CN101931532B - Telecommunication smart card-based digital certificate management method and telecommunication smart card - Google Patents

Telecommunication smart card-based digital certificate management method and telecommunication smart card Download PDF

Info

Publication number
CN101931532B
CN101931532B CN 201010258299 CN201010258299A CN101931532B CN 101931532 B CN101931532 B CN 101931532B CN 201010258299 CN201010258299 CN 201010258299 CN 201010258299 A CN201010258299 A CN 201010258299A CN 101931532 B CN101931532 B CN 101931532B
Authority
CN
China
Prior art keywords
intelligent card
telecom intelligent
digital certificate
microprocessor
portable terminal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Active
Application number
CN 201010258299
Other languages
Chinese (zh)
Other versions
CN101931532A (en
Inventor
路如毅
孙波
陈风雷
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Watchdata Limited by Share Ltd
Original Assignee
Beijing WatchData System Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing WatchData System Co Ltd filed Critical Beijing WatchData System Co Ltd
Priority to CN 201010258299 priority Critical patent/CN101931532B/en
Publication of CN101931532A publication Critical patent/CN101931532A/en
Application granted granted Critical
Publication of CN101931532B publication Critical patent/CN101931532B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

Embodiment of the invention provides a telecommunication smart card-based digital certificate management method and a telecommunication smart card, which relate to the field of data security. The telecommunication smart card is combined with PKI technology to realize the application of PKI on wireless internet and strengthen the security of mobile e-commerce. The method includes the following steps that: the telecommunication smart card sends a digital certificate operation request to CA through a mobile terminal; the telecommunication smart card receives an operation result returned from the CA through the mobile terminal and performs a digital certificate management operation according to the operation result. The embodiment of the invention is used in the mobile e-commerce.

Description

Digital certificate management method and telecom intelligent card based on telecom intelligent card
Technical field
The present invention relates to the data security field, relate in particular to a kind of digital certificate management method based on telecom intelligent card and telecom intelligent card.
Background technology
Ecommerce under the mobile Internet refers to utilize mobile communication equipment and the internet combinations such as mobile phone, palmtop PC, carries out e-commerce initiative.Mobile e-business comprises mobile payment, wireless CRM (customer relation management, Customer Relationship Management), mobile stock market, mobile banking and mobile office etc.Fail safe is the key issue that affects mobile E-commerce, and with respect to traditional electronic business mode, the fail safe of mobile e-business is weaker.How protecting user's legal information to be inviolable, is a problem in the urgent need to address.
In wired internet ruton letter, an important safety guarantee of e-commerce transaction is PKI (Public Key Infrastructure, PKIX), PKI is based on the asymmetric public key system, employing digital certificate management mechanism, by third-party trusted (the Certificate Authority of mechanism-authentication center, CA) identity of authentication of users, thereby realize providing for application system pellucidly the safety guarantee of authentication, data security and the various necessity such as integrality, resisting denying, satisfy the demand for security of various application systems.
But the PKI system of using on the wired internet, that the form with USB KEY+ software client realizes on PC, USB KEY realizes the storage of cryptographic algorithm and digital certificate, finishes alternately the certificate management flow process by client software and CA by the mode of cable network.Wireless interconnected online application realizes that the PKI system can't realize according to the PKI system technology on the cable network at present fully, can't be connected with USB KEY such as existing portable terminal, and then can't carry out the certificate management interaction flow with CA.
Summary of the invention
Embodiments of the invention provide a kind of digital certificate management method based on telecom intelligent card and telecom intelligent card, and telecom intelligent card is combined with the PKI technology, realize the application of wireless interconnected online PKI, have strengthened the fail safe of mobile e-business.
For achieving the above object, embodiments of the invention adopt following technical scheme:
A kind of digital certificate management method based on telecom intelligent card comprises:
Telecom intelligent card sends the operation of digital certificate request by portable terminal to authentication center;
Described telecom intelligent card receives the operating result that described authentication center returns by portable terminal, and carries out the digital certificate management operation according to described operating result.
A kind of telecom intelligent card comprises chip, and described chip comprises:
The certificate management modular unit is used for sending the operation of digital certificate request to authentication center; Receive the operating result that described authentication center returns.
Digital certificate management method and telecom intelligent card based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can directly send the operation of digital certificate request to CA by portable terminal, and receives the operating result that CA returns.Realized the digital certificate management that is undertaken by the form of USBKEY+ software client in the prior art, effectively utilized the microprocessor in the telecom intelligent card, in card, realized digital certificate management, so that telecom intelligent card combines with the PKI technology, realized that wireless interconnected online PKI uses, and has strengthened the fail safe of mobile e-business.
Description of drawings
In order to be illustrated more clearly in the embodiment of the invention or technical scheme of the prior art, the below will do to introduce simply to the accompanying drawing of required use in embodiment or the description of the Prior Art, apparently, accompanying drawing in the following describes only is some embodiments of the present invention, for those of ordinary skills, under the prerequisite of not paying creative work, can also obtain according to these accompanying drawings other accompanying drawing.
The FB(flow block) based on the digital certificate management method of telecom intelligent card that Fig. 1 provides for the embodiment of the invention;
The FB(flow block) of the applying digital certificate that Fig. 2 provides for the embodiment of the invention;
The schematic flow sheet of the applying digital certificate that Fig. 3 provides for the embodiment of the invention;
The FB(flow block) of the digital certificate revocation that Fig. 4 provides for the embodiment of the invention;
The schematic flow sheet of the digital certificate revocation that Fig. 5 provides for the embodiment of the invention;
The FB(flow block) of the updating digital certificate that Fig. 6 provides for the embodiment of the invention;
The FB(flow block) of hanging is hung up or separated to the digital certificate that Fig. 7 provides for the embodiment of the invention;
The schematic flow sheet of hanging is hung up or separated to the digital certificate that Fig. 8 provides for the embodiment of the invention;
The FB(flow block) that Fig. 9 inquires about for the digital certificate that the embodiment of the invention provides;
The schematic flow sheet that Figure 10 inquires about for the digital certificate that the embodiment of the invention provides;
The structured flowchart of the telecom intelligent card that Figure 11 provides for the embodiment of the invention;
The structured flowchart of another telecom intelligent card that Figure 12 provides for the embodiment of the invention.
Embodiment
Below in conjunction with the accompanying drawing in the embodiment of the invention, the technical scheme in the embodiment of the invention is clearly and completely described, obviously, described embodiment only is the present invention's part embodiment, rather than whole embodiment.Based on the embodiment among the present invention, those of ordinary skills belong to the scope of protection of the invention not making the every other embodiment that obtains under the creative work prerequisite.
In each embodiment of the application, telecom intelligent card is the telecom intelligent card that meets existing various communication standard standards, for example: SIM (Subscriber Identity Module, user identification module) card and UIM (User Identity Model, subscriber identification module) block etc.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, as shown in Figure 1, the method step comprises:
S101, telecom intelligent card send the operation of digital certificate request by portable terminal to CA.
Concrete, the certificate management modular unit of telecom intelligent card calls the I/O (input/output of telecom intelligent card by the microprocessor of telecom intelligent card, I/O) mouth utilizes the antenna of portable terminal to send the operation of digital certificate request by wireless network to CA.The operation of digital certificate request that sends can comprise: applying digital certificate request, digital certificate revocation request, digital certificate query requests, digital certificate are hung up request, the digital certificate solution is hung request etc.
S102, telecom intelligent card receive the operating result that CA returns by portable terminal, and carry out the digital certificate management operation according to this operating result.
Concrete, the certificate management modular unit of telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of CA; According to this operating result, the microprocessor of the certificate management modular unit of telecom intelligent card by telecom intelligent card calls corresponding modular unit and carries out the digital certificate management operation.
In addition, telecom intelligent card can adopt data SMS or BIP (Bearer Independent Protocol, bearer independent protocol) mode to send the operation of digital certificate request to CA by portable terminal, and receives the operating result that this CA returns.The operation that CA carries out comprises: the application of digital certificate, cancel, inquire about, hang up, separate extension etc.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can directly send the operation of digital certificate request to CA by portable terminal, and receives the operating result that CA returns.Realized the digital certificate management that is undertaken by the form of USB KEY+ software client in the prior art, effectively utilized the microprocessor in the telecom intelligent card, in card, realized digital certificate management, so that telecom intelligent card combines with the PKI technology, realized that wireless interconnected online PKI uses, and has strengthened the fail safe of mobile e-business.
The below take the user by STK menu application digital certificate as example, describe,
In the present embodiment, be provided with a certificate management modular unit in the telecom intelligent card, this certificate management modular unit is used for the mutual of management and CA, realizes digital certificate management.As shown in Figure 2, its flow process can for:
The certificate management modular unit of S201, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the applying digital certificate request by wireless network to CA.
S202, CA receive this applying digital certificate request, after empirical tests is passed through, issue digital certificate.
S203, CA send the digital certificate of issuing by aerial download to portable terminal.
The certificate management modular unit of S204, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate that returns of CA.
The certificate management modular unit of S205, telecom intelligent card calls this digital certificate of memory stores of telecom intelligent card by the microprocessor of telecom intelligent card.
The certificate management modular unit of S206, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send digital certificate issue request by wireless network to CA.
S207, CA receive this digital certificate issue request, after empirical tests is passed through, to portable terminal issuing digital certificate issue success message.
The certificate management modular unit of S208, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of CA.
In whole process, telecom intelligent card comprises secure data information and order data information to the uplink message structure that CA sends, and is as shown in table 1:
Figure BSA00000236996900051
Table 1, uplink communication message structure
The up order data information of concrete certificate request request is described as shown in table 2:
Figure BSA00000236996900061
Table 2, certificate request request message structure
The up order data information of concrete certificate issuance request is described as shown in table 3:
Figure BSA00000236996900062
Table 3, certificate issuance request message structure
In the whole process, CA comprises secure data information and order data information to the downlink message structure that telecom intelligent card sends, and is as shown in table 4:
Figure BSA00000236996900063
Figure BSA00000236996900071
Table 4, downlink communication message structure
Concrete certificate is downloaded the down order data message and is described as shown in table 5:
Figure BSA00000236996900072
Figure BSA00000236996900081
The message structure that table 5, certificate are downloaded
Concrete digital certificate issue success message down order data message is described as shown in table 6:
Figure BSA00000236996900082
The message structure of table 6, certificate issuance request response
In addition, the telecom intelligent card user certificate is stored among DF:3F00 (MF)/7F 10 (Telecom)/EF:6F60, and the user certificate file is as shown in table 7:
Figure BSA00000236996900083
Table 7, user certificate file
Take SIM card as example, the certificate file form on the SIM card is namely set up application documents storage information on the card, as shown in table 8:
Project Length (byte) Value Explanation
Version 5 ASCII
Sequence number 20 ASCII
Signature algorithm 20 ASCII
Key length 20 ASCII
Issuer 200 UCS2
Theme 200 UCS2
Effective initial phase 37 UCS2
Effective amortization period 37 UCS2
The key purposes 200 UCS2
Certificate file form on table 8, the SIM card
Below by Fig. 3, the process of applying digital certificate is elaborated, Fig. 3 is the schematic flow sheet of applying digital certificate.
As user during at STK menu setecting certificate request, the up note that telecom intelligent card can the generating digital certificate request sends to CA, and concrete certificate request flow process is as follows:
S301, user click " certificate request " option by the STK menu, and input the professional rights of using password PASSCODE that pre-sets.
The certificate management modular unit of S302, telecom intelligent card generates public private key pair by the microprocessor of telecom intelligent card according to default algorithm.
The microprocessor of the certificate management modular unit of S303, telecom intelligent card by telecom intelligent card calculates HASH (Passcode, PKI) and to the signature of HASH value.
The certificate management modular unit of S304, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, the antenna that utilizes portable terminal by wireless network with PASSCODE, IMSI (International Mobile SubscriberIdentification, international mobile subscriber identity), the PKCS#10 packet of PKI and generation, and send to CA.
S305, CA checking PKCS#10 packet, the certificate file of certificate file and parsing is returned in checking by backward portable terminal.
The certificate management modular unit of S306, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the certificate file that returns of CA and the certificate file of parsing.
The certificate management modular unit of S307, telecom intelligent card calls the memory stores digital certificate of telecom intelligent card by the microprocessor of telecom intelligent card.
The certificate management modular unit of S308, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send digital certificate issue request by wireless network to CA.
S309, CA are proved to be successful backward portable terminal and return the certificate issuance success message.
The certificate management modular unit of S310, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of described CA.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can send the applying digital certificate request to CA by portable terminal, then CA issues digital certificate, and digital certificate is returned to telecom intelligent card according to the applying digital certificate request that receives.Therefore telecom intelligent card and CA can carry out the application of digital certificate by aerial channels, have realized digital certificate management, have realized that the PKI of movement-based the Internet uses, and strengthen the fail safe of mobile e-business.
The below cancels digital certificate as example take the user by the STK menu, describe, as shown in Figure 4, its operating process can for:
The certificate management modular unit of S401, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the certificate revocation request by wireless network to CA.
S402, CA receive the certificate revocation request, cancel digital certificate after being proved to be successful, and issue the certificate revocation success message to portable terminal.
The certificate management modular unit of S403, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the certificate revocation success message that returns of CA.
The digital certificate of storing in the memory of the certificate management modular unit of S404, telecom intelligent card by the microprocessor deletion telecom intelligent card of telecom intelligent card.
In whole process, telecom intelligent card is described as shown in table 9 by portable terminal to the up order data information of certificate revocation request that CA sends:
Figure BSA00000236996900111
In table 9, the whole process of certificate revocation request message structure, CA is as shown in table 4 to the downlink message structure that telecom intelligent card sends.
Concrete certificate revocation response down order data message is described as shown in table 10:
Figure BSA00000236996900112
The message structure of table 10, certificate revocation response
Below by Fig. 5, the process of digital certificate revocation is elaborated, Fig. 5 is the schematic flow sheet of digital certificate revocation.
As user during at STK menu setecting certificate revocation, the telecom intelligent card up note of cancelling application that can Generate Certificate sends to CA, and idiographic flow is as follows:
S501, user click " certificate revocation " option by the STK menu.
The certificate serial number of storing in the memory of microprocessor to telecom intelligent card of the certificate management modular unit of S502, telecom intelligent card by telecom intelligent card is signed, and the request of generating digital certificate revocation.
The certificate management modular unit of S503, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to CA.
S504, CA receive the digital certificate revocation request, after being proved to be successful, send the digital certificate revocation success message to portable terminal.
The certificate management modular unit of S505, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of CA.
The digital certificate of storing in the memory of the certificate management modular unit of S506, telecom intelligent card by the microprocessor deletion telecom intelligent card of telecom intelligent card.
The result that the certificate management modular unit of S507, telecom intelligent card will be cancelled by the display screen of portable terminal is shown to the user, finishes digital certificate revocation.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can send the digital certificate revocation request to CA by portable terminal, then CA cancels digital certificate according to the digital certificate revocation request that receives, and will cancel the result and return to telecom intelligent card.Therefore telecom intelligent card can be realized carrying out cancelling of digital certificate with CA by aerial channels, can realize digital certificate management, realizes that the PKI of movement-based the Internet uses, and strengthens the fail safe of mobile e-business.
The below take the user by STK updating menu digital certificate as example, describe, as shown in Figure 6, its operating process can for:
S601, user are at STK menu setecting " certificate update " option.
The certificate management modular unit of S602, telecom intelligent card at first judges in the memory of telecom intelligent card whether have effective digital certificate, if exist, then carries out follow-up flow process, does not have then termination process.
The certificate management modular unit of S603, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to CA.
S604, CA receive the certificate revocation request, cancel digital certificate after being proved to be successful, and issue the certificate revocation success message to portable terminal.
The certificate management modular unit of S605, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the certificate revocation success message that returns of CA.
The digital certificate of storing in the memory of the certificate management modular unit of S606, telecom intelligent card by the microprocessor deletion telecom intelligent card of telecom intelligent card.
The certificate management modular unit of S607, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the applying digital certificate request by wireless network to CA.
S608, CA receive this applying digital certificate request, after empirical tests is passed through, issue digital certificate.
S609, CA send the digital certificate of issuing by aerial download to portable terminal.
The certificate management modular unit of S610, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate that returns of CA.
The certificate management modular unit of S611, telecom intelligent card calls this digital certificate of memory stores of telecom intelligent card by the microprocessor of telecom intelligent card.
The certificate management modular unit of S612, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send digital certificate issue request by wireless network to CA.
S613, CA receive this digital certificate issue request, after empirical tests is passed through, to portable terminal issuing digital certificate issue success message.
The certificate management modular unit of S614, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of CA.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides can send digital certificate revocation request, application request to CA by telecom intelligent card, to reach the purpose of upgrading digital certificate.Therefore telecom intelligent card can be realized carrying out the renewal of digital certificate with CA by aerial channels, can realize that the PKI of digital certificate management realization movement-based the Internet uses, and strengthens the fail safe of mobile e-business.
The below hangs up by the STK menu or separates and hang digital certificate as example take the user, describe, as shown in Figure 7, its operating process can for:
The certificate management modular unit of S701, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send to CA by wireless network that certificate is hung up request or the certificate solution is hung request.
After S702, CA are proved to be successful, finish corresponding certificate and hang up or separate and hang operation, and issue licence under the portable terminal to hang up or separate and hang success message.
The certificate management modular unit of S703, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the hang-up success message that returns of CA.
The microprocessor of the certificate management modular unit of S704, telecom intelligent card by telecom intelligent card changes the status indicator of digital certificate into and hangs up or separate and hang.
In whole process, the certificate that telecom intelligent card sends to CA is hung up the up order data information of request and is described as shown in table 11:
Figure BSA00000236996900141
Table 11, certificate are hung up the request message structure
Concrete certificate solution is hung the up order data information of request and is described as shown in table 12:
Figure BSA00000236996900142
Table 12, certificate solution are hung the request message structure
In the whole process, CA is as shown in table 4 to the downlink message structure that telecom intelligent card sends.
Concrete certificate is hung up response down order data message and is described as shown in table 13:
Project Title Length (byte) Value Explanation
Command type Certificate is hung up response 1 4
Figure BSA00000236996900151
Table 13, certificate are hung up the response message structure
Concrete certificate solution is hung response down order data message and is described as shown in table 14:
Figure BSA00000236996900152
Table 14, certificate solution are hung the response message structure
Below by Fig. 8, the process of hanging is hung up or separated to digital certificate be elaborated, Fig. 8 is that the schematic flow sheet of hanging is hung up or separated to digital certificate.
When the user hangs up or separates when hanging at STK menu setecting certificate, the telecom intelligent card up note that the request of hanging up or certificate solution hang application that can Generate Certificate sends to CA, and idiographic flow is as follows:
S801, user are at STK menu setecting " certificate hang-up " or " certificate solution extension " option.
The certificate serial number of storing in the memory of microprocessor to telecom intelligent card of the certificate management modular unit of S802, telecom intelligent card by telecom intelligent card is signed, and the up note of the Generate Certificate request of hanging up or the request of certificate solution extension.
The certificate management modular unit of S803, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send to CA by wireless network that certificate is hung up request or the certificate solution is hung request.
After S804, CA are proved to be successful, send the downlink short message of hanging up success message or separating the extension success message to portable terminal.
The certificate management modular unit of S805, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the hang-up success message that returns of CA or separate and hang success message.
The microprocessor of the certificate management modular unit of S806, telecom intelligent card by telecom intelligent card changes the status indicator of digital certificate into and hangs up or separate and hang.
The certificate management modular unit of S807, telecom intelligent card will be hung up or separate the result who hangs by the display screen of portable terminal and be shown to the user, finish certificate and hang up or separate and hang.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can send digital certificate to CA by portable terminal and hang up or separate the request of extension, then CA hangs up or separates the request of extension according to the digital certificate that receives, hang up or separate and hang digital certificate, and will hang up or separate prolong knot and really return to telecom intelligent card.Therefore telecom intelligent card can be realized carrying out the hang-up of digital certificate with CA by aerial channels or separating and hang, and can realize digital certificate management, and then can strengthen the fail safe of mobile e-business.
The below take the user by STK menu enquiring digital certificate as example, describe, as shown in Figure 9, its operating process can for:
The certificate management modular unit of S901, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the certificate status query requests by wireless network to CA.
After S902, CA are proved to be successful, finish the digital certificate status poll, and send the state information of digital certificate to portable terminal.
The certificate management modular unit of S903, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the state information of the digital certificate that returns of CA.
The certificate management modular unit of S904, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, by mobile terminal display screen the state information of digital certificate is shown to the user.
In whole process, telecom intelligent card sends the up order data information of certificate query request to CA and describes as shown in Table 15:
Figure BSA00000236996900161
Table 15, certificate query request message structure
In the whole process, CA is as shown in table 4 to the downlink message structure that telecom intelligent card sends.
Concrete certificate query response down order data message is described shown in table 16:
Figure BSA00000236996900171
Table 16, digital certificate inquiry response message structure
Below by Figure 10, the process that digital certificate is inquired about is elaborated, and Figure 10 is the schematic flow sheet of digital certificate inquiry.
As user during in the certificate query of STK menu setecting, can the Generate Certificate up note of inquiry application of telecom intelligent card sends to CA, and idiographic flow is as follows:
S1001, user are at STK menu setecting " certificate status inquiry " option.
The certificate serial number of storing in the memory of microprocessor to telecom intelligent card of the certificate management modular unit of S1002, telecom intelligent card by telecom intelligent card is signed, and the up note of the status query request that Generates Certificate.
The certificate management modular unit of S1003, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the certificate status query requests by wireless network to CA.
After S1004, CA are proved to be successful, send the downlink short message of digital certificate status information to portable terminal.
The certificate management modular unit of S1005, telecom intelligent card calls the I/O mouth of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate status information returned of CA.
The certificate management modular unit of S1006, telecom intelligent card is shown to the user by the display screen of portable terminal with the digital certificate state, finishes the certificate status inquiry.
The digital certificate management method based on telecom intelligent card that the embodiment of the invention provides, telecom intelligent card can send the digital certificate query requests to CA by portable terminal, then CA is according to the digital certificate query requests that receives, the enquiring digital certificate, and Query Result returned to telecom intelligent card.Therefore telecom intelligent card can be realized carrying out the inquiry of digital certificate with CA by aerial channels, can realize digital certificate management, and then can strengthen the fail safe of mobile e-business.
The telecom intelligent card 11 that the embodiment of the invention provides, as shown in figure 11, this telecom intelligent card comprises chip, and this chip comprises: I/O mouth 1101, microprocessor 1102 and memory 1103, wherein I/O mouth 1101 and memory 1103 are electrically connected with microprocessor 1102 respectively.This telecom intelligent card also comprises certificate management modular unit 1104, and this certificate management modular unit 1104 is used for calling I/O mouth 1101 by microprocessor 1102 and sends the operation of digital certificate request to CA, and receives the operating result that CA returns.
Concrete, owing to could use behind the telecom intelligent card 11 insertion portable terminals, after the telecom intelligent card 11 that present embodiment provides inserted whole mobile terminal, portable terminal can be connected with wireless network.The user has selected corresponding digital certificate management operation in screen by keyboard after, certificate management modular unit 1103 in the telecom intelligent card 11 will call I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to adopt data SMS or BIP mode to send respective request to CA; And adopt data SMS or BIP mode via the antenna of portable terminal, call I/O mouth 1101 by microprocessor 1102 and receive the result that CA returns, need to store, certificate management modular unit 1103 also can call memory 1103 by microprocessor 1102 and store.
The telecom intelligent card that the embodiment of the invention provides can send the operation of digital certificate request to CA by portable terminal, and receives the operating result that CA returns.Realized the digital certificate management that is undertaken by the form of USB KEY+ software client in the prior art, effectively utilized the microprocessor in the telecom intelligent card, in card, realized digital certificate management, so that telecom intelligent card combines with the PKI technology, realized that wireless interconnected online PKI uses, and has strengthened the fail safe of mobile e-business.
Further, certificate management modular unit 1104 further comprises one or more in following each submodule unit.In the present embodiment, as shown in figure 12, suppose that certificate management modular unit 1104 comprises following all subelement modules.
Certificate request submodule unit 11041 is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to send the applying digital certificate request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate that returns of CA; Call memory 1103 storage digital certificates by microprocessor 1102; Call I/O mouth 1101 by microprocessor 1102, utilize the antenna of portable terminal to send digital certificate issue request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of CA.
Certificate revocation submodule unit 11042 is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of CA; Digital certificate by storage in the microprocessor 1102 deletion memories 1103.
Certificate update submodule unit 11043 is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of CA; Digital certificate by storage in the microprocessor 1102 deletion memories 1103; Call I/O mouth 1101 by microprocessor 1102, utilize the antenna of portable terminal to send the applying digital certificate request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate that returns of CA; Call memory 1103 storage digital certificates by microprocessor 1102; Call I/O mouth 1101 by microprocessor 1102, utilize the antenna of portable terminal to send digital certificate issue request by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of CA.
Certificate is hung up submodule unit 11044, is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to ask to the hang-up of CA transmission digital certificate by wireless network; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the hang-up success message that returns of CA; Change the status indicator of digital certificate into hang-up by microprocessor 1102.
The certificate solution is hung submodule unit 11045, is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to send the request of digital certificate solution extension by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the solution returned of CA hang success message; By microprocessor 1102 status indicator of digital certificate is changed into separating and hang.
Certificate status inquiry submodule unit 11046 is used for calling I/O mouth 1101 by microprocessor 1102, utilizes the antenna of portable terminal to send the digital certificate query requests by wireless network to CA; Call I/O mouth 1101 by microprocessor 1102, obtain by portable terminal antenna reception to the state information of the digital certificate that returns of CA; Call I/O mouth 1101 by microprocessor 1102, by mobile terminal display screen the state information of digital certificate is shown to the user.
Thus, the telecom intelligent card that the embodiment of the invention provides, in telecom intelligent card, realized digital certificate application, cancel, upgrade, hang up, separate extension, searching and managing.
Further, the certificate management modular unit 1104 of telecom intelligent card 11 calls the I/O mouth by microprocessor 1102, utilize the antenna of portable terminal to adopt data SMS or BIP mode to send the operation of digital certificate request to CA by wireless network, and receive the operating result that CA returns.
In addition, the certificate management modular unit 1104 of telecom intelligent card 11 calls the I/O mouth by microprocessor 1102, and the message structure of the operating result that the operation of digital certificate request that the antenna that utilizes portable terminal sends to CA by wireless network and the CA of reception return comprises: secure data information and order data information.
The above; be the specific embodiment of the present invention only, but protection scope of the present invention is not limited to this, anyly is familiar with those skilled in the art in the technical scope that the present invention discloses; can expect easily changing or replacing, all should be encompassed within protection scope of the present invention.Therefore, protection scope of the present invention should be as the criterion by described protection range with claim.

Claims (13)

1. the digital certificate management method based on telecom intelligent card is characterized in that, comprising:
Telecom intelligent card sends the operation of digital certificate request by portable terminal to authentication center;
Described telecom intelligent card receives the operating result that described authentication center returns by portable terminal, and carry out digital certificate management operation according to described operating result, comprise: the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit and carries out the digital certificate management operation;
Wherein, telecom intelligent card sends the operation of digital certificate request by portable terminal to authentication center, comprise: the certificate management modular unit of telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the operation of digital certificate request by wireless network to authentication center.
2. the digital certificate management method based on telecom intelligent card according to claim 1 is characterized in that,
When the operation of digital certificate request that sends to authentication center by portable terminal when described telecom intelligent card is the applying digital certificate request, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit to carry out the digital certificate management operation and comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate that returns of described authentication center;
The certificate management modular unit of described telecom intelligent card calls the described digital certificate of memory stores of telecom intelligent card by the microprocessor of telecom intelligent card;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send digital certificate issue request by wireless network to described authentication center;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of described authentication center.
3. the digital certificate management method based on telecom intelligent card according to claim 1 is characterized in that,
When the operation of digital certificate request that sends to authentication center by portable terminal when described telecom intelligent card is the digital certificate revocation request, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit to carry out the digital certificate management operation and comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of described authentication center;
The digital certificate of storing in the memory of the certificate management modular unit of described telecom intelligent card by the microprocessor deletion telecom intelligent card of telecom intelligent card.
4. the digital certificate management method based on telecom intelligent card according to claim 3, it is characterized in that, after the digital certificate of storing in the memory of certificate management modular unit by the microprocessor deletion telecom intelligent card of telecom intelligent card of described telecom intelligent card, described method also comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send the applying digital certificate request by wireless network to authentication center;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate that returns of described authentication center;
The certificate management modular unit of described telecom intelligent card calls the described digital certificate of memory stores of telecom intelligent card by the microprocessor of telecom intelligent card;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, utilizes the antenna of portable terminal to send digital certificate issue request by wireless network to described authentication center;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of described authentication center.
5. the digital certificate management method based on telecom intelligent card according to claim 1 is characterized in that,
When described telecom intelligent card is digital certificate hang-up request by portable terminal to authentication center's transmission operation of digital certificate request, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit to carry out the digital certificate management operation and comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the hang-up success message that returns of described authentication center;
The microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card changes the status indicator of digital certificate into hang-up.
6. the digital certificate management method based on telecom intelligent card according to claim 1 is characterized in that,
When described telecom intelligent card is the request of digital certificate solution extension by portable terminal to authentication center's transmission operation of digital certificate request, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit to carry out the digital certificate management operation and comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the solution returned of described authentication center hang success message;
The microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card changes the status indicator of digital certificate to separate into and hangs.
7. the digital certificate management method based on telecom intelligent card according to claim 1 is characterized in that,
When described telecom intelligent card is the digital certificate query requests by portable terminal to authentication center's transmission operation of digital certificate request, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit to carry out the digital certificate management operation and comprises:
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the state information of the digital certificate that returns of described authentication center;
The certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, by mobile terminal display screen the state information of described digital certificate is shown to the user.
8. the described digital certificate management method based on telecom intelligent card of any one in 7 according to claim 1, it is characterized in that, described telecom intelligent card adopts data SMS or bearer independent protocol BIP mode to send described operation of digital certificate request to described authentication center by portable terminal, and receives the operating result that described authentication center returns.
9. the described digital certificate management method based on telecom intelligent card of any one in 7 according to claim 1, it is characterized in that the message structure of the operating result that the operation of digital certificate request that described telecom intelligent card sends to authentication center by portable terminal and the described authentication center of reception return comprises: secure data information and order data information.
10. a telecom intelligent card comprises chip, it is characterized in that, also comprises:
The certificate management modular unit is used for sending the operation of digital certificate request to authentication center; Receive the operating result that described authentication center returns;
Described chip comprises: I/O port, microprocessor and memory, wherein said I/O port and memory are electrically connected with described microprocessor respectively; Described certificate management modular unit calls described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the operation of digital certificate request by wireless network to authentication center, and receives the operating result that authentication center returns;
Wherein, the certificate management modular unit of described telecom intelligent card calls the I/O port of telecom intelligent card by the microprocessor of telecom intelligent card, obtain by portable terminal antenna reception to the operating result that returns of described authentication center; According to described operating result, the microprocessor of the certificate management modular unit of described telecom intelligent card by telecom intelligent card calls corresponding modular unit and carries out the digital certificate management operation.
11. telecom intelligent card according to claim 10 is characterized in that, described certificate management modular unit further comprises one or more in following each submodule unit:
Certificate request submodule unit is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the applying digital certificate request by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate that returns of described authentication center; Call the described digital certificate of described memory stores by described microprocessor; Call described I/O port by described microprocessor, utilize the antenna of portable terminal to send digital certificate issue request by wireless network to described authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of described authentication center;
Certificate revocation submodule unit is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of described authentication center; Delete the digital certificate of storing in the described memory by described microprocessor;
Certificate update submodule unit is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the digital certificate revocation request by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate revocation success message that returns of described authentication center; Delete the digital certificate of storing in the described memory by described microprocessor; Call described I/O port by described microprocessor, utilize the antenna of portable terminal to send the applying digital certificate request by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate that returns of described authentication center; Call the described digital certificate of described memory stores by described microprocessor; Call described I/O port by described microprocessor, utilize the antenna of portable terminal to send digital certificate issue request by wireless network to described authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the digital certificate issue success message that returns of described authentication center;
Certificate is hung up the submodule unit, is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send digital certificate hang-up request by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the hang-up success message that returns of described authentication center; Change the status indicator of digital certificate into hang-up by described microprocessor;
The certificate solution is hung the submodule unit, is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the request of digital certificate solution extension by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the solution returned of described authentication center hang success message; By described microprocessor the status indicator of digital certificate is changed into separating and hang;
Certificate status inquiry submodule unit is used for calling described I/O port by described microprocessor, utilizes the antenna of portable terminal to send the digital certificate query requests by wireless network to authentication center; Call described I/O port by described microprocessor, obtain by portable terminal antenna reception to the state information of the digital certificate that returns of described authentication center; Call described I/O port by described microprocessor, by mobile terminal display screen the state information of described digital certificate is shown to the user.
12. according to claim 10 or 11 described telecom intelligent cards, it is characterized in that,
The certificate management modular unit of described telecom intelligent card calls described I/O port by described microprocessor, utilize the antenna of portable terminal to adopt data SMS or bearer independent protocol BIP mode to send described operation of digital certificate request to described authentication center by wireless network, and receive the operating result that described authentication center returns.
13. according to claim 10 or 11 described telecom intelligent cards, it is characterized in that,
The certificate management modular unit of described telecom intelligent card calls described I/O port by described microprocessor, and the message structure of the operating result that the operation of digital certificate request that the antenna that utilizes portable terminal sends to authentication center by wireless network and the described authentication center of reception return comprises: secure data information and order data information.
CN 201010258299 2009-09-08 2010-08-16 Telecommunication smart card-based digital certificate management method and telecommunication smart card Active CN101931532B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN 201010258299 CN101931532B (en) 2009-09-08 2010-08-16 Telecommunication smart card-based digital certificate management method and telecommunication smart card

Applications Claiming Priority (3)

Application Number Priority Date Filing Date Title
CN200920222626 2009-09-08
CN200920222626.1 2009-09-08
CN 201010258299 CN101931532B (en) 2009-09-08 2010-08-16 Telecommunication smart card-based digital certificate management method and telecommunication smart card

Publications (2)

Publication Number Publication Date
CN101931532A CN101931532A (en) 2010-12-29
CN101931532B true CN101931532B (en) 2013-04-24

Family

ID=43370468

Family Applications (1)

Application Number Title Priority Date Filing Date
CN 201010258299 Active CN101931532B (en) 2009-09-08 2010-08-16 Telecommunication smart card-based digital certificate management method and telecommunication smart card

Country Status (1)

Country Link
CN (1) CN101931532B (en)

Families Citing this family (10)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102202306B (en) * 2011-06-13 2014-02-05 中国电信股份有限公司 Mobile security authentication terminal and method
CN102523095B (en) * 2012-01-12 2015-04-15 公安部第三研究所 User digital certificate remote update method with intelligent card protection function
CN102547695B (en) * 2012-03-09 2014-11-26 成都飞鱼星科技股份有限公司 Security authentication method for wireless network
CN103023642B (en) * 2012-11-22 2016-02-24 中兴通讯股份有限公司 A kind of mobile terminal and digital certificate functionality implementation method thereof
CN103051459B (en) * 2013-01-17 2016-04-06 北京印天网真科技有限公司 The management method of the transaction key of safety card and device
EP3007515B1 (en) * 2014-06-27 2019-04-17 Huawei Technologies Co., Ltd. Method, terminal, client and system for accessing wireless network
CN105991539B (en) * 2014-11-07 2019-05-17 天地融科技股份有限公司 Data interactive method and system
CN106470201A (en) * 2015-08-21 2017-03-01 中兴通讯股份有限公司 A kind of user authen method and device
JP7158830B2 (en) 2017-06-08 2022-10-24 キヤノン株式会社 Information processing device, control method for information processing device, and program
CN108024243B (en) * 2017-12-05 2019-06-21 恒宝股份有限公司 A kind of eSIM is caught in Network Communication method and its system

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN1614924A (en) * 2004-11-26 2005-05-11 王小矿 Identity certifying system based on intelligent card and dynamic coding
US7386722B2 (en) * 2003-12-02 2008-06-10 Hitachi, Ltd. Certificate management system and method
CN101808092A (en) * 2010-03-12 2010-08-18 中国电信股份有限公司 Multi-certificate sharing method and system as well as intelligent card

Family Cites Families (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
KR101322521B1 (en) * 2007-06-28 2013-10-28 주식회사 케이티 The Method for Managing a DRM Rights Object in Smart Card

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US7386722B2 (en) * 2003-12-02 2008-06-10 Hitachi, Ltd. Certificate management system and method
CN1614924A (en) * 2004-11-26 2005-05-11 王小矿 Identity certifying system based on intelligent card and dynamic coding
CN101808092A (en) * 2010-03-12 2010-08-18 中国电信股份有限公司 Multi-certificate sharing method and system as well as intelligent card

Also Published As

Publication number Publication date
CN101931532A (en) 2010-12-29

Similar Documents

Publication Publication Date Title
CN101931532B (en) Telecommunication smart card-based digital certificate management method and telecommunication smart card
EP1101376B1 (en) Security module, security system and mobile station
KR100791432B1 (en) Providing a user device with a set of access codes
CN102056077B (en) Method and device for applying smart card by key
CN103079193A (en) Cloud SIM (subscriber identity module) capable of freely downloading network data
CN1488230A (en) Method for enabling PKI functionsin a smart card
AU2002365333B2 (en) Method for registering and enabling PKI functionalities
CN106936792A (en) Safety certifying method and system and the mobile terminal for safety certification
CN109063450B (en) Control method of safe storage medium, safe storage medium and system
CN104917807A (en) Resource transfer method, apparatus and system
CN101119197A (en) Contracting method and system
CN102147948A (en) System and method for generating information interaction voucher
CN100382486C (en) Safety authentication method of cell phone bank system
KR100668602B1 (en) Method and System for Providing Mobile Bill Service
CN110401531B (en) Cooperative signature and decryption system based on SM9 algorithm
CN102547661B (en) Method and device for establishing communication between Android system and telecommunications smart card
CN101499152A (en) Method, equipment and system for implementing security mobile payment
KR20130036262A (en) Settlement process sever and the driving method
CN104123635A (en) Processing object processing method, system and equipment
CN104123636A (en) Processing object processing method, system and equipment
CN102487320A (en) Method and system used for automatic teller machine identity authentication
CN103023642A (en) Mobile terminal and digital certificate function realizing method thereof
KR100792333B1 (en) Message security method in wireless communication network and system thereof
KR20090017881A (en) Usim based-electronic coupon service system and method, and apparatus applied to the same
KR101797102B1 (en) Method for Providing Reserve Payment by using Data Network and Voice Network

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
CP01 Change in the name or title of a patent holder
CP01 Change in the name or title of a patent holder

Address after: 100015 Beijing city Chaoyang District Dongzhimen West eight Street No. 2 room Wanhong Yan Dong Business Garden

Patentee after: Beijing Watchdata Limited by Share Ltd

Address before: 100015 Beijing city Chaoyang District Dongzhimen West eight Street No. 2 room Wanhong Yan Dong Business Garden

Patentee before: Beijing Woqi Data System Co., Ltd.