing resources of a portable resource module
US20150046323A1 (en) Method and system for local evaluation of computer
CN107534855A (en) The authority of remote control targeted security element and the method for right
CN105022966B (en) Database data encryption decryption method and system
CN102202306B (en) Mobile security authentication terminal and method
CN104378342A (en) Multi-account verification method, device and system
MX2014005181A (en) Systems, methods, and computer program products for interfacing multiple service provider trusted service managers and secure elements.
CN104471600A (en) Safety unit management method and terminal
CN103460186A (en) Method for updating a data storage medium
CN101351027A (en) Method and system for processing service authentication
CN103888409A (en) Distributed unified authentication method and system
CN104395909A (en) Systems, methods, and computer program products for interfacing multiple service provider trusted service managers and secure elements
US20020056079A1 (en) Storage media storing data related to smart card, smart card system and smart card application loading method
CN104737566A (en) Method for incorporating subscriber identity data into a subscriber identity module
CN101500224A (en) Multi-application management server for telecommunication smart card, multi-application management method and system
CN109063450B (en) Control method of safe storage medium, safe storage medium and system
CN106453263A (en) Method and system of binding cellphone number with APP
KR20130006257A (en) Method for managing key of embedded sim, embedded sim and recording medium for the same
CN105160532A (en) Palm vein authentication based payment management method, apparatus and system
EP2209080A1 (en) Method of loading data in an electronic device
US10867326B2 (en) Reputation system and method

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant