EP1538571A1 - Identifizierungsverfahren basierend auf einem Mobilgerät - Google Patents

Identifizierungsverfahren basierend auf einem Mobilgerät Download PDF

Info

Publication number
EP1538571A1
EP1538571A1 EP03104471A EP03104471A EP1538571A1 EP 1538571 A1 EP1538571 A1 EP 1538571A1 EP 03104471 A EP03104471 A EP 03104471A EP 03104471 A EP03104471 A EP 03104471A EP 1538571 A1 EP1538571 A1 EP 1538571A1
Authority
EP
European Patent Office
Prior art keywords
terminal
mobile equipment
signal
identification method
identifier
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
EP03104471A
Other languages
English (en)
French (fr)
Inventor
Renato Cantini
Roger Lagadec
Karl Osen
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Swisscom Mobile AG
NagraCard SA
Original Assignee
Swisscom Mobile AG
NagraCard SA
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Swisscom Mobile AG, NagraCard SA filed Critical Swisscom Mobile AG
Priority to EP03104471A priority Critical patent/EP1538571A1/de
Publication of EP1538571A1 publication Critical patent/EP1538571A1/de
Withdrawn legal-status Critical Current

Links

Images

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07CTIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
    • G07C9/00Individual registration on entry or exit
    • G07C9/20Individual registration on entry or exit involving the use of a pass
    • G07C9/21Individual registration on entry or exit involving the use of a pass having a variable access code
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F17/00Coin-freed apparatus for hiring articles; Coin-freed facilities or services
    • G07F17/0014Coin-freed apparatus for hiring articles; Coin-freed facilities or services for vending, access and use of specific services not covered anywhere else in G07F17/00
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07CTIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
    • G07C9/00Individual registration on entry or exit
    • G07C9/20Individual registration on entry or exit involving the use of a pass
    • G07C9/27Individual registration on entry or exit involving the use of a pass with central registration
    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07CTIME OR ATTENDANCE REGISTERS; REGISTERING OR INDICATING THE WORKING OF MACHINES; GENERATING RANDOM NUMBERS; VOTING OR LOTTERY APPARATUS; ARRANGEMENTS, SYSTEMS OR APPARATUS FOR CHECKING NOT PROVIDED FOR ELSEWHERE
    • G07C9/00Individual registration on entry or exit
    • G07C9/20Individual registration on entry or exit involving the use of a pass
    • G07C9/29Individual registration on entry or exit involving the use of a pass the pass containing active electronic elements, e.g. smartcards

Definitions

  • This application concerns the field of the use of services additional equipment around a mobile device such as a mobile phone.
  • Mobile equipment today serves many functions that go beyond telephony: calendar, radio, MP3 player or messages, mobile equipment has seen its applications explode.
  • One area in which its use is desired is access control or local identification. It's about using mobile equipment to get recognize by a terminal, either for the purchase of goods (automaton of sale), either for access to a place (show) or simply to the identification of a user.
  • a first solution is to communicate from the phone mobile phone, its identifier (phone number) at a receiving terminal by infrared or radio wave (Bluetooth).
  • the problem encountered comes from the multiplicity of communication standards and their weak use. This energy-hungry function is generally disabled on most phones.
  • the identifier transmitted by the phone itself can not be used as a means of proof, a phone that can transmit a number that is not his.
  • Another solution is that the mobile phone is equipped a contactless smart card to transmit the identifier of the SIM card as described in EP 1166238.
  • this solution has advantages, including the ability to operate without phone power supply, operators are reluctant, for problems security, to open a way to access the SIM card by a simple reader contactless card.
  • the object of the present invention is to use the mobile phone or mobile equipment for interactive localized features, and prove to a local terminal that you are the holder of a number of given phone.
  • composition of this signal makes it possible for the terminal to recognize a identifier or a right relating to the mobile equipment that is in its proximity.
  • the verification server simply identifies mobile equipment.
  • the signal sent by this server will therefore contain the identifier of this equipment, an identifier that may take the form of the telephone number (MSISDN), number IMSI (International Mobile Subscriber Identification) or an affiliate number for this type of service.
  • MSISDN the telephone number
  • IMSI International Mobile Subscriber Identification
  • the terminal On the basis of receiving this number, the terminal will check whether this number has rights for the service managed by said terminal.
  • the answer will be the same.
  • the signal or identification number is placed in a message that also includes a date. This message is signed for guarantee its integrity. It is therefore not possible to reuse the same signal for another terminal for example, the date then being out of date.
  • the signal includes a right that will be recognized by the terminal. It is no longer an identifier of the mobile equipment that is sent but the description of the service that was previously associated with that mobile equipment.
  • the verification server detects the identifier of mobile equipment and searches for the desired application. For that, the server receives from mobile equipment the information of the application managed by the terminal.
  • the server receiving the call based on the equipment identifier mobile and application, will search in its database the ticket number.
  • This number is a right for this user and represents the signal as defined above.
  • This signal is transmitted to terminal that does not need to know which mobile equipment it is associated. As mentioned above, this number is preferably signed so prevent fraud.
  • the terminal is also connected to the verification server and can therefore receive information through this communication channel in order to verify the data from mobile equipment.
  • the signal according to the invention can be transmitted between the mobile equipment and the hearing, visual, vibration, infrared or Bluetooth.
  • the terminal TA does not have link with the SV verification server. It only has data authentication, either in the form of a telephone number of one authorized user, either in the form of a right consisting of a secure cryptogram.
  • the mobile equipment ME comes to be placed on a housing provided for this purpose in the TA terminal. This location allows the TA terminal to receive or to send a signal.
  • the mobile equipment ME initiates a communication with a server of SV check.
  • the screen of the SCR terminal guides the user through identification procedures and can initially be used to display the number at dial on ME mobile equipment.
  • the communication established with this server identifies the equipment mobile ME through the detection of connection parameters, for example the MSISDN telephone number of the caller.
  • the server sends a signal to the TE terminal containing the MSISDN telephone number. This transmission can be done in many ways, for example by DTMF, FSK or Polytone. According to another variant, this signal can take the form an image on the mobile equipment.
  • the terminal via a MIC microphone (for the audio version) or a sensor optical (for the visual version), receives this signal and identifies by the number telephone, ME mobile equipment that is currently present.
  • the database BD2 of the terminal goes determine the rights associated with that mobile equipment in order to decide whether the service controlled by this terminal is authorized for this user.
  • the SV verification server may transmit a specific D duty to the terminal.
  • the server must know the TA terminal ID to search for rights that the user of the ME mobile device has in relation to this terminal.
  • the call to the verification server (which may be the management center), triggers a check in this database and the transmission of the right access for this show.
  • This right is transmitted by the server of verification in the signal and received by the terminal. Once the right has been verified, the user can access the theater.
  • the verification server must know which terminal it is is. This knowledge can be done in different ways. According to one first way, the call number is specific to each terminal.
  • the terminal transmits a code which is own through the HP speaker. This code is received by the mobile equipment and transmitted to the server. The latter will be able to search the application specific to this terminal.
  • the signal time information to limit the validity period of said signal. This information will be compared in the terminal with respect to a window of acceptance allowing for minor variations due to time differences in each terminal.
  • the signal thus completed is preferably signed by the key of the server, the public key being in each terminal for the checking the signal.
  • the code transmitted by the terminal may contain a temporal component, the whole being signed by the private key of the terminal to ensure the authenticity of the message.
  • the system operates in a loop such as as shown in Figure 2.
  • the mobile device initiates a call A with the verification server SV.
  • a second call B is established between the terminal TA and the server SV, call initiated by the user of the mobile equipment.
  • the proximity of the mobile equipment ME of the terminal TA allows the exchange of data between the mobile equipment ME and the terminal TA thanks to the loudspeaker HP and the MIC microphone. In this way, information can go through two separate paths and be compared upon arrival.
  • the terminal generates a code randomly, code to which an identifier is added.
  • This message is sent to the equipment ME via the audio channel C.
  • This message is also sent to the SV server by the B channel. So, the server receives the message by the mobile equipment (channel A) and the terminal TA. At the same time, server identifies the mobile equipment ME by detecting the parameters of connection.
  • the code can be generated by the SV server and will be accompanied by the identifier of the mobile equipment, once the parameters of the call on channel A established.
  • This message containing the code and the identifier is also transmitted to the terminal via the B channel.
  • the terminal can therefore carry out a verification between the message directly from the SV server and from the audio channel C between the mobile equipment ME and the terminal.

Landscapes

  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Telephonic Communication Services (AREA)
EP03104471A 2003-12-01 2003-12-01 Identifizierungsverfahren basierend auf einem Mobilgerät Withdrawn EP1538571A1 (de)

Priority Applications (1)

Application Number Priority Date Filing Date Title
EP03104471A EP1538571A1 (de) 2003-12-01 2003-12-01 Identifizierungsverfahren basierend auf einem Mobilgerät

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
EP03104471A EP1538571A1 (de) 2003-12-01 2003-12-01 Identifizierungsverfahren basierend auf einem Mobilgerät

Publications (1)

Publication Number Publication Date
EP1538571A1 true EP1538571A1 (de) 2005-06-08

Family

ID=34443062

Family Applications (1)

Application Number Title Priority Date Filing Date
EP03104471A Withdrawn EP1538571A1 (de) 2003-12-01 2003-12-01 Identifizierungsverfahren basierend auf einem Mobilgerät

Country Status (1)

Country Link
EP (1) EP1538571A1 (de)

Cited By (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2007092366A2 (en) * 2006-02-02 2007-08-16 Lucent Technologies Inc. Authentication and verification services for third party vendors using mobile devices
EP1965354A1 (de) * 2007-03-02 2008-09-03 Gemmo S.p.A. System und Verfahren zur Dienstleistungsverwaltung
CN108389284A (zh) * 2018-01-18 2018-08-10 南京熊猫电子股份有限公司 基于手机imsi识别技术的闸机身份快速验证系统及方法
CN109685927A (zh) * 2018-12-28 2019-04-26 中国移动通信集团江苏有限公司 移动收费方法、装置、设备和介质

Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2000074406A1 (en) * 1999-05-26 2000-12-07 Henry Duhs Mobile communication unit comprising a rfid-circuit for executing a service
WO2001040605A1 (en) * 1999-11-30 2001-06-07 Bording Data A/S An electronic key device, a system and a method of managing electronic key information
GB2371665A (en) * 2001-01-25 2002-07-31 Lets Guard It Europ Ab Call-back function provides a user with an authorisation code for accessing a service
FR2826755A1 (fr) * 2001-06-29 2003-01-03 Mucash Procede de transaction en ligne
DE10136848A1 (de) * 2001-07-24 2003-02-20 Siemens Ag Mobiles Kommunikationsendgerät und Verfahren zum Erlangen einer Berechtigung
AU763847B2 (en) * 1999-04-07 2003-07-31 Swisscom Mobile Ag Method and system for ordering, loading and using access tickets

Patent Citations (6)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
AU763847B2 (en) * 1999-04-07 2003-07-31 Swisscom Mobile Ag Method and system for ordering, loading and using access tickets
WO2000074406A1 (en) * 1999-05-26 2000-12-07 Henry Duhs Mobile communication unit comprising a rfid-circuit for executing a service
WO2001040605A1 (en) * 1999-11-30 2001-06-07 Bording Data A/S An electronic key device, a system and a method of managing electronic key information
GB2371665A (en) * 2001-01-25 2002-07-31 Lets Guard It Europ Ab Call-back function provides a user with an authorisation code for accessing a service
FR2826755A1 (fr) * 2001-06-29 2003-01-03 Mucash Procede de transaction en ligne
DE10136848A1 (de) * 2001-07-24 2003-02-20 Siemens Ag Mobiles Kommunikationsendgerät und Verfahren zum Erlangen einer Berechtigung

Cited By (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2007092366A2 (en) * 2006-02-02 2007-08-16 Lucent Technologies Inc. Authentication and verification services for third party vendors using mobile devices
WO2007092366A3 (en) * 2006-02-02 2007-10-04 Lucent Technologies Inc Authentication and verification services for third party vendors using mobile devices
US8934865B2 (en) 2006-02-02 2015-01-13 Alcatel Lucent Authentication and verification services for third party vendors using mobile devices
US9256869B2 (en) 2006-02-02 2016-02-09 Alcatel Lucent Authentication and verification services for third party vendors using mobile devices
US11087317B2 (en) 2006-02-02 2021-08-10 Alcatel Lucent Authentication and verification services for third party vendors using mobile devices
EP1965354A1 (de) * 2007-03-02 2008-09-03 Gemmo S.p.A. System und Verfahren zur Dienstleistungsverwaltung
CN108389284A (zh) * 2018-01-18 2018-08-10 南京熊猫电子股份有限公司 基于手机imsi识别技术的闸机身份快速验证系统及方法
CN108389284B (zh) * 2018-01-18 2020-11-03 南京熊猫电子股份有限公司 基于手机imsi识别技术的闸机身份快速验证系统及方法
CN109685927A (zh) * 2018-12-28 2019-04-26 中国移动通信集团江苏有限公司 移动收费方法、装置、设备和介质

Similar Documents

Publication Publication Date Title
EP0932317B1 (de) Verfahren zur verschlüsselten Datenübertragung zwischen einem Teilnehmer-Identifikationsmodul und einem Mobilfunkendgerät
EP1610510B1 (de) Drahtlose Zugangskontrolle für Telematik- und Sprachdienste
EP1463351B1 (de) Verfahren zum Entsperren eines portablen drahtlosen Kommunikationsendgerätes
EP1305937A1 (de) System und dringende vorrichtung des aufrufs
EP2912818B1 (de) Gegenseitiges authentifizierungsverfahren zwischen einem endgerät und einem fernserver über ein portal eines dritten
ES2828706T3 (es) Autenticación de usuario de centro de contacto
EP1059824B1 (de) Verfahren zur Zugriffsautorisierung in einem zellularen Funk-Kommunikationsnetzwerk von einem Mobiltelefon, Funk-Kommunikationsystem und vereinfachtes Telefon dafür
EP0950307B1 (de) Verfahren und system zur absicherung der dienstleistungen von fernmeldenetzbetreibern
FR2821222A1 (fr) Procede d'etablissement de communication anonyme
EP1668938B1 (de) Verfahren zum vergleichen eines mobiltelefons mit einer persönlichen karte
FR2757726A1 (fr) Procede et systeme d'appel centralise pour acceder a un service, notamment pour l'appel centralise de taxis
EP2369780B1 (de) Verfahren und system zur validierung einer transaktion, und entsprechendes transaktiosterminal und programm
EP1709827A1 (de) Verfahren zur Sicherung einer Mobiltelefonkennung und entsprechendes Mobiltelefon
EP1538571A1 (de) Identifizierungsverfahren basierend auf einem Mobilgerät
FR2927453A1 (fr) Procede et systeme de distribution de billets de banque a partir d'un distributeur de billets
FR2832825A1 (fr) Procede de securisation d'un acces a une ressource numerique
EP2053553A1 (de) Verfahren und Vorrichtung zum Austausch von Werten zwischen persönlichen tragbaren elektronischen Einheiten
FR2867650A1 (fr) Procede et terminaux communicants pour l'identification d'eligibilite d'un utilisateur par un code a barres
EP2632194A1 (de) Personalisierungsverfahren eines Sicherheitselements, das mit einem Gerät zusammenarbeitet
FR3051276B1 (fr) Procedes de mise en oeuvre d'une transaction via un terminal mobile
EP0817144A1 (de) Verfahren zur Steuerung der Benutzung eines Rufempfängers, nach diesem Verfahren arbeitender Rufempfänger und Chipkarte für bedingten Zugang eines Rufempfängers
EP1865695B1 (de) Telefongespräch-Aufzeichnung
OA18272A (en) Methods of implementing a transaction via a mobile terminal.
FR2848366A1 (fr) Procede permettant a une carte sim de communiquer localement
WO2014020244A1 (fr) Procédé de paiement sécurisé et dispositif en vue de la mise en œuvre dudit procédé

Legal Events

Date Code Title Description
PUAI Public reference made under article 153(3) epc to a published international application that has entered the european phase

Free format text: ORIGINAL CODE: 0009012

AK Designated contracting states

Kind code of ref document: A1

Designated state(s): AT BE BG CH CY CZ DE DK EE ES FI FR GB GR HU IE IT LI LU MC NL PT RO SE SI SK TR

AX Request for extension of the european patent

Extension state: AL LT LV MK

AKX Designation fees paid
REG Reference to a national code

Ref country code: DE

Ref legal event code: 8566

STAA Information on the status of an ep patent application or granted ep patent

Free format text: STATUS: THE APPLICATION IS DEEMED TO BE WITHDRAWN

18D Application deemed to be withdrawn

Effective date: 20051209