FR2864859A1 - Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them - Google Patents

Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them Download PDF

Info

Publication number
FR2864859A1
FR2864859A1 FR0400022A FR0400022A FR2864859A1 FR 2864859 A1 FR2864859 A1 FR 2864859A1 FR 0400022 A FR0400022 A FR 0400022A FR 0400022 A FR0400022 A FR 0400022A FR 2864859 A1 FR2864859 A1 FR 2864859A1
Authority
FR
France
Prior art keywords
specific
service
services
application software
general data
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Withdrawn
Application number
FR0400022A
Other languages
French (fr)
Inventor
Laurent Michel Christophe Pestel
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
PESTEL LAURENT MICHEL CHRISTOP
Original Assignee
PESTEL LAURENT MICHEL CHRISTOP
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by PESTEL LAURENT MICHEL CHRISTOP filed Critical PESTEL LAURENT MICHEL CHRISTOP
Priority to FR0400022A priority Critical patent/FR2864859A1/en
Publication of FR2864859A1 publication Critical patent/FR2864859A1/en
Withdrawn legal-status Critical Current

Links

Classifications

    • GPHYSICS
    • G07CHECKING-DEVICES
    • G07FCOIN-FREED OR LIKE APPARATUS
    • G07F7/00Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus
    • G07F7/08Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means
    • G07F7/10Mechanisms actuated by objects other than coins to free or to actuate vending, hiring, coin or paper currency dispensing or refunding apparatus by coded identity card or credit card or other personal identification means together with a coded signal, e.g. in the form of personal identification information, like personal identification number [PIN] or biometric data
    • G07F7/1008Active credit-cards provided with means to personalise their use, e.g. with PIN-introduction/comparison system
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/60Protecting data
    • G06F21/62Protecting access to data via a platform, e.g. using keys or access control rules
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/71Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information
    • G06F21/77Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure computing or processing of information in smart cards
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F21/00Security arrangements for protecting computers, components thereof, programs or data against unauthorised activity
    • G06F21/70Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer
    • G06F21/78Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure storage of data
    • G06F21/79Protecting specific internal or peripheral components, in which the protection of a component leads to protection of the entire computer to assure secure storage of data in semiconductor storage media, e.g. directly-addressable memories
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/341Active cards, i.e. cards including their own processing means, e.g. including an IC or chip
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06QINFORMATION AND COMMUNICATION TECHNOLOGY [ICT] SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES; SYSTEMS OR METHODS SPECIALLY ADAPTED FOR ADMINISTRATIVE, COMMERCIAL, FINANCIAL, MANAGERIAL OR SUPERVISORY PURPOSES, NOT OTHERWISE PROVIDED FOR
    • G06Q20/00Payment architectures, schemes or protocols
    • G06Q20/30Payment architectures, schemes or protocols characterised by the use of specific devices or networks
    • G06Q20/34Payment architectures, schemes or protocols characterised by the use of specific devices or networks using cards, e.g. integrated circuit [IC] cards or magnetic cards
    • G06Q20/357Cards having a plurality of specified features
    • G06Q20/3576Multiple memory zones on card

Landscapes

  • Engineering & Computer Science (AREA)
  • Theoretical Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Computer Hardware Design (AREA)
  • Business, Economics & Management (AREA)
  • Computer Security & Cryptography (AREA)
  • General Engineering & Computer Science (AREA)
  • Software Systems (AREA)
  • Microelectronics & Electronic Packaging (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Accounting & Taxation (AREA)
  • Strategic Management (AREA)
  • General Business, Economics & Management (AREA)
  • General Health & Medical Sciences (AREA)
  • Mathematical Physics (AREA)
  • Bioethics (AREA)
  • Health & Medical Sciences (AREA)
  • Telephonic Communication Services (AREA)

Abstract

The card has application software residing in a microprocessor (A), and scanning general data of a client stored in a memory zone (B). Personal access code is associated to the data, and is known to the client. Distinct memory zones (C, D, E) for subscribed services collect parameters which are specific to them. A different access code is associated to specific data memory zone for each service, and is known to a service provider.

Description

La présente invention concerne une carte à puce permettant de gérer deThe present invention relates to a smart card for managing

manière simultanée sur ce même support physique les abonnements d'un seul et même client à plusieurs services souscris séparément ou collectivement auprès d'un ou plusieurs fournisseurs de service.  at the same time on the same physical medium the subscriptions of one and the same customer with several services subscribed separately or collectively with one or more service providers.

L'un des exemples d'application de cette invention se situe dans le domaine de la téléphonie mobile de 5 nouvelle génération.  One of the exemplary embodiments of this invention is in the field of next-generation mobile telephony.

Traditionnellement, chaque client d'un opérateur de téléphonie mobile dispose d'une carte à puce individuelle sur laquelle sont enregistrés son identifiant ainsi que certains paramètres spécifiques à l'usage des services proposés par cet opérateur. La carte ainsi paramétrée devient l'élément indispensable pour réaliser d'une part le contrôle d'accès aux services proposés par l'opérateur de téléphonie mobile et d'autre part la fourniture elle-même de ces services. En parallèle, il est fréquent que ce même client ait souscrit d'autres services tels que la télévision payante auprès d'autres fournisseurs qui lui aient attribué une autre carte à puce différente et possédant des caractéristiques et des fonctions équivalentes mais pour une autre famille de service.  Traditionally, each customer of a mobile operator has an individual smart card on which are registered his identifier and certain parameters specific to the use of services offered by this operator. The card thus set becomes the essential element to achieve on the one hand the access control services offered by the mobile operator and secondly the supply itself of these services. At the same time, it is common for the same customer to have subscribed to other services such as pay TV from other providers who have assigned it another different smart card and with equivalent features and functions but for another family of customers. service.

Il résulte de cette situation que ce client doit gérer une multitude de cartes à puce sans pouvoir accéder 15 simultanément aux différents services qu'il a souscrits.  As a result of this situation, this customer must manage a multitude of smart cards without being able to simultaneously access the various services he has subscribed.

Le dispositif selon l'invention permet de remédier à cet inconvénient en offrant au client la possibilité d'accéder à partir d'une seule carte à puce à l'ensemble des services qu'il a souscrits.  The device of the invention overcomes this disadvantage by offering the customer the ability to access from a single chip card to all services he has subscribed.

Il réunit en effet sur une seule même carte à puce c'est à dire sur un seul et même support physique l'identifiant du client et pour chaque service qu'il a souscrit: - l'identifiant du fournisseur de service la liste des paramètres associés au service A titre d'exemple non limitatif, le dessin annexé illustre une implémentation possible de l'invention dans le cas de la souscription à 3 services: La figure 1 représente une description générale de l'invention.  It brings together on a single same smart card that is to say on one and the same physical medium the customer's identifier and for each service he has subscribed: - the identifier of the service provider the list of parameters associated with the service As a non-limiting example, the appended drawing illustrates a possible implementation of the invention in the case of the 3-service subscription: FIG. 1 represents a general description of the invention.

En référence à ce dessin, le dispositif comporte un logiciel applicatif résidant dans un microprocesseur (A) et dont le rôle est de gérer les mécanismes de contrôle d'accès et de mise en oeuvre de l'ensemble des services souscris par le client.  With reference to this drawing, the device comprises an application software residing in a microprocessor (A) and whose role is to manage the access control mechanisms and implementation of all services subscribed by the customer.

Quand le client souhaite utiliser un service (par exemple le service n 2), le logiciel applicatif consulte d'abord les données générales relatives au client stockées en zone mémoire n 0 (B). Il accède ainsi à l'identifiant du client et à l'identifiant du fournisseur de service. Il récupère par cette opération l'identifiant de la zone mémoire où sont stockées les paramètres spécifiques au service sélectionné.  When the customer wishes to use a service (for example service n 2), the application software first consults the general data relating to the client stored in memory zone n 0 (B). It thus accesses the customer identifier and the identifier of the service provider. It recovers by this operation the identifier of the memory zone where are stored the parameters specific to the selected service.

Sur la base de ces informations, le logiciel applicatif consulte les données spécifiques au service sélectionné dans la zone mémoire appropriée (par exemple la zone mémoire n 2 (D) dans notre hypothèse). Il accède ainsi aux paramètres spécifiques du service sélectionné. Grâce à ces paramètres, le logiciel applicatif peut ensuite réaliser les opérations nécessaires au contrôle d'accès spécifiques au service sélectionné et procéder ensuite à la fourniture du service sélectionné.  On the basis of this information, the application software consults the specific data of the selected service in the appropriate memory area (for example the memory area n 2 (D) in our hypothesis). It thus accesses the specific parameters of the selected service. With these parameters, the application software can then perform the operations necessary for access control specific to the selected service and then proceed to the provision of the selected service.

Afin de préserver la confidentialité des informations relatives au client d'une part et à chacun des services d'autre part, les mécanismes suivants sont prévus: - un code d'accès personnel est associé aux données générales du client (B) Ce code n'est connu que du client. Il lui permet de protéger les données qui lui sont personnelles.  In order to preserve the confidentiality of the information relating to the customer on the one hand and to each of the services on the other hand, the following mechanisms are provided: - a personal access code is associated with the general data of the customer (B) This code n is known only to the customer. It allows him to protect personal data.

un code d'accès différent est associé à la zone mémoire de données spécifiques pour chaque service (C, D, E) Ce code spécifique à chaque service n'est connu que du fournisseur de service associé. Il lui permet de s'assurer que lui seul est en mesure de modifier les paramètres associés à son service.  a different access code is associated with the specific data memory area for each service (C, D, E) This code specific to each service is known only to the associated service provider. It allows him to ensure that only he is able to modify the parameters associated with his service.

Le dispositif selon l'invention est particulièrement destiné à permettre de fournir sur une seule et même carte à puce c'est à dire sur un seul et même support physique tous les éléments nécessaires au contrôle d'accès et à la fourniture de multiples services distincts tels que le service de téléphonie mobile et le service de télévision payante.  The device according to the invention is particularly intended to provide on one and the same smart card that is to say on one and the same physical medium all the elements necessary for the access control and the provision of multiple distinct services. such as mobile phone service and pay television service.

Claims (2)

-3-REVENDICATIONS-3-CLAIMS 1) Dispositif destiné à permettre de réunir sur une seule et même carte à puce c'est à dire sur un seul et même support physique toutes les éléments nécessaires au contrôle d'accès et à la fourniture de multiples services distincts souscris par un seul client caractérisé en ce qu'il comporte un logiciel applicatif résidant dans un microprocesseur (A), une zone mémoire (B) rassemblant les données générales du client et incluant l'identifiant de chacun des fournisseurs des services souscris, une zone mémoire distincte (C, D, E, ...) pour chacun des services souscris et rassemblant les paramètres qui lui sont spécifiques, une protection des données personnelles reposant sur un code d'accès spécifique à la zone mémoire de données générales du client et connu du client seul, une protection des données spécifiques à chaque service reposant sur un code d'accès distinct associé à la zone mémoire de données spécifiques de ce service et connu du seul fournisseur de ce service.  1) Device for bringing together on a single smart card that is to say on one and the same physical medium all the elements necessary for access control and the provision of multiple distinct services subscribed by a single client characterized in that it comprises an application software resident in a microprocessor (A), a memory zone (B) gathering the general data of the client and including the identifier of each of the providers of the subscribed services, a separate memory area (C, D, E, ...) for each of the services subscribed and gathering the parameters which are specific to it, a protection of personal data based on an access code specific to the customer's general data memory area and known to the customer alone, data protection specific to each service based on a separate access code associated with the specific data memory area of that service and known only to the service provider issuer of this service. 2) Utilisation du dispositif selon la revendication 1 pour le contrôle d'accès et la fourniture de multiples services distincts tels que le service de téléphonie mobile et le service de télévision payante.  2) Use of the device according to claim 1 for the access control and the provision of multiple distinct services such as the mobile telephony service and the pay television service.
FR0400022A 2004-01-05 2004-01-05 Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them Withdrawn FR2864859A1 (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
FR0400022A FR2864859A1 (en) 2004-01-05 2004-01-05 Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
FR0400022A FR2864859A1 (en) 2004-01-05 2004-01-05 Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them

Publications (1)

Publication Number Publication Date
FR2864859A1 true FR2864859A1 (en) 2005-07-08

Family

ID=34673820

Family Applications (1)

Application Number Title Priority Date Filing Date
FR0400022A Withdrawn FR2864859A1 (en) 2004-01-05 2004-01-05 Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them

Country Status (1)

Country Link
FR (1) FR2864859A1 (en)

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0380377A1 (en) * 1989-01-25 1990-08-01 Urba 2000 Electronic IC card payment system for public transport and services
DE19522050A1 (en) * 1995-06-17 1996-12-19 Uestra Hannoversche Verkehrsbe Memory card with memory element for storing data sets
US6205553B1 (en) * 1996-07-11 2001-03-20 France Telecom Method for controlling independent secure transactions by means of a single apparatus
WO2002013021A2 (en) * 2000-08-04 2002-02-14 Sandisk Corporation Use of small electronic circuit cards with different interfaces in an electronic system
US6371377B2 (en) * 1997-12-10 2002-04-16 Fujitsu Limited Card type recording medium and access control method for card type recording medium and computer-readable recording medium having access control program for card type recording medium recorded
EP1205405A1 (en) * 1999-12-28 2002-05-15 Matsushita Electric Industrial Co., Ltd. Information recording medium, noncontact ic tag, access device, access system, life cycle management system, input/output method, and access method
US20020089890A1 (en) * 1999-06-24 2002-07-11 Heiko Fibranz Memory device and method for accessing a memory

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
EP0380377A1 (en) * 1989-01-25 1990-08-01 Urba 2000 Electronic IC card payment system for public transport and services
DE19522050A1 (en) * 1995-06-17 1996-12-19 Uestra Hannoversche Verkehrsbe Memory card with memory element for storing data sets
US6205553B1 (en) * 1996-07-11 2001-03-20 France Telecom Method for controlling independent secure transactions by means of a single apparatus
US6371377B2 (en) * 1997-12-10 2002-04-16 Fujitsu Limited Card type recording medium and access control method for card type recording medium and computer-readable recording medium having access control program for card type recording medium recorded
US20020089890A1 (en) * 1999-06-24 2002-07-11 Heiko Fibranz Memory device and method for accessing a memory
EP1205405A1 (en) * 1999-12-28 2002-05-15 Matsushita Electric Industrial Co., Ltd. Information recording medium, noncontact ic tag, access device, access system, life cycle management system, input/output method, and access method
WO2002013021A2 (en) * 2000-08-04 2002-02-14 Sandisk Corporation Use of small electronic circuit cards with different interfaces in an electronic system

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
RANKL W, EFFING W: "Handbuch der Chipkarten, Kapitel 5.1-5.7 und 7.1-7.8", 1999, HANSER VERLAG, MUNICH, VIENNA, XP002290464 *

Similar Documents

Publication Publication Date Title
AU2002312437A1 (en) Information content distribution based on privacy and/or personal information
FR2880716A1 (en) CUSTOMIZATION OF SERVICE IN A TERMINAL DEVICE
EP1804199B1 (en) Detector of disturbance peaks in the power supply of an integrated circuit
FR3076141A1 (en) PROCESS FOR PROCESSING REQUESTS AND PROXY SERVER
EP1454489A1 (en) Protocol for controlling the mode of accessing data transmitted in point-to-point or point-to-multipoint mode
EP3239954A1 (en) Method and system for providing taxi services based on the location of the user and the vehicle
FR2803160A1 (en) Digital television multiple access interface module having decoder processor inserted having identification/conditional access several areas using memory area.
FR2895631A1 (en) CONTROLLING ACCESS TO DIFFUSED SERVICES IN A TERMINAL DEVICE
FR2864859A1 (en) Chip card for allowing provision of e.g. mobile telephone service, has application software scanning general data of client stored in memory zone, and distinct memory zones, for services, collecting parameters that are specific to them
WO2016042241A1 (en) Method for administering life cycles of communication profiles
US20060085257A1 (en) A method for leveraging a company's brand
EP1049968B1 (en) System and method for managing computer applications security
CA3026230A1 (en) Terminal for establishing communications by internal broadcast of a group
FR2951301A1 (en) Data processing server for use in telecommunication network for e.g. goods delivery, has dynamic units implementing community parameter delimiting users and suppliers in which filtrations relative to request of user are performed
WO2007113409A1 (en) Method and device for managing instances of a computer application
FR2936331A1 (en) Remote accessible computer portal for use on remote server, has identification units for identifying user, and automatic modification units automatically modifying display of site with respect to parameters
KR102112395B1 (en) User data management method and system using identifier data reset
EP0997854B1 (en) Device for controlling the access in an IC card
FR2827458A1 (en) Virtual operator representing physical operator radiocommunications process having radiocommunication mechanism authenticating parameters and another physical operator establishing new authentication parameters/specific services.
FR2811505A1 (en) ONLINE AND OFFLINE DIGITAL DATA ACCESS CONTROL SYSTEM USING SOFTWARE KEY SERVER
FR2812423A1 (en) Card payment for an Internet transaction, uses code table prepared when card is manufactured with server interrogation of user who must return correct entries from the code table
BE1015630A6 (en) Binary payment card for Internet user, is separated into part forming credit card and part having computer program that offers payment system to cardholder by using single, seven and thirty one algorithms, coded phrase and hypertext link
WO2013175141A1 (en) Method and system for spatio-temporal adjustment of geolocation permissions
FR3129504A1 (en) Methods, terminal and server for managing personal data
FR2989190A1 (en) Entity for processing data stream by e.g. software as service application, for e.g. customer relationship management, in enterprise, has selection unit selecting processing rule of data stream, and providing unit providing processing rule

Legal Events

Date Code Title Description
PLFP Fee payment

Year of fee payment: 13

PLFP Fee payment

Year of fee payment: 14

PLFP Fee payment

Year of fee payment: 15

ST Notification of lapse

Effective date: 20190906