CN112020055A - Virtual card number management system, virtual card number management method, terminal device, and storage medium - Google Patents

Virtual card number management system, virtual card number management method, terminal device, and storage medium Download PDF

Info

Publication number
CN112020055A
CN112020055A CN202011159143.9A CN202011159143A CN112020055A CN 112020055 A CN112020055 A CN 112020055A CN 202011159143 A CN202011159143 A CN 202011159143A CN 112020055 A CN112020055 A CN 112020055A
Authority
CN
China
Prior art keywords
code number
virtual card
operating system
card operating
order
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN202011159143.9A
Other languages
Chinese (zh)
Other versions
CN112020055B (en
Inventor
金辉
陈晓波
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Shenzhen Jieruilian Technology Co ltd
Original Assignee
Shenzhen Jieruilian Technology Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Shenzhen Jieruilian Technology Co ltd filed Critical Shenzhen Jieruilian Technology Co ltd
Priority to CN202011159143.9A priority Critical patent/CN112020055B/en
Publication of CN112020055A publication Critical patent/CN112020055A/en
Application granted granted Critical
Publication of CN112020055B publication Critical patent/CN112020055B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/183Processing at user equipment or user record carrier
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/20Transfer of user or subscriber data
    • H04W8/205Transfer to or from user equipment or user record carrier

Landscapes

  • Engineering & Computer Science (AREA)
  • Databases & Information Systems (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

The invention relates to the technical field of Internet of things, in particular to a virtual card number management system and method, terminal equipment and a storage medium, wherein the management system comprises: the system comprises a code number management platform, terminal equipment and a virtual card operating system, wherein the virtual card operating system is arranged on the terminal equipment, and the terminal equipment is used for sending an order to the virtual card operating system; the virtual card operating system is used for sending the order information to the code number management platform to request for downloading the code number; the code number management platform is used for writing the code number into the virtual card operating system according to the order and sending a code number recovery instruction to the virtual card operating system to recover the code number when the code number is judged to be used. The management and the safety control of the virtual card are processed in the virtual card operating system, and the method does not depend on terminal equipment, so that the influence of illegal code number occupation caused by operations of local time modification, simulation of false flow use condition, copying cache and reading file, cache clearing, application network access permission closing and the like by a user is avoided.

Description

Virtual card number management system, virtual card number management method, terminal device, and storage medium
Technical Field
The invention relates to the technical field of Internet of things, in particular to a virtual card number management system and method, terminal equipment and a storage medium.
Background
Currently, an eSIM (Embedded-SIM) is becoming an industry trend more and more, and is also widely applied to the fields of consumers and internet of things continuously, the eSIM can dynamically issue and switch a Profile (a collection of code number resources and corresponding data and file systems, applications, and the like in telecommunications), and currently, the common implementation includes a virtual card technology and a standard eUICC (an Embedded UICC for short, a chinese name is an Embedded duUICC card) and an iUICC (an integrated SIM), and the like.
The implementation of the eSIM function using the virtual card includes two types, the first type is that the communication technology protocol uses the RSP provider specification (i.e., SIM for card specification) of the standard GSMA (global system for mobile communications), but does not meet the security certification requirement, and the second type is that the private customized communication protocol also does not meet the security certification requirement. Both schemes involve and adopt application-level Profile deletion and recovery management on the communication terminal device side in communication terminals (including consumer terminals, such as mobile phones and internet of things devices), for example, the local time management control of a terminal operating system and a server-client push mechanism or a timed polling mechanism are used for checking and recovering the Profile.
In the prior art, Profile issuing and management mainly comprises the following methods:
firstly, the Profile issuing and management platform judges whether the valid period of an order reaches a deadline of a Profile issuing time band, the Profile issuing and management platform continuously and periodically detects whether the time reaches, and if the time reaches, the Profile is triggered to be deleted to recover the Profile;
secondly, the Profile issuing and management platform judges whether the available flow of the order reaches a maximum available flow parameter when the Profile is issued, acquires the using flow condition of the Profile within a time limit through an operating system interface, and if the flow exceeds an upper limit, triggers to delete the Profile for recycling;
thirdly, the Profile issuing and management platform continuously judges the code number expiration time in a polling mode and inquires the flow condition through a ticket interface of an operator, then determines to recover the Profile when the recovery condition is met, issues a Profile recovery instruction to an application APP through a pushing system (or client polling access) during recovery, and triggers to delete the Profile recovery after the APP receives the Profile recovery instruction.
The above Profile issuing and management platform management mode has the following technical problems:
1. the effective time of the order is easily modified manually by a user through a system setting page, or the user modifies the system time by adopting a third-party simulation tool, so that the real system time cannot be obtained, the code number cannot be safely recovered, and the code number is illegally occupied by the user;
2. the flow statistics of the terminal equipment is easy to be simulated and modified into false data by a user by adopting a third-party tool so as to cheat the applied logic check, so that the code number cannot be safely recovered;
3. network access permission is needed for the time and flow use conditions of polling access of the mobile terminal by the push system and the client, but the user can manually close the network access permission of the application, so that the application cannot communicate with the server after the profile is issued, and the profile cannot be safely recovered;
4. after the user closes the access authority of the application network, the operation of illegal occupation and code number use is achieved by copying the cache data before application, then re-reading the file and clearing the downloaded overdue cache data;
the business benefits provided by the virtual card technical service are seriously infringed, and the illegal occupation of the profile and the use flow are carried out by utilizing the security loophole, so that the code number of the virtual card cannot be safely recovered.
Disclosure of Invention
The invention mainly solves the technical problem that the virtual card number can not be safely recycled.
A virtual card number management system, comprising: the system comprises a code number management platform, terminal equipment and a virtual card operating system, wherein the virtual card operating system is arranged on the terminal equipment and is in communication connection with a Modem of the terminal equipment through a BIP mechanism;
the terminal equipment is used for generating an order including a code number according to user input and sending the order to the virtual card operating system;
the virtual card operating system is used for sending the order to the code number management platform through a Modem of the terminal equipment so as to request for downloading the code number;
and the code number management platform is used for writing a code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judging whether the code number is used or not, and issuing a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number is used.
In one embodiment, the system further comprises a BIP server, wherein the virtual card operating system is communicated with the code number management platform through the BIP server;
the order comprises the use end time of the current code number and the upper limit of the available flow of the current code number;
the judging whether the code number use is finished comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; and/or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the use of the current code number is finished.
In an embodiment, the virtual card operating system further reports an order state of the current code number to the code number management platform periodically through a Modem of the terminal device, and the code number management platform is configured to determine whether the current code number is used up and/or whether an order of the current code number is abnormal according to the order state of the current code number reported by the virtual card operating system.
A virtual card operating system is connected with a Modem of a terminal device in a communication way;
the virtual card operating system is used for sending the order to the code number management platform through the Modem of the terminal equipment to request for downloading the code number, and managing and safely controlling the code number in the using process of the code number.
In one embodiment, the virtual card operating system is configured to report a usage state of an order to a code number management platform, where the code number management platform is configured to determine whether the code number usage is finished, and issue a code number recovery instruction to the virtual card operating system through a Modem of the terminal device if the code number usage is finished;
and the virtual card operating system is used for recovering the code number according to the recovery instruction.
A virtual card management method is used for safe issuing and recycling of virtual card numbers, and comprises the following steps:
setting the management of code number and safety control related program in the virtual card operating system of the mobile terminal;
establishing communication connection between the virtual card operating system and a Modem of a terminal device, wherein the Modem of the terminal device is used for communicating with a code number management platform;
generating an order through terminal equipment or an APP on the terminal equipment and sending the order to the virtual card operating system;
the virtual card operating system sends the order to the code number management platform through a Modem of the terminal equipment to request for downloading the code number;
and the code number management platform writes the code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judges whether the code number is used or not, and issues a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number is used.
In one embodiment, the order information includes the end time of the current code number, the upper limit of the flow rate available for the current code number;
the judging that the code number is used completely comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; and/or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the use of the current code number is finished.
In one embodiment, the order state of the current code number is reported to the code number management platform periodically through a Modem of the terminal device, and the code number management platform judges whether the use of the current code number is finished and/or whether the order of the current code number is abnormal according to the order state of the current code number reported by the virtual card operating system;
and when the code management platform judges that the order of the current code is abnormal, the code management platform sends an abnormal processing instruction to the virtual card operating system through the Modem of the terminal equipment so as to process the abnormal condition of the order of the current code.
A terminal device comprises a virtual card operating system, wherein a relevant program for virtual card code number management and security control is stored in the virtual card operating system;
the virtual card operating system establishes communication connection with a Modem of the terminal equipment through a BIP mechanism, and the Modem of the terminal equipment is used for communicating with the code number management platform;
the code number management platform is used for writing a code number into the virtual card operating system through a Modem of the terminal equipment according to an order sent by the virtual card operating system; and judging whether the code number is used or not, and if so, issuing a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number.
A computer-readable storage medium comprising a program executable by a processor to implement the virtual card management method as described above.
The virtual card number management system according to the above embodiment includes: the system comprises a code number management platform, terminal equipment and a virtual card operating system, wherein the virtual card operating system is arranged on the terminal equipment and is in communication connection with a Modem of the terminal equipment; the terminal equipment is used for generating an order including a code number according to the input of a user and sending the order to the virtual card operating system; the virtual card operating system is used for sending the order information to the code number management platform through the Modem of the terminal equipment to request for downloading the code number; and the code number management platform is used for writing the code number into the virtual card operating system through the Modem of the terminal equipment according to the order and sending a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number when judging that the code number is used. According to the method, the virtual card operating system is in communication connection with the Modem of the terminal device through the BIP mechanism, and then is in direct communication with the code number management platform through the Modem of the terminal device, so that management and safety control of the virtual card are processed in the virtual card operating system, normal Internet surfing and data access operation are carried out by mainly utilizing the code number, the operation is carried out in the virtual card operating system, the terminal device is not depended on, and the influence of illegal profile occupation caused by operations of local time modification, flow using condition simulation, cache copying and file reading, cache clearing, application network access permission closing and the like by a user is avoided.
Drawings
FIG. 1 is a block diagram of a virtual card number management system according to an embodiment of the present disclosure;
fig. 2 is a flowchart of a virtual card number management method according to an embodiment of the present application.
Detailed Description
The present invention will be described in further detail with reference to the following detailed description and accompanying drawings. Wherein like elements in different embodiments are numbered with like associated elements. In the following description, numerous details are set forth in order to provide a better understanding of the present application. However, those skilled in the art will readily recognize that some of the features may be omitted or replaced with other elements, materials, methods in different instances. In some instances, certain operations related to the present application have not been shown or described in detail in order to avoid obscuring the core of the present application from excessive description, and it is not necessary for those skilled in the art to describe these operations in detail, so that they may be fully understood from the description in the specification and the general knowledge in the art.
Furthermore, the features, operations, or characteristics described in the specification may be combined in any suitable manner to form various embodiments. Also, the various steps or actions in the method descriptions may be transposed or transposed in order, as will be apparent to one of ordinary skill in the art. Thus, the various sequences in the specification and drawings are for the purpose of describing certain embodiments only and are not intended to imply a required sequence unless otherwise indicated where such sequence must be followed.
The numbering of the components as such, e.g., "first", "second", etc., is used herein only to distinguish the objects as described, and does not have any sequential or technical meaning. The term "connected" and "coupled" when used in this application, unless otherwise indicated, includes both direct and indirect connections (couplings).
The following are some acronyms referred to in the specification of the application, which are explained below for the convenience of a person skilled in the art.
The eUICC: the eUICC is an embedded UICC for short, and the Chinese name is an embedded duUICC card, which is an eSIM, that is, an embedded SIM card. The card can be combined with over-the-air card writing and one-number double cards, and provides a remote card writing service that the card is not changed. Mainly the capability of operators, such as OneLink in China, telecom and Unicom. By writing cards in the air, in the fields of car networking, intelligent equipment, energy industry, shared economy and the like, customers can realize one-place production and global sales, and stock management and rapid overseas layout are facilitated. The embedded universal integrated circuit card designated by GSMA is an eSIM card which is specially used in the field of telecommunication and can support the functions of safely downloading remote Profile, managing multiple profiles and the like.
Profile: the collection of code number resources and corresponding data and file systems, applications, etc. in telecommunications, is referred to primarily in this application as code numbers.
eSIM: an embedded SIM.
GSMA: GSM Association, international telecommunications union organization.
RSP: remote SIM Provisioning, Remote SIM distribution.
Consumer: a consumer.
STK: SIM Application Toolkit, named SIM card Application Toolkit in Chinese. The SIM card can run an applet program in the card to interact with the mobile phone and a user, thereby realizing the purpose of value added service.
Virtual card: the SIM functionality is implemented in software within the device operating system or secure environment, without the need for a separate physical SIM card. The mobile phone virtual card refers to an eSIM card. The eSIM card is a short for embedded (duEmbedded) SIM card, which refers to the electronization of the SIM card. The operator issues the SIM card data to the user in an electronic form, and if the eSIM terminal is used for transacting network access, the whole set of card secret data is safely downloaded into the eSIM terminal in an online mode and activated for use, and the entity SIM card is not issued. The method mainly comprises two types of services, namely one-card multi-terminal (one number and two terminals) and independent number (one number and one terminal).
The iUICC: an integrated SIM.
UICC: universal integrated circuit card, we refer here to SIM card.
And (3) BIP: an independent bearer protocol.
CAT: card Application Toolkit, Card Application tool.
In the embodiment of the invention, the safety control and management of the profile recovery are not put into the application APP for processing, and are transferred to the virtual card operating system for processing, so that the virtual card operating system application is required to exist as long as the profile is used for normal internet surfing and data access operation, but the application APP is an independent item, thereby preventing the illegal profile occupation influence caused by the operations of local time modification, false flow use simulation, cache copying and reading, cache clearing, application network access permission closing and the like of a user.
The first embodiment is as follows:
referring to fig. 1, the present embodiment provides a virtual card number management system, which includes: the system comprises a code number management platform 11, a terminal device 13, a virtual card operating system 132 and a BIP server 12, wherein the virtual card operating system 132 is arranged on the terminal device 13, the virtual card operating system 132 is arranged as a built-in operating system of the terminal device 13 and cannot be changed by a user, the virtual card operating system 132 is used for carrying out safety control and management on a code number, the virtual card operating system 132 is in communication connection with a Modem (Modem) of the terminal device 13 through a BIP mechanism, the Modem of the terminal device 13 is in communication through the BIP server 12, the BIP server 12 is in communication with the code number management platform 11, and further the virtual card operating system 132 is in communication with the code number management platform 11 through the BIP mechanism. The virtual card operating system 132 is used for security control and management of the virtual card number. In this embodiment, security control and management of profile (mainly, virtual card number) recovery are not put into the application APP for processing, and are transferred to the virtual card operating system 132 for processing, and the virtual card operating system 132 application must exist as long as the profile is used for normal internet surfing and data access operations, but the application APP is an independent item, so that the illegal profile occupation influence caused by operations such as local time modification, false traffic use simulation, cache copy and file read, cache removal, application network access permission closing by a user is prevented.
The terminal device 131 is provided with an APP131, and the APP131 is configured to generate an order including a code number according to user input and send the order to the virtual card operating system 132; for example, the generated order according to the user input comprises information such as the number usage duration, the usage flow upper limit, the usage location and the like. The virtual card operating system 132 is configured to send the order to the BIP server 12 through the Modem of the terminal device 13, and send the order to the code number management platform 11 through the BIP server 12 to request to download the code number. The code number management platform 11 is configured to write the code number into the virtual card operating system 132 through the BIP server 12 and the Modem of the terminal device 13 according to the order, and complete issuing of the code number. In the process of using the code number, the virtual card operating system 132 also reports the use state of the current code number to the code number management platform 11 through the BIP server 12 periodically, the code number management platform 11 judges whether the use of the code number is finished according to the reported use state, and if the use of the code number is finished, the virtual card operating system 132 issues a code number recovery instruction through the Modem of the terminal device to recover the code number. Therefore, the code number recovery instruction directly skips the APP and is issued to the virtual card operating system 132, and the virtual card operating system 132 directly performs profile safety recovery after receiving the instruction issued by the code number management platform 11, so that the influence of illegal occupation of the profile caused by operations of locally modifying time, simulating false traffic use condition, copying cache and reading file, clearing cache, closing application network access authority and the like by a user is prevented.
The order of this embodiment at least includes the end time of using the current code number, and the upper limit of the available flow rate of the current code number; judging whether the end of the use of the code number is finished comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the current code number is used and ended. As long as one of the above-described conditions is satisfied, it is determined that the current code number is used over.
The virtual card operating system 132 also reports the order state of the current code number to the code number management platform 11 through the Modem of the terminal device 13 and the BIP server 12 at regular intervals, and the code number management platform 11 is configured to determine whether the current code number is used up and whether the order of the current code number is abnormal according to the order state of the current code number reported by the virtual card operating system 132.
Wherein, the code number management platform 11 is pre-stored with an exception handling strategy; when the code number management platform 11 determines that the order of the current code number is abnormal, it sends an abnormal processing instruction to the virtual card operating system 132 through the BIP server 12 to process the abnormal condition of the order of the current code number.
In another embodiment, the signal reported by the terminal device 13 through the virtual card operating system 132 further includes: cellI (current location information of the terminal device), iccid (virtual card number), imei (international mobile equipment identity), order id list, mccmnc (mobile country code), signal strength, cell base station information, and the like, and the code number management platform 11 determines whether the current order state is abnormal according to the information and the order.
In another embodiment, the code number management platform 11 further pre-stores a model compatibility processing policy, and when the code number management platform 11 detects that there is a problem in compatibility of the model of the current terminal device according to the reported information, the code number management platform 11 further sends the model compatibility processing policy to the virtual card operating system 132 through the BIP server 12 to solve the problem of compatibility of the current model.
Example 2
In this embodiment, a working process of the virtual card number management system of the present application is described by taking an Android mobile phone to which a virtual card in an Android system is applied as an example, and the working process includes the following steps:
1. the app on the terminal equipment assembles the order into an asn1 format at regular intervals, transmits the asn1 format into a virtual card operating system, and triggers a task that COS (virtual card operating system 132) reports information through the BIP server 12;
2. after receiving the data of the APP, the COS (pseudo card operating system) constructs 4 types of active commands of openChannel, sendData, receiveData and closed channel, puts the commands into an active command queue, and waits for a modem (modem, commonly called as "cat", which is computer hardware) to send APDU (application layer APP controls the contactless card and the contact card of the intelligent pos machine through an APDU command (conforming to the PBOC specification)) to the COS;
3. the COS receives all apdu from the modem and judges whether data exists in the active instruction queue or not, if so, the COS returns 91XX to the modem under the condition that the originally returned status word is 9000 (XX represents the length of the active instruction);
4. after receiving 91XX, the modem sends an FETCH (a mode of HTTP data request) to the COS, and after receiving the FETCH, the COS returns the instruction of the queue head to the modem;
5. after receiving the active command, the modem processes the command and then sends the data to the COS in a terminalResponse (terminal response mode) mode;
6. the COS processes the data after receiving the terminalResponse, and moves the active instruction at the head of the queue out of the queue, so that the active instruction is processed;
7. polling and executing the steps 3, 4, 5 and 6 until the close channel processing is finished, and finishing a reporting process;
8. openchannel: establishing connection for a designated ipport;
9. SendData sending data: because of apdu length restriction, the instruction can divide many to loop through BIP server 12 and send to code number management platform 11, and specific sending process includes: TLS connection is firstly carried out to ensure data safety, and then data is packaged and sent in an asn1 format, wherein the main data comprises orderNo, orderState, iccId, use flow, imei and the like;
10. ReceiveData (reception data): the code number management platform 11 receives the data sent by the virtual card operating system and then processes the data, if an abnormal order is found, a corresponding Task is generated and returned to the client, the client receives the data through receiveData, the data are received in multiple strips due to length limitation and then assembled into complete data, and the data content is the Task (including pass, delete card and the like) issued by the server;
11. the CloseChannel (disconnects the network connection), the user terminal performs the operation of gate card and card deletion after disconnection, and then notifies the app to update the interface and data through broadcasting;
12. exception handling: normally, the modem sends a STATUS command to the SIM card every 30 seconds to confirm the state of the SIM card, but some mobile phones do not have this function, so a mechanism of envelope (timer extension) is adopted to handle the situation, which specifically includes:
(1) when apdu can be frequently received in the initialization and authentication stages after the card is opened, putting the active instruction of the timer into the active queue in the section 1, setting the time to be 5 minutes, and waiting for the modem to process;
(2) when the appointed time is up to 5 minutes, the modem sends an instruction to the COS, the COS does not perform any processing, and generates an instruction of a timer to be put into a queue of active instructions and brings the instruction back to the modem when the current instruction returns;
(3) and (3) infinitely circulating according to the processes of (1) and (2), ensuring that the modem and the COS can have apdu interaction once every 5 minutes at most, and taking data in the active instruction queue away.
Example three:
in this embodiment, a samsung mobile phone with an eUICC in an Android system is taken as an example to explain a working process of the virtual card number management system of this application, where the working process includes:
1. the terminal equipment (namely the mobile phone) reports a data usage, cellId, iccid, imei and an order id list to a code number management platform through a virtual card operating system, and the code number management platform returns a command list to be executed; in an embodiment, the reported message further includes mccmnc, signal strength, cell base station information, and the like; wherein, the reporting time comprises: reporting when the network is started for the first time, reporting the order once every 5 hours within the validity period of the order, and reporting after the order is finished (reporting can be delayed);
2. the BIP (independent bearer protocol) data packets are uniformly reported to a BIP server, the BIP server only processes the BIP protocol data packets, the service part only forwards the data packets without decoding, and the byte code data of the Body part is directly forwarded;
3. the BIP message is initiated by the terminal equipment and carries the environmental data of the terminal equipment;
4. after receiving the request of the terminal equipment, the code number management platform returns a command list to be executed by the code number management platform;
5. the terminal equipment can be disconnected and then execute the task;
6. and after the terminal equipment executes the completion command, the code number management platform is reconnected, the execution result of the code number management platform is reported, and the code number management platform returns to the end.
Example four
The present embodiment provides a virtual card operating system, where the virtual card operating system is in communication connection with a Modem of a terminal device, and the virtual card operating system is configured to send an order to a code number management platform through the Modem of the terminal device to request downloading of a code number, and manage and safely control the code number during the use of the code number.
Further, the virtual card operating system is also used for reporting the using state of the order to a code number management platform, the code number management platform is used for judging whether the code number is used or not, and if the code number is used, a code number recycling instruction is issued to the virtual card operating system through a Modem of the terminal equipment; the virtual card operating system is used for recovering the code number according to the recovery instruction.
Specifically, the virtual card operating system communicates with the code number management platform through the BIP mechanism, for example, the virtual card operating system sends the order and the order status to the BIP server, and sends the order and the order status to the code number management platform through the BIP server, and when receiving the instruction sent by the code number management platform, the virtual card operating system also sends the instruction to the virtual card operating system through the BIP server. Therefore, management and safety control of the virtual card are processed in the virtual card operating system, normal internet surfing and data access operation mainly through connection of a code number with the internet are carried out in the virtual card operating system, and the influence of illegal profile occupation caused by operations of local time modification, false flow use condition simulation, cache copying and reading, cache clearing, application network access permission closing and the like of a user is avoided without depending on terminal equipment.
EXAMPLE five
This embodiment provides a virtual card management method, which is used for secure issuing and recovering of a virtual card number, as shown in fig. 2, and includes:
step 201: setting the management of code number and safety control related program in the virtual card operating system of the mobile terminal;
step 202: establishing communication connection between the virtual card operating system and a Modem of the terminal equipment, wherein the Modem of the terminal equipment is used for communicating with a code number management platform;
step 203: generating an order through the terminal equipment or an APP on the terminal equipment and sending the order to the virtual card operating system;
step 204: the virtual card operating system sends the order to a code number management platform through a Modem of the terminal equipment to request for downloading the code number; specifically, the virtual card operating system sends the order to the BIP server through the Modem of the terminal equipment, and then the BIP server sends the order to the code number management platform to request for downloading the code number;
step 205: and the code number management platform writes the code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judges whether the code number use is finished, and issues a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number use is finished. Specifically, the instruction issued by the code number management platform is also sent to the virtual card operating system through the BIP server.
The order information at least comprises the use end time of the current code number and the upper limit of the flow rate available for the current code number.
Wherein, judging that the code number is used completely comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; and/or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the use of the current code number is finished.
The virtual card operating system reports the order state of the current code number to the code number management platform regularly through a Modem of the terminal equipment and a BIP server, and the code number management platform judges whether the current code number is used or not and/or whether the order of the current code number is abnormal or not according to the order state of the current code number reported by the virtual card operating system; an exception handling strategy is prestored in the code number management platform, and when the code number management platform judges that the order of the current code number is abnormal, an exception handling instruction is sent to the virtual card operating system through the BIP server and the Modem of the terminal equipment so as to handle the exception condition of the current code number order.
EXAMPLE six
The embodiment provides a terminal device, for example, a mobile phone, where the terminal device includes a virtual card operating system, and a related program for virtual card number management and security control is stored in the virtual card operating system, and is used to perform security management and recovery on a virtual card number.
The virtual card operating system establishes communication connection with a Modem of the terminal equipment through a BIP mechanism, and the Modem of the terminal equipment is used for communicating with the code number management platform; specifically, the virtual card operating system sends the order to the BIP server through the Modem of the terminal equipment, and then the order is sent to the code number management platform by the BIP server so as to realize communication with the code number management platform;
and the code number management platform writes the code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judges whether the code number use is finished, and issues a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number use is finished. Specifically, the instruction issued by the code number management platform is also sent to the virtual card operating system through the BIP server.
EXAMPLE seven
The present embodiment provides a computer-readable storage medium including a program executable by a processor to implement the virtual card management method according to the fifth embodiment.
The present invention has been described in terms of specific examples, which are provided to aid understanding of the invention and are not intended to be limiting. For a person skilled in the art to which the invention pertains, several simple deductions, modifications or substitutions may be made according to the idea of the invention.

Claims (10)

1. A virtual card number management system, comprising: the system comprises a code number management platform, terminal equipment and a virtual card operating system, wherein the virtual card operating system is arranged on the terminal equipment and is in communication connection with a Modem of the terminal equipment through a BIP mechanism;
the terminal equipment is used for generating an order including a code number according to user input and sending the order to the virtual card operating system;
the virtual card operating system is used for sending the order to the code number management platform through a Modem of the terminal equipment so as to request for downloading the code number;
and the code number management platform is used for writing a code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judging whether the code number is used or not, and issuing a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number is used.
2. The virtual card code number management system of claim 1, further comprising a BIP server, the virtual card operating system communicating with the code number management platform through the BIP server;
the order comprises the use end time of the current code number and the upper limit of the available flow of the current code number;
the judging whether the code number use is finished comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; and/or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the use of the current code number is finished.
3. The virtual card number management system of claim 2, wherein the virtual card operating system further reports the order state of the current number to the number management platform through the Modem of the terminal device at regular intervals, and the number management platform is configured to determine whether the current number is used up and/or whether the order of the current number is abnormal according to the order state of the current number reported by the virtual card operating system.
4. The virtual card operating system is characterized in that the virtual card operating system is in communication connection with a Modem of a terminal device;
the virtual card operating system is used for sending the order to a code number management platform through the Modem of the terminal equipment so as to request for downloading the code number, and managing and safely controlling the code number in the using process of the code number.
5. The virtual card operating system according to claim 4, wherein the virtual card operating system is configured to report a usage state of the order to a code number management platform, the code number management platform is configured to determine whether the code number usage is finished, and issue a code number recovery instruction to the virtual card operating system through a Modem of the terminal device if the code number usage is finished;
and the virtual card operating system is used for recovering the code number according to the recovery instruction.
6. A virtual card code number management method is used for safely issuing and recovering virtual card code numbers, and is characterized by comprising the following steps:
setting the management of code number and safety control related program in the virtual card operating system of the mobile terminal;
establishing communication connection between the virtual card operating system and a Modem of a terminal device, wherein the Modem of the terminal device is used for communicating with a code number management platform;
generating an order through terminal equipment or an APP on the terminal equipment and sending the order to the virtual card operating system;
the virtual card operating system sends the order to the code number management platform through a Modem of the terminal equipment to request for downloading the code number;
and the code number management platform writes the code number into the virtual card operating system through the Modem of the terminal equipment according to the order, judges whether the code number is used or not, and issues a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number if the code number is used.
7. The virtual card code number management method according to claim 6, wherein the order information includes an end time of use of the current code number, an upper limit of a flow rate that can be used by the current code number;
the judging that the code number is used completely comprises: judging whether the use end time of the current code number reaches the end time recorded on the order, if so, determining that the use of the current code number is ended; and/or judging whether the flow rate available for the current code number reaches the upper limit recorded on the order, and if so, determining that the use of the current code number is finished.
8. The virtual card number management method of claim 7, wherein the order state of the current number is reported to the number management platform periodically through a Modem of the terminal device, and the number management platform determines whether the current number is used up and/or whether the order of the current number is abnormal according to the order state of the current number reported by the virtual card operating system;
and when the code management platform judges that the order of the current code is abnormal, the code management platform sends an abnormal processing instruction to the virtual card operating system through the Modem of the terminal equipment so as to process the abnormal condition of the order of the current code.
9. The terminal equipment is characterized by comprising a virtual card operating system, wherein a relevant program for virtual card code number management and security control is stored in the virtual card operating system;
the virtual card operating system establishes communication connection with a Modem of the terminal equipment through a BIP mechanism, and the Modem of the terminal equipment is used for communicating with the code number management platform;
the code number management platform is used for writing a code number into the virtual card operating system through a Modem of the terminal equipment according to an order sent by the virtual card operating system; and judging whether the code number is used or not, and if so, issuing a code number recovery instruction to the virtual card operating system through the Modem of the terminal equipment to recover the code number.
10. A computer-readable storage medium, characterized by comprising a program executable by a processor to implement the method of any one of claims 6-8.
CN202011159143.9A 2020-10-27 2020-10-27 Virtual card number management system, virtual card number management method, terminal device, and storage medium Active CN112020055B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202011159143.9A CN112020055B (en) 2020-10-27 2020-10-27 Virtual card number management system, virtual card number management method, terminal device, and storage medium

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202011159143.9A CN112020055B (en) 2020-10-27 2020-10-27 Virtual card number management system, virtual card number management method, terminal device, and storage medium

Publications (2)

Publication Number Publication Date
CN112020055A true CN112020055A (en) 2020-12-01
CN112020055B CN112020055B (en) 2021-02-09

Family

ID=73527691

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202011159143.9A Active CN112020055B (en) 2020-10-27 2020-10-27 Virtual card number management system, virtual card number management method, terminal device, and storage medium

Country Status (1)

Country Link
CN (1) CN112020055B (en)

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112469028A (en) * 2021-01-28 2021-03-09 北京树米网络科技有限公司 Method for processing remote number changing by subscriber identification module
WO2024022118A1 (en) * 2022-07-29 2024-02-01 华为技术有限公司 Access method and apparatus for virtual subscriber identity module
CN117545036A (en) * 2024-01-08 2024-02-09 深圳鼎智通讯有限公司 Signal switching system and intelligent POS machine

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140140507A1 (en) * 2011-07-08 2014-05-22 Kt Corporation Method for changing mno in embedded sim on basis of dynamic key generation and embedded sim and recording medium therefor
CN106488430A (en) * 2015-08-31 2017-03-08 中兴通讯股份有限公司 A kind of method processing virtual SIM card information, terminal and system
CN111355571A (en) * 2018-12-21 2020-06-30 中国电信股份有限公司 Method, terminal, connection management platform and system for generating identity authentication private key
CN111464984A (en) * 2020-03-31 2020-07-28 中国联合网络通信集团有限公司 Communication method and device
CN111526500A (en) * 2020-04-28 2020-08-11 武汉天喻聚联网络有限公司 Code number switching method and system
CN111542045A (en) * 2020-06-22 2020-08-14 深圳杰睿联科技有限公司 eSIM card opening method, terminal equipment and SM-DP + platform

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20140140507A1 (en) * 2011-07-08 2014-05-22 Kt Corporation Method for changing mno in embedded sim on basis of dynamic key generation and embedded sim and recording medium therefor
CN106488430A (en) * 2015-08-31 2017-03-08 中兴通讯股份有限公司 A kind of method processing virtual SIM card information, terminal and system
CN111355571A (en) * 2018-12-21 2020-06-30 中国电信股份有限公司 Method, terminal, connection management platform and system for generating identity authentication private key
CN111464984A (en) * 2020-03-31 2020-07-28 中国联合网络通信集团有限公司 Communication method and device
CN111526500A (en) * 2020-04-28 2020-08-11 武汉天喻聚联网络有限公司 Code number switching method and system
CN111542045A (en) * 2020-06-22 2020-08-14 深圳杰睿联科技有限公司 eSIM card opening method, terminal equipment and SM-DP + platform

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN112469028A (en) * 2021-01-28 2021-03-09 北京树米网络科技有限公司 Method for processing remote number changing by subscriber identification module
WO2024022118A1 (en) * 2022-07-29 2024-02-01 华为技术有限公司 Access method and apparatus for virtual subscriber identity module
CN117545036A (en) * 2024-01-08 2024-02-09 深圳鼎智通讯有限公司 Signal switching system and intelligent POS machine
CN117545036B (en) * 2024-01-08 2024-04-05 深圳鼎智通讯有限公司 Signal switching system and intelligent POS machine

Also Published As

Publication number Publication date
CN112020055B (en) 2021-02-09

Similar Documents

Publication Publication Date Title
CN112020055B (en) Virtual card number management system, virtual card number management method, terminal device, and storage medium
US10165437B2 (en) Embedded subscriber identity module capable of managing communication profiles
US9843674B2 (en) Managing selection and triggering of applications on a card computing device
US9037857B2 (en) System and method for downloading application
KR100883556B1 (en) Method for processing and transmitting data on a mobile telephone network and microchip onboard system
US9055443B2 (en) Mobile device-type locking
US8745187B2 (en) System and method for installing smart card applet
CN109474650B (en) Configuration file downloading method and terminal
CN103455349B (en) Application program accesses the method and apparatus of smart card
CN108200568B (en) Mobile communication electronic SIM card data processing method and device
CN104967988A (en) Data roaming method, apparatus and system
WO2015180516A1 (en) Method, device and system for implementing number-portability network upgrade
CN104507130A (en) SIM (Subscriber Identity Module) card and system supporting mobile communication network switching
US20100275242A1 (en) Method of controlling applications installed on a security module associated with a mobile terminal, and an associated security module, mobile terminal, and server
KR20190009311A (en) Subscriber self-activating device, program and method
CN102667806B (en) A chip card, an electronic system, a method being implemented by a chip card and a computer program product
CN109479007B (en) Data service control method, related equipment and system
CN109547998B (en) Management method, device and storage medium for virtual user identity identification card
CN113993124A (en) Number portability method, number portability device, communication terminal, and storage medium
CN100415032C (en) Interaction method for mobile terminal and network side in mobile communication system
CN104768146A (en) Function control method and terminal
CN114374967B (en) Method, system and device for configuring one number with multiple terminals
KR100641167B1 (en) Initialization method for mobile communication terminal
CN116723499B (en) Number processing method, device, communication equipment and storage medium
CN110996313B (en) Information transmission method, system and storage medium

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
GR01 Patent grant
GR01 Patent grant