AU2018342367A1 - Method of connecting profile content management platform, terminal and server - Google Patents

Method of connecting profile content management platform, terminal and server Download PDF

Info

Publication number
AU2018342367A1
AU2018342367A1 AU2018342367A AU2018342367A AU2018342367A1 AU 2018342367 A1 AU2018342367 A1 AU 2018342367A1 AU 2018342367 A AU2018342367 A AU 2018342367A AU 2018342367 A AU2018342367 A AU 2018342367A AU 2018342367 A1 AU2018342367 A1 AU 2018342367A1
Authority
AU
Australia
Prior art keywords
pcmp
address
information
message
management server
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
AU2018342367A
Other versions
AU2018342367B2 (en
Inventor
Xiaobo YU
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Publication of AU2018342367A1 publication Critical patent/AU2018342367A1/en
Application granted granted Critical
Publication of AU2018342367B2 publication Critical patent/AU2018342367B2/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L65/00Network arrangements, protocols or services for supporting real-time applications in data packet communication
    • H04L65/40Support for services or applications
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/08Configuration management of networks or network elements
    • H04L41/0803Configuration setting
    • H04L41/0813Configuration setting characterised by the conditions triggering a change of settings
    • H04L41/082Configuration setting characterised by the conditions triggering a change of settings the condition being updates or upgrades of network functionality
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/14Session management
    • H04L67/141Setup of application sessions

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Multimedia (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Information Transfer Between Computers (AREA)

Abstract

Provided in an embodiment of the present invention are a method of connecting a profile content management platform (PCMP), a terminal and a server. The method comprises: a management server receives a first message transmitted by a terminal, wherein the first message comprises information not configured with a PCMP address; obtaining the PCMP address; and transmitting a second message to the terminal, wherein the second message comprises the first message and the first message comprises the PCMP address, such that the terminal updates the PCMP address according to the second message and connects to the PCMP according to the PCMP address. The solution of the embodiment of the present invention provides a mechanism in which, upon determining that a PCMP address is not set in a profile, a terminal transmits a first message to a management server, the management server transmits the PCMP address to the terminal, and the terminal completes connection to the PCMP according to the PCMP address, thereby obtaining subsequent profile update content, ensuring communication security, and improving user experience.

Description

METHOD FOR CONNECTING TO PROFILE CONTENT
MANAGEMENT PLATFORM, TERMINAL, AND SERVER [0001] This application claims priority to Chinese Patent Application No. 201710890762.7, filed with the Chinese Patent Office on September 27, 2017 and entitled METHOD FOR CONNECTING TO PROFILE CONTENT MANAGEMENT PLATFORM, TERMINAL, AND SERVER, which is incorporated herein by reference in its entirety.
TECHNICAL FIELD [0002] The present invention relates to the communications field, and in particular, to a method for connecting to a profile content management platform (profile content management platform, PCMP), a terminal, and a management server.
BACKGROUND [0003] An embedded universal integrated circuit card (embedded universal integrated circuit card, eUICC) in a terminal contacts a PCMP by using a local profile assistant (local profile assistant, LPA), to obtain profile (profile) update content and facilitate subsequent use of profile update content for the terminal.
[0004] There are two manners of triggering the eUICC to obtain the profile update content: 1. After a profile is activated (enable), the eUICC automatically contacts the PCMP to obtain the profile update content. 2. The eUICC contacts the PCMP by using a remote profile management (Remote Profile Management, RPM) command, to request to obtain the profile update content. Herein, the RPM command carries a contact PCMP (Contact PCMP) identifier. After recognizing the RPM command, the eUICC obtains a PCMP address in the activated profile, and connects to the PCMP by using i
the LPA, to obtain the profile update content.
[0005] After the eUICC receives the RPM command, if the eUICC determines that the profile is not activated or that no PCMP address is set in the activated profile, the eUICC terminates the RPM command, and reports an error to the management server. In this case, the eUICC cannot connect to the PCMP, and cannot obtain the profile update content in time. Consequently, communication security or user experience is affected.
SUMMARY [0006] Embodiments of the present invention provide a method for connecting to a PCMP, a terminal, and a server. After receiving notification information sent by an eUICC in a terminal, the management server sends, to the eUICC, a message including an ICCID and a PCMP address, so that the eUICC connects to a PCMP to obtain profile update content, thereby ensuring communication security and improving user experience.
[0007] According to a first aspect, a method for connecting to a profile content management platform PCMP is provided. The method includes:
receiving, by a management server, a first message sent by a terminal, where the first message includes information that a profile content management platform PCMP address is not configured;
obtaining, by the management server, the PCMP address based on the first message; and sending, by the management server, a second message to the terminal, where the second message includes first information, and the first information includes the PCMP address, so that the terminal updates a PCMP address based on the second message and connects to a PCMP based on the PCMP address.
[0008] According to the method for connecting to a PCMP in this embodiment of the present invention, after receiving the first message sent by the terminal, the management server sends, to the terminal, the message including the PCMP address, so that the terminal connects to the PCMP to obtain profile update content, thereby improving communication security and user experience.
[0009] With reference to the first aspect, in a first possible implementation of the first aspect, the obtaining, by the management server, the PCMP address based on the first message includes:
sending, by the management server, a third message to a mobile network operator MNO server, where the third message is used to request to update the PCMP address, and the third message includes the information that the PCMP address is not configured; and receiving, by the management server, a fourth message sent by the MNO, where the fourth message includes a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address. [0010] The management server receives the first message sent by the terminal, and obtains the PCMP address from the MNO based on the first message, to complete a subsequent connection between the terminal and the PCMP.
[0011] With reference to the first aspect, in a second possible implementation of the first aspect, the obtaining, by the management server, the PCMP address based on the first message includes:
receiving, by the management server, a fifth message sent by a mobile network operator MNO server, where the fifth message includes the information that the PCMP address is not configured and a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address.
[0012] Before receiving the first message sent by the terminal, the management server obtains, from the MNO in advance, the PCMP address, a trigger condition for generating an RPM package, and the information that the PCMP address is not configured. In this way, after receiving the information that the PCMP address is not configured, the management server sends the PCMP address to the terminal, to complete the subsequent connection between the terminal and the PCMP.
[0013] In a possible implementation, the obtaining, by the management server, the
PCMP address based on the first message includes:
generating, by the management server, a remote profile management RPM package based on the first message and the fifth message, where the RPM package includes a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address.
[0014] With reference to the first aspect or either of the foregoing possible implementations of the first aspect, in a third possible implementation of the first aspect, the first information further includes an integrated circuit card identifier ICCID, and the ICCID is used by the terminal to find a target profile and obtain a remote profile management RPM command, to execute the RPM command and complete the connection between the terminal and the PCMP.
[0015] With reference to the first aspect or any one of the foregoing possible implementations of the first aspect, in a fourth possible implementation of the first aspect, after the receiving, by a management server, a first message sent by a terminal, the method may further include:
sending, by the management server, a sixth message to the terminal, where the sixth message includes delay indication information, and the delay indication information is used to indicate a delay; and the method further includes:
when the delay expires, receiving, by the management server, a seventh message sent by the terminal, where the seventh message includes a session identifier, the seventh message is used to request to download a first package, and the first package includes the RPM package or a profile (profile) package.
[0016] In this technical solution, the terminal may obtain an RPM package updated by the PCMP or a profile package while a same session is maintained for the terminal and the management server.
[0017] With reference to the fourth possible implementation of the first aspect, in a fifth possible implementation of the first aspect, after the receiving, by the management server, a seventh message sent by the terminal, the method may further include:
when the management server does not support an error processing mechanism, sending, by the management server to the terminal, information that no
RPM package is downloaded; or when the management server does not generate the RPM package, sending, by the management server, pending information to the terminal, where the pending information is used to indicate that the RPM package has not been generated.
[0018] In this technical solution, the management server may send a processing result to the terminal in time, and end the session, thereby saving a network resource.
[0019] With reference to the first aspect or any one of the foregoing possible implementations of the first aspect, in a sixth possible implementation of the first aspect, after the sending, by the management server, a second message to the terminal, the method may further include:
receiving, by the management server, an eighth message sent by the terminal, where the eighth message includes first result information and second result information, the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information, the first result information is used to notify the management server that the eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated, to notify the management server that the contact PCMP operation is completed and the PCMP address is updated.
[0020] With reference to the first aspect or any one of the second possible implementation to the sixth possible implementation of the first aspect, in a seventh possible implementation of the first aspect, the method may further include:
receiving, by the management server, a ninth message sent by an MNO, where the ninth message is used to revoke the RPM command.
[0021] According to a second aspect, a method for connecting to a profile content management platform PCMP is provided. The method may include:
sending, by a terminal, a first message to a management server, where the first message includes information that a profile content management platform PCMP address is not configured;
receiving, by the terminal, a second message sent by the management server, where the second message includes first information, and the first information includes the PCMP address; and updating, by the terminal, a PCMP address based on the second message, and connecting to a PCMP based on the PCMP address.
[0022] According to the method for connecting to a PCMP in this embodiment of the present invention, the terminal sends the first message to the management server, to obtain the message including the PCMP address; completes connecting to the PCMP based on the PCMP address; and subsequently obtains profile update content, thereby improving communication security and user experience.
[0023] With reference to the second aspect, in a first possible implementation of the second aspect, the PCMP address is obtained from a mobile network operator MNO after the management server receives the first message sent by the terminal.
[0024] In this solution, after the terminal sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the terminal, so that the terminal can obtain the PCMP address in time and establish a connection to the PCMP.
[0025] With reference to the second aspect, in a second possible implementation of the second aspect, the PCMP address is saved as a fifth message by the management server before the management server receives the first message sent by the terminal, the fifth message includes the information that the PCMP address is not configured and a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address.
[0026] Before the first information is sent to the management server, the MNO sends, to the management server, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the terminal, the management server sends the PCMP address to the terminal, so that the terminal obtains the PCMP address in time and establishes the connection to the PCMP.
[0027] With reference the second aspect or either of the foregoing possible implementations of the second aspect, in a third possible implementation of the second aspect, the first information further includes an integrated circuit card identifier ICCID, and the method may further include:
finding, by the terminal, a target profile based on the ICCID, and obtaining a remote profile management RPM command, to execute the RPM command and complete the connection between the terminal and the PCMP.
[0028] With reference to the second aspect or any one of the foregoing possible implementations of the second aspect, in a fourth possible implementation of the second aspect, before the sending, by a terminal, a first message to a management server, the method may further include:
finding, by the terminal, the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determining that the target profile is not activated, and caching the RPM command, so that the terminal subsequently executes the RPM command based on the received PCMP address, completes the connection between the terminal and the PCMP, and subsequently obtains the profile.
[0029] With reference to the second aspect or any one of the foregoing possible implementations of the second aspect, in a fifth possible implementation of the second aspect, after the sending, by a terminal, a first message to a management server, the method may further include:
receiving, by the terminal, a sixth message sent by the management server, where the sixth message includes delay indication information, and the delay indication information is used to indicate a delay; and the method further includes:
when the delay expires, sending, by the terminal, a seventh message to the management server, where the seventh message includes a session identifier, the seventh message is used to request to download a first package, and the first package includes the RPM package or a profile (profile) package.
[0030] In this technical solution, the terminal may obtain an RPM package updated by the PCMP or a profile package while a same session is maintained for the terminal and the management server.
[0031] With reference to the fifth possible implementation of the second aspect, in a sixth possible implementation of the second aspect, after the terminal sends the fifth message to the management server, the method may further include:
when the management server does not support an error processing mechanism, receiving, by the terminal, information that no RPM package is downloaded and that is sent by the management server; or if the management server does not generate the RPM package, receiving, by the terminal, pending information sent by the management server, where the pending information is used to indicate that the RPM package has not been generated.
[0032] In this technical solution, the management server may send a processing result to the terminal in time, and end the session, thereby saving a network resource.
[0033] With reference to the second aspect or any one of the foregoing possible implementations of the second aspect, in a seventh possible implementation of the second aspect, after the management server sends the second message to the terminal, the method may further include:
sending, by the terminal, an eighth message to the management server, where the eighth message includes first result information and second result information, the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information, the first result information is used to notify the management server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated, to notify the management server that the contact PCMP operation is completed and the PCMP address is updated.
[0034] According to a third aspect, a method for connecting to a profile content management platform PCMP is provided. The method may include:
sending, by an embedded universal integrated circuit card eUICC to a management server, information that a profile content management platform PCMP address is not configured;
receiving, by the eUICC, first information sent by the management server, where the first information includes the PCMP address; and connecting, by the eUICC, to a PCMP based on the PCMP address.
[0035] According to the method for connecting to a PCMP in this embodiment of the present invention, the eUICC sends the first message to the management server, to obtain the message including the PCMP address; completes connecting to the PCMP based on the PCMP address; and subsequently obtains profile update content, thereby improving communication security and user experience.
[0036] With reference to the third aspect, in a first possible implementation of the third aspect, the PCMP address is obtained from a mobile network operator MNO after the management server receives the first message sent by the eUICC.
[0037] In this solution, after the eUICC sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the eUICC, to implement a connection between the eUICC and the PCMP.
[0038] With reference to the third aspect, in a second possible implementation of the third aspect, the PCMP address is saved as a fifth message by the management server before the management server receives the first information sent by the eUICC, the fifth message includes the information that the PCMP address is not configured and a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address.
[0039] Before the first information is sent to the management server, the MNO sends, to the management server, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the eUICC, the management server sends the PCMP address to the terminal, so that the terminal obtains the PCMP address in time and establishes the connection to the PCMP [0040] With reference the third aspect or either of the foregoing possible implementations of the third aspect, in a third possible implementation of the third aspect, the first information further includes an integrated circuit card identifier ICCID, and the method may further include:
finding, by the eUICC, a target profile based on the ICCID, and obtaining a remote profile management RPM command, to execute the RPM command and complete the connection between the eUICC and the PCMP.
[0041] With reference to the third aspect or any one of the foregoing possible implementations of the third aspect, in a fourth possible implementation of the third aspect, before the sending, by an eUICC to a management server, information that a PCMP address is not configured, the method may further include:
finding, by the eUICC, the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determining that the target profile is not activated, and caching the RPM command, so that the eUICC subsequently executes the RPM command based on the received PCMP address, completes the connection between the eUICC and the PCMP, and subsequently obtains profile update content.
[0042] With reference to the third aspect or any one of the foregoing possible implementations of the third aspect, in a fifth possible implementation of the third aspect, after the eUICC receives second information sent by the management server, the method may further include:
sending, by the eUICC, first result information and second result information to the management server, where the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information, the first result information is used to notify the management server that the eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC completes updating the PCMP address.
[0043] According to a fourth aspect, a method for connecting to a profile content management platform PCMP is provided. The method may include:
receiving, by a management server, a remote profile management RPM command sent by a mobile network operator MNO, where the RPM command includes a profile content management platform PCMP address; and sending, by the management server, first information to the terminal, where the first information includes a PCMP address and a contact PCMP identifier, so that io the terminal connects to a PCMP based on the contact PCMP identifier and the PCMP address.
[0044] In this solution, the management server receives an RPM command that includes the PCMP address and that is sent by the MNO, and sends, to the terminal, the information including the PCMP address, so that the terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0045] In a possible implementation, the method may further include:
receiving, by the management server, first result information and second result information sent by the terminal, where the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information or add PCMP address response information, the update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated, the first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0046] According to a fifth aspect, a method for connecting to a profile content management platform PCMP is provided. The method may include:
receiving, by a terminal, first information sent by a management server, where the first information includes a profile content management platform PCMP address and a contact PCMP identifier;
when no PCMP address is configured in a target profile, writing, by the terminal, the PCMP address into the target profile; or when the target profile includes a PCMP address, and the PCMP address included in the target profile is inconsistent with the PCMP address in the first information, updating, by the terminal, the PCMP address in the target profile based on the PCMP address; and connecting, by the terminal, to the PCMP based on the contact PCMP identifier and the PCMP address.
[0047] In this solution, an eUICC in the terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0048] In a possible implementation, the first information further includes an integrated circuit card identifier ICCID, and the method further includes:
finding, by the terminal, the target profile based on the ICCID, and determining whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP and obtain profile update content. [0049] In a possible implementation, the method may further include:
sending, by the terminal, first result information and second result information to the management server, where the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information or add PCMP address response information, the update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated, the first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0050] According to a sixth aspect, a method for connecting to a profile content management platform PCMP is provided. The method includes:
receiving, by an embedded universal integrated circuit card eUICC, first information sent by a management server, where the first information includes a profile content management platform PCMP address and a contact PCMP identifier;
when no PCMP address is configured in a target profile, writing, by the eUICC, the PCMP address into the target profile; or when the target profile includes a PCMP address, and the PCMP address included in the target profile is inconsistent with the PCMP address in the first information, updating, by the eUICC, the PCMP address in the target profile based on the PCMP address; and connecting, by the eUICC, to a PCMP based on the PCMP address.
[0051] In this solution, the eUICC in the terminal connects to the PCMP based on the contact PCMP identifier and the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0052] In a possible implementation, the first information further includes an integrated circuit card identifier ICCID, and the method may further include:
finding, by the eUICC, the target profile based on the ICCID, and determining whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP and obtain profile update content. [0053] In a possible implementation, the method may further include:
sending, by the eUICC, first result information and second result information to the management server, where the first result information includes contact PCMP response information, the contact PCMP response information includes the PCMP address, the second result information includes update PCMP address response information or add PCMP address response information, the update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated, the first result information is used to notify the management server that the eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0054] According to a seventh aspect, a management server is provided. The management server has a function of implementing the management server in the method according to the first aspect or the fourth aspect. The function may be implemented by hardware, or may be implemented by hardware by executing corresponding software. The hardware or the software includes one or more modules corresponding to the foregoing function.
[0055] According to an eighth aspect, a terminal is provided. The terminal has a function of implementing the terminal in the method according to the second aspect or the fifth aspect. The function may be implemented by hardware, or may be implemented by hardware by executing corresponding software. The hardware or the software includes one or more modules corresponding to the foregoing function.
[0056] According to a ninth aspect, an eUICC is provided. The eUICC has a function of implementing the eUICC in the method according to the third aspect or the sixth aspect. The function may be implemented by hardware, or may be implemented by hardware by executing corresponding software. The hardware or the software includes one or more modules corresponding to the foregoing function.
[0057] According to a tenth aspect, a management server is provided. The management server includes a transmitter, a receiver, and a processor. The transmitter, the receiver, and the processor may be configured to support the management server in performing corresponding functions in the method according to the first aspect or the fourth aspect.
[0058] According to an eleventh aspect, a terminal is provided. The terminal includes a transmitter, a receiver, and a processor. The transmitter, the receiver, and the processor may be configured to support the terminal in performing corresponding functions in the method according to the second aspect or the fifth aspect.
[0059] According to a twelfth aspect, an eUICC is provided. The eUICC includes a transmitter, a receiver, and a processor. The transmitter, the receiver, and the processor may be configured to support the eUICC in performing corresponding functions in the method according to the third aspect or the sixth aspect.
[0060] According to a thirteenth aspect, a system is provided. The system includes the management server according to the seventh aspect and the terminal according to the eighth aspect; or the system includes the management server according to the tenth aspect and the terminal according to the eleventh aspect.
[0061] According to a fourteenth aspect, a computer readable storage medium is provided. The computer readable storage medium saves a computer program. When the computer program is executed by a processor, the method according to any one or more of the first aspect to the third aspect is implemented. Alternatively, when the computer program is executed by the processor, the method according to any one or more of the fourth aspect to the sixth aspect is implemented.
[0062] According to a fifteenth aspect, a computer program product including an instruction is provided. When the instruction is run on a computer, the computer is enabled to perform the method according to any one or more of the first aspect to the third aspect. Alternatively, when the instruction is run on the computer, the computer is enabled to perform the method according to any one or more of the fourth aspect to the sixth aspect.
[0063] According to the method for connecting to a PCMP, the terminal, and the server provided in the embodiments of the present invention, the terminal sends, to the management server, the first message indicating that the PCMP address is not configured, receives the PCMP address sent by the management server, completes connecting to the PCMP based on the PCMP address, and subsequently obtains profile update content, thereby ensuring communication security and improve user experience.
BRIEF DESCRIPTION OF DRAWINGS [0064] FIG. 1 is a schematic structural diagram of a system according to an embodiment of the present invention;
[0065] FIG. 2 is a flowchart of a method for connecting to a PCMP according to an embodiment of the present invention;
[0066] FIG. 3 is a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention;
[0067] FIG. 4 is a flowchart of a method for connecting to a PCMP according to an embodiment of the present invention;
[0068] FIG. 5(a)-l and FIG. 5(a)-2 are a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention;
[0069] FIG. 5(b)-1 and FIG. 5(b)-2 are a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention;
[0070] FIG. 5(c)-l, FIG. 5(c)-2, and FIG. 5(c)-3 are a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention;
[0071] FIG. 6 is a schematic structural diagram of a terminal according to an embodiment of the present invention;
[0072] FIG. 7 is a schematic structural diagram of a management server according to an embodiment of the present invention;
[0073] FIG. 8 is a schematic structural diagram of an eUICC according to an embodiment of the present invention;
[0074] FIG. 9 is a schematic structural diagram of a terminal according to an embodiment of the present invention;
[0075] FIG. 10 is a schematic structural diagram of a management server according to an embodiment of the present invention;
[0076] FIG. 11 is a schematic structural diagram of an eUICC according to an embodiment of the present invention;
[0077] FIG. 12 is a flowchart of a method for connecting to a PCMP according to an embodiment of the present invention; and [0078] FIG. 13-1 to FIG. 13-4 are a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention.
DESCRIPTION OF EMBODIMENTS [0079] The embodiments of the present invention provide a method for connecting to a PCMP, a terminal, and a server. After receiving notification information sent by an eUICC in a terminal, a management server sends, to the eUICC, a message including a PCMP address, so that the eUICC connects to a PCMP to obtain profile update content, thereby improving communication security and user experience.
[0080] FIG. 1 is a schematic structural diagram of a system according to an embodiment of the present invention. As shown in FIG. 1, the system may include a terminal 110, a management server 120, and a PCMP or a dedicated profile content management platform (dedicated profile content management platform, DPCMP) 130. [0081] The terminal 110 includes an eUICC 111 and an LPA 112. The LPA 112 is responsible for interaction of the eUICC within the terminal 110. For example, when the eUICC sends notification information to the management server, the eUICC sends the notification information to the LPA, and then the LPA sends the notification information to the management server. The notification information may be information such as information that a profile is not activated or information that a PCMP address is not set in an activated profile.
[0082] The management server 120 is configured to: after receiving the notification information that is sent by the eUICC 111 by using the LPA 112, obtain a PCMP address, and send the PCMP address to the eUICC 111 by using the LPA 112, to complete a subsequent connection between the eUICC 111 and the PCMP and obtain profile update content.
[0083] The management server 120 may be further responsible for managing a remote profile. In other words, the management server 120 may receive a remote management request of an operator, and sends the remote management request to the eUICC 111 to which a profile belonging to the operator is downloaded. The eUICC executes the remote request, to implement remote management. The remote management request may include activation, deactivation, deletion, checking a status of the eUICC 111, and the like.
[0084] In this embodiment of the present invention, the management server 120 may be a subscription manager-data preparation (subscription manager-data preparation, SM-DP+) server or another server.
[0085] The system may further include a subscription manager-discovery server (subscription manager-discovery service, SM-DS) 140. The SM-DS 140 may provide a mechanism to enable the management server 120 to communicate with the LPA 112.
[0086] Generally, the eUICC 111 sets a default address of the SM-DP+ server, and the eUICC 111 may also set a default SM-DS server. The eUICC 111 connects to the SM-DS by using the LPA based on the default SM-DS address, to obtain an event identifier (event ID). This is equivalent to the following: The SM-DS notifies the eUICC 111 of an eUICC identifier EID, and then the eUICC 111 determines that the EID is the EID of the eUICC 111. In this case, the eUICC obtains the event identifier and an address of the management server 120 from the SM-DS, and then connects to the management server 120, to obtain an event.
[0087] The system may further include a mobile network operator (mobile network operator, MNO) server 150. When no PCMP address is set in the activated profile, the MNO 150 is configured to provide the management server 120 with a PCMP address that corresponds to the profile and that can be obtained from the PCMP, so that the eUICC 111 subsequently connects to the PCMP based on the PCMP address, obtains profile update content, and completes downloading the profile in time, thereby improving user experience.
[0088] The system may further include an eUICC manufacturer (eUICC manufacturer, EUM) server and a certificate issuer (certificate issuer, CI). The EUM is an eUICC manufacturer, and is an organization for generating and selling an eUICC card. The CI is used to issue certificates for other entities such as a management server and an SM-DS.
[0089] The management server 120 may communicate with the MNO server 160 by using an ES2+ interface. The management server 120 may communicate with the LPA 112 by using an ES9+ interface. The LPA 112 may communicate with the eUICC 111 by using interfaces such as ESlOa, ESlOb, and ESlOc. The management server 120 may communicate with the eUICC 111 by using an ES8+ interface. The management server 120 may communicate with the SM-DS 140 by using an ES12 interface. The SM-DS 140 may communicate with the LPA 112 by using an ES 11 interface. For details, refer to standard GSMA SGP.22.
[0090] The technical solutions of the embodiments of the present invention are described in detail in the following with reference to the accompanying drawings. It should be noted that in the embodiments of the present invention, first, second, third, fourth, fifth, sixth, seventh, eighth, and ninth are merely intended to distinguish messages, and are not intended to limit the messages.
[0091] In addition, an RPM package (RpmPackage) mentioned in the following embodiments may include at least one RPM command (RpmCommand). Each RPM command (RpmCommand) may include information such as an RPM type (RpmType), an ICCID, and a profile owner identifier (profileOwnerOid). One RPM package (RpmPackage) may include a plurality of RPM commands (RpmCommand).
[0092] The RPM type may include activation (enable), non-activation (disable), deletion (delete), list profile information (listProfilelnfo), an update metadata request (updataMetadataRequest), and a contact PCMP (contactPCMP). Herein, profileOwnerOid may be understood as an operator identifier. The ICCID is used to indicate a profile for an RpmPackage operation. In all the embodiments of the present invention, a message whose type is an update metadata request may refer to an RPM command whose type is an update metadata request.
[0093] The following is described by using an example in which the management server is an SM-DP+ server.
[0094] FIG. 2 is a flowchart of a method for connecting to a PCMP according to an embodiment of the present invention. As shown in FIG. 2, the method for connecting to a PCMP may include the following steps.
[0095] S201. A terminal sends a first message to an SM-DP+ server.
[0096] After receiving an RPM command, the terminal finds, based on an ICCID included in the RPM command, whether a target profile is activated. If the target profile is activated and no PCMP address is configured in the activated target profile, the terminal caches (cache) the RPM command, and sends the first message to the SM-DP+ server. The first message may be referred to as a notification message. The first message includes information that a PCMP address is not configured (PCMPAddrNotConfigured).
[0097] In this embodiment of the present invention, the first message may be a processing notification (HandleNotification) message.
[0098] S202. The SM-DP+ server obtains the PCMP address based on the first message.
[0099] Optionally, in an embodiment of the present invention, after the SM-DP+ server receives the first message sent by the terminal, the SM-DP+ server sends download process processing information (HandleDownloadProgressInfo) to an MNO, where the download progress processing information includes the information that the PCMP address is not configured (PCMPAddrNotConfigured); and obtains remote profile management order (RpmOrder) information from the MNO, where the
RpmOrder information includes an EID and a message whose type is an update metadata request, and the message whose type is the update metadata request includes the PCMP address.
[0100] Optionally, in another embodiment of the present invention, before the SMDP+ server receives the first message sent by the terminal, an MNO registers remote profile management order (RpmOrder) information with the SM-DP+ server. The RPM information includes the PCMP address and the information that the PCMP address is not configured (PCMPAddrNotConfigured). The SM-DP+ server saves the RpmOrder information. The SM-DP+ server may obtain the PCMP address when receiving the first message sent by the terminal.
[0101] S203. The SM-DP+ server sends a second message to the terminal.
[0102] The SM-DP+ server obtains, based on the first message, the message whose type is the update metadata request (updateMetadataRequest), where the message whose type is the update metadata request includes the PCMP address; and sends the second message to the terminal. The second message may include first information. The first information includes the PCMP address.
[0103] Optionally, the second message may include a session identifier (TransactionlD), an SM-DP+ server verification certificate (CERT.DPauth.ECDSA), and an ICCID. The SM-DP+ server verification certificate is used by the terminal to determine a trust relationship with the SM-DP+ server. The ICCID is used by the terminal to find the target profile, and obtain the cached RPM command.
[0104] In this embodiment of the present invention, the first information may be an RPM package (RpmPackage). The RPM package includes the ICCID and the PCMP address.
[0105] In an instance of the present invention, the second message further includes a session identifier (TransactionlD), to-be-signed data of the SM-DP+ server (smdpSigned), and a signature value of the to-be-signed data of the SM-DP+ server (smdpSignature). Herein, smdpSigned includes TransactionlD and RpmPackage, and smdpSignature is obtained through calculation by the SM-DP+ server based on smdpSigned and eUICCSignature.
[0106] S204. The terminal updates a PCMP address based on the second message, and connects to a PCMP based on the PCMP address.
[0107] The terminal receives the second message sent by the SM-DP+ server, verifies the SM-DP+ server verification certificate (CERT.DPauth.ECDSA) in the second message, obtains a public key of the SM-DP+ server verification certificate, verifies smdpSignature and smdpSigned by using the public key, obtains the ICCID and the PCMP address, and connects to the PCMP based on the PCMP address, to obtain profile update content.
[0108] According to the method for connecting to a PCMP provided in this embodiment of the present invention, the SM-DP+ server sends the PCMP address to the terminal based on the information that the PCMP address is not configured and that is sent by the terminal, to implement a connection between the terminal and the PCMP. In addition, profile update content is also obtained in time, thereby improving user experience.
[0109] Optionally, as shown in FIG. 2, after the SM-DP+ server receives the first message sent by the terminal, the method may further include the following steps.
[0110] S205. The SM-DP+ server sends a third message to the MNO.
[0111] The third message is used to request to update the PCMP address. The third message includes the information that the PCMP address is not configured.
[0112] S206. The SM-DP+ server receives a fourth message sent by the MNO.
[0113] The fourth message includes the message whose type is the update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0114] The SM-DP+ server generates the RPM package based on the received fourth message. The RPM package includes the ICCID and the PCMP address. The SM-DP+ server generates smdpSigned. Herein, smdpSigned includes TransactionlD and the RPM package. In addition, the SM-DP+ server calculates smdpSignature, and sends SM-DP+ server verification certificate (CERT.DPauth.ECDSA), TransactionlD, smdpSigned, and smdpSignature to the terminal.
[0115] In an embodiment of the present invention, the RPM package generated by the SM-DP+ server may include two pieces of RPM command (RpmCommand) information. One piece of RPM command information includes the message whose type is the update metadata request. The message whose type is the update metadata request includes the PCMP address. The other piece of RPM command includes contact PCMP (contactPCMP) information.
[0116] Optionally, in this embodiment of the present invention, as shown in FIG. 2, after the SM-DP+ server sends the second message to the terminal, the method may further include the following step.
[0117] S207. The terminal sends an eighth message to the SM-DP+ server.
[0118] The eighth message includes first result information and second result information. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the SM-DP+ server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the SM-DP+ server that the PCMP address is updated.
[0119] In an embodiment of the present invention, the eighth message includes RPM package result (RpmPackageResult) information. The RpmPackageResult information includes two pieces of RPM command result (RpmCommandResult) information. A first piece of RpmCommandResult information includes contact PCMP response (contactPCMPresponse) information, and a second piece of RpmCommandResult information includes update PCMP address result information.
[0120] In another embodiment of the present invention, the first result information in the eighth message may be RPM package result (RpmPackageResult) information. The RpmPackageResult information includes RPM command result (RpmCommandResult) information. The RpmCommandResult information includes contact PCMP response (contactPCMPresponse) information. The second result information in a fifth message may be another piece of RPM package result (RpmPackageResult) information. The RpmPackageResult information includes RPM command result (RpmCommandResult) information. The RpmCommandResult information includes update PCMP address result information.
[0121] Optionally, in this embodiment of the present invention, after the SM-DP+ server receives the first message sent by the terminal, the method may further include the following steps.
[0122] S208. The SM-DP+ server sends a sixth message to the terminal.
[0123] The sixth message includes delay indication information. The delay indication information is used to indicate a delay.
[0124] S209. When the delay expires, the terminal sends a seventh message to the
SM-DP+ server.
[0125] The seventh message is used to request to download a first package. The first package may be an RPM package, or may be a profile (profile) package. In this solution of this embodiment of the present invention, the terminal may obtain an RPM package updated by the PCMP or a profile package while a same session is maintained for the terminal and the management server.
[0126] S210. The SM-DP+ server sends, to the terminal, pending information or information that no RPM package is downloaded.
[0127] After receiving the seventh message, the SM-DP+ server determines whether the SM-DP+ server supports an error processing mechanism. If the error processing mechanism is not supported, the SM-DP+ server sends, to the terminal, the information that no RPM package is downloaded.
[0128] If the SM-DP+ server determines that the error processing mechanism is supported, the SM-DP+ server further determines whether the RPM package is generated; and if the SM-DP+ server has not generated the RPM package, sends the pending (pending) information to the terminal, where the pending information is used to indicate that the RPM package has not been generated.
[0129] In this solution of this embodiment of the present invention, the management server may send a processing result to the terminal in time, and end the session, thereby saving a network resource.
[0130] In this embodiment of the present invention, S208, S209, and S210 may be a loop (loop) process.
[0131] Optionally, in another embodiment of the present invention, as shown in FIG. 3, a difference between this embodiment and the embodiment shown in FIG. 2 is as follows: When the PCMP address and the information that the PCMP address is not configured are preconfigured in the SM-DP+ server, that is, before the terminal sends the first message to the SM-DP+ server, the method includes the following step: [0132] S211. The SM-DP+ server receives a fifth message sent by the MNO.
[0133] The fifth message may be remote profile management order (RpmOrder) information registered with the SM-DP+ server by the MNO. The fifth message may include the information that the PCMP address is not configured (PCMPAddrNotConfigured) and the message whose type is the update metadata request. The message whose type is the update metadata request includes the PCMP address. The SM-DP+ server receives the remote profile management order (RpmOrder) information sent by the MNO, and saves the remote profile management order (RpmOrder) information.
[0134] After receiving the first message sent by the terminal, the SM-DP+ server obtains the PCMP address in the fifth message, and sends the second message to the terminal based on the received first message and the obtained fifth message. The second message includes the PCMP address. After receiving the PCMP address, the terminal connects to the PCMP, and obtains the target profile. In other words, in this embodiment of the present invention, after S211 is performed, after the SM-DP+ server receives notification information sent by the terminal, and the notification information includes the information that the PCMP address is not configured, the SM-DP+ server directly sends, to the terminal, the second message including the PCMP address, and no longer performs processes of S205 and S206 in FIG. 2.
[0135] In addition, other steps in FIG. 3 are the same as other steps in FIG. 2. For brief description, details are not described herein again.
[0136] Optionally, in an embodiment, as shown in FIG. 3, the method may further include the following step.
[0137] S212. The SM-DP+ server receives a ninth message sent by the MNO.
[0138] The ninth message includes the information that the PCMP address is not configured. The ninth message is used to revoke the RPM command.
[0139] In this embodiment of the present invention, the terminal includes an eUICC and an LPA. The terminal adds a local proxy (local proxy) to the LPA, to correspond to an external PCMP or a DPCMP, and another server such as a management server: an SM-DP+ server.
[0140] The following is described with reference to FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-l and FIG. 5(b)-2, and FIG. 5(c)-1 to FIG. 5(c)-3.
[0141] FIG. 4 is a flowchart of a method for connecting to a PCMP according to an embodiment of the present invention. As shown in FIG. 4, the method may include the following steps.
[0142] S301. An eUICC sends, to an SM-DP+ server, information that a PCMP address is not configured.
[0143] S302. The SM-DP+ server obtains the PCMP address based on the information that the PCMP address is not configured.
[0144] S303. The SM-DP+ server sends first information to the eUICC.
[0145] S304. The eUICC connects to a PCMP based on the PCMP address.
[0146] In S301, after receiving an RPM command, the eUICC determines, based on an ICCID included in the RPM command, whether a target profile is activated. If the profile is activated and a PCMP address is not set in the activated profile, the eUICC sends, to the SM-DP+ server by using an LPA, the information that the PCMP address is not configured.
[0147] A specific process is shown in FIG. 5(a)-1 and FIG. 5(a)-2 or FIG. 5(b)-1 and FIG. 5(b)-2.
[0148] S501. The eUICC sends an application protocol data unit (Application
Protocol Data Unit, APDU) response (response APDU) message to the LPA, where the message includes an RPM package result (RpmPackageResult) of the activated profile, and RpmPackageResult includes the information that the PCMP address is not configured.
[0149] S502. The LPA sends a processing notification (HandleNotification) message to the SM-DP+ server, where the HandleNotification message includes RpmPackageResult.
[0150] Optionally, in S503, the SM-DP+ server sends a response message to the LPA.
[0151] The response message is a response message for the processing notification (HandleNotification) message. A (Retrieve-after) header field in the response message carries delay indication information. The delay indication information is used to indicate a delay.
[0152] S504. When the delay expires, the LPA sends, to the SM-DP+ server, a message for downloading a first package.
[0153] The message for downloading the first package may include a session identifier (TransactionlD or SessionlD).
[0154] Optionally, the message for downloading the first package may further include a signature value of to-be-signed data of the SM-DP+ server (smdpSignatureO). The message for downloading the first package may also include a signature value of to-be-signed data of the eUICC (eUICCSignatureO) and a random number (euiccChallenge). Herein, eUICCSignatureO is generated by the eUICC by signing the generated random number and smdpSignatureO. Herein, euiccChallenge and smdpSignatureO may be used as euiccSignedO to be sent to the SM-DP+ server by using the LPA. The LPA obtains a signature value 1 of the to-be-signed data of the eUICC (eUICCSignaturel) and euiccSignedO from the eUICC, uses eUICCSignaturel and euiccSignedO as the information for downloading the first package, and sends the information to the SM-DP+ server.
[0155] In this embodiment of the present invention, the first package may be an RPM package, or may be a profile (profile) package.
[0156] In this embodiment of the present invention, the terminal may obtain an RPM package updated by the PCMP or a profile package while a same session is maintained for the terminal and the management server.
[0157] Optionally, in S505, the SM-DP+ server sends, to the LPA, pending information or information that downloading an RPM package is not supported.
[0158] If the SM-DP+ server does not use an error processing mechanism, the SMDP+ server sends, to the LPA, the information that downloading the RPM package is not supported. In this case, if the SM-DP+ server has not completed S508, the SM-DP+ server sends the pending information to the LPA. In this solution of this embodiment of the present invention, the management server may send a processing result to the terminal in time, and end the session, thereby saving a network resource.
[0159] In S302, optionally, in an embodiment of the present invention, the following is shown in FIG. 5(a)-1 and FIG. 5(a)-2.
[0160] S506. The SM-DP+ server sends download process processing information (HandleDownloadProgressInfo) to the MNO, where HandleDownloadProgressInfo may include an EID and an RPM package result, the RPM package result includes the information that the PCMP address is not configured, and HandleDownloadProgressInfo is used to request an RPM command for updating a PCMP.
[0161] S507. The SM-DP+ server receives remote profile management order (RpmOrder) information sent by the MNO, where the information includes the EID and a message whose type is an update metadata request (updateMetadataRequest), and the message whose type is the update metadata request includes the PCMP address.
[0162] S508. The SM-DP+ server generates an RPM package (RpmPackagel).
[0163] The RPM package includes the ICCID and the PCMP address. The ICCID is used by the eUICC to obtain the target profile.
[0164] S509. The SM-DP+ server generates the to-be-signed data of the SM-DP+ server, and calculates the signature value of the to-be-signed data of the SM-DP+ server. [0165] The SM-DP+ server generates to-be-signed data of the SM-DP+ server (smdpSignedl), where smdpSignedl includes TranscationlD and RpmPackagel; and calculates a signature value of the to-be-signed data of the SM-DP+ server (smdpSignaturel) based on smdpSignedl and eUICCSignature.
[0166] Then, the management server performs S303 in FIG. 4.
[0167] Optionally, in another embodiment of the present invention, the following is shown in FIG. 5.
[0168] S506'. The SM-DP+ server receives remote profile management order (RpmOrder) information sent by the MNO.
[0169] Before the SM-DP+ server receives the information that the PCMP address is not configured and that is sent by the eUICC by using the LPA, or before the eUICC receives the RPM command (command) sent by the SM-DP+ server to the eUICC by using the LPA, the MNO registers the remote profile management order (RpmOrder) information with the SM-DP+ server, where the RpmOrder information includes the information that the PCMP address is not configured and information of a message whose type is an update metadata request (UpdataMetataRequest), and the message whose type is the update metadata request includes the PCMP address. The SM-DP+ server receives the remote profile management order (RpmOrder) information sent by the MNO, and saves the remote profile management order (RpmOrder) information for use in S507'.
[0170] S507'. The SM-DP+ server generates an RPM package (RpmPackagel).
[0171] When the SM-DP+ server receives the information that the PCMP address is not configured and that is sent by the eUICC by using the LPA, the SM-DP+ server compares the ICCID in the HandleNotification message in S503 with the ICCID in the remote profile management order (RpmOrder) information. When the ICCID in the HandleNotification message is consistent with the ICCID in the remote profile management order (RpmOrder) information, the SM-DP+ server generates a new RPM package, where the RPM package includes the message whose type is the update metadata request, and the message whose type is the update metadata request includes the PCMP address. Optionally, the RPM package may further include the ICCID.
[0172] S508'. The SM-DP+ server generates to-be-signed data of the SM-DP+ server, and calculates a signature value of the to-be-signed data of the SM-DP+ server. [0173] The SM-DP+ server generates the to-be-signed data of the SM-DP+ server (smdpSignedl), where smdpSigned includes TranscationlD and RpmPackage; and calculates the signature value of the to-be-signed data of the SM-DP+ server (smdpSignaturel) based on smdpSigned and eUICCSignature.
[0174] Then, in S303, the SM-DP+ server sends the first information to the eUICC by using the LPA, where the first information includes the PCMP address.
[0175] Optionally, the first information may further include the ICCID that is used by the eUICC to subsequently find the target profile and obtain the cached RPM command, to connect to the PCMP and obtain profile update content.
[0176] In this embodiment of the present invention, the first information may be RpmPackagel, and RmpPackagel includes the ICCID and the PCMP address.
[0177] A process in which the SM-DP+ server sends second information to the eUICC by using the LPA is shown in S510 and S511 shown in FIG. 5(a)-1, FIG. 5(a)2, FIG. 5(b)-1, and FIG. 5(b)-2.
[0178] S510. The SM-DP+ server sends TransactionlD, an SM-DP+ server verification certificate, smdpSignaturel, and smdpSignedl to the LPA.
[0179] Herein, smdpSignedl includes RpmPackagel, and RpmPackagel includes the PCMP address and the ICCID.
[0180] S511. The LPA sends a load RPM package (LoadRpmPackage) to the eUICC.
[0181] Herein, LoadRpmPackage includes TransactionlD, the SM-DP+ server verification certificate, smdpSignaturel, and smdpSignedl.
[0182] A specific process in S304 is shown in FIG. 5(a)-l, FIG. 5(a)-2, FIG. 5(b)l,and FIG. 5(b)-2.
[0183] S512. The eUICC verifies the SM-DP+ server verification certificate, smdpSignaturel, and smdpSignedl.
[0184] The eUICC verifies the SM-DP+ server verification certificate. After the verification succeeds, the eUICC obtains a public key of the SM-DP+ server verification certificate, verifies smdpSignaturel and smdpSignedl by using the public key of the SM-DP+ server verification certificate, and obtains the PCMP address and the ICCID after the verification succeeds.
[0185] S513. The eUICC finds the target profile, and updates the PCMP address.
[0186] The eUICC finds the target profile based on the ICCID, and updates the
PCMP address based on the PCMP address.
[0187] S514. The eUICC obtains the cached RPM command, and obtains the PCMP address.
[0188] The eUICC receives the RPM command that is sent by the SM-DP+ server by using the LPA. The eUICC finds, based on the ICCID in the RPM command, that the target profile is in an active state but no PCMP address is configured in the activated profile. In this case, the eUICC caches the RPM command for use in S514.
[0189] S515. The eUICC connects to the PCMP based on the PCMP address.
[0190] The eUICC connects to the PCMP, and then obtains profile update content, thereby improving communication security and user experience.
[0191] Optionally, in an embodiment of the present invention, as shown in FIG. 5(b)-1 and FIG. 5(b)-2, the method further includes: receiving, by the SM-DP+ server, a revoke RPM command (RemoveRpmOrder) sent by the MNO, to revoke the RPM command. In this embodiment of the present invention, as shown in FIG. 5(c)-l, FIG. 5(c)-2, and FIG. 5(c)-3, before the eUICC sends, to the SM-DP+ server by using the LPA, the information that PCMP address information is not configured, the method may further include the following steps.
[0192] S516. The SM-DP+ server receives an RPM command (RpmOrder) sent by the MNO.
[0193] Herein, RpmOrder includes the eUICC identifier EID, RpmScript, matchingID, and an address of an SM-DS. Herein, RpmScript includes contact PCMP (contactPCMP) information, and matchingID is equivalent to an identifier of a contactPCMP event.
[0194] S517. The SM-DP+ server generates an RPM package (RpmPackage2).
[0195] Herein, RpmPackage2 includes contactPCMP and the EID. It should be noted herein that RpmPackage2 also includes the ICCID.
[0196] S518. The SM-DP+ server sends a register event (RegisterEvent) to the SMDS. The register event includes the EID, an address of the SM-DP+ server, and an event identifier (EventID).
[0197] S519. The SM-DS saves an event record (Record).
[0198] The event record includes the EID, the address of the SM-DP+ server, and EventID.
[0199] S520. The LPA queries an event of the SM-DS.
[0200] The LPA actively queries the event in the SM-DS. If the event belongs to a corresponding event of the eUICC, the LPA obtains the event from the SM-DS.
[0201] S521. Bidirectional authentication is performed between the eUICC and the
SM-DS.
[0202] S522. The SM-DS sends EventID and an address of the SM-DP+ server to the LPA.
[0203] In a bidirectional authentication process, the SM-DS searches for a matching DS event by using EID information obtained from the eUICC, and the LPA receives EventID and the address of the SM-DP+ server that are sent by the SM-DS and that are in a successfully matching event record.
[0204] S523. Bidirectional authentication is performed between the eUICC and the
SM-DP+ server.
[0205] S524. The SM-DP+ server obtains a to-be-processed RPM package.
[0206] S525. The SM-DP+ server generates to-be-signed data of the SM-DP+ server, and calculates a signature value of the to-be-signed data of the SM-DP+ server. [0207] The to-be-signed data of the SM-DP+ server (smdpSigned2) generated by the SM-DP+ server includes TransactionlD and RpmPackage2. The signature value of the to-be-signed data of the SM-DP+ server (smdpSignature2) generated by the SMDP+ server is calculated based on smdpSigned2 and eUICCSignature.
[0208] S526. The SM-DP+ server sends TransactionlD, the SM-DP+ server verification certificate, smdpSignature2, and smdpSigned2 to the LPA.
[0209] Herein, smdpSigned2 includes RpmPackage2, and RpmPackage2 includes the PCMP address and the ICCID.
[0210] S527. The LPA sends a load RPM package (LoadRpmPackage) to the eUICC.
[0211] Herein, LoadRpmPackage includes TransactionlD, the SM-DP+ server verification certificate, smdpSignature2, and smdpSigned2.
[0212] S528. The eUICC verifies the SM-DP+ server verification certificate, the to-be-signed data of the SM-DP+ server, and the signature value of the to-be-signed data of the SM-DP+ server.
[0213] The eUICC verifies the SM-DP+ server verification certificate. After the verification succeeds, the eUICC obtains the public key of the SM-DP+ server verification certificate, verifies smdpSignature 1 and smdpSignedl by using the public key of the SM-DP+ server verification certificate, and obtains the PCMP address and the ICCID after the verification succeeds.
[0214] S529. The eUICC finds the target profile, determines that no PCMP address is configured in the target profile, and caches the RPM command.
[0215] In this embodiment of the present invention, the eUICC finds the target profile based on the ICCID, and determines that the target profile is in an active state but no PCMP address is configured in the activated target profile. The eUICC caches the RPM command, to facilitate subsequently executing the RPM command after the PCMP address is obtained.
[0216] In another embodiment of the present invention, the eUICC finds the target profile based on the ICCID, and determines that the target profile is in an active state but no PCMP address is configured in the activated target profile. The eUICC deletes an RPM command of a contact PCMP (contactPCMP) type. If the eUICC deletes the RPM command of contact PCMP type, in S508 shown in FIG. 5(a)-l and FIG. 5(a)-2 and S507' shown in FIG. 5(b)-1 and FIG. 5(b)-2, the RPM package generated by the SM-DP+ server may include two RPM commands (RpmCommand). One RPM command includes an RPM command whose type is an update metadata request, where the RPM command whose type is the update metadata request includes the PCMP address. The other RPM command includes contact PCMP (contactPCMP) information. [0217] Then, the eUICC sends, to the SM-DP+ server by using the LPA, the information that the PCMP address is not configured, that is, performs S301 in FIG. 4, 501 and S502 in FIG. 5(a)-1, FIG. 5(a)-2, FIG. 5(b)-1, and FIG. 5(b)-2.
[0218] FIG. 2 to FIG. 5(c)-3 describe the method for connecting to a PCMP according to the embodiments of the present invention. With reference to FIG. 6 to FIG. 11, the following describes a terminal, an eUICC, and a management server that are provided in the embodiments of the present invention.
[0219] FIG. 6 is a schematic structural diagram of a management server according to an embodiment of the present invention. As shown in FIG. 6, the management server may include a receiving unit 610, a processing unit 620, and a sending unit 630.
[0220] The receiving unit 610 is configured to receive a first message sent by a terminal. The first message includes information that a profile content management platform PCMP address is not configured.
[0221] The processing unit 620 is used by the management server to obtain the PCMP address.
[0222] The sending unit 630 is configured to send a second message to the terminal, where the second message includes first information, and the first information includes the PCMP address, so that the terminal updates a PCMP address based on the second message and connects to a PCMP based on the PCMP address.
[0223] According to the management server provided in this embodiment of the present invention, the receiving unit receives the information that the PCMP address is not configured and that is sent by the terminal, and sends, to the terminal, a message including the PCMP address, so that the terminal connects to the PCMP based on the PCMP address and obtains a profile, thereby improving communication security and user experience.
[0224] Optionally, in an embodiment of the present invention, that the processing unit 620 obtains the PCMP address includes the following:
[0225] The processing unit 620 controls the sending unit 630 to send a third message to a mobile network operator MNO server. The third message is used to request to update the PCMP address, and the third message includes the information that the PCMP address is not configured.
[0226] The processing unit 620 controls the receiving unit 610 to receive a fourth message sent by the MNO. The fourth message includes a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address. In this way, the terminal connects to the PCMP based on the PCMP address and completes obtaining the profile.
[0227] Optionally, in another embodiment of the present invention, the management server further includes a storage unit 640, and that the processing unit 620 obtains the PCMP address includes the following:
[0228] The processing unit 620 controls the receiving unit 610 to receive a fifth message sent by a mobile network operator MNO server. The storage unit 640 saves the fifth message. The fifth message includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0229] Before receiving the first message sent by the terminal, the management server obtains, from the MNO in advance, the PCMP address, an error-reporting trigger condition, and the information that the PCMP address is not configured. In this way, after receiving the information that the PCMP address is not configured, the management server sends the PCMP address to the terminal, to complete a subsequent connection between the terminal and the PCMP.
[0230] In this embodiment of the present invention, that the processing unit 620 obtains the PCMP address includes the following:
[0231] The processing unit 620 generates a remote profile management RPM package based on the first message and the fifth message. The RPM package includes the message whose type is the update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0232] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID. The ICCID is used by the terminal to find a target profile and obtain a remote profile management RPM command.
[0233] Optionally, in this embodiment of the present invention, [0234] The sending unit 630 is further configured to send a sixth message to the terminal. The sixth message includes delay indication information. The delay indication information is used to indicate a delay. A method further includes the following:
[0235] When the delay expires, the receiving unit 610 receives a seventh message sent by the terminal. The seventh message includes a session identifier. The seventh message is used to request to download a first package. The first package includes the RPM package.
[0236] Optionally, in this embodiment of the present invention, if the management server does not support an error processing mechanism, the sending unit sends, to the terminal, information that no RPM package is downloaded. If the management server does not generate the RPM package, the sending unit sends pending information to the terminal. The pending information is used to indicate that the RPM package has not been generated.
[0237] Optionally, in this embodiment of the present invention, the receiving unit 610 is further configured to receive an eighth message sent by the terminal. The eighth message includes first result information and second result information. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
[0238] Optionally, in this embodiment of the present invention, the receiving unit 610 is further configured to receive a ninth message sent by the MNO. The ninth message is used to revoke the RPM command.
[0239] Functions of the function units of the management server may be implemented by using the steps performed by the management server in the embodiments shown in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG. 5(c)-3. Therefore, a specific working process of the management server provided in this embodiment of the present invention is not described herein again.
[0240] In addition, the management server shown in FIG. 6 may further include a storage unit 640, configured to save an operation instruction and data. For example, the storage unit 640 saves PCMP address information.
[0241] FIG. 7 is a schematic structural diagram of a terminal according to an embodiment of the present invention. As shown in FIG. 7, the terminal may include a sending unit 710, a receiving unit 720, and a processing unit 730.
[0242] The sending unit 710 is configured to send a first message to a management server. The first message includes information that a profile content management platform PCMP address is not configured.
[0243] The receiving unit 720 is configured to receive a second message sent by the management server. The second message includes first information. The first information includes the PCMP address.
[0244] The processing unit 730 is configured to: update a PCMP address based on the second message, and connect to a PCMP based on the PCMP address.
[0245] According to a method for connecting to a PCMP in this embodiment of the present invention, the terminal sends the first message to the management server, to obtain the message including the PCMP address; completes connecting to the PCMP based on the PCMP address; and subsequently obtains a profile, thereby improving communication security and user experience.
[0246] Optionally, in an embodiment of the present invention, the PCMP address is obtained by the management server from a mobile operator network MNO.
[0247] In this embodiment, after the terminal sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the terminal, to implement a connection between the terminal and the PCMP. [0248] Optionally, in an embodiment of the present invention, the PCMP address is saved as a third message by the management server. The first message includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0249] In this embodiment, before the first information is sent to the management server, the MNO sends, to the management server in advance, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the terminal, the management server sends the PCMP address to the terminal, to implement the connection between the terminal and the PCMP.
[0250] Optionally, in an embodiment of the present invention, 33. The terminal according to any one of claims 30 to 32, where the first information further includes an integrated circuit card identifier ICCID.
[0251] The processing unit 730 is further configured to: find a target profile based on the ICCID, and obtain a remote profile management RPM command, to execute the RPM command and complete the connection between the terminal and the PCMP.
[0252] Optionally, in an embodiment of the present invention, the processing unit 730 is further configured to: find the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determine that the target profile is not activated, and cache the RPM command.
[0253] Optionally, in an embodiment of the present invention, the receiving unit 720 is further configured to receive a fourth message sent by the management server. The fourth message includes delay indication information. The delay indication information is used to indicate a delay.
[0254] When the delay expires, the sending unit 710 sends a fifth message to the management server. The fifth message includes a session identifier. The fifth message is used to request to download a first package. The first package includes the RPM package.
[0255] Optionally, in an embodiment of the present invention, if the management server does not support an error processing mechanism, the receiving unit receives information that no RPM package is downloaded and that is sent by the management server. If the management server does not generate the RPM package, the receiving unit receives pending information sent by the management server. The pending information is used to indicate that the RPM package has not been generated.
[0256] Optionally, in an embodiment of the present invention, the sending unit 710 is further configured to send a sixth message to the management server. The sixth message includes first result information and second result information. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
[0257] Functions of the function units of the terminal may be implemented by using the steps performed by the terminal in the embodiments shown in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG. 5(c)-3. Therefore, a specific working process of the terminal provided in this embodiment of the present invention is not described herein again.
[0258] In addition, the terminal shown in FIG. 7 may further include a storage unit 740, configured to save an operation instruction and data. For example, the storage unit 740 caches an RPM command.
[0259] FIG. 8 is a schematic structural diagram of an embedded universal integrated circuit card eUICC according to an embodiment of the present invention. The eUICC may include a sending unit 810, a receiving unit 820, and a processing unit 830.
[0260] The sending unit 810 is configured to send, to a management server, information that a profile content management platform PCMP address is not configured.
[0261] The receiving unit 820 is configured to receive first information sent by the management server. The first information includes the PCMP address.
[0262] The processing unit 830 is configured to connect to a PCMP based on the PCMP address.
[0263] According to a method for connecting to a PCMP in this embodiment of the present invention, the eUICC sends the first message to the management server, to obtain the message including the PCMP address; connects to the PCMP based on the PCMP address; and subsequently obtains profile, thereby improving communication security and user experience.
[0264] Optionally, in an embodiment of the present invention, the PCMP address is obtained by the management server from a mobile operator network MNO.
[0265] In this embodiment, after the eUICC sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the eUICC, to implement a connection between the eUICC and the PCMP. [0266] Optionally, in another embodiment of the present invention, the PCMP address is saved as third information by the management server. The third information includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0267] In this embodiment of the present invention, before the first information is sent to the management server, the MNO sends, to the management server in advance, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the eUICC, the management server sends the PCMP address to the terminal, to implement the connection between the eUICC and the PCMP. [0268] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0269] The processing unit 830 is further configured to: find a target profile based on the ICCID, and obtain a remote profile management RPM command, to execute the RPM command and complete the connection between the eUICC and the PCMP.
[0270] Optionally, in this embodiment of the present invention, [0271] The processing unit 830 is further configured to: find the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determine that the target profile is not activated, and cache the RPM command.
[0272] Optionally, in this embodiment of the present invention, the sending unit 810 is further configured to send first result information and second result information to the management server. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that the eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC completes updating the PCMP address.
[0273] Functions of the function units of the eUICC may be implemented by using the steps performed by the eUICC in the embodiments shown in FIG. 2, FIG. 3, FIG.
4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG.
5(c)-3. Therefore, a specific working process of the eUICC provided in this embodiment of the present invention is not described herein again.
[0274] In addition, the eUICC shown in FIG. 8 may further include a storage unit 840, configured to save an operation instruction and data. For example, the storage unit 840 caches an RPM command.
[0275] FIG. 9 is a schematic structural diagram of a management server according to an embodiment of the present invention. As shown in FIG. 9, the management server may include a receiver 910, a processor 920, a transmitter 930, and a memory 940. The receiver 910, the processor 920, the transmitter 930, and the memory 940 are connected to each other by using a communications bus 950, to complete communication with each other. The memory 940 is configured to save an instruction and data, for example, PCMP address information.
[0276] The receiver 910 is configured to receive a first message sent by a terminal. The first message includes information that a profile content management platform PCMP address is not configured.
[0277] The processor 920 is used by the management server to obtain the PCMP address.
[0278] The transmitter 930 is configured to send a second message to the terminal, where the second message includes first information, and the first information includes the PCMP address, so that the terminal updates the PCMP address based on the second message and connects to a PCMP based on the PCMP address.
[0279] According to the management server provided in this embodiment of the present invention, the receiver receives the information that the PCMP address is not configured and that is sent by the terminal, and sends, to the terminal, a message including the PCMP address, so that the terminal connects to the PCMP based on the PCMP address and obtains a profile, thereby improving communication security and user experience.
[0280] Optionally, in an embodiment of the present invention, that the processor
920 obtains the PCMP address includes the following:
[0281] The processing 920 controls the transmitter 930 to send a third message to a mobile network operator MNO server. The third message is used to request to update the PCMP address, and the third message includes the information that the PCMP address is not configured.
[0282] The processor 920 controls the receiver 910 to receive a fourth message sent by the MNO. The fourth message includes a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address. In this way, the terminal connects to the PCMP based on the PCMP address and completes obtaining the profile.
[0283] Optionally, in another embodiment of the present invention, that the processor 920 obtains the PCMP address includes the following:
[0284] The processor 920 controls the receiver 910 to receive a fifth message sent by the mobile network operator MNO server. The memory 940 saves the fifth message. The fifth message includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0285] Before receiving the first message sent by the terminal, the management server obtains, from the MNO in advance, the PCMP address, an error-reporting trigger condition, and the information that the PCMP address is not configured. In this way, after receiving the information that the PCMP address is not configured, the management server sends the PCMP address to the terminal, to complete a subsequent connection between the terminal and the PCMP.
[0286] In this embodiment of the present invention, that the processor 920 obtains the PCMP address includes the following:
[0287] The processor 920 generates a remote profile management RPM package based on the first message and the fifth message. The RPM package includes the message whose type is the update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0288] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID. The ICCID is used by the terminal to find a target profile and obtain a remote profile management RPM command.
[0289] Optionally, in this embodiment of the present invention, [0290] The transmitter 930 is further configured to send a sixth message to the terminal. The sixth message includes delay indication information. The delay indication information is used to indicate a delay. The method further includes the following:
[0291] When the delay expires, the receiver 910 receives a seventh message sent by the terminal. The seventh message includes a session identifier. The seventh message is used to request to download a first package. The first package may include the RPM package.
[0292] Optionally, in this embodiment of the present invention, if the management server does not support an error processing mechanism, the transmitter sends, to the terminal, information that no RPM package is downloaded. If the management server does not generate the RPM package, the transmitter sends pending information to the terminal. The pending information is used to indicate that the RPM package has not been generated.
[0293] Optionally, in this embodiment of the present invention, the receiver 910 is further configured to receive an eighth message sent by the terminal. The eighth message includes first result information and second result information. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
[0294] Optionally, in this embodiment of the present invention, the receiver 910 is further configured to receive a ninth message sent by the MNO. The ninth message is used to revoke the RPM command.
[0295] Functions of the functionalities of the management server may be implemented by using the steps performed by the management server in the embodiments shown in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG. 5(c)-3. Therefore, a specific working process of the management server provided in this embodiment of the present invention is not described herein again.
[0296] FIG. 10 is a schematic structural diagram of a terminal according to an embodiment of the present invention. As shown in FIG. 10, the terminal may include a transmitter 1010, a receiver 1020, a processor 1030, and a memory 1040. The memory 1040 is configured to save an operation instruction and data. For example, the memory 1040 caches an RPM command.
[0297] The transmitter 1010 is configured to send a first message to a management server. The first message includes information that a profile content management platform PCMP address is not configured.
[0298] The receiver 1020 is configured to receive a second message sent by the management server. The second message includes first information. The first information includes the PCMP address.
[0299] The processor 1030 is configured to: update the PCMP address based on the second message, and connect to a PCMP based on the PCMP address.
[0300] According to a method for connecting to a PCMP in this embodiment of the present invention, the terminal sends the first message to the management server, to obtain the message including the PCMP address; completes connecting to the PCMP based on the PCMP address; and subsequently obtains a profile, thereby improving communication security and user experience.
[0301] Optionally, in an embodiment of the present invention, the PCMP address is obtained by the management server from a mobile operator network MNO.
[0302] In this embodiment, after the terminal sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the terminal, to implement a connection between the terminal and the PCMP. [0303] Optionally, in an embodiment of the present invention, the PCMP address is saved as a third message by the management server. The first message includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0304] In this embodiment, before sending the first information to the management server, the MNO sends, to the management server in advance, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the terminal, the management server sends the PCMP address to the terminal, to implement the connection between the terminal and the PCMP.
[0305] Optionally, in an embodiment of the present invention, 33. The terminal according to any one of claims 30 to 32, where the first information further includes an integrated circuit card identifier ICCID.
[0306] The processor 1030 is further configured to: find a target profile based on the ICCID, and obtain a remote profile management RPM command, to execute the RPM command and complete the connection between the terminal and the PCMP.
[0307] Optionally, in an embodiment of the present invention, the processor 1030 is further configured to: find the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determine that the target profile is not activated, and cache the RPM command.
[0308] Optionally, in an embodiment of the present invention, the receiver 1020 is further configured to receive a fourth message sent by the management server. The fourth message includes delay indication information. The delay indication information is used to indicate a delay.
[0309] When the delay expires, the transmitter 1010 sends a fifth message to the management server. The fifth message includes a session identifier. The fifth message is used to request to download a first package. The first package may include the RPM package.
[0310] Optionally, in an embodiment of the present invention, if the management server does not support an error processing mechanism, the receiver receives information that no RPM package is downloaded and that is sent by the management server. If the management server does not generate the RPM package, the receiver receives pending information sent by the management server. The pending information is used to indicate that the RPM package has not been generated.
[0311] Optionally, in an embodiment of the present invention, the transmitter 1010 is further configured to send a sixth message to the management server. The sixth message includes first result information and second result information. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that an eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
[0312] Functions of the functionalities of the terminal may be implemented by using the steps performed by the terminal in the embodiments shown in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-1 to FIG. 5(c)-3. Therefore, a specific working process of the terminal provided in this embodiment of the present invention is not described herein again.
[0313] FIG. 11 is a schematic structural diagram of an embedded universal integrated circuit card eUICC according to an embodiment of the present invention. The eUICC may include a transmitter 1110, a receiver 1120, a processor 1130, and a memory 1140. The memory 1140 is configured to save an operation instruction and data. For example, the memory 1140 caches an RPM command.
[0314] The transmitter 1110 is configured to send, to a management server, information that a profile content management platform PCMP address is not configured.
[0315] The receiver 1120 is configured to receive first information sent by the management server. The first information includes the PCMP address.
[0316] The processor 1130 is configured to connect to a PCMP based on the PCMP address.
[0317] According to a method for connecting to a PCMP in this embodiment of the present invention, the eUICC sends the first message to the management server, to obtain the message including the PCMP address; connects to the PCMP based on the
PCMP address; and subsequently obtains profile, thereby improving communication security and user experience.
[0318] Optionally, in an embodiment of the present invention, the PCMP address is obtained by the management server from a mobile operator network MNO.
[0319] In this embodiment, after the eUICC sends, to the management server, the information that the PCMP address is not configured, the management server obtains the PCMP address from the MNO based on the first message, and sends the PCMP address to the eUICC, to implement a connection between the eUICC and the PCMP.
[0320] Optionally, in another embodiment of the present invention, the PCMP address is saved as third information by the management server. The third information includes the information that the PCMP address is not configured and a message whose type is an update metadata request. The message whose type is the update metadata request includes the PCMP address.
[0321] In this embodiment of the present invention, before the first information is sent to the management server, the MNO sends, to the management server in advance, the PCMP address and the information that the PCMP address is not configured. When receiving the first message sent by the eUICC, the management server sends the PCMP address to the terminal, to implement the connection between the eUICC and the PCMP. [0322] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0323] The processor 1130 is further configured to: find a target profile based on the ICCID, and obtain a remote profile management RPM command, to execute the RPM command and complete the connection between the eUICC and the PCMP.
[0324] Optionally, in this embodiment of the present invention, [0325] The processor 1130 is further configured to: find the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determine that the target profile is not activated, and cache the RPM command.
[0326] Optionally, in this embodiment of the present invention, the transmitter 1110 is further configured to send first result information and second result information to the management server. The first result information includes contact PCMP response information. The response information includes the PCMP address. The second result information includes update PCMP address response information. The first result information is used to notify the management server that the eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC completes updating the PCMP address.
[0327] Functions of the functionalities of the eUICC may be implemented by using the steps performed by the eUICC in the embodiments shown in FIG. 2, FIG. 3, FIG.
4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG. 5(c)-3. Therefore, a specific working process of the eUICC provided in this embodiment of the present invention is not described herein again.
[0328] FIG. 12 is a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention. In this embodiment, an example in which a management server is an SM-DP+ server is still used. As shown in FIG. 12, the method for connecting to a PCMP may include the following steps.
[0329] SI201. The SM-DP+ server receives a remote profile management RPM command (RpmOrder) sent by a mobile network operator MNO.
[0330] In an embodiment of the present invention, the remote profile management RPM command (RpmOrder) may include two RPM commands (RpmCommand). One RpmCommand may include a message whose type is an update metadata request (UpdateMetadataRequest). The message whose type is the update metadata request includes a PCMP address. An RPM type of the other RpmCommand is contact PCMP (contactPCMP).
[0331] S1202. The SM-DP+ server sends first information to a terminal.
[0332] The first information includes a PCMP address and a contact PCMP identifier. In this embodiment of the present invention, the contact PCMP identifier is an RPM command (RpmCommand) of the contact PCMP type.
[0333] Optionally, the first information may further include an ICCID, an SM-DP+ server verification certificate (CERT.DPauth.ECDSA), a session identifier (TransactionlD), to-be-signed data of the SM-DP+ server (smdpSigned), and a signature value of the to-be-signed data of the SM-DP+ server (smdpSignature).
[0334] The ICCID is used by the terminal to find a target profile based on the ICCID. Herein, smdpSigned is generated by the SM-DP+ server based on TransactionlD and the RPM package (RpmPackage). The RPM package includes the PCMP address and the ICCID. Herein, smdpSignature is obtained through calculation by the SM-DP+ server based on smdpSigned and eUICCSignature, and eUICCSignature is generated by the eUICC in the terminal during bidirectional authentication between the eUICC and the SM-DP+ server.
[0335] In this embodiment of the present invention, the first information may be an RPM command.
[0336] SI203. The terminal connects to a PCMP based on the contact PCMP identifier and the PCMP address in the first information.
[0337] Optionally, in this embodiment of the present invention, when the terminal receives the first information sent by the SM-DP+ server, the terminal may first verify the SM-DP+ server verification certificate (CERT.DPauth.ECDSA), smdpSignaturel, and smdpSignedl in the first information. After the verification succeeds, the terminal finds the target profile based on the ICCID, and determines whether a PCMP address is configured in the target profile.
[0338] When no PCMP address is configured in the target profile, the terminal writes the PCMP address in the first information into the target profile, so that the terminal connects to the PCMP based on the added PCMP address to obtain profile update content.
[0339] Optionally, in this embodiment of the present invention, when the target profile includes one PCMP address, the terminal determines whether the PCMP address in the target profile and the PCMP address in the first information are same PCMP addresses. When the PCMP address in the target profile and the PCMP address in the first information are the same PCMP addresses, the terminal connects to the PMCP based on the original PCMP address to obtain the profile update content.
[0340] When the PCMP address in the target profile is different from the PCMP address in the first information, the terminal updates the PCMP address in the target profile based on the PCMP address in the first information, executes a contact PCMP instruction based on the updated PCMP address, and connects to the PCMP, to obtain the profile update content.
[0341] Optionally, in this embodiment of the present invention, the method may further include the following step.
[0342] S1204. The terminal sends first result information and second result information to the SM-DP+ server.
[0343] The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address. The message that the PCMP address is successfully updated may be a message that the PCMP address is successfully added or a message that the PCMP address is successfully replaced.
[0344] In this embodiment of the present invention, the first result information and the second result information may be included in response (Response) information that is of the first information and that is sent by the terminal to the SM-DP+ server. The response information may include RPM package result (RpmPackageResult) information. The RPM package result information may include two pieces of RPM command result (RpmCommandResult) information. The two pieces of RPM command result information include the first result information and the second result information. The first result information includes the contact PCMP response information, and the second result information includes the update PCMP address response information or the add PCMP address response information, to notify the SM-DP+ server that the terminal completes a contact PCMP operation and updating the PCMP address, or contacting the PCMP and adding the PCMP address. The update PCMP address response information is the information that the PCMP address is successfully updated or the information that the PCMP address does not need to be updated.
[0345] FIG. 13-1 to FIG. 13-4 are a flowchart of another method for connecting to a PCMP according to an embodiment of the present invention. In this embodiment, an example in which a management server is an SM-DP+ server is still used for description. [0346] It should be noted that a difference between S516 to S529 in FIG. 5(c)-l to FIG. 5(c)-3 and the method process provided in this embodiment is that RPM commands that are sent by an MNO and received by the SM-DP+ server include two RPM commands (RpmCommand). One RpmCommand includes a message whose type is an update metadata request (UpdateMetadataRequest). The message whose type is the update metadata request includes a PCMP address. The other RpmCommand includes contact PCMP (ContactPCMP) information. The SM-DP+ server generates an RPM package based on the RPM command, and sends the RPM package to an eUICC in a terminal. After receiving the RPM package sent by the SM-DP by using an LPA in the terminal, the eUICC performs corresponding parsing to obtain a PCMP address in the RPM package, and connects to a PCMP based on the PCMP address, to obtain profde update content.
[0347] As shown in FIG. 13-1 to FIG. 13-4, the method may include the following steps.
[0348] SI301. The SM-DP+ server receives an RPM command (RpmOrder) sent by the MNO.
[0349] Herein, RpmOrder includes an eUICC identifier EID, RpmScript, matchingID, and an address of an SM-DS. Herein, RpmScript includes an RPM command of a contact PCMP (contactPCMP) type and an RPM command whose type is an update metadata request (UpdateMetadataRequest). The RPM command whose type is the update metadata request includes a PCMP address. Herein, matchingID is equivalent to an identifier of a contactPCMP event.
[0350] SI302. The SM-DP+ server generates an RPM package (RpmPackage).
[0351] Herein, RpmPackage includes an Rpm type of contactPCMP. It should be noted herein that RpmPackage also includes an ICCID.
[0352] SI303. The SM-DP+ server sends a register event (RegisterEvent) to the SM-DS. The register event includes the EID, an address of the SM-DP+ server, and an event identifier (EventID).
[0353] SI304. The SM-DS saves an event record (Record).
[0354] The event record includes the EID, the address of the SM-DP+ server, and EventID.
[0355] S1305. The LPA queries an event of the SM-DS.
[0356] The LPA actively queries the event in the SM-DS.If the event belongs to a corresponding event of the eUICC, the LPA obtains the event from the SM-DS.
[0357] SI306. Bidirectional authentication is performed between the eUICC and the SM-DS.
[0358] SI307. The SM-DS sends EventID and the address of the SM-DP+ server to the LPA.
[0359] In a bidirectional authentication process, the SM-DS searches for a matching DS event by using EID information obtained from the eUICC, and the LPA receives EventID and the address of the SM-DP+ server that are sent by the SM-DS and that are in a successfully matching event record.
[0360] S1308. Bidirectional authentication is performed between the eUICC and the SM-DP+ server.
[0361] SI309. The SM-DP+ server obtains a to-be-processed RPM package.
[0362] S1310. The SM-DP+ server generates to-be-signed data of the SM-DP+ server, and calculates a signature value of the to-be-signed data of the SM-DP+ server. [0363] The to-be-signed data of the SM-DP+ server (smdpSigned) generated by the SM-DP+ server includes TransactionlD and RpmPackage. The signature value of the to-be-signed data of the SM-DP+ server (smdpSignature) generated by the SM-DP+ server is calculated based on smdpSigned and eUICCSignature.
[0364] S1311. The SM-DP+ server sends TransactionlD, an SM-DP+ server verification certificate, the signature value of the to-be-signed data of the SM-DP+ server (smdpSignature), and the to-be-signed data of the SM-DP+ server (smdpSigned).
[0365] Herein, smdpSigned includes RpmPackage, and RpmPackage includes a PCMP address and an ICCID.
[0366] S1312. The LPA sends a load RPM package (LoadRpmPackage) to the eUICC.
[0367] Herein, LoadRpmPackage includes TransactionlD, the SM-DP+ server verification certificate, smdpSignature, and smdpSigned.
[0368] S1313. The eUICC verifies the SM-DP+ server verification certificate, the to-be-signed data of the SM-DP+ server, and the signature value of the to-be-signed data of the SM-DP+ server.
[0369] The eUICC verifies the SM-DP+ server verification certificate. After the verification succeeds, the eUICC obtains a public key of the SM-DP+ server verification certificate, verifies smdpSignature and smdpSigned by using the public key of the SM-DP+ server verification certificate, and obtains the PCMP address and the ICCID after the verification succeeds.
[0370] S1314. The eUICC finds a target profile, and determines whether a PCMP address is configured in the target profile.
[0371] The eUICC finds the target profile based on the ICCID, and determines whether the target profile includes information about the PCMP address.
[0372] S1315. When no PCMP address is configured in the target profile, the eUICC writes the obtained PCMP address into the target profile, and connects to a PCMP based on the PCMP address, to obtain profile update content.
[0373] S1316. When the PCMP address is configured in the target profile, the eUICC determines whether the PCMP address configured in the target profile is consistent with the PCMP address obtained by the eUICC.
[0374] S1317. When the PCMP address in the target profile is inconsistent with the PCMP address obtained by the eUICC, the eUICC updates the PCMP address in the target profile based on the obtained PCMP address, and connects to the PCMP based on the updated PCMP address, to obtain the profile update content.
[0375] When the PCMP address in the target profile is consistent with the PCMP address obtained by the eUICC, the eUICC connects to the PCMP based on the PCMP address in the target profile to obtain the profile update content.
[0376] S1318. The eUICC sends an APDU response message to the LPA.
[0377] The APDU response message may include RPM package result (RpmPackageResult) information. The RPM package result information may include two pieces of RPM command result (RpmCommandResult) information. The two pieces of RPM command result information include first result information and second result information. The first result information includes contact PCMP response information, and the second result information includes update PCMP address response information or add PCMP address response information, to notify the SM-DP+ server that the terminal completes a contact PCMP operation and updating the PCMP address, or contacting the PCMP and adding the PCMP address. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated.
[0378] S1319. The LPA sends an APDU response message to the SM-DP+ server.
[0379] The present invention further provides a management server. As shown in FIG. 6, the management server may include a receiving unit 610, a processing unit 620, a sending unit 630, and a storage unit 640. The storage unit 640 is configured to save data.
[0380] The receiving unit 610 is configured to receive a remote profile management RPM command sent by a mobile network operator MNO. The RPM command includes a profile content management platform PCMP address.
[0381] The sending unit 630 is configured to send first information to the terminal. The first information includes a PCMP address and a contact PCMP identifier, so that the terminal connects to a PCMP based on the contact PCMP identifier and the PCMP address.
[0382] In this solution, the management server receives the RPM command that includes the PCMP address and that is sent by the MNO, and sends, to the terminal, the information including the PCMP address, so that the terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0383] Optionally, in an embodiment of the present invention, the receiving unit 610 is further configured to receive a second message sent by the terminal. The second message includes first result information and second result information. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0384] An embodiment of the present invention further provides a terminal. As shown in FIG. 7, the terminal may include a sending unit 710, a receiving unit 720, a processing unit 730, and a storage unit 740. The storage unit 740 is configured to save an instruction and data.
[0385] The receiving unit 720 is configured to receive first information sent by a management server. The first information includes a profile content management platform PCMP address and a contact PCMP identifier.
[0386] The processing unit 730 is configured to write the PCMP address into a target profile, or the processing unit 730 updates a PCMP address in the target profile based on the PCMP address.
[0387] The processing unit 730 is further configured to connect to a PCMP based on the contact PCMP identifier and the PCMP address.
[0388] In this solution, an eUICC in the terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0389] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0390] The processing unit 730 finds the target profile based on the ICCID; and determines whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP and obtain profile update content.
[0391] Optionally, in this embodiment of the present invention, that the processing unit 730 writes the PCMP address into the target profile includes the following:
[0392] If no PCMP address is configured in the target profile, the processing unit 730 writes the PCMP address in the first information into the target profile, so that the terminal connects to the PCMP based on the added PCMP address to obtain the profile update content.
[0393] Optionally, in another embodiment of the present invention, that the processing unit 730 updates the PCMP address in the target profile based on the PCMP address includes the following:
[0394] If the target profde includes one PCMP address, the processing unit 730 determines whether the PCMP address included in the target profile is consistent with the PCMP address in the first information.
[0395] If the PCMP address in the target profile is inconsistent with the PCMP address in the first information, the processing unit 730 updates the PCMP address in the target profile based on the PCM address in the first information.
[0396] Optionally, in another embodiment of the present invention, the sending unit 710 sends a second message to the management server. The second message includes first result information and second result information. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0397] An embodiment of the present invention provides an eUICC. As shown in
FIG. 8, the eUICC may include a sending unit 810, a receiving unit 820, a processing unit 830, and a storage unit 840. The storage unit 840 is configured to save data.
[0398] The receiving unit 820 is configured to receive a first message sent by a management server. The first message includes first information. The first information includes a profile content management platform PCMP address and a contact PCMP identifier.
[0399] The processing unit 830 is configured to write the PCMP address into a target profile, or the eUICC updates a PCMP address in the target profile based on the PCMP address.
[0400] The processing unit 830 is further configured to connect to a PCMP based on the contact PCMP identifier and the PCMP address.
[0401] In this solution, the eUICC in a terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0402] Optionally, in an embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0403] The processing unit 830 finds the target profile based on the ICCID; determines whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP; and obtains the profile update content. [0404] Optionally, in an embodiment of the present invention, that the processing unit 830 writes the PCMP address into the target profile includes the following:
[0405] If no PCMP address is configured in the target profile, the eUICC writes the PCMP address in the first information into the target profile, so that the terminal connects to the PCMP based on the added PCMP address to obtain the profile update content.
[0406] Optionally, in an embodiment of the present invention, that the processing unit 830 updates the PCMP address in the target profile based on the PCMP address includes the following:
[0407] If the target profile includes one PCMP address, the processing unit 830 determines whether the PCMP address included in the target profile is consistent with the PCMP address in the first information.
[0408] If the PCMP address in the target profile is inconsistent with the PCMP address in the first information, the processing unit 830 updates the PCMP address in the target profile based on the PCM address in the first information.
[0409] Optionally, in an embodiment of the present invention, the sending unit 810 is configured to send first result information and second result information to the management server. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that the eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0410] The present invention further provides a management server. As shown in FIG. 9, the management server may include a receiver 910, a processor 920, a transmitter 930, and a memory 940. The memory 940 is configured to save data.
[0411] The receiver 910 is configured to receive a remote profile management RPM command sent by a mobile network operator MNO. The RPM command includes a profile content management platform PCMP address.
[0412] The transmitter 930 is configured to send first information to the terminal. The first information includes a PCMP address and a contact PCMP identifier, so that the terminal connects to a PCMP based on the contact PCMP identifier and the PCMP address.
[0413] In this solution, the management server receives the RPM command that includes the PCMP address and that is sent by the MNO, and sends, to the terminal, the information including the PCMP address, so that the terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0414] Optionally, in an embodiment of the present invention, the receiver 910 is further configured to receive a second message sent by the terminal. The second message includes first result information and second result information. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0415] An embodiment of the present invention further provides a terminal. As shown in FIG. 10, the terminal may include a transmitter 1010, a receiver 1020, a processor 1030, and a memory 1040. The memory 1040 is configured to save an instruction and data.
[0416] The receiver 1020 is configured to receive first information sent by a management server. The first information includes a profile content management platform PCMP address and a contact PCMP identifier.
[0417] The processor 1030 is configured to write the PCMP address into a target profile, or the processor 1030 updates a PCMP address in the target profile based on the PCMP address.
[0418] The processor 1030 is further configured to connect to a PCMP based on the PCMP address.
[0419] In this solution, the eUICC in the terminal connects to the PCMP based on the contact PCMP identifier and the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0420] Optionally, in this embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0421] The processor 1030 finds the target profile based on the ICCID; and determines whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP and obtain profile update content.
[0422] Optionally, in this embodiment of the present invention, that the processor 1030 writes the PCMP address into the target profile includes the following:
[0423] If no PCMP address is configured in the target profile, the processor 1030 writes the PCMP address in the first information into the target profile, so that the terminal connects to the PCMP based on the added PCMP address to obtain the profile update content.
[0424] Optionally, in another embodiment of the present invention, that the processor 1030 updates the PCMP address in the target profile based on the PCMP address includes the following:
[0425] If the target profile includes one PCMP address, the processor 1030 determines whether the PCMP address included in the target profile is consistent with the PCMP address in the first information.
[0426] If the PCMP address in the target profile is inconsistent with the PCMP address in the first information, the processor 1030 updates the PCMP address in the target profile based on the PCM address in the first information.
[0427] Optionally, in another embodiment of the present invention, the transmitter 1010 sends a second message to the management server. The second message includes first result information and second result information. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that an eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0428] An embodiment of the present invention provides an eUICC. As shown in
FIG. 11, the eUICC may include a transmitter 1110, a receiver 1120, a processor 1130, and a memory 1140. The memory 1140 is configured to save data.
[0429] The receiver 1120 is configured to receive a first message sent by a management server. The first message includes first information. The first information includes a profile content management platform PCMP address and a contact PCMP identifier.
[0430] The processor 1130 is configured to write the PCMP address into a target profile, or the eUICC updates a PCMP address in the target profile based on the PCMP address.
[0431] The processor 1130 is further configured to connect to a PCMP based on the contact PCMP identifier and the PCMP address.
[0432] In this solution, the eUICC in a terminal connects to the PCMP based on the PCMP address to obtain profile update content, thereby improving communication security and user experience.
[0433] Optionally, in an embodiment of the present invention, the first information further includes an integrated circuit card identifier ICCID.
[0434] The processor 1130 finds the target profile based on the ICCID; and determines whether the PCMP address is configured in the target profile, to determine whether the terminal can connect to the PCMP and obtain profile update content.
[0435] Optionally, in an embodiment of the present invention, that the processor 1130 writes the PCMP address into the target profile includes the following:
[0436] If no PCMP address is configured in the target profile, the eUICC writes the PCMP address in the first information into the target profile, so that the terminal connects to the PCMP based on the added PCMP address to obtain the profile update content.
[0437] Optionally, in an embodiment of the present invention, that the processor 1130 updates the PCMP address in the target profile based on the PCMP address includes the following:
[0438] If the target profile includes one PCMP address, the processor 1130 determines whether the PCMP address included in the target profile is consistent with the PCMP address in the first information.
[0439] If the PCMP address in the target profile is inconsistent with the PCMP address in the first information, the processor 1130 updates the PCMP address in the target profile based on the PCM address in the first information.
[0440] Optionally, in an embodiment of the present invention, the transmitter 1110 is configured to send first result information and second result information to the management server. The first result information includes contact PCMP response information. The contact PCMP response information includes the PCMP address. The second result information includes update PCMP address response information or add PCMP address response information. The update PCMP address response information is information that the PCMP address is successfully updated or information that the PCMP address does not need to be updated. The first result information is used to notify the management server that the eUICC in the terminal completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC in the terminal completes adding or updating the PCMP address.
[0441] An embodiment of the present invention further provides a system. The system includes the management server shown in FIG. 9 and the terminal shown in FIG. 11. The management server has a function of performing the methods/steps performed by the management server in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-l to FIG. 5(c)-3; and the terminal has a function of performing the methods/steps performed by the terminal in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-1 and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-1 to FIG. 5(c)-
3. Alternatively, the management server has a function of performing the methods/steps performed by the management server in FIG. 12 and FIG. 13-1 to FIG. 13-4, and the terminal has a function of performing the methods/steps performed by the terminal in FIG. 12 and FIG. 13-1 to FIG. 13-4.
[0442] An embodiment of the present invention further provides a computer readable storage medium. The computer readable storage medium saves a computer program. When the computer program is executed by a processor, the methods in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-1 and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG.
5(c)-l to FIG. 5(c)-3 are performed. Alternatively, the computer readable storage medium saves a computer program. When the computer program is executed by the processor, the methods in FIG. 12 and FIG. 13-1 to FIG. 13-4 are performed.
[0443] An embodiment of the present invention further provides a computer program product that includes an instruction. When the instruction runs on a computer, the computer is enabled to perform the methods in FIG. 2, FIG. 3, FIG. 4, FIG. 5(a)-l and FIG. 5(a)-2, FIG. 5(b)-1 and FIG. 5(b)-2, and FIG. 5(c)-1 to FIG. 5(c)-3. Alternatively, when the instruction runs on a computer, the computer is enabled to perform the methods in FIG. 12 and FIG. 13-1 to FIG. 13-4.
[0444] In the foregoing embodiments of the present invention, the processor may run or execute a software program and/or module saved in the memory, and invoke data saved in the memory, to implement various example logical blocks, modules, and circuits described with reference to the content disclosed in this application. The processor may be a central processing unit (Central Processing Unit, CPU), a generalpurpose processor, a digital signal processor (Digital Signal Processor, DSP), an application specific integrated circuit (Application Specific Integrated Circuit, ASIC), a field programmable gate array (Field Programmable Gate Array, FPGA), or another programmable logical device, a transistor logical device, a hardware component, or a combination thereof. The processor may alternatively be a combination for implementing a computing function, for example, a combination including one or more microprocessors, or a combination of a DSP and a microprocessor. Optionally, the processor may include one or more processing units.
[0445] The memory may be configured to save a software program and module. The processor runs the software program and module saved in the memory, to execute various functional applications of a mobile phone and process data. The memory may mainly include a program storage area and a data storage area. The program storage area may save an operating system, an application program (such as a sound play function or an image play function) required by at least one function, and the like. The data storage area may save data (such as audio data, image data, or a phonebook) created based on use of the mobile phone, and the like. In addition, the memory may include a volatile memory such as a random access memory (random access memory, RAM), a nonvolatile random access memory (Nonvolatile Random Access Memory, NVRAM), a phase change random access memory (Phase Change RAM, PRAM), or a magnetoresistive random access memory (Magnetoresistive RAM, MRAM); or may include a nonvolatile memory such as at least one magnetic disk storage device, a read-only memory (read-only memory, ROM), an electrically erasable programmable read-only memory (Electrically Erasable Programmable Read-Only Memory, EEPROM), a flash memory device such as a NOR flash memory (NOR flash memory) or a NAND flash memory (NAND flash memory), or a semiconductor device such as a solid state disk (Solid State Disk, SSD).
[0446] All or some of the foregoing embodiments of the present invention may be implemented by means of software, hardware, firmware, or any combination thereof. When software is used to implement the embodiments, the embodiments may be implemented completely or partially in a form of a computer program product. The computer program product includes one or more computer instructions. When the computer program instructions are loaded and executed on the computer, the procedure or functions according to the embodiments of the present invention are all or partially generated. The computer may be a general-purpose computer, a dedicated computer, a computer network, or another programmable apparatus. The computer instructions may be saved in a computer-readable storage medium or may be transmitted from a computer-readable storage medium to another computer-readable storage medium. For example, the computer instructions may be transmitted from a website, computer, server, or data center to another website, computer, server, or data center in a wired (for example, a coaxial cable, an optical fiber, or a digital subscriber line (digital subscriber line, DSL)) or wireless (for example, infrared, radio, and microwave) manner. The computer-readable storage medium may be any usable medium accessible by a computer, or a data storage device integrating one or more usable media, such as a server or a data center. The usable medium may be a magnetic medium (for example, a floppy disk, a hard disk, or a magnetic tape), an optical medium (for example, a DVD), a semiconductor medium (for example, a solid-state drive), or the like.
[0447] The foregoing descriptions are merely example implementations of the present invention, but are not intended to limit the protection scope of the present invention. Any variation or replacement readily figured out by a person skilled in the art within the technical scope disclosed in the present invention shall fall within the protection scope of the present invention. Therefore, the protection scope of the present invention shall be subject to the protection scope of the claims.

Claims (37)

1. A method for connecting to a profile content management platform PCMP, wherein the method comprises:
receiving, by a management server, a first message sent by a terminal, wherein the first message comprises information that a PCMP address is not configured;
obtaining, by the management server, the PCMP address based on the first message; and sending, by the management server, a second message to the terminal, wherein the second message comprises first information, and the first information comprises the PCMP address, so that the terminal updates a PCMP address based on the second message and connects to a PCMP based on the PCMP address.
2. The method according to claim 1, wherein the obtaining, by the management server, the PCMP address based on the first message comprises:
sending, by the management server, a third message to a mobile network operator MNO server, wherein the third message comprises the information that the PCMP address is not configured; and receiving, by the management server, a fourth message sent by the MNO, wherein the fourth message comprises the PCMP address.
3. The method according to claim 1, wherein the obtaining, by the management server, the PCMP address based on the first message comprises:
receiving, by the management server, a fifth message sent by a mobile network operator MNO server, wherein the fifth message comprises the PCMP address and the information that the PCMP address is not configured; and saving, by the management server, the fifth message.
4. The method according to claim 3, wherein the obtaining, by the management server, the PCMP address based on the first message comprises:
generating, by the management server, a remote profile management RPM package based on the first message and the fifth message, wherein the RPM package comprises the PCMP address.
5. The method according to any one of claims 1 to 4, wherein the first information further comprises an integrated circuit card identifier ICCID, and the ICCID is used by the terminal to find a target profile and obtain a remote profile management RPM command.
6. The method according to any one of claims 1 to 5, wherein after the receiving, by a management server, a first message sent by a terminal, the method further comprises:
sending, by the management server, a sixth message to the terminal, wherein the sixth message comprises delay indication information, and the delay indication information is used to indicate a delay; and the method further comprises:
when the delay expires, receiving, by the management server, a seventh message sent by the terminal, wherein the seventh message comprises a session identifier, the seventh message is used to request to download a first package, and the first package comprises the RPM package.
7. The method according to claim 6, wherein after the receiving, by the management server, a seventh message sent by the terminal, the method further comprises:
when the management server does not support an error processing mechanism, sending, by the management server to the terminal, information that no RPM package is downloaded; or when the management server does not generate the RPM package, sending, by the management server, pending information to the terminal, wherein the pending information is used to indicate that the RPM package has not been generated.
8. The method according to any one of claims 1 to 7, wherein after the sending, by the management server, a second message to the terminal, the method further comprises:
receiving, by the management server, an eighth message sent by the terminal, wherein the eighth message comprises first result information and second result information, the first result information comprises contact PCMP response information, the contact PCMP response information comprises the PCMP address, the second result information comprises update PCMP address response information, the first result information is used to notify the management server that an eUICC completes a contact
PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
9. The method according to any one of claims 1, and 3 to 8, wherein the method further comprises:
receiving, by the management server, a ninth message sent by an MNO, wherein the ninth message comprises the information that the PCMP address is not configured, and the ninth message is used to revoke the fifth message.
10. A method for connecting to a profile content management platform PCMP, wherein the method comprises:
sending, by a terminal, a first message to a management server, wherein the first message comprises information that a profile content management platform PCMP address is not configured;
receiving, by the terminal, a second message sent by the management server, wherein the second message comprises first information, and the first information comprises the PCMP address; and updating, by the terminal, a PCMP address based on the second message, and connecting to a PCMP based on the PCMP address.
11. The method according to claim 10, wherein the PCMP address is obtained from a mobile network operator MNO after the management server receives the first message sent by the terminal.
12. The method according to claim 10, wherein the PCMP address is saved as a fifth message by the management server before the management server receives the first message sent by the terminal, and the fifth message comprises the PCMP address and the information that the PCMP address is not configured.
13. The method according to any one of claims 10 to 12, wherein the first information further comprises an integrated circuit card identifier ICCID, and the method further comprises:
finding, by the terminal, a target profile based on the ICCID, and obtaining a remote profile management RPM command.
14. The method according to any one of claims 10 to 13, wherein before the sending, by a terminal, a first message to a management server, the method further comprises:
finding, by the terminal, the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determining that the target profile is not activated, and caching the RPM command.
15. The method according to any one of claims 10 to 14, wherein after the sending, by a terminal, a first message to a management server, the method further comprises:
receiving, by the terminal, a sixth message sent by the management server, wherein the sixth message comprises delay indication information, and the delay indication information is used to indicate a delay; and the method further comprises:
when the delay expires, sending, by the terminal, a seventh message to the management server, wherein the seventh message comprises a session identifier, the seventh message is used to request to download a first package, and the first package comprises the RPM package.
16. The method according to claim 15, wherein after the sending, by the terminal, a seventh message to the management server, the method further comprises:
when the management server does not support an error processing mechanism, receiving, by the terminal, information that no RPM package is downloaded and that is sent by the management server; or when the management server does not generate the RPM package, receiving, by the terminal, pending information sent by the management server, wherein the pending information is used to indicate that the RPM package has not been generated.
17. The method according to any one of claims 10 to 16, wherein after the management server sends the second message to the terminal, the method further comprises:
sending, by the terminal, an eighth message to the management server, wherein the eighth message comprises first result information and second result information, the first result information comprises contact PCMP response information, the contact PCMP response information comprises the PCMP address, the second result information comprises update PCMP address response information, the first result information is used to notify the management server that an eUICC completes a contact
PCMP operation, and the second result information is used to notify the management server that the PCMP address is updated.
18. A method for connecting to a profile content management platform PCMP, wherein the method comprises:
sending, by an embedded universal integrated circuit card eUICC to a management server, information that a profile content management platform PCMP address is not configured;
receiving, by the eUICC, first information sent by the management server, wherein the first information comprises the PCMP address; and connecting, by the eUICC, to a PCMP based on the PCMP address.
19. The method according to claim 18, wherein the PCMP address is obtained from a mobile network operator MNO after the management server receives the first information sent by the eUICC.
20. The method according to claim 18, wherein the PCMP address is saved as a fifth message by the management server before the management server receives the first information sent by the eUICC, and the fifth message comprises the PCMP address and the information that the PCMP address is not configured.
21. The method according to any one of claims 18 to 20, wherein the first information further comprises an integrated circuit card identifier ICCID, and the method further comprises:
finding, by the eUICC, a target profile based on the ICCID, and obtaining a remote profile management RPM command.
22. The method according to any one of claims 18 to 21, wherein before the sending, by an eUICC to a management server, information that a PCMP address is not configured, the method further comprises:
finding, by the eUICC, the target profile based on the integrated circuit card identifier ICCID in the remote profile management RPM command, determining that the target profile is not activated, and caching the RPM command.
23. The method according to any one of claims 18 to 22, wherein after the eUICC receives second information sent by the management server, the method further comprises:
sending, by the eUICC, the first result information and second result information to the management server, wherein the first result information comprises contact PCMP response information, the contact PCMP response information comprises the PCMP address, the second result information comprises update PCMP address response information, the first result information is used to notify the management server that the eUICC completes a contact PCMP operation, and the second result information is used to notify the management server that the eUICC completes updating the PCMP address.
24. A method for connecting to a profile content management platform PCMP, wherein the method comprises:
receiving, by a terminal, first information sent by a management server, wherein the first information comprises a first PCMP address and a contact PCMP identifier;
when no PCMP address is configured in a target profile, writing, by the terminal, the first PCMP address into the target profile; or when the target profile comprises a second PCMP address, and the first PCMP address is inconsistent with the second PCMP address, updating, by the terminal, the second PCMP address in the target profile based on the PCMP address; and connecting, by the terminal, to the PCMP based on the contact PCMP identifier and the first PCMP address.
25. The method according to claim 24, wherein the first information further comprises an integrated circuit card identifier ICCID, and the method further comprises:
finding, by the terminal, a target profile based on the ICCID, and determining whether a PCMP address is configured in the target profile.
26. The method according to claim 24 or 25, wherein the method further comprises:
sending, by the terminal, first result information and second result information to the management server, wherein the first result information comprises contact PCMP response information, the contact PCMP response information comprises the PCMP address, the second result information comprises update PCMP response information or information that the PCMP address does not need to be updated, the first result information is used to notify the management server that an embedded universal integrated circuit card eUICC in the terminal completes adding or updating the PCMP address.
27. A management server, wherein the management server comprises:
a receiving unit, configured to receive a first message sent by a terminal, wherein the first message comprises information that a profile content management platform PCMP address is not configured;
a processing unit, configured to obtain, by the management server, the PCMP address based on the first message; and a sending unit, configured to send a second message to the terminal, wherein the second message comprises first information, and the first information comprises the PCMP address, so that the terminal updates a PCMP address based on the second message and connects to a PCMP based on the PCMP address.
28. A terminal, wherein the terminal comprises:
a sending unit, configured to send a first message to a management server, wherein the first message comprises information that a profile content management platform PCMP address is not configured;
a receiving unit, configured to receive a second message sent by the management server, wherein the second message comprises first information, and the first information comprises the PCMP address; and a processing unit, configured to: update a PCMP address based on the second message, and connect to a PCMP based on the PCMP address.
29. An embedded universal integrated circuit card eUICC, wherein the eUICC comprises:
a sending unit, configured to send, to a management server, information that a profile content management platform PCMP address is not configured;
a receiving unit, configured to receive first information sent by the management server, wherein the first information comprises the PCMP address; and a processing unit, configured to connect to a PCMP based on the PCMP address.
30. A terminal, wherein the terminal comprises:
a receiving unit, configured to receive first information sent by a management server, wherein the first information comprises a first PCMP address and a contact PCMP identifier; and a processing unit, configured to: when no PCMP address is configured in a target profile, write the first PCMP address into the target profile; or when the target profile comprises a second PCMP address, and the first PCMP address is inconsistent with the second PCMP address, update the second PCMP address in the target profile based on the PCMP address, wherein the processing unit is further configured to connect to the PCMP based on the contact PCMP identifier and the first PCMP address.
31. A management server, wherein the management server comprises:
a receiver, configured to receive a first message sent by a terminal, wherein the first message comprises information that a profile content management platform PCMP address is not configured;
a processor, configured to obtain, by the management server, the PCMP address based on the first message; and a transmitter, configured to send a second message to the terminal, wherein the second message comprises first information, and the first information comprises the PCMP address, so that the terminal updates a PCMP address based on the second message and connects to a PCMP based on the PCMP address.
32. A terminal, wherein the terminal comprises:
a transmitter, configured to send a first message to a management server, wherein the first message comprises information that a profile content management platform PCMP address is not configured;
a receiver, configured to receive a second message sent by the management server, wherein the second message comprises first information, and the first information comprises the PCMP address; and a processor, configured to: update a PCMP address based on the second message, and connect to a PCMP based on the PCMP address.
33. An embedded universal integrated circuit card eUICC, wherein the eUICC comprises:
a transmitter, configured to send, to a management server, information that a profile content management platform PCMP address is not configured;
a receiver, configured to receive first information sent by the management server, wherein the first information comprises the PCMP address; and a processor, configured to connect to a PCMP based on the PCMP address.
34. A terminal, wherein the terminal comprises:
a receiver, configured to receive first information sent by a management server, wherein the first information comprises a first PCMP address and a contact PCMP identifier; and a processor, configured to: when no PCMP address is configured in a target profile, write the first PCMP address into the target profile; or when the target profile comprises a second PCMP address, and the first PCMP address is inconsistent with the second PCMP address, update the second PCMP address in the target profile based on the PCMP address, wherein the processor is further configured to connect to the PCMP based on the contact PCMP identifier and the first PCMP address.
35. A system, wherein the system comprises the management server according to claim 31 and the terminal according to claim 32.
36. A computer readable storage medium, wherein the computer readable storage medium saves a computer program, and the computer program is executed by a processor to implement the methods according to any one or more of claims 1 to 26.
37. A computer program product comprising an instruction, wherein when the instruction is run on a computer, the computer is enabled to perform the methods according to any one or more of claims 1 to 26.
AU2018342367A 2017-09-27 2018-08-13 Method of connecting profile content management platform, terminal and server Active AU2018342367B2 (en)

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
CN201710890762.7A CN109560953B (en) 2017-09-27 2017-09-27 Method, terminal and server for connecting configuration file content management platform
CN201710890762.7 2017-09-27
PCT/CN2018/100288 WO2019062356A1 (en) 2017-09-27 2018-08-13 Method of connecting profile content management platform, terminal and server

Publications (2)

Publication Number Publication Date
AU2018342367A1 true AU2018342367A1 (en) 2020-04-16
AU2018342367B2 AU2018342367B2 (en) 2021-10-21

Family

ID=65863730

Family Applications (1)

Application Number Title Priority Date Filing Date
AU2018342367A Active AU2018342367B2 (en) 2017-09-27 2018-08-13 Method of connecting profile content management platform, terminal and server

Country Status (3)

Country Link
CN (1) CN109560953B (en)
AU (1) AU2018342367B2 (en)
WO (1) WO2019062356A1 (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN111556015B (en) * 2020-03-25 2022-01-21 深圳市广和通无线股份有限公司 Embedded user identification card development platform and embedded user identification card configuration method
CN114554476B (en) * 2020-11-10 2023-04-07 荣耀终端有限公司 eSIM card control method, readable medium and electronic device
CN113672264B (en) * 2021-05-13 2023-08-01 星汉智能科技股份有限公司 System upgrading method and device of embedded universal integrated circuit card and electronic equipment
CN113572861B (en) * 2021-09-27 2021-12-28 北京华安天成智能技术有限公司 Configuration file management method, device, equipment and storage medium

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103685391B (en) * 2012-09-13 2018-03-09 北京大唐高鸿软件技术有限公司 A kind of automatically updating method of terminal device using static network address
KR102164447B1 (en) * 2012-11-19 2020-10-13 삼성전자주식회사 Method for managing profiles in subscriber identidy module embedded in user terminal and apparatus using the method
KR102231948B1 (en) * 2014-07-17 2021-03-25 삼성전자 주식회사 A method and apparatus for updating profile managing server
WO2016167536A1 (en) * 2015-04-13 2016-10-20 Samsung Electronics Co., Ltd. Method and apparatus for managing a profile of a terminal in a wireless communication system
CN105407475B (en) * 2015-12-03 2019-01-08 中国联合网络通信集团有限公司 configuration file enables processing method and eUICC
CN106941508A (en) * 2016-01-05 2017-07-11 阿里巴巴集团控股有限公司 Service calling method, device and system
CN106060042A (en) * 2016-05-30 2016-10-26 深圳市鼎盛智能科技有限公司 Data processing method and device
CN106648725B (en) * 2016-09-07 2020-04-21 努比亚技术有限公司 Terminal, server and configuration file upgrading method
CN106790724A (en) * 2017-03-23 2017-05-31 中国联合网络通信集团有限公司 Configuration file method for down loading and device

Also Published As

Publication number Publication date
WO2019062356A1 (en) 2019-04-04
CN109560953A (en) 2019-04-02
CN109560953B (en) 2021-02-23
AU2018342367B2 (en) 2021-10-21

Similar Documents

Publication Publication Date Title
AU2018342367B2 (en) Method of connecting profile content management platform, terminal and server
EP3716656B1 (en) Profile generation method, profile acquisition method, and related device and storage medium
US11937080B2 (en) Method for updating network access application authentication information, terminal, and server
US10798220B2 (en) Method, device and system for invoking local service assembly by browser
EP3648487B1 (en) Method for updating firmware and related apparatus
US20160294812A1 (en) Account login method and device
CN112654100B (en) Information processing method and related network equipment
WO2017107830A1 (en) Application installation method, apparatus and electronic device
US10158990B2 (en) SMS message reading control method and terminal
WO2017071087A1 (en) Method, apparatus and equipment for transmission of information
CN107360165B (en) Terminal device, cloud server and method and device for managing and controlling operating system
KR102503353B1 (en) Information instruction method, terminal and computer storage medium
CN104735657A (en) Security terminal verification method, device and system and wireless access point binding method
JP2018152775A (en) Communication apparatus, communication system, communication control method and program
CN111767086A (en) Method and device for migrating browser data
EP2814201B1 (en) Notification message sending method and management control apparatus
CN110392012B (en) Method and apparatus for rebooting in lightweight machine-to-machine systems
US11252143B2 (en) Authentication system, authentication server and authentication method
EP3737129B1 (en) Management method for offline management instruction and terminal
US10327114B2 (en) Message sending method, mobile broadband device, and host
US9806936B2 (en) Method, apparatus, and system for controlling a computer device through a mobile terminal
CN107979657B (en) DNS address processing method and system for network equipment
US20210209113A1 (en) Information query method for terminal and terminal
CN111124445A (en) Home gateway upgrading method and home gateway
CN112181313B (en) Method and system for fast self-destruction of hard disk data

Legal Events

Date Code Title Description
FGA Letters patent sealed or granted (standard patent)