CN102917351A - Method and device for realizing application in user identification card and user identification card - Google Patents

Method and device for realizing application in user identification card and user identification card Download PDF

Info

Publication number
CN102917351A
CN102917351A CN2011102245993A CN201110224599A CN102917351A CN 102917351 A CN102917351 A CN 102917351A CN 2011102245993 A CN2011102245993 A CN 2011102245993A CN 201110224599 A CN201110224599 A CN 201110224599A CN 102917351 A CN102917351 A CN 102917351A
Authority
CN
China
Prior art keywords
application
information
unified
account
subscriber identity
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2011102245993A
Other languages
Chinese (zh)
Other versions
CN102917351B (en
Inventor
黄更生
朱本浩
葛欣
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
China Mobile Communications Group Co Ltd
Original Assignee
China Mobile Communications Group Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by China Mobile Communications Group Co Ltd filed Critical China Mobile Communications Group Co Ltd
Priority to CN201110224599.3A priority Critical patent/CN102917351B/en
Publication of CN102917351A publication Critical patent/CN102917351A/en
Application granted granted Critical
Publication of CN102917351B publication Critical patent/CN102917351B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses a method and device for realizing application in a user identification card and the user identification card; in a main technical scheme, the method comprises the following steps of: enabling the user identification card to receive an application loading request transmitted by first external equipment, wherein the application loading request carries an application identifier to be loaded and applied and a first key; determining a loading key corresponding to the application identifier to be loaded and applied in the application loading request according to corresponding relations between saved application identifiers and loading keys; when the first loading key is matched with the first key, obtaining and saving an application program file corresponding to the application; and configuring account information of the application in the application program file as saved uniform account information associated with unloaded and/or loaded application. According to the technical scheme, the uniformity of each application account in the user identification card is achieved, and a problem that the application of the partial corresponding accounts with insufficient balances cannot be realized because the account corresponding to each application is independent is solved; therefore, the success rate of realizing the application on the user identification card is increased.

Description

In Subscriber Identity Module, realize method, device and the Subscriber Identity Module of application
Technical field
The present invention relates to communication technical field, relate in particular to a kind of method, device and Subscriber Identity Module of in Subscriber Identity Module, realizing application.
Background technology
Along with the development of the communication technology and popularizing of communication terminal, communication terminal has occupied more and more important effect in daily life.Communication terminal is mainly realized various application by built-in Subscriber Identity Module (such as SIM card), for the application type that communication terminal can be realized abundanter, loading more the application at Subscriber Identity Module is an important trend of Subscriber Identity Module technical development, the diversified needs of using in order to satisfy communication terminal.
Fig. 1 shows the logical construction schematic diagram of the Subscriber Identity Module that has loaded many application, and as shown in Figure 1, this Subscriber Identity Module comprises application module 101 and card operating system (COS) 102; Wherein, application module 101 comprises a plurality of application (2 application are as example shown in Fig. 1) of loading, namely preserve application file corresponding to each application difference that loads, this application file comprises accounts information, application file, applied logic information and the key information etc. that this application is corresponding; Card operating system 102, application file that each that is mainly used in preserving according to application module 101 used is controlled the execution of each application, and the key information that comprises of each application file used that is used for preserving according to application module 101 is accessed to external world and carried out security verification.As required, this Subscriber Identity Module also needs to dispose the running environment that each is used.
Based on Subscriber Identity Module shown in Figure 1, the application that receives come from the outside (such as the Pos terminal) at card operating system 102 is used when asking, at first determine the application of this application use request institute request access, then application file corresponding to this application with determining of preserving according to application module 101 controlled the execution of this application, and the transmit leg of this application use being asked according to key corresponding to this application carries out security verification, after checking is passed through, use the corresponding expense of deduction the corresponding account from this.
Above-mentioned Subscriber Identity Module has realized loading the demand of a plurality of application, but according to the above-mentioned processing logic of Subscriber Identity Module as can be known, all be separate between each application that existing Subscriber Identity Module loads, each is used corresponding accounts information and strictly divides with other application, therefore, can normally be used in order to guarantee to use, each uses corresponding account should the corresponding amount of money, and in the application process of reality, there are the following problems for possibility:
Because the frequency of utilization of different application is generally different, may exist some to use corresponding account insufficient in amount, some use the corresponding more situation of the account amount of money, therefore, can normally be used in order to guarantee to use, the user need to remember the respectively account amount of money of correspondence of different application, when using corresponding account insufficient in amount, to supplement with money, if the user does not in time use corresponding account for certain and supplements with money, even other uses corresponding account the sufficient amount of money is arranged, this application also can not be used, i.e. this application can't realize.
In sum, there is the low problem of success rate of the application realization that causes for above-mentioned reasons in many application identifications of existing techniques in realizing card.
Summary of the invention
In view of this, the embodiment of the invention provides a kind of method, device and Subscriber Identity Module of realizing application in Subscriber Identity Module, adopts this technical scheme, can improve the success rate that realizes application in Subscriber Identity Module.
The embodiment of the invention is achieved through the following technical solutions:
According to an aspect of the embodiment of the invention, a kind of method that realizes application in Subscriber Identity Module is provided, comprising:
Subscriber Identity Module receives the application load request that the first external equipment sends, and carries application identities and first key of application to be loaded in the described application load request;
According to the application identities of preserving and the corresponding relation that loads key, determine the loading key corresponding to application identities of the application to be loaded of carrying in the described application load request;
During first cipher key match of in the described loading key of determining and described application load request, carrying, obtain and preserve the described application file of using correspondence, and dispose the unified accounts information that the accounts information of using described in the described application file is the application that is used for related not loading and/or has loaded of preservation.
According to another aspect of the embodiment of the invention, a kind of device of realizing application in Subscriber Identity Module also is provided, comprising:
Unified account management unit is used for preserving application identities and the corresponding relation that loads key, and preserves the unified accounts information that is used for the related application that does not load and/or loaded;
Use adaptation unit, be used for receiving the application load request that the first external equipment sends, carry application identities and first key of application to be loaded in the described application load request, according to described unified the account management unit application identities of preserving and the corresponding relation that loads key, determine the loading key corresponding to application identities of the application to be loaded of carrying in the described application load request, and during first cipher key match of in the described loading key of determining and described application load request, carrying, obtain and preserve the described application file of using correspondence, and dispose the unified accounts information that is used for the related application that does not load and/or loaded that the accounts information of using described in the described application file is described unified account management unit preservation.
Another aspect according to the embodiment of the invention also provides a kind of Subscriber Identity Module, comprises the above-mentioned device of realizing application in Subscriber Identity Module.
Above-mentioned at least one technical scheme that provides by the embodiment of the invention, receive the application load request of the application identities of carrying application to be loaded that the first external equipment sends and the first key at Subscriber Identity Module after, according to the application identities of preserving and the corresponding relation that loads key, determine the loading key corresponding to application identities of the application to be loaded of carrying in this application load request, and at the loading key of determining when using first cipher key match of carrying in the load request, obtain and preserve application file corresponding to this application, and dispose the unified accounts information that be used for the related application that not load and/or loaded of accounts information for preserving of using in this application file.According to this technical scheme, realized the unification of each account of using in the Subscriber Identity Module, thereby avoided owing to each uses the problem that the independent part institute corresponding account application that Sorry, your ticket has not enough value that causes of corresponding account can't realize, thereby improved the success rate that realizes application on the Subscriber Identity Module.
Other features and advantages of the present invention will be set forth in the following description, and, partly from specification, become apparent, perhaps understand by implementing the present invention.Purpose of the present invention and other advantages can realize and obtain by specifically noted structure in the specification of writing, claims and accompanying drawing.
Description of drawings
Accompanying drawing is used to provide a further understanding of the present invention, and consists of the part of specification, is used from explanation the present invention with the embodiment of the invention one, is not construed as limiting the invention.In the accompanying drawings:
The logical construction schematic diagram of the Subscriber Identity Module that Fig. 1 provides for prior art;
The schematic flow sheet of load application in Subscriber Identity Module that Fig. 2 provides for the embodiment of the invention one;
The schematic flow sheet of definite Subscriber Identity Module state that Fig. 3 provides for the embodiment of the invention one;
The schematic flow sheet of the synchronous unified account that Fig. 4 provides for the embodiment of the invention one;
The schematic flow sheet of the application that the use that Fig. 5 provides for the embodiment of the invention two loads;
The schematic flow sheet of definite unified account status that Fig. 6 provides for the embodiment of the invention two;
The structural representation of in Subscriber Identity Module, realizing the device of application that Fig. 7 provides for the embodiment of the invention three;
The structural representation of the Subscriber Identity Module that Fig. 8 provides for the embodiment of the invention four;
The structural representation of another Subscriber Identity Module that Fig. 9 provides for the embodiment of the invention four;
The schematic flow sheet of the load application that Figure 10 provides for the embodiment of the invention four;
The schematic flow sheet that Figure 11 uses for the use that the embodiment of the invention four provides.
Embodiment
Improve the implementation of in Subscriber Identity Module, realizing the success rate of application in order to provide, the embodiment of the invention provides a kind of method, device and Subscriber Identity Module of realizing application in Subscriber Identity Module, below in conjunction with Figure of description the preferred embodiments of the present invention are described, be to be understood that, preferred embodiment described herein only is used for description and interpretation the present invention, is not intended to limit the present invention.And in the situation of not conflicting, embodiment and the feature among the embodiment among the application can make up mutually.
The embodiment of the invention provides a kind of method that realizes application in Subscriber Identity Module, and the method is by each account of using in the unification user identification card, to improve the success rate that application realizes in the Subscriber Identity Module.Particularly, in Subscriber Identity Module, realize using mainly comprising aspect two, load application in Subscriber Identity Module on the one hand, be the application in user's identification card on the other hand, below in conjunction with different embodiment the process of load application in Subscriber Identity Module and the process of the application in user's identification card described.
Embodiment one
This embodiment one has provided the implementation method of load application in Subscriber Identity Module.
In Subscriber Identity Module, before the load application, need in advance Subscriber Identity Module to be handled as follows:
On the one hand, need to be provided for the unified accounts information of the related application that does not load and/or loaded; On the other hand, in order to increase the fail safe of the application that loads in the Subscriber Identity Module, can carry out authentication to the loading side that uses.Particularly, can write in advance application identities and the corresponding relation that loads key in Subscriber Identity Module, this corresponding relation is stored in the setting regions of Subscriber Identity Module.Wherein, the application identities that comprises in the corresponding relation that writes, the application identities of the application that can support for this Subscriber Identity Module namely allows to write the application identities of the application in this Subscriber Identity Module.The loading key corresponding with application identities is used for the loading side of request Subscriber Identity Module load application is carried out authentication, and generally, legal application loading side all has this loading key.
The schematic flow sheet of load application in Subscriber Identity Module that Fig. 2 shows that the embodiment of the invention one provides, as shown in Figure 2, this loading procedure in that the Subscriber Identity Module side is finished mainly comprises the steps:
Step 201, Subscriber Identity Module receive the application load request that the first external equipment sends, and carry application identities and first key of application to be loaded in this application load request.
In this step 201, the first key is the loading key that the first equipment is preserved.The first external equipment can be contact kind equipment or noncontact kind equipment, when the first external equipment is the contact kind equipment, this equipment is specifically as follows the read write line terminal equipment, and this first external equipment can send to Subscriber Identity Module by the less radio-frequency function and use load request; When the first external equipment was the noncontact kind equipment, this equipment was specifically as follows the server that network side is disposed, and this first external equipment can send to Subscriber Identity Module by wireless network and use load request.
Step 202, Subscriber Identity Module be according to the application identities and the corresponding relation that loads key of pre-save, determines the loading key corresponding to application identities of the application to be loaded of carrying in this application load request.
In this step 202, after Subscriber Identity Module receives and uses load request, read the loading key corresponding to application identities of the application to be loaded of carrying with this application load request from being used for preservation application identities and the storage area of the corresponding relation that loads key.
Whether the first key that carries in the loading key that step 203, judgement are determined and this application load request mates, if, execution in step 204, if not, execution in step 205.
In this step 203, determine whether loading key and the first key mate, can determine according to concrete enciphering and deciphering algorithm, particularly, can contrast this loading key and the first key with clear-text way, if contrast two key agreements, then determine coupling; Also can ciphertext contrast this loading key and the first key, for example, utilize the first key to be encrypted using load request, then utilize the managing keys of determining to the application load request deciphering through encrypting, if successful decryption is then determined two cipher key match.Determine in the embodiment of the invention that the method whether two keys mate can be definite flexibly according to actual needs, enumerate no longer one by one herein.
Step 204, Subscriber Identity Module obtain and preserve application file corresponding to this application, and the accounts information that disposes this applications in this application file is to unify accounts information.
Step 205, Subscriber Identity Module load failure response to the first external equipment feedback application.
The loading flow process of the application of so far, finishing in the Subscriber Identity Module side finishes.
In the preferred implementation of the load application that the embodiment of the invention one provides, in order to improve the success rate of load application, can whether support this application to detect to state and the Subscriber Identity Module of unified account in advance, particularly, before above-mentioned steps 201, namely before Subscriber Identity Module receives the application load request of the first external equipment transmission, also need to carry out the flow process of determining the Subscriber Identity Module state, as shown in Figure 3, this flow process mainly comprises the steps:
Step 301, Subscriber Identity Module receive the application loading initialization request that the first external equipment sends, and this application loads the application identities of carrying application to be loaded in initialization request.
If step 302, determine that according to the unified accounts information of preserving this unifies account and whether be in normal condition, execution in step 303, if not, execution in step 305.
Step 303, according to the application identities of preserving and the corresponding relation that loads key, determine whether to exist the application identities and the corresponding relation that loads key of this application to be loaded, if, execution in step 304, if not, execution in step 305.
Step 304, Subscriber Identity Module comprise in this response message that to the first external equipment feedback response information this unifies the information that account is in the information of normal condition and is used for identifying the application identities that has application to be loaded and the corresponding relation that loads key for sign.
Step 305, Subscriber Identity Module load failure response to the first external equipment feedback application.
So far, the Subscriber Identity Module state confirmation flow process of carrying out in the Subscriber Identity Module side finishes.According to the execution of above-mentioned flow process, if Subscriber Identity Module loads failure response to the first external equipment feedback application, then need not execution graph 2 corresponding flow processs, application loads unsuccessfully.
By Fig. 3 the execution of corresponding flow process, in the above-mentioned steps 304, after Subscriber Identity Module feeds back above-mentioned response message to the first external equipment, this first external equipment determines that according to this response message the state of Subscriber Identity Module is for can continue load application, in order further to improve the fail safe of Subscriber Identity Module, this first external equipment can also carry out authentication to using the provider, after application provider authentication is passed through, carry the application identities of application to be loaded and the application load request of the first key to the Subscriber Identity Module transmission, be in the above-mentioned steps 201, the application load request that Subscriber Identity Module receives is that this first external equipment is in the above-mentioned response message that receives the Subscriber Identity Module feedback, and to the application provider of this application checking by rear transmission.
More than be illustrated mainly for the application loading procedure of Subscriber Identity Module side, in the practical application, for the ease of using the charging of provider to using, need to be synchronized to for the unified accounts information of this application configuration and use the provider, according to the operating position of using synchronous charging is carried out in this application so that use the provider.Particularly, after carrying out above-mentioned steps 203, namely Subscriber Identity Module dispose this application accounts information for after the unified accounts information, also carry out the flow process of synchronously unified account, as shown in Figure 4, this is unified the synchronous flow process of account and mainly comprises the steps:
Step 401, Subscriber Identity Module send the response of account configuration successful to the first external equipment, comprise the unified accounts information of configuration in the account configuration successful response.
In this step 401, Subscriber Identity Module sends the response of account configuration successful to the first external equipment and also further comprises application identities.
Step 402, the first external equipment are transmitted account configuration successful response according to the application identities that comprises in the account configuration successful response to the application provider corresponding with this application identities.
Step 403, application provider are according to the unified accounts information and the application identification information that comprise in the account configuration successful response that receives, dispose the accounts information of the application corresponding with this application identities and unify accounts information for this, and to the first external equipment feedback account sync response.
In this step 403, use the accounts information of provider's configuration application corresponding with this application identities and unify accounts information for this, be used for follow-up operating position according to this application, unify the corresponding expense of deduction the account from this.
Step 404, the first external equipment are to Subscriber Identity Module feedback account sync response.
So far, unifying the synchronous flow process of account finishes.
Above-mentioned at least one technical scheme that provides by the embodiment of the invention one, can dispose the unified accounts information of accounts information for preserving of using in the application file of loading, thereby realized the unification of each account of using in the Subscriber Identity Module, thereby avoided owing to each uses the problem that the independent part institute corresponding account application that Sorry, your ticket has not enough value that causes of corresponding account can't realize, thereby improved the success rate that realizes application on the Subscriber Identity Module.
Embodiment two
This embodiment two has provided the flow process of the application in user's identification card.
In order to increase the fail safe of the application that loads in the Subscriber Identity Module, can carry out authentication to the user who uses.Particularly, can write in advance the corresponding relation of application identities and managing keys in Subscriber Identity Module, this corresponding relation is stored in the setting regions of Subscriber Identity Module.Wherein, the corresponding relation of the corresponding relation of application identities and managing keys and application identities and loading key can be preserved simultaneously, and loading key and managing keys that same application identities is corresponding can be identical or different.Wherein, the application identities that comprises in the corresponding relation that writes generally includes the application identities of the application that Subscriber Identity Module can support, namely allows to write the application identities of the application in this Subscriber Identity Module.The managing keys corresponding with application identities, the requesting party who is used for application that request user identification card is loaded carries out authentication, and generally, legal application user has this managing keys.
Fig. 5 shows the schematic flow sheet of the application that loads in user's identification card that the embodiment of the invention two provides, and as shown in Figure 5, the process of the application that the use of finishing in the Subscriber Identity Module side loads mainly comprises the steps:
Request is used in the application of the application that the use that step 501, reception the second external equipment send loads, the application identities of the application that the request of carrying is used in this application use request.
In this step 501, the second external equipment can be contact kind equipment or noncontact kind equipment, when the second external equipment was the contact kind equipment, this equipment was specifically as follows the read write line terminal equipment, and this second external equipment can send the use request of using to Subscriber Identity Module by the less radio-frequency function; When the second external equipment was the noncontact kind equipment, this equipment was specifically as follows the server that network side is disposed, and this second external equipment can send the request of using of using to Subscriber Identity Module by wireless network.And in the practical application, this second external equipment can be same equipment with the first external equipment.
Step 502, determine that this application uses request to ask the managing keys that comprises in the application file of application correspondence of use.
In this step 502, according to the application identities of pre-save and the corresponding relation of managing keys, determine that this application uses request to ask the managing keys that comprises in the application file of application correspondence of use.
Step 503, according to the application identities of preserving and the corresponding relation of managing keys, determine to use managing keys corresponding to the application identities of using the application of asking the use of asking with this.
Above-mentioned steps 502 and step 503 there is no strict execution sequence, also can again execution in step 502, the perhaps simultaneously execution of first execution in step 503.
Whether step 504, judgement mate according to the application file managing keys of determining and the managing keys of determining according to corresponding relation, if then execution in step 505, if not, then execution in step 506.
In this step 504, determine whether two managing keys mate with reference to the method that determine to load key and the first key in the above-mentioned steps 203 and whether mate, to repeat no more herein.
Step 505, from the unified accounts information of configuration, deduct this and use the amount of money of this application.
Step 506, refuse this application and use request.
The flow process of the application that the use of so far, finishing in the Subscriber Identity Module side loads finishes.
Above-mentioned flow process is carried out after the load application success in Subscriber Identity Module in the method that provides by above-described embodiment one usually, i.e. the accounts information that configuration is used is for carrying out after the unified accounts information.
In the above-mentioned steps 505, can directly unify amount deducted the account from this, also can further whether have authority to use the amount of money in the unified account to verify to this application.Particularly, use the limit information that this uses correspondence of preserving for this in advance, for example, the message limit flag of this application, whether this flag identifies this application ceiling restriction, for example, the flag that application is set is 0, then changes to use without the limit restriction, can directly deduct the fee; The flag that application is set is 1, and then this application has ceiling restriction.Have in application in the situation of ceiling restriction, also need further to arrange the amount information of restriction.When preserving the limit information of this application correspondence, before the amount of money that this use of deduction is used from the unified accounts information of configuration, also need further according to the limit information of preserving, determine that this amount of money that uses this application meets the requirement of limit information, for example, limit information shows that the higher limit of this consumption is A, the consumption amount of money of this reality is B, then during less than A, allow to use the amount of money in the unified account at definite B, namely allow amount deducted B from unified account.
In the preferred implementation that the use that the embodiment of the invention two provides is used, use the success rate of using in order to improve, can detect the state of unifying account in advance, particularly, before carrying out above-mentioned steps 501, namely after accounts information that the user ID card disposes this application is for unified accounts information and before the application that receives the application that use that the second external equipment sends loads uses request, also need to carry out the flow process of determining unified account status, as shown in Figure 6, this flow process mainly comprises the steps:
The initialization request of the application that the use that step 601, reception the second external equipment send loads, the application identities of the application that the request of carrying in this initialization request is used.
If step 602, determine that according to the unified accounts information of preserving this unifies account and whether be in normal condition, execution in step 603, if not, execution in step 604.
Step 603, to the second external equipment feedback response information, this response message comprise for the sign this unifies the information that account is in normal condition.
Step 604, Subscriber Identity Module use failure response to the second external equipment feedback application.
So far, the unified account status of carrying out in the Subscriber Identity Module side confirms that flow process finishes.According to the execution of above-mentioned flow process, if Subscriber Identity Module loads failure response to the second external equipment feedback application, then need not execution graph 5 corresponding flow processs, use and use unsuccessfully; If Subscriber Identity Module has fed back above-mentioned response message to the second external equipment, this second external equipment determines that unified account corresponding to this application in the Subscriber Identity Module is normal, then further sends above-mentioned application to this Subscriber Identity Module and uses request.
In the preferred implementation that the use that the embodiment of the invention two provides is used, use request for a plurality of application of tackling initiation, each uses corresponding respectively precedence information in preservation.Correspondingly, before execution in step 603, before namely feeding back described response message to the second external equipment, also need further execution: according to precedence information corresponding to this applications of preserving, the priority of determining this application be higher than receive and the initialization request of the not application of other loading of use of feedback response information in the priority of the application correspondence of use of asking.
Above-mentioned at least one technical scheme that provides by the embodiment of the invention two, because each is used and has been configured unified accounts information in the Subscriber Identity Module, thereby avoided owing to each uses the problem that the independent part institute corresponding account application that Sorry, your ticket has not enough value that causes of corresponding account can't realize, thereby improved the success rate that realizes application on the Subscriber Identity Module.
Embodiment three
Corresponding with the flow process that said method embodiment one and embodiment two provide, the embodiment of the invention three also provides a kind of device of realizing application in Subscriber Identity Module, and this device can be included in the Subscriber Identity Module.
Fig. 7 shows the structural representation of realizing the device of application in Subscriber Identity Module that the embodiment of the invention three provides, and as shown in Figure 7, this device comprises:
Unified account management unit 701 and application adaptation unit 702;
Wherein:
Unified account management unit 701 is used for preserving application identities and the corresponding relation that loads key, and preserves the unified accounts information that is used for the related application that does not load and/or loaded;
Use adaptation unit 702, be used for receiving the application load request that the first external equipment sends, carry application identities and first key of application to be loaded in this application load request, according to unified account management unit 701 application identities of preserving and the corresponding relation that loads key, determine to use the loading key corresponding to application identities of the application to be loaded of carrying in the load request, and at the loading key of determining when using first cipher key match of carrying in the load request, obtain and preserve and use corresponding application file, and the accounts information of using in the configuring application program file is the unified accounts information that is used for the related application that does not load and/or loaded of unified account management unit preservation.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, also be used for before the application load request that receives the transmission of the first external equipment, receive the application loading initialization request that the first external equipment sends, use and load the application identities of carrying application to be loaded in the initialization request; And behind the corresponding relation of the application identities of determining according to the unified accounts information of preserving that unified account is in normal condition and determining to exist application to be loaded according to the application identities of preserving and the corresponding relation that loads key and loading key, to the first external equipment feedback response information, comprise in the response message for the unified account of sign being in the information of normal condition and being used for the information that there is the application identities of application to be loaded in sign and loads the corresponding relation of key.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises concrete be used for receiving the first external equipment and receiving response message and to the application provider checking of the using application load request by rear transmission.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, also be used for after the accounts information that configuration is used is unified accounts information, send the response of account configuration successful to the first external equipment, comprise the unified accounts information of configuration in the response of account configuration successful; And the account sync response that receives the first external equipment feedback, send behind the accounts information corresponding with application that the account sync response is preserved synchronously for the unified accounts information of using the provider and comprising in according to the response of account configuration successful.
So far, the function that realizes of this device is corresponding with the technical scheme that embodiment one provides.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, be used for also comprising when using corresponding managing keys at application file that request is used in the application that receives the application that use that the second external equipment sends loads; The managing keys that in the application file of the application correspondence of determining to load, comprises, when the managing keys corresponding with the application identities with the application that loads of determining according to the corresponding relation of the application identities of preserving and managing keys mates, from the unified accounts information of configuration, deduct this and use the amount of money of using.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, also be used for when preserving the limit information of using correspondence, before this uses the amount of money of using at deduction from the unified accounts information of configuration, according to the limit information of preserving, determine that this uses the amount of money of using to meet the requirement of limit information.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, before request is used in the application that also is used for after accounts information that configuration is used is for unified accounts information and receives the application that use that the second external equipment sends loads, receive the initialization request of the application that use that the second external equipment sends loads; After determining that unified account is in normal condition, to the second external equipment feedback response information, response message comprises the information that is in normal condition for the unified account of sign.
In the preferred implementation that the embodiment of the invention three provides, the application adaptation unit 702 that device shown in Figure 7 comprises, also be used for when preserving the precedence information of using correspondence, before the second external equipment feedback response information, according to the precedence information of the application correspondence of preserving, determine the priority of using be higher than receive and the initialization request of the not application of other loading of use of feedback response information in institute ask the priority of the application correspondence of use.
So far, the function that realizes of this device is corresponding with the technical scheme that embodiment two provides.
Should be appreciated that the only logical partitioning for carrying out according to the function of this device realization of unit that the above device that realization is used in Subscriber Identity Module comprises, in the practical application, can carry out stack or the fractionation of said units.And this embodiment puies forward the function that the device of realize using of three confessions realizes in Subscriber Identity Module corresponding one by one with the method flow of realizing application in Subscriber Identity Module that above-described embodiment one and embodiment two provide, the more detailed handling process that realizes for this device, in said method embodiment one and embodiment two, be described in detail, be not described in detail herein.
And the device of using of realizing in Subscriber Identity Module in the present embodiment three also has the functional module that can realize embodiment one and embodiment two schemes, repeats no more herein.
Embodiment four
The embodiment of the invention four has provided the concrete application scenarios of the technical scheme that the above embodiment of the present invention provides.
The technique scheme that the embodiment of the invention provides can be applied to various Subscriber Identity Modules, for example, and SIM card, usim card.Fig. 8 shows a logical construction schematic diagram of the Subscriber Identity Module that the above embodiment of the present invention is suitable for, as shown in Figure 8, this Subscriber Identity Module further comprises unified account management unit 103 and uses adaptation unit 104 on the basis of Subscriber Identity Module shown in Figure 1; Wherein:
The account that each that loads in the application module 101 used is unified the unified account that is configured to preservation in the unified account management unit 103;
Function and the unified account management unit 701 described in above-described embodiment three that unified account management unit 103 realizes are basically identical, repeat no more herein.In the practical application, this unifies account management unit 103 is that account with different application is incorporated in the same account on the card, mainly comprise accounts information and key part, wherein deposited the essential information of unified account in the accounts information, such as account balance, the cumulative consumption amount of money, the overdraw amount of money, Spending Limit, the limit of overdrawn account etc., under normal conditions, can directly be read by application program; Key partly provides using the management of the required key of access account, and is using load phase, judges whether that according to loading key to carry out account related with the application that loads.
Function and the application adaptation unit 702 described in above-described embodiment three that application adaptation unit 104 is realized are basically identical, repeat no more herein.In the practical application, this application adaptation unit 104 provides different safety management and application processing mode mainly for the demand of different application,
Particularly, as shown in Figure 9, this uses adaptation unit, specifically comprises:
AIM 104A, application processing list 104B, safe handling module 104C and adaptive management module interface 104D; Wherein:
AIM 104A is mainly the interface that different application provides unified account, according to the logic of using, carries out alternately with unified account, and the shielding different application is to the otherness of unified account interface; This AIM 104A mainly comprises the application call interface, is responsible for different application to using calling of adaptation unit; Read interface and write interface, be responsible for the read-write operation to unified accounts information; Operating right verification interface, the responsible verification of read-write operation being carried out authority etc.;
Using processing list 104B can be as shown in table 1, mainly comprises account status, application safety grade, enable the account management key (whether be used for this applications of sign needs to carry out safety verification according to loading key or managing keys), parameters such as application priority, Spending Limit flag bit and the limit of overdrawn account.Each uses the state that can obtain by using adaptation unit 104 unified account in the Subscriber Identity Module, such as states such as normal, no initializtion, lockings.Can be according to the level of security of different application, the control that conducts interviews of different account management keys is set; According to different application priority, Spending Limit flag and the overdraw amount of money, use the sequencing of unified account to manage to different application.
Table one
Safe handling module 104C is responsible for providing the safe access control to unified account.According to the application processing list of different application correspondences, safety verification is carried out in the request of using the unified account of access, and using load phase, judge to use whether can be loaded or noly can carry out related with unified account.
Adaptive management module interface 104D mainly be responsible for card operating system 102 in adaptive administration module carry out data interaction, finish card operating system 102 corresponding with information among the processing list 104B read, setting and the data management of each parameter.
Further, whether the adaptive administration module in this card operating system 102 also can arrange application adaptation unit 104 forces all to use the unified accounts of use, force all to use the unified account of use if arrange, then use the application of unified account to be banned use of by system on the card.
Therefore above-mentioned Subscriber Identity Module, needs in advance Subscriber Identity Module to be carried out initialization owing to done above-mentioned improvement on the basis of existing technology, and this initialization procedure is undertaken by card issuing side before the Subscriber Identity Module distribution usually.Particularly, Subscriber Identity Module carries out initialization, mainly comprises following several aspect:
(1) write program file and the application runtime environment (such as needs) of card operating system in Subscriber Identity Module, wherein, writing the card operating system program file in Subscriber Identity Module is essential operation;
(2) in Subscriber Identity Module, write the program file of using adaptation unit, and the adaptive administration module in the use card operating system carries out initialization to it, for example, whether configuration requires to force on the Subscriber Identity Module to use unified account, and this process is essential operation:
(3) write the unified account of configuration in Subscriber Identity Module, this process is essential operation;
(4) write application (being load application) in Subscriber Identity Module, unify the association and relevant setting of account according to application demand, but this process is selection operation, application can subsequent load;
(5) personal information in the Subscriber Identity Module is carried out initialization, but this process is selection operation, personal information can write behind card issuing.
Figure 10 shows based on Subscriber Identity Module shown in Figure 8 and realizes using the schematic flow sheet that loads, this realization is used the process that loads and is related generally to and use adaptation unit and COS in the Subscriber Identity Module, and read write line terminal (being the first external equipment described in the embodiment one), uses the provider; Wherein, this read write line terminal can be the application initializes terminal of special use, and difference has the common read write line terminal of using in transaction flow, possess the function that writes application program to Subscriber Identity Module.As shown in figure 10, this realizes using the process that loads, and mainly comprises the steps:
Step 1001, read write line terminal send the application initializes request to the card operating system COS in the Subscriber Identity Module;
Step 1002, COS are to the request response of read write line terminal feedback for the application initializes request;
The application that step 1003, the selection of read write line terminal will generate;
Above-mentioned steps 1001 to step 1003 has consisted of the read write line terminal and has determined the flow process whether Subscriber Identity Module works, determine that Subscriber Identity Module is in normal operating conditions, namely this Subscriber Identity Module can be for the initialization request feedback response message that sends, if Subscriber Identity Module is feedback response information not, determine that then this Subscriber Identity Module is in abnormal operating state, then no longer carries out follow-up flow process.
Step 1004, read write line terminal send to use to COS and load initialization request;
After step 1005, COS receive and use to load initialization request, determine whether to be forced off and be linked to unified account, if so, execution in step 1006, otherwise process according to existing procedure.
Step 1006, COS send the request of determining unified account status and linkability to using adaptation unit;
Step 1007, application adaptation unit determine whether the state of the unified account that unified account management unit is preserved is normal, and determine whether unified account management unit is preserved this application identities and (namely determined whether linkability with the corresponding relation that loads key, if exist, determining can be related, otherwise independent);
Step 1008~step 1009, application adaptation unit will comprise that the response message of determining the result sends to OCS, and OCS further comprises this that response message of determining the result sends to the read write line terminal;
Definite result that step 1010, read write line terminal comprise in the response message that receives is when being, the provider who uses is carried out authentication, otherwise, process ends.
Step 1011, read write line terminal send the application application to using the provider;
Step 1012, application provider respond using the application feedback request to the read write line terminal pins;
Above-mentioned steps 1004 to step 1012 has consisted of really constant current journey of Subscriber Identity Module state.
Step 1013, read write line terminal send to the OCS in the Subscriber Identity Module and use load request;
Step 1014, OCS create this application;
Step 1015, COS send the security verification request to using adaptation unit;
Step 1016, application adaptation unit carry out security verification (proof procedure sees above-mentioned steps 202 for details to step 204) to the current application load request;
Step 1016, use adaptation unit after checking is passed through, obtain and preserve application file corresponding to this applications, and the accounts information that disposes this application in this application file is to unify accounts information;
Step 1017~step 1019, application adaptation unit send the response message that comprises related unified accounts information to OCS, and OCS sends to the read write line terminal with this response message, and the read write line terminal further feeds back to uses the provider;
Step 1020, application provider are somebody's turn to do unified accounts information synchronously;
Step 1021~step 1022, application provider send sync response to the read write line terminal, and the read write line terminal sends to OCS with this sync response.
So far, flow process finishes.
Execution by above-mentioned flow process, COS in the Subscriber Identity Module need judge first the support situation of Subscriber Identity Module to using, after judging successfully, read unified accounts information, carry out and related ability to judge, and the essential information on the Subscriber Identity Module that obtains (comprising account status information) is returned to the read write line terminal with card ability (result namely whether can be related); Read write line is at first used provider's safety verification, after checking, obtains required application to using provider's (or being called the application management platform); In the load application stage, create the essential information of this application by the COS on the card, such as file, logic, key etc., the association of then unifying account is namely disposed account corresponding to this application for unified accounts information, can carry out first key authentication before the association, whether judge to use has authority related with unified account, by authenticating application processing list corresponding to rear configuration, then generate the unified accounts information of Subscriber Identity Module the application provider, so that the unified charging of system and management.
Figure 11 shows based on Subscriber Identity Module shown in Figure 8 and uses the schematic flow sheet of using, this realization is used the process of using to relate generally to and is used adaptation unit and application in the Subscriber Identity Module, and read write line terminal (being the second external equipment described in the embodiment two), wherein, the read write line terminal is the read write line terminal of using in the vanilla transaction flow process, for example, Pos terminal.As shown in figure 11, this uses the process of using, and mainly comprises the steps:
The application that will use that step 1101, read write line terminal load in the Subscriber Identity Module sends uses the initialization request of using;
Step 1102, application respond to the request of read write line terminal feedback;
Above-mentioned steps 1101~step 1102 has consisted of whether available flow process of definite application.
Step 1103, read write line terminal are to using the definite request of unified account status that sends;
Step 1104, application are determined to ask to using the unified account status of adaptation unit transmission;
Step 1105, application adaptation unit obtain unified state information from unified account management unit, and judge unified account status;
Step 1106, application adaptation unit are to using the response message that sends the definite result who comprises unified account status;
Step 1107, application send the definite result's who comprises unified account status response message to the read write line terminal;
Above-mentioned steps 1105~step 1107 has consisted of carries out really constant current journey of unified account status.
Step 1108, read write line terminal are to using the request of using of using that sends;
Step 1109, application request are used adaptation unit and are carried out safety verification;
Step 1110, application adaptation unit carry out security verification to this application, deduct the fee from unified account by rear;
Step 1111~step 1112, application adaptation unit send the operation response of withholing to application, and application is withholdd this to operate to respond and sent to the read write line terminal;
Step 1113, read write line terminal synchronizes network side account balance.
So far, flow process finishes.
By flow process corresponding to Figure 11, conclude the business when operation the user when application (on the user user identification card), Subscriber Identity Module is after the initialization request of receiving the read write line terminal, according to the application processing list of safeguarding, carry out this application safety rank and priority and judge, return initialized response message.After request is used in the application of receiving read write line, after the managing keys that obtains from application side (symmetrical or asymmetric) carried out key authentication (proof procedure sees step 503~step 504 for details), unified account is carried out corresponding operating, after operation is finished, response message is fed back to read write line carry out this transaction verification, generate and use message as this voucher of concluding the business.Generate different keys on the read write line of different application correspondences, but all use unified account to carry out corresponding account operation.
The above-mentioned Subscriber Identity Module that provides by the embodiment of the invention, each account of using in the Subscriber Identity Module is unified, thereby avoided owing to each uses the problem that the independent part institute corresponding account application that Sorry, your ticket has not enough value that causes of corresponding account can't realize, thereby improved the success rate that realizes application on the Subscriber Identity Module.
Although described the application's preferred embodiment, in a single day those skilled in the art get the basic creative concept of cicada, then can make other change and modification to these embodiment.So claims are intended to all changes and the modification that are interpreted as comprising preferred embodiment and fall into the application's scope.
Obviously, those skilled in the art can carry out various changes and modification to the present invention and not break away from the spirit and scope of the present invention.Like this, if of the present invention these are revised and modification belongs within the scope of claim of the present invention and equivalent technologies thereof, then the present invention also is intended to comprise these changes and modification interior.

Claims (17)

1. a method that realizes using in Subscriber Identity Module is characterized in that, comprising:
Subscriber Identity Module receives the application load request that the first external equipment sends, and carries application identities and first key of application to be loaded in the described application load request;
According to the application identities of preserving and the corresponding relation that loads key, determine the loading key corresponding to application identities of the application to be loaded of carrying in the described application load request;
During first cipher key match of in the described loading key of determining and described application load request, carrying, obtain and preserve the described application file of using correspondence, and dispose the unified accounts information that the accounts information of using described in the described application file is the application that is used for related not loading and/or has loaded of preservation.
2. the method for claim 1 is characterized in that, Subscriber Identity Module receives before the application load request of the first external equipment transmission, also comprises:
Described Subscriber Identity Module receives the application loading initialization request that described the first external equipment sends, and described application loads the application identities of carrying described application to be loaded in the initialization request; And
Behind the application identities of determining according to the described unified accounts information of preserving that described unified account is in normal condition and determining to exist described application to be loaded according to the application identities of preserving and the corresponding relation that loads key and the corresponding relation that loads key, to described the first external equipment feedback response information, comprise in the described response message be used to identifying described unified account being in the information of normal condition and being used for the information that there is the application identities of described application to be loaded in sign and loads the corresponding relation of key.
3. method as claimed in claim 2, it is characterized in that, the described application load request that described Subscriber Identity Module receives be described the first external equipment the described response message that receives described Subscriber Identity Module feedback and to the application provider checking of described application by rear transmission.
4. the method for claim 1 is characterized in that, the accounts information that disposes described application is after the described unified accounts information, also comprises:
Send the response of account configuration successful to described the first external equipment, comprise the described unified accounts information of configuration in the described account configuration successful response; And
Receive the account sync response that described the first external equipment feeds back, described account sync response is to send behind the described unified accounts information accounts information that preserve synchronously and that described application is corresponding that described application provider comprises in according to described account configuration successful response.
5. the method for claim 1 is characterized in that, comprises the described corresponding managing keys of using in the described application file;
The accounts information that disposes described application is after the described unified accounts information, also comprises:
Request is used in the application that receives the described application that use that the second external equipment sends loads;
The described managing keys that comprises in the corresponding application file of using of determining to load, when the managing keys corresponding with the application identities with the described application that loads of determining according to the corresponding relation of the application identities of preserving and managing keys mates, from the described unified accounts information of configuration, deduct this and use the amount of money of described application.
6. method as claimed in claim 5 is characterized in that, preserves the described corresponding limit information of using in the described Subscriber Identity Module; From the described unified accounts information of configuration, deduct this and use before the amount of money of described application, also comprise:
According to the limit information of preserving in the described Subscriber Identity Module, determine that this amount of money that uses described application meets the requirement of described limit information.
7. method as claimed in claim 5 is characterized in that, the accounts information that disposes described application is after the described unified accounts information and the application that receives the described application that use that the second external equipment sends loads is used before the request, also comprises:
Receive the initialization request of the described application that use that the second external equipment sends loads;
After definite described unified account was in normal condition, to described the second external equipment feedback response information, described response message comprised be used to the information that identifies described unified account and be in normal condition.
8. method as claimed in claim 7 is characterized in that, preserves the described corresponding precedence information of using in the described Subscriber Identity Module;
Before feeding back described response message to described the second external equipment, also comprise:
Describedly use corresponding precedence information according to what preserve in the described Subscriber Identity Module, the priority of determining described application be higher than receive and the initialization request of the not application of other loading of use of feedback response information in institute ask the priority of the application correspondence of use.
9. a device of realizing using in Subscriber Identity Module is characterized in that, comprising:
Unified account management unit is used for preserving application identities and the corresponding relation that loads key, and preserves the unified accounts information that is used for the related application that does not load and/or loaded;
Use adaptation unit, be used for receiving the application load request that the first external equipment sends, carry application identities and first key of application to be loaded in the described application load request, according to described unified the account management unit application identities of preserving and the corresponding relation that loads key, determine the loading key corresponding to application identities of the application to be loaded of carrying in the described application load request, and during first cipher key match of in the described loading key of determining and described application load request, carrying, obtain and preserve the described application file of using correspondence, and dispose the unified accounts information that is used for the related application that does not load and/or loaded that the accounts information of using described in the described application file is described unified account management unit preservation.
10. device as claimed in claim 9, it is characterized in that, described application adaptation unit, also be used for before the application load request that receives the transmission of the first external equipment, receive the application loading initialization request that described the first external equipment sends, described application loads the application identities of carrying described application to be loaded in the initialization request; And behind the application identities of determining according to the described unified accounts information of preserving that described unified account is in normal condition and determining to exist described application to be loaded according to the application identities of preserving and the corresponding relation that loads key and the corresponding relation that loads key, to described the first external equipment feedback response information, comprise in the described response message be used to identifying described unified account being in the information of normal condition and being used for the information that there is the application identities of described application to be loaded in sign and loads the corresponding relation of key.
11. device as claimed in claim 10 is characterized in that, described application adaptation unit concrete be used for receiving described the first external equipment and receiving described response message and to the application provider checking of the described application application load request by rear transmission.
12. device as claimed in claim 9, it is characterized in that, described application adaptation unit, also be used for after the accounts information of the described application of configuration is described unified accounts information, send the response of account configuration successful to described the first external equipment, comprise the described unified accounts information of configuration in the described account configuration successful response; And receiving the account sync response that described the first external equipment feeds back, described account sync response is to send behind the described unified accounts information accounts information that preserve synchronously and that described application is corresponding that described application provider comprises in according to described account configuration successful response.
13. device as claimed in claim 9, it is characterized in that, described application adaptation unit also is used for comprising at described application file described when using corresponding managing keys, and request is used in the application that receives the described application that use that the second external equipment sends loads; The described managing keys that comprises in the corresponding application file of using of determining to load, when the managing keys corresponding with the application identities with the described application that loads of determining according to the corresponding relation of the application identities of preserving and managing keys mates, from the described unified accounts information of configuration, deduct this and use the amount of money of described application.
14. device as claimed in claim 13, it is characterized in that, described application adaptation unit, also be used for when preserving the limit information of described application correspondence, before this uses the amount of money of described application at deduction from the described unified accounts information of configuration, according to the limit information of preserving, determine that this amount of money that uses described application meets the requirement of described limit information.
15. device as claimed in claim 13, it is characterized in that, described application adaptation unit, before request is used in the application that also is used for after the accounts information of the described application of configuration is described unified accounts information and receives the described application that use that the second external equipment sends loads, receive the initialization request of the described application that use that the second external equipment sends loads; After definite described unified account was in normal condition, to described the second external equipment feedback response information, described response message comprised be used to the information that identifies described unified account and be in normal condition.
16. device as claimed in claim 15, it is characterized in that, described application adaptation unit, also be used for when preserving the precedence information of described application correspondence, before feeding back described response message to described the second external equipment, describedly use corresponding precedence information according to what preserve, the priority of determining described application be higher than receive and the initialization request of the not application of other loading of use of feedback response information in institute ask the priority of the application correspondence of use.
17. a Subscriber Identity Module is characterized in that, also comprises each described device of realizing application in Subscriber Identity Module of claim 9 to 16.
CN201110224599.3A 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card Active CN102917351B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201110224599.3A CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201110224599.3A CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Publications (2)

Publication Number Publication Date
CN102917351A true CN102917351A (en) 2013-02-06
CN102917351B CN102917351B (en) 2015-04-01

Family

ID=47615546

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201110224599.3A Active CN102917351B (en) 2011-08-05 2011-08-05 Method and device for realizing application in user identification card and user identification card

Country Status (1)

Country Link
CN (1) CN102917351B (en)

Cited By (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104036180A (en) * 2014-06-23 2014-09-10 联想(北京)有限公司 Electronic equipment, pluggable equipment, electronic system and information processing method thereof
CN104185179A (en) * 2013-05-27 2014-12-03 中国移动通信集团公司 Control apparatus and method for subscriber identity module, and subscriber identity module
CN104283852A (en) * 2013-07-08 2015-01-14 中国电信股份有限公司 Mobile application single-sign-on authentication method, system, client side and server side
CN104811310A (en) * 2015-03-30 2015-07-29 赵宇翔 Display method and wearing device
CN105205658A (en) * 2014-06-24 2015-12-30 中兴通讯股份有限公司 Electronic card applying method and electronic card applying device
CN109670832A (en) * 2018-12-21 2019-04-23 西安长安通支付有限责任公司 A kind of city one-card data processing method and system

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040117574A1 (en) * 2002-12-17 2004-06-17 Massard Yves Michel Pascal Security token sharable data and synchronization cache
CN101005701A (en) * 2006-01-18 2007-07-25 华为技术有限公司 Connection set-up method
CN101102190A (en) * 2006-07-04 2008-01-09 华为技术有限公司 Method for generating local interface secret key
CN101383095A (en) * 2008-08-25 2009-03-11 武汉市路安电子科技有限公司 Ultrasonic fixing type traffic flow investigation equipment
WO2009065417A1 (en) * 2007-11-19 2009-05-28 Net Signature For Advanced Solutions (I.N.K.) M. currency- net sense
CN101500224A (en) * 2008-01-31 2009-08-05 中国移动通信集团公司 Multi-application management server for telecommunication smart card, multi-application management method and system
CN101646150A (en) * 2008-10-22 2010-02-10 中国科学院声学研究所 Financial management system and financial management method applied to business operation supporting system

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20040117574A1 (en) * 2002-12-17 2004-06-17 Massard Yves Michel Pascal Security token sharable data and synchronization cache
CN101005701A (en) * 2006-01-18 2007-07-25 华为技术有限公司 Connection set-up method
CN101102190A (en) * 2006-07-04 2008-01-09 华为技术有限公司 Method for generating local interface secret key
WO2009065417A1 (en) * 2007-11-19 2009-05-28 Net Signature For Advanced Solutions (I.N.K.) M. currency- net sense
CN101500224A (en) * 2008-01-31 2009-08-05 中国移动通信集团公司 Multi-application management server for telecommunication smart card, multi-application management method and system
CN101383095A (en) * 2008-08-25 2009-03-11 武汉市路安电子科技有限公司 Ultrasonic fixing type traffic flow investigation equipment
CN101646150A (en) * 2008-10-22 2010-02-10 中国科学院声学研究所 Financial management system and financial management method applied to business operation supporting system

Cited By (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN104185179A (en) * 2013-05-27 2014-12-03 中国移动通信集团公司 Control apparatus and method for subscriber identity module, and subscriber identity module
CN104283852A (en) * 2013-07-08 2015-01-14 中国电信股份有限公司 Mobile application single-sign-on authentication method, system, client side and server side
CN104036180A (en) * 2014-06-23 2014-09-10 联想(北京)有限公司 Electronic equipment, pluggable equipment, electronic system and information processing method thereof
CN104036180B (en) * 2014-06-23 2017-12-26 联想(北京)有限公司 Electronic equipment, pluggable equipment, electronic system and its information processing method
CN105205658A (en) * 2014-06-24 2015-12-30 中兴通讯股份有限公司 Electronic card applying method and electronic card applying device
CN104811310A (en) * 2015-03-30 2015-07-29 赵宇翔 Display method and wearing device
CN109670832A (en) * 2018-12-21 2019-04-23 西安长安通支付有限责任公司 A kind of city one-card data processing method and system

Also Published As

Publication number Publication date
CN102917351B (en) 2015-04-01

Similar Documents

Publication Publication Date Title
CN105391840B (en) Automatically create destination application
EP2508014B1 (en) Methods, secure element, server, computer programs and computer program products for improved application management
CN105900104B (en) Applet migration in safety element
CN102917351A (en) Method and device for realizing application in user identification card and user identification card
EP1703406B1 (en) Data communicating apparatus and method for managing memory of data communicating apparatus
US8548923B2 (en) Method and system for facilitating data access and management on a secure token
JP2001236232A (en) Ic card system and ic card and ic card processing method and recording medium
GB2517155A (en) Local evaluation of computer equipment
JP2002150233A (en) Storage medium for ic card system and ic card system
CN109063450B (en) Control method of safe storage medium, safe storage medium and system
CN108462700A (en) Background server, terminal device, safe early warning method and storage medium suitable for recognition of face
CN105160532A (en) Palm vein authentication based payment management method, apparatus and system
EP3749576A1 (en) Apparatus for device charging
US20230237478A1 (en) Card management method, user terminal, server, card management system and storage medium
US9058498B2 (en) Runtime environment management of secure communications on card computing devices
WO2016051259A1 (en) Transferable value or rights token
CA2432593C (en) Anti-cloning method
CN102945334A (en) Safety equipment with virtual on-chip operating system, safety device with virtual on-chip operating system, systems and methods
GB2326315A (en) Client/server system runs multiplex/demultiplex objects
US20220398565A1 (en) Type 4 nfc tags as protocol interface
WO2010007334A1 (en) Secure delivery of electronic tokens
CN105592033B (en) trusted service management system and method
CN107679858B (en) Mobile terminal and mobile payment method
CN106599724A (en) Method and system for having access to sector data of smart card
CN101667258B (en) Data operating method and device for intelligent card

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant