WO2014194731A1 - 虚拟用户识别数据分发方法、获取方法和设备 - Google Patents

虚拟用户识别数据分发方法、获取方法和设备 Download PDF

Info

Publication number
WO2014194731A1
WO2014194731A1 PCT/CN2014/076303 CN2014076303W WO2014194731A1 WO 2014194731 A1 WO2014194731 A1 WO 2014194731A1 CN 2014076303 W CN2014076303 W CN 2014076303W WO 2014194731 A1 WO2014194731 A1 WO 2014194731A1
Authority
WO
WIPO (PCT)
Prior art keywords
user identification
virtual user
identification data
terminal device
distribution device
Prior art date
Application number
PCT/CN2014/076303
Other languages
English (en)
French (fr)
Inventor
戎国强
李自军
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Priority to EP14790475.9A priority Critical patent/EP2861002B1/en
Priority to ES14790475.9T priority patent/ES2604183T3/es
Priority to US14/539,755 priority patent/US9485648B2/en
Publication of WO2014194731A1 publication Critical patent/WO2014194731A1/zh

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/20Transfer of user or subscriber data
    • H04W8/205Transfer to or from user equipment or user record carrier
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B5/00Near-field transmission systems, e.g. inductive or capacitive transmission systems
    • H04B5/70Near-field transmission systems, e.g. inductive or capacitive transmission systems specially adapted for specific purposes
    • H04B5/72Near-field transmission systems, e.g. inductive or capacitive transmission systems specially adapted for specific purposes for local intradevice communication
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data
    • H04W8/183Processing at user equipment or user record carrier
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/26Network addressing or numbering for mobility support
    • H04W8/265Network addressing or numbering for mobility support for initial activation of new user
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/80Services using short range communication, e.g. near-field communication [NFC], radio-frequency identification [RFID] or low energy communication

Definitions

  • the present invention relates to the field of communications technologies, and in particular, to a virtual user identification data distribution method, an acquisition method, and a device. Background technique
  • SIM Subscriber Identity Module
  • UAM User Identity Model
  • USIM US Subscriber Identity Module
  • virtual user identification data that is, there is no need to insert a physical form of the card into the mobile phone, but the data content corresponding to the user identification module (hereinafter referred to as virtual user identification data) is downloaded and saved in the mobile phone.
  • the secure storage area achieves the same effect as a physical SIM card.
  • the use of virtual user identification data does not depend on the slot reserved for the physical SIM card in the mobile phone manufacturing process, and it is more convenient to use multiple virtual user identification data in one mobile phone.
  • the prior art requires mobile terminals to have access to a communication network. However, under certain conditions, such as when crossing the operator's service area, the mobile terminal will not be able to access the communication network, and thus will not be able to access the remote database, thereby failing to download the virtual user identification data. Summary of the invention
  • the present invention provides a virtual user identification data distribution method, an acquisition method, and a device, to solve the technical problem of obtaining the required subscription relationship data of the virtual user identification data by using the terminal device when the user cannot access the operator network or the Internet. .
  • the present invention provides a virtual user identification data distribution method, the distribution device stores virtual user identification data, and the distribution device is connected to the terminal device by using a short-range communication protocol, and the method includes:
  • the distribution device transmits the subscription relationship data to the terminal device based on the short-range communication protocol.
  • the storing, by the distribution device, the virtual user identification data specifically includes: the distribution device storing the classification identifier and the service selection information corresponding to the service selection information, Determining the subscription relationship data of the virtual user identification data that matches the service selection information includes: the distribution device searching for the classification identifier corresponding to the service selection information according to the correspondence between the classification identifier and the service selection information.
  • the storing, by the distribution device, the virtual user identification data further includes: the distributing device storing the correspondence between the classification identifier and the available number segment Relationship
  • the determining, according to the service selection information, the subscription relationship data of the virtual user identification data that matches the service selection information further comprising: the distribution device according to the classification identifier and the Using the correspondence of the number segments, the available number segments corresponding to the classification identifiers are searched, and the subscription relationship data of the virtual user identification data matching the distribution number is obtained according to the available number segments.
  • the storing, by the distribution device, the virtual user identification data further includes: the distribution device storing the classification identifier, the feature information, and the management The correspondence between the program and the driver;
  • the virtual user identification data acquisition request further includes feature information of the terminal device
  • the virtual user identification data distribution method further includes: the distribution device determining, according to the classification identifier and the feature information of the terminal device, a management program and driver for matching virtual user identification data matched by a software and hardware system supported by the terminal device; and the distribution device transmitting the management program and driver of the virtual user identification data to the terminal device based on the short-range communication protocol.
  • the virtual user identification data distribution method further includes:
  • the locally stored virtual user identification data is updated based on the distribution result.
  • the virtual user identification data distribution method further includes:
  • the order relationship data is stored in a secure storage area of the distribution device in which the access authority is set.
  • the present invention provides a virtual user identification data acquisition method, the distribution device stores virtual user identification data, and the distribution device is connected to the terminal device by using a short-range communication protocol, and the method includes:
  • the terminal device sends a virtual user identification data acquisition request to the distribution device according to the short-range communication protocol, where the virtual user identification data acquisition request carries the service selection information of the virtual user identification data that needs to be acquired;
  • the virtual user identification data is obtained
  • the fetching request further includes the feature information of the terminal device, and the method for acquiring the virtual user identification data further includes:
  • the terminal device receives a management program and a driver sent by the distribution device based on the short-range communication protocol, and the management program and the driver match a software and hardware system supported by the feature information of the terminal device.
  • the virtual user identification data acquiring method further includes:
  • the management program and the driver are executed to import the subscription relationship data of the virtual user identification data into the secure storage area of the terminal device in which the access authority is set.
  • the present invention provides a distribution device that is connected to a terminal device using a short-range communication protocol, and the distribution device includes:
  • a storage unit configured to store virtual user identification data
  • a receiving unit configured to receive a virtual user identification data acquisition request sent by the terminal device according to the short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • a processing unit configured to determine, according to the service selection information, subscription relationship data of virtual user identification data that matches the service selection information
  • a sending unit configured to send the subscription relationship data to the terminal device based on the short-range communication protocol.
  • the virtual user identification data that is stored by the storage unit specifically includes: a correspondence between the classification identifier and the service selection information;
  • the processing unit is further configured to search for the classification identifier corresponding to the service selection information according to the correspondence between the classification identifier and the service selection information.
  • the virtual user identification data that is stored by the storage unit specifically includes: the classification identifier and an available number. Corresponding relationship of the segment; the processing unit is further configured to: according to the correspondence between the classification identifier and the available number segment, search for an available number segment corresponding to the classification identifier, and obtain a virtual user whose distribution number matches according to the available number segment Identify the order relationship data for the data.
  • the virtual user identification data stored by the storage unit specifically includes: the classification identifier, the feature information, and the management.
  • the virtual user identification data acquisition request further includes feature information of the terminal device
  • the processing unit is further configured to determine, according to the classification identifier and the feature information of the terminal device, a management program and driver for matching virtual user identification data supported by the hardware and software systems supported by the terminal device;
  • the processing unit is further configured to update the locally stored virtual user identification data according to the distribution result.
  • the storage unit includes: a secure storage area configured with access rights, configured to save the virtual user Identify the order relationship data for the data.
  • the present invention provides a terminal device, the distribution device stores virtual user identification data, and the distribution device is connected to the terminal device by using a short-range communication protocol, and the terminal device includes:
  • a sending unit configured to send a virtual user identification data acquisition request to the distribution device according to a short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • a receiving unit configured to receive subscription relationship data of the virtual user identification data that is matched by the distribution device according to the short-range communication protocol and that matches the service selection information.
  • the virtual user identification data acquisition request further includes feature information of the terminal device
  • the terminal device further includes:
  • the sending unit is further configured to receive, according to the short-range communication protocol, a management program and a driver sent by the distribution device, where the management program and the driver match a software and hardware system supported by the feature information of the terminal device.
  • the terminal device further includes:
  • a processing unit configured to execute the management program and the driver, and import the subscription relationship data of the virtual user identification data into a secure storage area of the terminal device that has the access authority set.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can also obtain the support without the support of the communication network.
  • the required virtual user identification data and then enable the subscription relationship data of the virtual user identification data, to achieve the purpose of accessing the operator network.
  • FIG. 1 is a flowchart of a virtual user identification data distribution method according to Embodiment 1 of the present invention
  • FIG. 1b is a structural diagram of virtual user identification data related content in a virtual user identification data distribution method according to Embodiment 1 of the present invention
  • FIG. 2 is a flowchart of a virtual user identification data distribution method according to Embodiment 2 of the present invention
  • FIG. 3 is a flowchart of a virtual user identification data distribution method according to Embodiment 3 of the present invention
  • FIG. 4 is a virtual user identification according to Embodiment 4 of the present invention
  • FIG. 5 is a flowchart of a method for acquiring virtual user identification data according to Embodiment 5 of the present invention
  • FIG. 6 is a schematic diagram of an application scenario of a method for acquiring virtual user identification data according to Embodiment 6 of the present invention
  • FIG. 7 is a structural block diagram of a distribution device according to Embodiment 7 of the present invention
  • 8 is a structural block diagram of a distribution device according to Embodiment 8 of the present invention
  • FIG. 9 is a structural block diagram of a terminal device according to Embodiment 9 of the present invention.
  • FIG. 10 is a structural block diagram of a terminal device according to Embodiment 10 of the present invention.
  • FIG. 11 is a schematic diagram of an application scenario of a distribution device and a terminal device according to Embodiment 11 of the present invention. detailed description
  • FIG. 1 is a flowchart of a virtual user identification data distribution method according to Embodiment 1 of the present invention. As shown in FIG. la, the virtual user identification data distribution method includes the following steps:
  • Step 100 The distribution device stores virtual user identification data; wherein, the distribution device and the terminal device are connected by using a short-range communication protocol;
  • Step 101 The distribution device receives, according to a short-range communication protocol, a virtual user identification data acquisition request sent by the terminal device, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • Step 102 Determine subscription relationship data of virtual user identification data that matches the service selection information according to the service selection information.
  • Step 103 The distribution device sends the subscription relationship data to the terminal device based on the short-range communication protocol.
  • the virtual user identification data includes the management program 11, the driver 13 and the subscription relationship data 15, and FIG. 1b is a structural diagram of the virtual SIM card related content in the virtual user identification data distribution method according to the first embodiment of the present invention, as shown in FIG.
  • the order relationship data 15 can be accessed through the management program 11 and the driver 13.
  • the physical user identification module can be implemented by software.
  • the specific functions can mainly include the following contents:
  • the first category is fixed-stored data. Such data can be pre-stored in ME (Mobile Equipment), including IMSI (International Mobile Subscriber Identification Number), KI (Key Identifier), etc. Temporarily stored data about the network. Such as LAK Location Area Identity, TMSKTemporary Mobile Subscriber Identity, mobile subscriber temporary identification code, public telephone network code forbidden access, etc.
  • the third category is related service codes, such as PIN (Personal Identification Number, Personal identification number), PUK (PIN Unlocking Key), billing rate, etc.
  • the fourth category is the telephone directory, which is the telephone number entered by the mobile phone user at any time.
  • the virtual user identification data itself is protected by a PIN code.
  • the PIN is a four- to eight-digit personal password. Only when the user enters the correct PIN code can the virtual user identification data be enabled, and the mobile terminal can identify the virtual user. The data is accessed, and only after the PIN authentication is passed, the user can make an online call.
  • the authentication process is performed between the network and the virtual user identification data, and the authentication time is generally when the mobile terminal registers for the network and the call.
  • the network A 128-bit RAND (Random Number) is generated and transmitted to the mobile station via the radio control channel.
  • the virtual user identification data calculates a SRES (Signed Response) response to the received RAND according to the set key KI and algorithm A3. Signal), and send the result back to the network.
  • the network side finds the user's key KI at the authentication center, calculates the SRES with the same RAND and algorithm A3, and compares it with the received SRES. If the agreement is consistent, the authentication is passed.
  • the most sensitive data in the virtual subscriber identification data are the security algorithms A3, A8, KI, ⁇ , PUK and KC (Key Cipher).
  • the A3 and A8 algorithms are written when generating virtual user identification data and cannot be read.
  • the PIN code can be set by the user on the mobile phone, the PUK code is held by the operator, and the KC is derived by the KI during the encryption process.
  • the management program 11 and the driver 13 can implement the operation and management of the user PIN, the user identity authentication, the security algorithm and the key function, and the order relationship data 15 can include user related data.
  • the virtual user identification data distribution method is specifically described as follows:
  • a large amount of virtual user identification data can be pre-stored on the distribution device. If the user needs to download the virtual user identification data, the terminal device such as a mobile phone can communicate through a short-range communication protocol such as: Bluetooth, WiFi (wireless fidelity), WiFi-Direct (Direct-connected wireless fidelity),
  • the virtual user identification data acquisition request may be sent to the distribution device.
  • the distribution device acquires the terminal carried in the request according to the virtual user identification data.
  • the service selection information of the virtual user identification data that the device wants to obtain may determine the subscription relationship data of the matched virtual user identification data.
  • the service selection information is equivalent to a filtering condition, and may represent a type of service that the user can provide by using the virtual user identification data that the terminal device desires to obtain, for example, a communication network speed, an operator, a tariff, a service area, and the like. The user who uses the terminal device selects itself on the interface of human-computer interaction.
  • the subscription relationship data for storing various virtual user identification data on the distribution device may be searched, and the subscription relationship data of the matched virtual user identification data is sent to the terminal device.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can also obtain the required virtual user identification without the support of the communication network.
  • the subscription data of the data is then enabled to enable the subscription relationship data of the virtual user identification data to achieve the purpose of accessing the operator network.
  • the virtual user identification data distribution method includes:
  • Step 200 The distribution device stores the virtual user identification data, which may include: the distribution device stores a correspondence between the classification identifier and the service selection information.
  • Step 201 The distribution device receives, according to a short-range communication protocol, a virtual user identification data acquisition request sent by the terminal device, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • Step 202 Determine, according to the service selection information, the subscription relationship data of the virtual user identification data that matches the service selection information, which may include:
  • Step 2021 The distribution device searches for a classification identifier corresponding to the service selection information according to the correspondence between the classification identifier and the service selection information. Specifically, after receiving the virtual user identification data request data of the terminal device, the distribution device may be in the virtual user as shown in Table 1 according to the received service selection information, such as: communication network speed, carrier, tariff, service area, and the like. In the identification data product table, the classification identifier of the matched virtual user identification data is searched, and the classification identifier may be classified according to the operator, the tariff situation, the communication network speed, or may be classified in other manners.
  • the storing, by the distribution device, the virtual user identification data further includes: the distribution device storing a correspondence between the classification identifier and an available number segment; and according to the service selection information, Determining the subscription relationship data of the virtual user identification data that matches the service selection information specifically includes:
  • Step 2022 The distribution device searches for an available number segment corresponding to the classification identifier according to the correspondence between the classification identifier and the available number segment, and obtains virtual user identification data that matches the distribution number according to the available number segment. Order relationship data.
  • the distribution device may search for the matching information such as the available number segment in the classification identifier and the distributable number correspondence table as shown in Table 2 according to the determined classification identifier, and then select a matching virtual user identification from the matching information.
  • the available number of the data and obtain the order relationship data corresponding to the available number.
  • the subscription relationship data of the virtual user identification data may be encrypted data using a digital certificate, and may uniquely represent a subscription relationship between the user and the service provider.
  • Virtual User Identification Data can be used in the terminal device similar to the phone number in Table 2, or in other forms.
  • the distribution device transmits the subscription relationship data of the matched virtual user identification data to the terminal device through the short-range communication protocol.
  • Step 203 The distribution device sends the subscription relationship data to the terminal device according to the short-range communication protocol.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can also obtain the required virtual user identification without the support of the communication network.
  • the subscription data of the data is then enabled to enable the subscription relationship data of the virtual user identification data to achieve the purpose of accessing the operator network.
  • FIG. 3 is a flowchart of a virtual user identification data distribution method according to Embodiment 3 of the present invention.
  • the virtual user identification data acquisition request includes service selection information, and may further include feature information of the terminal device, where the virtual user identification data distribution method includes:
  • Step 300 The distribution device stores the virtual user identification data, and specifically includes: the distribution device stores a correspondence between the classification identifier, the feature information, the management program, and the driver.
  • Step 301 The distribution device receives, according to a short-range communication protocol, a virtual user identification data acquisition request sent by the terminal device, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • Step 302 Determine subscription relationship data of the virtual user identification data that matches the service selection information according to the service selection information. If the distribution device stores the correspondence between the classification identifier and the service selection information, step 302 may specifically Includes:
  • Step 3021 The distribution device searches for a classification identifier corresponding to the service selection information according to the correspondence between the classification identifier and the service selection information.
  • the step 302 may further include: Step 3022: The distribution device searches for an available number segment corresponding to the classification identifier according to the correspondence between the classification identifier and the available number segment, and obtains virtual user identification data that matches the distribution number according to the available number segment. Order relationship data.
  • Step 303 The distribution device sends the subscription relationship data to the terminal device according to the short-range communication protocol.
  • Step 304 The distribution device determines, according to the classification identifier and the feature information of the terminal device, a management program and a driver for the virtual user identification data that matches the software and hardware system supported by the terminal device.
  • Step 305 The distribution device sends the management program and driver of the virtual user identification data to the terminal device according to the short-range communication protocol.
  • the step 303 may also be performed after the step 304 or the step 305, or the step 303 is performed simultaneously with the step 305.
  • a hypervisor and driver for various types of virtual user identification data can be pre-installed on the terminal device.
  • the management program is configured to manage virtual subscriber identity data subscription relationship data of the secure storage area on the terminal device, for example: when the terminal device includes subscription relationship data of some virtual user identification data, and the management program is executed, the user may select The subscription relationship data of the virtual user identification data used is then accessed by the driver of the virtual user identification data to access the subscription relationship data of the virtual user identification data stored on the secure storage area of the terminal device.
  • the order relationship data is saved in the secure storage area, and the programs and drivers can be saved in other areas. Only applications with specific permissions can access secure storage areas. For example: Applications with distribution rights to the subscription relationship on the distribution device can access the secure storage area, and end devices and other applications cannot access the secure storage area.
  • the feature information of the terminal device may be carried in the virtual user identification data acquisition request.
  • the hardware feature may include whether the hardware has a secure storage area, a model of the CPU, and a unique identifier of the hardware.
  • software features may include information such as the version of the software operating system.
  • the software and hardware features in the terminal device feature information may be combined to search for the classification identifier and the management program/driver as shown in Table 3.
  • a management program and driver for determining virtual user identification data matching the software and hardware systems supported by the terminal device; and then transmitting the management program, driver, and order relationship data of the matched virtual user identification data to the short-range communication protocol Terminal Equipment.
  • the location where the subscription relationship data of the virtual user identification data is stored in the distribution device may be a common storage area, or may be a secure storage area in which the access authority is set, and is stored in the secure storage area, so that the virtual user identification that allows distribution is allowed. Ordering relationship data for data is more secure.
  • the locally stored virtual user identification data is updated according to the distribution result, and the following two methods are specifically described.
  • Manner 1 update the status of the matched virtual user identification data that has been successfully distributed to the terminal device, as shown in Table 4, for example, the virtual user identification data number that has been successfully distributed is "18612345678", The status is updated to "Complete Distribution", and it can also be used for other descriptions that the distribution is not allowed to be reassigned to other terminal devices.
  • Method 2 Delete the subscription relationship data of the matched virtual user identification data that has been successfully distributed to the terminal device, as shown in Table 5, for example, assuming that the virtual user identification data is allowed to be distributed.
  • the order relationship data is stored in the secure storage area of the distribution device.
  • the virtual user identification data number that has been successfully distributed can be "18612345678", and it is directly deleted from the secure storage area of the distribution device.
  • the distribution device After updating Table 4 or Table 5, the information of the available number segments in Table 2 can be updated accordingly, and after the subscription relationship data of the matched virtual user identification data is distributed to the terminal device, the distribution device can also The distribution result is reported to the virtual user identification data server, so that the virtual user identification data server modifies the status of the distributed virtual user identification data to prepare for providing the operation service.
  • the distribution device can be based on short-range communication
  • the protocol distributes the virtual user identification data to the required terminal device, does not require the support of the communication network, and the terminal device can also obtain the subscription relationship data of the required virtual user identification data, and then enable the subscription relationship data of the virtual user identification data. Achieve access to the carrier network.
  • the distribution device stores the virtual user identification data, and the distribution device is connected to the terminal device by using a short-range communication protocol.
  • the virtual user identification data acquisition method may include the following steps:
  • Step 401 The terminal device sends a virtual user identification data acquisition request to the distribution device according to the short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • Step 402 Receive subscription relationship data of virtual user identification data that is matched by the distribution device according to the short-range communication protocol and that matches the service selection information.
  • the terminal device when the terminal device needs to download the virtual user identification data, first establish a short-distance communication with the distribution device through a short-range communication protocol, such as: Bluetooth, WiFi, WiFi-Direct, NFC, etc., and then send the virtual user identification data required by the terminal device.
  • a short-range communication protocol such as: Bluetooth, WiFi, WiFi-Direct, NFC, etc.
  • the distribution device determines the virtual user identification that matches the service selection information
  • the subscription relationship data of the matched virtual user identification data is received.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can obtain the required virtual user identification without the support of the communication network.
  • the subscription data of the data is then enabled to enable the subscription relationship data of the virtual user identification data to achieve the purpose of accessing the operator network.
  • FIG. 5 is a flowchart of a method for acquiring virtual user identification data according to Embodiment 5 of the present invention. As shown in FIG. 5, the virtual user identification data acquisition method may include the following steps:
  • Step 501 The terminal device sends a virtual user identification data acquisition request to the distribution device according to the short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • Step 502 Receive subscription relationship data of virtual user identification data that is matched by the distribution device according to the short-range communication protocol and that matches the service selection information.
  • Step 503 The terminal device receives, according to the short-range communication protocol, a management program and a driver that are sent by the distribution device, where the software and hardware systems supported by the feature information of the terminal device match;
  • the user identification data acquisition request further includes feature information of the terminal device, and the distribution device can determine a management program and a driver that match the software and hardware system supported by the terminal device according to the received feature information.
  • Step 504 Execute the management program and driver, and import the subscription relationship data of the virtual user identification data into a secure storage area of the terminal device that has the access authority set.
  • the step 502 may also be performed after the step 503 or the step 504, or the step 502 is performed simultaneously with the step 504.
  • the management program of the matched virtual user identification data may be executed.
  • Driving, the management program and the driver and the hardware and software features supported by the terminal device, for example, whether there is a secure storage area, a model of the CPU, a unique identifier of the hardware, a version of the software operating system, etc., may be pre-installed in the terminal device. of.
  • the terminal device needs to perform step 503, first notifying the distribution device of the feature information of the terminal device by using a virtual user identification data acquisition request, where the feature information includes Software features and hardware features to obtain a hypervisor and driver that matches the hardware and software features supported by the terminal device from the distribution device. among them, The distribution device may search the foregoing table 2 according to the feature information and the classification identifier, and return the management program and driver of the matched virtual user identification data to the terminal device. After receiving the management program and the driver, the terminal device executes step 504.
  • the specific usage of the management program and the driver is as follows: By executing the management program, selecting the subscription relationship data of the virtual user identification data to be used, and driving the access terminal device settings
  • the secure storage area of the access authority operates the subscription relationship data of the matched virtual user identification data stored thereon, and at this time, the terminal device can connect to the carrier network using the subscription relationship data of the virtual user identification data.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can obtain the required virtual user identification without the support of the communication network.
  • the subscription data of the data is then enabled to enable the subscription relationship data of the virtual user identification data to achieve the purpose of accessing the operator network.
  • FIG. 6 is a schematic diagram of an application scenario of a method for acquiring virtual user identification data according to Embodiment 6 of the present invention. As shown in FIG. 6, the method for acquiring the virtual user identification data specifically includes the following steps:
  • Step 600 The terminal device detects characteristic information of the local device, including hardware features and software features, for example: the hardware includes whether there is a secure storage area, a model of the CPU, a unique identifier of the hardware, and the software includes a version of the operating system.
  • the hardware includes whether there is a secure storage area, a model of the CPU, a unique identifier of the hardware, and the software includes a version of the operating system.
  • Step 601 The terminal device sends a virtual user identification data acquisition request to the distribution device, and requests to download the virtual user identification data.
  • the virtual user identification data acquisition request may carry the service selection information, and the service selection information is a filtering condition, which refers to the expectation of the service corresponding to the virtual user identification data, for example: high rate, low tariff, virtual user identification data management The type of the program, etc., which can be determined on the human-computer interaction interface according to the user's choice.
  • the virtual user identification data acquisition request may also carry the feature information such as hardware features and software features of the terminal device detected in step 600.
  • Step 602 After receiving the virtual user identification data acquisition request, the distribution device determines whether the corresponding virtuality can be provided according to the service selection information and/or the feature information therein and the contents of Table 1, Table 2, and Table 3 in the foregoing embodiment.
  • User identification data If yes, select an available virtual user identification data from Table 2, and construct the content of the returned message, including: subscription relationship data of virtual user identification data, management program, driver, wherein the latter two are optional.
  • the terminal device may also inform the distribution device through the service selection information whether the management program and the driver of the virtual user identification data have been pre-installed.
  • Step 603 The distribution device returns the requested content to the terminal device.
  • Step 604 The terminal device invokes the capability of the local operating system, installs the management program and the driver, and executes the management program to import the subscription relationship data of the virtual user identification data. If the terminal device has the hypervisor installed in advance and the driver is imported, this step only needs to import the order relationship data of the virtual user identification data.
  • Step 605 The terminal device reports the processing result to the distribution device.
  • Step 606 The distribution device updates the locally stored virtual user identification data according to the received report.
  • the status table of the virtual user identification data may be modified, such as: the status of the virtual user identification data in Table 4; the information corresponding to the available number segments in Table 2 in the table of the classification identifier and the distributable number is modified, and the virtual user identification that has been successfully distributed is identified.
  • the order relationship data of the data is deleted from the status table of the virtual user identification data as shown in Table 5.
  • Step 607 The distribution device reports the distribution result to the virtual user identification data server.
  • the virtual user identification data server modifies the status of the distributed virtual user identification data in preparation for providing operational services.
  • the distribution device can distribute the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can obtain the required virtual user identification without the support of the communication network.
  • the subscription data of the data is then enabled to enable the subscription relationship data of the virtual user identification data to achieve the purpose of accessing the operator network.
  • FIG. 7 is a structural block diagram of a distribution device according to Embodiment 7 of the present invention.
  • the distribution device and the terminal device are connected by using a short-range communication protocol.
  • the distribution device may include:
  • a storage unit 71 configured to store virtual user identification data
  • the receiving unit 72 is configured to receive, according to the short-range communication protocol, a virtual user identification data acquisition request sent by the terminal device, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • the processing unit 73 is configured to determine subscription relationship data of the virtual user identification data that matches the service selection information according to the service selection information;
  • the sending unit 74 is configured to send the subscription relationship data to the terminal device based on the short-range communication protocol.
  • the virtual user identification data may include the hypervisor 11, the driver 13, and the subscription relationship data 15.
  • the distribution device can access the subscription relationship data 15 through the management program 11 and the driver 13, and the function of the physical user identification module can be implemented.
  • the distribution device in this embodiment may be, for example, a mobile phone or a personal computer.
  • the storage unit 71 of the distribution device may pre-store a large amount of virtual user identification data. If the user needs to download the virtual user identification data, the terminal device, such as a mobile phone. After a short-range communication protocol such as: Bluetooth, WiFi, Direct Connect Wireless Fidelity WiFi-Direct, NFC, etc.
  • the virtual user identification data acquisition request may be sent to the distribution device, and the receiving unit of the distribution device
  • the processing unit 73 may determine the subscription relationship data of the matched virtual user identification data according to the service selection information carried in the virtual user identification data acquisition request, and the sending unit 74
  • the data determined by the processing unit is sent to the terminal device.
  • the service selection information is equivalent to a filtering condition, and may indicate a type of service that the user can provide by using the virtual user identification data that the terminal device desires to obtain, for example, a communication network speed, an operator, a tariff, a service area, and the like. On the interface of human-computer interaction, it is selected by the user who uses the terminal device. Choose.
  • the sending unit may distribute the subscription relationship data of the virtual user identification data determined by the processing unit to the required terminal device based on the short-range communication protocol, and the terminal device can obtain the required information without the support of the communication network.
  • the virtual user identifies the subscription relationship data of the data, and then enables the subscription relationship data of the virtual user identification to achieve the purpose of accessing the carrier network.
  • FIG. 8 is a structural block diagram of a distribution device according to Embodiment 8 of the present invention.
  • the distribution device and the terminal device are connected by using a short-range communication protocol.
  • the distribution device may include:
  • a storage unit 81 configured to store virtual user identification data
  • the receiving unit 82 is configured to receive, according to the short-range communication protocol, a virtual user identification data acquisition request sent by the terminal device, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • the processing unit 83 is configured to determine subscription relationship data of the virtual user identification data that matches the service selection information according to the service selection information;
  • the sending unit 84 is configured to send the subscription relationship data to the terminal device based on the short-range communication protocol.
  • the virtual user identification data stored by the storage unit 81 specifically includes: a correspondence between the classification identifier and the service selection information; the processing unit 83 is further configured to use the classification identifier according to the classification identifier And corresponding to the service selection information, searching for the classification identifier corresponding to the service selection information.
  • the processing unit 83 may be in accordance with the operator, the tariff, the service area, and the like included in the received service selection information, as shown in Table 1.
  • the classification identifier of the matched virtual user identification data is found, and the classification identifier may be classified according to the operator, the tariff situation, the communication network speed, or other classification manner.
  • the virtual user identification data stored by the storage unit 81 may further include: a correspondence between the classification identifier and an available number segment; the processing unit 83 is further configured to Corresponding relationship between the classification identifier and the available number segment, searching for an available number segment corresponding to the classification identifier, and acquiring subscription relationship data of the virtual subscriber identification data matching the distribution number according to the available number segment.
  • the matching information such as the available number segment is searched for, Then, the matching available information is selected from the following:
  • the virtual user can identify the data number, and obtain the subscription relationship data corresponding to the available number.
  • the order relationship data of the virtual user identification data may be encrypted data using a digital certificate or the like, and may uniquely represent a subscription relationship between the user and the service provider. This virtual subscriber identification data number can be similar to the telephone number in Table 2, or it can be in other forms.
  • the processing unit 83 passes the order relationship data to the transmitting unit 84 and transmits it to the terminal device through the short-range communication protocol.
  • the virtual user identification data stored by the storage unit 81 further includes: a correspondence between the classification identifier, the feature information, the management program, and the driver, see Table 3;
  • the virtual user identification data acquisition request further includes the feature information of the terminal device, and the processing unit 83 is further configured to determine, according to the classification identifier and the feature information of the terminal device, a software and hardware system supported by the terminal device.
  • the management program and driver of the matched virtual user identification data; the sending unit 84 is further configured to send the management program and the driver of the virtual user identification data to the terminal device based on the short-range communication protocol.
  • the processing unit 83 is further configured to update the locally stored virtual user identification data according to the distribution result, that is, the subscription relationship data of the already distributed virtual user identification data from the locally stored virtual
  • the user identification data is deleted or its status is updated, see Table 4 and Table 5.
  • the processing unit is further configured to distribute the result The data is reported to the virtual user identification server so that the virtual user identification data server modifies the status of the distributed virtual user identification data in preparation for providing operational services.
  • the storage unit 81 includes: a secure storage area for which access rights are set, and subscription relationship data for storing the virtual user identification data.
  • the sending unit may distribute the subscription relationship data of the virtual user identification data determined by the processing unit to the required terminal device based on the short-range communication protocol, and the terminal device can obtain the required information without the support of the communication network.
  • the virtual user identifies the subscription relationship data of the data, and then enables the subscription relationship data of the virtual user identification to achieve the purpose of accessing the carrier network.
  • FIG. 9 is a structural block diagram of a terminal device according to Embodiment 9 of the present invention. As shown in FIG. 9, the terminal device may include:
  • the sending unit 91 is configured to send a virtual user identification data acquisition request to the distribution device according to the short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • the receiving unit 92 is configured to receive subscription relationship data of the virtual user identification data that is matched by the distribution device according to the short-range communication protocol and matched with the service selection information.
  • the distribution device stores the virtual user identification data, and the distribution device is connected to the terminal device by using a short-range communication protocol.
  • the terminal device needs to download the subscription relationship data of the virtual user identification data, first, through the short-range communication protocol, for example, Bluetooth, WiFi.
  • the WiFi-Direct, the NFC and the distribution device establish a short-range communication, and then the sending unit 91 sends a virtual user identification data acquisition request required by the terminal device, where the virtual user identification data acquisition request carries the virtuality that the terminal device wants to acquire.
  • the service selection information of the user identification data after the distribution device determines the subscription relationship data of the virtual user identification data that matches the service selection information, the receiving unit 92 receives the subscription relationship data of the matched virtual user identification data.
  • the specific determination method of the service selection information and the subscription relationship data of the virtual user identification data may refer to the above virtual user knowledge. A related description in the embodiment of the data distribution method.
  • the embodiment of the present invention obtains the terminal device of the virtual user identification data, and the receiving unit can acquire the subscription relationship data of the required virtual user identification data from the distribution device based on the short-range communication protocol, and the terminal device can obtain the support device without the support of the communication network.
  • the subscription relationship data of the virtual user identification data is required, and then the subscription relationship data of the virtual user identification data is enabled to achieve the purpose of accessing the operator network.
  • the terminal device may include:
  • the sending unit 111 is configured to send a virtual user identification data acquisition request to the distribution device according to the short-range communication protocol, where the virtual user identification data acquisition request carries service selection information of the virtual user identification data that needs to be acquired;
  • the receiving unit 112 is configured to receive subscription relationship data of the virtual user identification data that is matched by the distribution device according to the short-range communication protocol and matched with the service selection information.
  • the virtual user identification data acquisition request of the sending unit 111 of the terminal device may further carry the feature information of the terminal device, and the receiving unit 112 is further configured to receive, according to the short-range communication protocol, the device that is sent by the distribution device.
  • the management program and the driver are matched with the software and hardware systems supported by the feature information of the terminal device.
  • the management program and the driver of the virtual user identification data may be pre-installed, and the virtual user identification data acquisition request may not carry the feature information of the terminal device. If not pre-installed, the hypervisor and driver for the virtual user identification data can be obtained from the distribution device.
  • the terminal device further includes: a security storage area 113, where the security storage area sets an access right, and is used to store the subscription relationship data of the received virtual user identification data. ;
  • the processing unit 114 is configured to execute the management program and the driver, and the virtual user identification number The subscription relationship data is imported into the secure storage area of the terminal device.
  • the receiving unit may acquire the required subscription relationship data of the virtual user identification data from the distribution device based on the short-range communication protocol, and the terminal device can also obtain the required virtual user identification data without the support of the communication network. Ordering relationship data, and then enabling the subscription relationship data of the virtual user identification data, to achieve the purpose of accessing the carrier network.
  • FIG. 11 is a schematic diagram of an application scenario of a distribution device and a terminal device according to Embodiment 11 of the present invention.
  • the processing unit of the distribution device may be implemented by a processor and a file transfer module, the sending unit and the receiving unit may be disposed in a short-range communication module, and the secure storage area may be disposed in the storage module;
  • the processing unit of the terminal device It can be realized by a processor and a file transfer module, and the sending unit and the receiving unit can be set in the short-range communication module, and the secure storage area can be set in the storage module.
  • the terminal device may include the following modules:
  • the first processor 1001 is configured to control the operation of the management program and the driver of the first memory 1002, the first file transmission module 1003, the first receiver 1004, the first transmitter 1005, and the virtual user identification data on the terminal device.
  • the function of the processing unit 114 in the foregoing terminal device embodiment may be implemented by the first processor 1001.
  • the first memory 1002 is configured to save the received virtual user identification data management program and driver, wherein there is a secure storage area 113, and the subscription relationship data of the virtual user identification data can be saved.
  • the first file transmission module 1003 receives the subscription relationship data from the distribution device through the first receiver 1004, or may also receive the virtual user identification data management program, the driver, and complete the file transmission with the distribution device.
  • the first receiver 1004 can support one or more protocols such as Bluetooth, WiFi, WiFi-Direct, and NFC.
  • the function of the receiving unit 112 in the above embodiment of the terminal device can be implemented by the first receiver 1004.
  • the first transmitter 1005 can support one or more protocols such as Bluetooth, WiFi, WiFi-Direct, and NFC.
  • the function of the transmitting unit 111 in the above embodiment of the terminal device can be implemented by the first transmitter 1005.
  • the distribution device can include the following modules:
  • the second processor 2001 is configured to control the operation of the second memory 2002, the second file transmission module 2003, the second receiver 2004, and the subscription relationship data, the management program, and the driver for distributing the virtual user identification data on the distribution device, and distributing
  • the function of the processing unit 73 of the device can be implemented by the second processor 2001.
  • the second memory 2002 is configured to store management program, drive, and order relationship data of the virtual user identification data to be transmitted.
  • the storage unit 71 of the distribution device may be disposed in the storage module 2002, and whether or not the subscription relationship data for storing the virtual user identification data is stored in the secure storage area is optional.
  • the second file transmission module 2003 obtains the subscription relationship data that needs to be sent from the second memory 2002, or acquires the virtual user identification data management program and driver at the same time, and sends the file to the terminal device through the second transmitter 2005 to complete the file with the terminal device. transmission.
  • the second receiver 2004 can support one or more protocols such as Bluetooth, WiFi, WiFi-Direct, and NFC.
  • the receiving unit 72 in the above-described dispensing device embodiment can be implemented by the second receiver 2004.
  • the second transmitter 2005 can support one or more protocols such as Bluetooth, WiFi, WiFi-Direct, and NFC.
  • the transmitting unit 74 in the above embodiment of the terminal device can be implemented by the first transmitter 2005.
  • the distribution device of the embodiment can distribute the subscription relationship data of the virtual user identification data to the required terminal device based on the short-range communication protocol, and the terminal device can also obtain the required virtual user identification data without the support of the communication network. Order the relationship data, and then enable the subscription relationship data identified by the virtual user to achieve the purpose of accessing the carrier network.
  • Meta- and algorithmic steps can be implemented in electronic hardware, or a combination of computer software and electronic hardware. Whether these functions are implemented in hardware or software depends on the specific application and design constraints of the solution. A person skilled in the art can select different methods for implementing the described functions for a particular application, but such implementation should not be considered to be beyond the scope of the present invention.
  • the function is implemented in the form of computer software and sold or used as a stand-alone product, it may be considered to some extent that all or part of the technical solution of the present invention (for example, a part contributing to the prior art) is It is embodied in the form of computer software products.
  • the computer software product is typically stored in a computer readable storage medium and includes instructions for causing a computer device (which may be a personal computer, server, or network device, etc.) to perform all or part of the steps of various embodiments of the present invention. .
  • the foregoing storage medium includes various media that can store program codes, such as a USB flash drive, a removable hard disk, a Read-Only Memory (ROM), a Random Access Memory (RAM), a magnetic disk, or an optical disk.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Databases & Information Systems (AREA)
  • Mobile Radio Communication Systems (AREA)
  • Information Transfer Between Computers (AREA)
  • Telephonic Communication Services (AREA)

Abstract

本发明公开了一种虚拟用户识别数据分发方法、获取方法和设备,其中,该分发方法包括:分发设备基于近距离通讯协议接收终端设备发送的虚拟用户识别数据获取请求,虚拟用户识别数据获取请求携带需要获取的虚拟用户识别数据的服务选择信息;根据服务选择信息,确定与服务选择信息匹配的虚拟用户识别数据的订购关系数据;分发设备基于近距离通讯协议向终端设备发送所述订购关系数据。本发明实施例可以基于近距离通讯协议由分发设备将虚拟用户识别数据的订购关系数据分发给所需的终端设备,不需要通信网络的支持,终端设备也能够获得所需的虚拟用户识别数据,然后启用该虚拟用户识别数据的订购关系数据,达到访问运营商网络的目的。

Description

虚拟用户识别数据分发方法、 获取方法和设备 本申请要求于 2013 年 6 月 5 日提交中国专利局、 申请号为 201310221077.7、 发明名称为 "虚拟用户识别数据分发方法、 获取方法和设 备" 的中国专利申请的优先权, 其全部内容通过引用结合在本申请中。
技术领域
本发明涉及通信技术领域, 具体涉及一种虚拟用户识别数据分发方法、 获取方法和设备。 背景技术
在无线通信中, 终端上都需要部署一个用户识别模块。 GSM标准称其为 客户识别模块 SIM ( Subscriber Identity Module) , CDMA标准称为用户识别 模块 UIM(User Identity Model), UMTS标准称其为全球用户识别模块 USIM (Universal Subscriber Identity Module) 。 当前, 上述用户识别模块以物理卡 片的形式存在, 终端上必须装上该卡后才能使用。
随着技术的发展, 人们又提出了虚拟用户识别数据, 即不需要在手机中 插入物理形态的卡, 而是把用户识别模块对应的数据内容(下文简称虚拟用 户识别数据) 下载、 保存在手机的安全存储区, 达到和物理 SIM卡一样的效 果。 并且, 虚拟用户识别数据的使用不依赖于手机制造过程中为物理 SIM卡 预留的插槽, 可以更方便地在一个手机中使用多个虚拟用户识别数据。现有 技术要求移动终端具有访问通信网络的能力。 然而, 在特定条件下, 例如跨 越运营商服务区的时候, 移动终端将无法访问通信网络, 因此也就无法访问 远程数据库, 从而无法下载虚拟用户识别数据。 发明内容
本发明提供一种虚拟用户识别数据分发方法、 获取方法及设备, 以解决 在用户无法访问运营商网络或者互联网的情况下,利用终端设备获得所需的 虚拟用户识别数据的订购关系数据的技术问题。
为了实现上述目的, 在第一方面, 本发明提出了一种虚拟用户识别数据 分发方法, 分发设备存储虚拟用户识别数据, 所述分发设备与终端设备采用 近距离通讯协议连接, 所述方法包括:
所述分发设备基于近距离通讯协议接收所述终端设备发送的虚拟用户 识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用 户识别数据的服务选择信息;
根据所述服务选择信息, 确定与所述服务选择信息匹配的虚拟用户识别 数据的订购关系数据;
所述分发设备基于所述近距离通讯协议向所述终端设备发送所述订购 关系数据。
结合第一方面, 在第一种可能的实施方式中, 所述分发设备存储虚拟用 户识别数据具体包括:所述分发设备存储分类标识与服务选择信息的对应关 所述根据所述服务选择信息,确定与所述服务选择信息匹配的虚拟用户 识别数据的订购关系数据具体包括:所述分发设备根据所述分类标识与服务 选择信息的对应关系, 查找所述服务选择信息对应的分类标识。
结合第一方面的第一种可能实施方式, 在第二种可能的实施方式中, 所 述分发设备存储虚拟用户识别数据具体还包括:所述分发设备存储所述分类 标识与可用号段的对应关系;
所述根据所述服务选择信息,确定与所述服务选择信息匹配的虚拟用户 识别数据的订购关系数据具体还包括:所述分发设备根据所述分类标识与可 用号段的对应关系,查找所述分类标识对应的可用号段,根据所述可用号段, 获取与分发号码匹配的虚拟用户识别数据的订购关系数据。
结合第一方面的第一或第二种可能实施方式,在第三种可能的实施方式 中, 所述分发设备存储虚拟用户识别数据具体还包括: 所述分发设备存储分 类标识、 特征信息、 管理程序和驱动的对应关系;
所述虚拟用户识别数据获取请求还包括所述终端设备的特征信息,所述 虚拟用户识别数据分发方法还包括:所述分发设备根据所述分类标识和所述 终端设备的特征信息, 确定与所述终端设备所支持的软硬件系统匹配的虚拟 用户识别数据的管理程序和驱动;所述分发设备基于所述近距离通讯协议向 所述终端设备发送所述虚拟用户识别数据的管理程序和驱动。
结合第一方面和第一方面的任一种可能的实施方式,在第四种可能的实 施方式中, 所述的虚拟用户识别数据分发方法, 还包括:
根据分发结果更新本地存储的虚拟用户识别数据。
结合第一方面和第一方面的任一种可能的实施方式,在第五种可能的实 施方式中, 所述的虚拟用户识别数据分发方法, 还包括:
将所述订购关系数据存储在分发设备的设定了访问权限的安全存储区。 在第二方面, 本发明提出了一种虚拟用户识别数据获取方法, 分发设备 存储虚拟用户识别数据, 所述分发设备与终端设备采用近距离通讯协议连 接, 所述方法包括:
所述终端设备基于近距离通讯协议向所述分发设备发送虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
接收所述分发设备基于所述近距离通讯协议返回的与所述服务选择信 息匹配的虚拟用户识别数据的订购关系数据。
结合第二方面, 在第一种可能的实施方式中, 所述虚拟用户识别数据获 取请求还包括所述终端设备的特征信息, 所述的虚拟用户识别数据获取方 法, 还包括:
所述终端设备基于所述近距离通讯协议接收所述分发设备发送的管理 程序和驱动,所述管理程序和驱动与所述终端设备的特征信息所支持的软硬 件系统匹配。
结合第二方面和第二方面的第一种可能的实施方式,在第二种可能的实 施方式中, 所述虚拟用户识别数据获取方法还包括:
执行所述管理程序和驱动,将所述虚拟用户识别数据的订购关系数据导 入所述终端设备的设定了访问权限的安全存储区。
在第三方面, 本发明提出了一种分发设备, 与终端设备采用近距离通讯 协议连接, 所述分发设备包括:
存储单元, 用于存储虚拟用户识别数据;
接收单元,用于基于近距离通讯协议接收终端设备发送的虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
处理单元, 用于根据所述服务选择信息, 确定与所述服务选择信息匹配 的虚拟用户识别数据的订购关系数据;
发送单元,用于基于所述近距离通讯协议向所述终端设备发送所述订购 关系数据。
结合第三方面, 在第一种可能的实施方式中, 所述存储单元存储的虚拟 用户识别数据具体包括: 分类标识与服务选择信息的对应关系;
所述处理单元还用于根据所述分类标识与服务选择信息的对应关系, 查 找所述服务选择信息对应的分类标识。
结合第三方面的第一种可能的实施方式, 在第二种可能的实施方式中, 所述存储单元存储的虚拟用户识别数据具体还包括:所述分类标识与可用号 段的对应关系; 所述处理单元还用于根据所述分类标识与可用号段的对应关 系, 查找所述分类标识对应的可用号段, 根据所述可用号段, 获取分发号码 匹配的虚拟用户识别数据的订购关系数据。
结合第三方面的第一种或第二种可能的实施方式,在第三种可能的实施 方式中,所述存储单元存储的虚拟用户识别数据具体还包括:所述分类标识、 特征信息、 管理程序和驱动的对应关系; 所述虚拟用户识别数据获取请求还 包括所述终端设备的特征信息,所述处理单元还用于根据所述分类标识和所 述终端设备的特征信息, 确定与所述终端设备所支持的软硬件系统匹配的虚 拟用户识别数据的管理程序和驱动;
结合第三方面和第三方面的任一种可能的实施方式,在第四种可能的实 施方式中,所述处理单元还用于根据分发结果更新本地存储的虚拟用户识别 数据。
结合第三方面和第三方面的任一种可能的实施方式,在第五种可能的实 施方式中, 所述存储单元包括: 设定了访问权限的安全存储区, 用于保存所 述虚拟用户识别数据的订购关系数据。
在第四方面, 本发明提出了一种终端设备, 分发设备存储虚拟用户识别 数据, 所述分发设备与终端设备采用近距离通讯协议连接, 所述终端设备包 括:
发送单元,用于基于近距离通讯协议向所述分发设备发送虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
接收单元,用于接收所述分发设备基于所述近距离通讯协议返回的与所 述服务选择信息匹配的虚拟用户识别数据的订购关系数据。
结合第四方面, 在第一种可能的实施方式中, 所述虚拟用户识别数据获 取请求还包括所述终端设备的特征信息, 所述的终端设备还包括: 所述发送单元还用于基于所述近距离通讯协议接收所述分发设备发送 的管理程序和驱动,所述管理程序和驱动与所述终端设备的特征信息所支持 的软硬件系统匹配。
结合第四方面和第四方面的第一种可能的实施方式中,在第二种可能的 实施方式中, 所述终端设备还包括:
处理单元, 用于执行所述管理程序和驱动, 将所述虚拟用户识别数据的 订购关系数据导入所述终端设备的设定了访问权限的安全存储区。
本发明实施例的虚拟用户识别数据分发方法、 获取方法及设备, 分发设 备可以基于近距离通讯协议将虚拟用户识别数据分发给所需的终端设备, 不 需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据, 然后 启用该虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。 附图说明
包含在说明书中并且构成说明书的一部分的说明书附图与说明书一起 示出了本发明的示例性实施例、 特征和方面, 并且用于解释本发明的原理。
图 l a为本发明实施例一的虚拟用户识别数据分发方法的流程图; 图 lb为本发明实施例一的虚拟用户识别数据分发方法中虚拟用户识别 数据相关内容的结构图;
图 2为本发明实施例二的虚拟用户识别数据分发方法的流程图; 图 3为本发明实施例三的虚拟用户识别数据分发方法的流程图; 图 4为本发明实施例四的虚拟用户识别数据获取方法的流程图; 图 5为本发明实施例五的虚拟用户识别数据获取方法的流程图; 图 6为本发明实施例六的虚拟用户识别数据获取方法的应用场景示意 图;
图 7为本发明实施例七的分发设备的结构框图; 图 8为本发明实施例八的分发设备的结构框图;
图 9为本发明实施例九的终端设备的结构框图;
图 10为本发明实施例十的终端设备的结构框图;
图 11为本发明实施例十一的分发设备和终端设备应用场景的示意图。 具体实施方式
以下将参考附图详细说明本发明的各种示例性实施例、 特征和方面。 附 图中相同的附图标记表示功能相同或相似的元件。尽管在附图中示出了实施 例的各种方面, 但是除非特别指出, 不必按比例绘制附图。
在这里专用的词"示例性 "意为 "用作例子、 实施例或说明性"。 这里作为
"示例性"所说明的任何实施例不必解释为优于或好于其它实施例。
另外, 为了更好的说明本发明, 在下文的具体实施方式中给出了众多的 具体细节。 本领域技术人员应当理解, 没有这些具体细节, 本发明同样可以 实施。 在另外一些实例中, 对于大家熟知的方法、 手段、 元件和电路未作详 细描述, 以便于凸显本发明的主旨。
实施例一
图 la为本发明实施例一的虚拟用户识别数据分发方法的流程图。 如图 la 所示, 该虚拟用户识别数据分发方法包括以下歩骤:
歩骤 100、 分发设备存储虚拟用户识别数据; 其中, 分发设备与终端设 备采用近距离通讯协议连接;
歩骤 101、 所述分发设备基于近距离通讯协议接收所述终端设备发送的 虚拟用户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取 的虚拟用户识别数据的服务选择信息;
歩骤 102、 根据所述服务选择信息, 确定与所述服务选择信息匹配的虚 拟用户识别数据的订购关系数据; 歩骤 103、 所述分发设备基于所述近距离通讯协议向所述终端设备发送 所述订购关系数据。
其中, 虚拟用户识别数据包括管理程序 11、 驱动 13和订购关系数据 15, 图 lb为本发明实施例一的虚拟用户识别数据分发方法中虚拟 SIM卡相关内容 的结构图,如图 lb所示,通过管理程序 11、驱动 13可以访问订购关系数据 15, 可以通过软件实现物理用户识别模块所有功能, 具体功能主要可以包括以下 内容:
( 1 ) 用户相关数据
虚拟用户识别数据的用户相关数据可分为四类:第一类是固定存放的数 据。这类数据在 ME (Mobile Equipment,移动设备)可以预先存储,包括 IMSI (International Mobile Subscriber Identification Number, 国际移动用户识另 ij 号)、 KI (Key Identifier, 鉴权密钥)等; 第二类是暂时存放的有关网络的数 据。如 LAK Location Area Identity,位置区域识别码)、 TMSKTemporary Mobile Subscriber Identity, 移动用户暂时识别码)、 禁止接入的公共电话网代码等; 第三类是相关的业务代码, 如 PIN (Personal Identification Number, 个人识别 码)、 PUK (PIN Unlocking Key, 解锁码)、 计费费率等; 第四类是电话号码 簿, 是手机用户随时输入的电话号码。
(2 ) 用户 PIN的操作和管理
虚拟用户识别数据本身是通过 PIN码来保护的, PIN是一个四位到八位的 个人密码, 只有当用户输入正确的 PIN码时, 虚拟用户识别数据才能被启用, 移动终端才能对虚拟用户识别数据进行存取, 也只有 PIN认证通过后, 用户 才能上网通话。
(3 ) 用户身份鉴权
确认用户身份是否合法, 鉴权过程是在网络和虚拟用户识别数据之间进 行的, 而鉴权时间一般是在移动终端登记入网和呼叫时。 鉴权开始时, 网络 产生一个 128比特的 RAND (Random Number, 随机数), 经无线电控制信道 传送到移动台,虚拟用户识别数据依据设置的密钥 KI和算法 A3 ,对接收到的 RAND计算出 SRES ( Signed Response, 应答信号), 并将结果发回网络端。 而网络端在鉴权中心查明该用户的密钥 KI, 用同样的 RAND和算法 A3算出 SRES, 并与收到的 SRES进行比较, 如一致, 鉴权通过。
(4) 保密算法及密钥
虚拟用户识别数据中最敏感的数据是保密算法 A3、 A8、 密钥 KI、 ΡΙΝ、 PUK和 KC (Key Cipher, 密码密钥)。 A3、 A8算法是在生成虚拟用户识别数 据时写入的, 无法读出。 PIN码可由用户在手机上自己设定, PUK码由运营 者持有, KC是在加密过程中由 KI导出的。
其中, 管理程序 11、 驱动 13可以实现用户 PIN的操作和管理、 用户身份 鉴权、 保密算法及密钥的功能, 订购关系数据 15可以包括用户相关数据。
该虚拟用户识别数据分发方法具体描述如下:
分发设备上可以预先存储大量的虚拟用户识别数据,如果用户需要下载 虚拟用户识别数据, 可以通过终端设备例如手机通过近距离通讯协议例如: 蓝牙、 WiFi (wireless fidelity, 无线保真)、 WiFi-Direct (直连式无线保真)、
NFC与分发设备建立近距离通讯后, 可以向分发设备发送虚拟用户识别数据 获取请求, 该分发设备收到终端设备发送的虚拟用户识别数据获取请求后, 根据虚拟用户识别数据获取请求中携带的终端设备想要获取的虚拟用户识 别数据的服务选择信息可以确定匹配的虚拟用户识别数据的订购关系数据。 其中, 服务选择信息相当于一种过滤条件, 可以表示用户通过终端设备期望 获取的虚拟用户识别数据所能提供服务的类型, 例如: 通信网络速度、 运营 商、 资费、 服务区域等, 这些期望可以在人机交互的界面上由使用终端设备 的用户自己选择。
在分发设备收到虚拟用户识别数据获取请求之后, 根据服务选择信息, 可以查找分发设备上存储各种虚拟用户识别数据的订购关系数据,将匹配的 虚拟用户识别数据的订购关系数据发送给终端设备。
本实施例的虚拟用户识别数据分发方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例二
图 2为本发明实施例二的虚拟用户识别数据分发方法的流程图。如图 2所 示, 该虚拟用户识别数据分发方法包括:
歩骤 200、 分发设备存储虚拟用户识别数据, 具体可以包括: 所述分发 设备存储分类标识与服务选择信息的对应关系。
歩骤 201、 所述分发设备基于近距离通讯协议接收所述终端设备发送的 虚拟用户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取 的虚拟用户识别数据的服务选择信息;
歩骤 202、 根据所述服务选择信息, 确定与所述服务选择信息匹配的虚 拟用户识别数据的订购关系数据具体可以包括:
歩骤 2021、 所述分发设备根据所述分类标识与服务选择信息的对应关 系, 查找所述服务选择信息对应的分类标识。 具体地, 分发设备收到终端设 备的虚拟用户识别数据请求数据后, 根据接收到的服务选择信息例如: 通信 网络速度、 运营商、 资费、 服务区域等, 可以在如表 1所示的虚拟用户识别 数据产品表中, 查找匹配的虚拟用户识别数据的分类标识, 分类标识可以按 照运营商、 资费情况、 通信网络速度进行分类, 也可以按其他方式分类。
表 1虚拟用户识别数据产品表
分类标识 运营商 资费 ($/M) 服务区域 P0001 Vodafone 1 英国、 法国
P0002 CMCC 1 中国
P0003 CMCC 0.5 中国
P0004 Vodafone 2 意大利
进一歩地, 在本发明另一实施例中, 所述分发设备存储虚拟用户识别数 据具体还包括: 所述分发设备存储所述分类标识与可用号段的对应关系; 根 据所述服务选择信息, 确定与所述服务选择信息匹配的虚拟用户识别数据的 订购关系数据具体还包括:
歩骤 2022、 所述分发设备根据所述分类标识与可用号段的对应关系, 查 找所述分类标识对应的可用号段, 根据所述可用号段, 获取与分发号码匹配 的虚拟用户识别数据的订购关系数据。
具体地, 分发设备可以根据所确定的分类标识在如表 2所示的分类标识 与可分发号码对应表中, 查找例如: 可用号段之类的匹配信息, 然后从中选 择一个匹配的虚拟用户识别数据的可用号码, 并获取该可用号码对应的订购 关系数据。 其中, 虚拟用户识别数据的订购关系数据可以为使用了数字证书 等加密的数据, 可以唯一代表用户与服务提供者的一个订购关系。虚拟用户 识别数据在终端设备上使用过程中可以类似于表 2中的电话号码, 也可以采 用其他的表现形式。 最后, 分发设备将匹配的虚拟用户识别数据的订购关系 数据通过近距离通讯协议发送给终端设备。
表 2分类标识与可分发号码对应表
分类标识 起始号码 结束号码
P0001 186123XXXXX 186200XXXXX
P0001 186300XXXXX 186400XXXXX
P0002 236300XXXXX 236400XXXXX P0003 536300XXXXX 536400XXXXX
P0004 636300XXXXX 636400XXXXX 歩骤 203、 所述分发设备基于所述近距离通讯协议向所述终端设备发送 所述订购关系数据。
本实施例的虚拟用户识别数据分发方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例三
图 3为本发明实施例三的虚拟用户识别数据分发方法的流程图。如图 3所 示, 所述虚拟用户识别数据获取请求包括服务选择信息, 还可以包括所述终 端设备的特征信息, 该虚拟用户识别数据分发方法包括:
歩骤 300、 分发设备存储虚拟用户识别数据, 具体可以包括: 所述分发 设备存储分类标识、 特征信息、 管理程序和驱动的对应关系。
歩骤 301、 所述分发设备基于近距离通讯协议接收所述终端设备发送的 虚拟用户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取 的虚拟用户识别数据的服务选择信息;
歩骤 302、 根据所述服务选择信息, 确定与所述服务选择信息匹配的虚 拟用户识别数据的订购关系数据; 其中, 如果分发设备存储分类标识与服务 选择信息的对应关系, 歩骤 302具体可以包括:
歩骤 3021、 所述分发设备根据所述分类标识与服务选择信息的对应关 系, 查找所述服务选择信息对应的分类标识。
如果分发设备存储所述分类标识与可用号段的对应关系, 歩骤 302具体 还可以包括: 歩骤 3022、 所述分发设备根据所述分类标识与可用号段的对应关系, 查 找所述分类标识对应的可用号段, 根据所述可用号段, 获取与分发号码匹配 的虚拟用户识别数据的订购关系数据。
歩骤 303、 所述分发设备基于所述近距离通讯协议向所述终端设备发送 所述订购关系数据。
歩骤 304、所述分发设备根据所述分类标识和所述终端设备的特征信息, 确定与所述终端设备所支持的软硬件系统匹配的虚拟用户识别数据的管理 程序和驱动。
歩骤 305、 所述分发设备基于所述近距离通讯协议向所述终端设备发送 所述虚拟用户识别数据的管理程序和驱动。
其中, 歩骤 303也可以在歩骤 304或歩骤 305之后执行, 或者歩骤 303与歩 骤 305同时执行。
终端设备上可以预先安装各种类型的虚拟用户识别数据的管理程序和 驱动。 其中, 管理程序用于管理终端设备上安全存储区的虚拟用户识别数据 订购关系数据, 例如: 当终端设备上已经包括某些虚拟用户识别数据的订购 关系数据, 执行管理程序, 用户可以选择想要使用的虚拟用户识别数据的订 购关系数据,然后通过该虚拟用户识别数据的驱动访问存储在终端设备安全 存储区上的虚拟用户识别数据的订购关系数据。 其中, 订购关系数据保存在 安全存储区, 程序和驱动可以保存在其他区域。 只有具有特定权限的应用才 能访问安全存储区例如: 分发设备上具有订购关系分发权限的应用能够访问 安全存储区, 终端设备和其他应用不能访问安全存储区。
如果终端设备上没有预先安装某一种类型的虚拟用户识别数据管理程 序和驱动, 也可以从分发设备上下载。 这种情况下, 可以在虚拟用户识别数 据获取请求中携带所述终端设备的特征信息例如硬件特征、 软件特征等。 其 中, 硬件特征可以包括硬件是否有安全存储区、 CPU的型号、 硬件唯一标识 等信息, 软件特征可以包括软件操作系统版本等信息。
具体地, 在根据表 1内容确定了分类标识后, 如果需要下载管理程序和 驱动, 则可以结合终端设备特征信息中的软硬件特征, 查找如表 3所示的分 类标识与管理程序 /驱动对照表,确定与所述终端设备所支持的软硬件系统匹 配的虚拟用户识别数据的管理程序和驱动; 然后将匹配的虚拟用户识别数据 的管理程序、 驱动、 订购关系数据通过近距离通讯协议发送给终端设备。
表 3分类标识与管理程序 /驱动对照表
Figure imgf000016_0001
其中,虚拟用户识别数据的订购关系数据在分发设备中存储的位置可以 为普通存储区,也可以为设定了访问权限的安全存储区,存放在安全存储区, 可以使得允许分发的虚拟用户识别数据的订购关系数据更安全。
进一歩地,在将匹配的虚拟用户识别数据的订购关系数据分发给终端设 备之后, 根据分发结果更新本地存储的虚拟用户识别数据, 具体有如下两种 方式。
方式一:将已成功分发给所述终端设备的所述匹配的虚拟用户识别数据 的状态进行更新, 如表 4所示, 例如, 已经成功分发的虚拟用户识别数据号 码为 " 18612345678 ", 将其状态更新为 "完成分发", 也可以为其他表示分 发完成不允许再分配给其他终端设备使用的描述。
表 4虚拟用户识别数据的状态表 虚拟用户识别数据标识
状态 硬件标识 用户标识 余额($) (号码)
18612345678 完成分发 111XXXXX Userl 0
18612345679 正常使用 222YYYYYYY User2 100
63630020000 余额不足 236400XXXXX User2 0
63630020034 正常使用 3456zzzzzzz User3 200 方式二:将已成功分发给所述终端设备的所述匹配的虚拟用户识别数据 的订购关系数据删除, 如表 5所示, 例如, 假设允许分发的虚拟用户识别数 据的订购关系数据存放在分发设备的安全存储区,可以将已经成功分发的虚 拟用户识别数据号码为 " 18612345678", 直接将其从分发设备的安全存储区 删除。
表 5虚拟用户识别数据的状态表
Figure imgf000017_0001
更新表 4或表 5后, 还可以相应的更新表 2中的可用号段的信息 再进一歩地,在将匹配的虚拟用户识别数据的订购关系数据分发给终端 设备之后, 分发设备还可以将分发结果上报给虚拟用户识别数据服务器, 以 便虚拟用户识别数据服务器修改已分发的虚拟用户识别数据的状态, 为提供 运营服务做准备。
本实施例的虚拟用户识别数据分发方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例四
图 4为本发明实施例四的虚拟用户识别数据获取方法的流程图。 分发设 备存储虚拟用户识别数据,所述分发设备与终端设备采用近距离通讯协议连 接, 如图 4所示, 该虚拟用户识别数据获取方法可以包括以下歩骤:
歩骤 401、 所述终端设备基于近距离通讯协议向所述分发设备发送虚拟 用户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚 拟用户识别数据的服务选择信息;
歩骤 402、 接收所述分发设备基于所述近距离通讯协议返回的与所述服 务选择信息匹配的虚拟用户识别数据的订购关系数据。
具体地, 终端设备需要下载虚拟用户识别数据时, 首先通过近距离通讯 协议例如: 蓝牙、 WiFi、 WiFi-Direct、 NFC等与分发设备建立近距离通讯, 然后发送终端设备所需要的虚拟用户识别数据获取请求给分发设备,在所述 虚拟用户识别数据获取请求中会携带终端设备想要获取的虚拟用户识别数 据的服务选择信息; 待所述分发设备确定与所述服务选择信息匹配的虚拟用 户识别数据的订购关系数据后,接收所述匹配的虚拟用户识别数据的订购关 系数据。 其中, 服务选择信息以及虚拟用户识别数据的订购关系数据的具体 确定方法可以参照上述虚拟用户识别数据分发方法实施例中的相关描述。
本实施例的虚拟用户识别数据获取方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例五 图 5为本发明实施例五的虚拟用户识别数据获取方法的流程图。如图 5所 示, 虚拟用户识别数据获取方法可以包括以下歩骤:
歩骤 501、 所述终端设备基于近距离通讯协议向所述分发设备发送虚拟 用户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚 拟用户识别数据的服务选择信息;
歩骤 502、 接收所述分发设备基于所述近距离通讯协议返回的与所述服 务选择信息匹配的虚拟用户识别数据的订购关系数据;
歩骤 503、 所述终端设备基于所述近距离通讯协议接收所述分发设备发 送的管理程序和驱动,所述与所述终端设备的特征信息所支持的软硬件系统 匹配; 其中, 所述虚拟用户识别数据获取请求还包括所述终端设备的特征信 息,分发设备根据收到的特征信息可以确定与终端设备所支持的软硬件系统 匹配的管理程序和驱动。
歩骤 504、 执行所述管理程序和驱动, 将所述虚拟用户识别数据的订购 关系数据导入所述终端设备的设定了访问权限的安全存储区。
其中, 歩骤 502也可以在歩骤 503或歩骤 504之后执行, 或者歩骤 502与歩 骤 504同时执行。
具体地, 终端设备通过近距离通讯协议从分发设备获取到匹配的虚拟用 户识别数据后, 如果用户需要使用虚拟用户识别数据的订购关系数据, 可以 执行所述匹配的虚拟用户识别数据的管理程序和驱动,所述管理程序和驱动 与所述终端设备所支持的软硬件特征例如:是否有安全存储区、 CPU的型号、 硬件唯一标识、软件操作系统版本等匹配,可以是预先安装在终端设备中的。 如果没有预先安装匹配的虚拟用户识别数据的管理程序和驱动, 则终端设备 需要执行歩骤 503, 先通过虚拟用户识别数据获取请求将所述终端设备的特 征信息告知分发设备, 其中, 特征信息包括软件特征和硬件特征, 以从分发 设备上获取与终端设备所支持的软硬件特征匹配的管理程序和驱动。 其中, 分发设备可根据特征信息和分类标识查找上述表 2, 将匹配的虚拟用户识别 数据的管理程序和驱动返回给终端设备, 终端设备接收到所述管理程序和驱 动后, 再执行歩骤 504。
其中,需要使用虚拟用户识别数据的订购关系数据时,所述管理程序和驱 动的具体用法如下: 通过执行管理程序, 选择需要使用的虚拟用户识别数据 的订购关系数据, 通过驱动访问终端设备的设置了访问权限的安全存储区, 操作存储在其上的匹配的虚拟用户识别数据的订购关系数据, 此时, 终端设 备可以使用此虚拟用户识别数据的订购关系数据连接运营商网络。
本实施例的虚拟用户识别数据获取方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例六
图 6为本发明实施例六的虚拟用户识别数据获取方法的应用场景示意 图。 如图 6所示, 该虚拟用户识别数据获取方法具体包括以下歩骤:
歩骤 600、 终端设备检测本机的特征信息, 包括硬件特征和软件特征, 例如: 硬件包括是否有安全存储区、 CPU的型号、 硬件唯一标识, 软件包括 操作系统的版本等。
歩骤 601、 终端设备向分发设备发送虚拟用户识别数据获取请求, 要求 下载虚拟用户识别数据。虚拟用户识别数据获取请求中可以携带服务选择信 息, 服务选择信息是一种过滤条件, 指的是对虚拟用户识别数据所对应服务 的期望, 例如: 高速率的、 低资费、 虚拟用户识别数据管理程序的类型等, 这些条件可在人机交互界面上根据用户的选择确定。虚拟用户识别数据获取 请求也可以携带歩骤 600检测到的终端设备的硬件特征、 软件特征等特征信 息。 歩骤 602、 分发设备接到虚拟用户识别数据获取请求后, 根据其中的服 务选择信息和 /或特征信息以及上述实施例中表 1、 表 2、 表 3的内容, 判断是 否可以提供相应的虚拟用户识别数据。 如果是, 则从表 2中选择一个可用的 虚拟用户识别数据, 并构造返回消息的内容, 包括: 虚拟用户识别数据的订 购关系数据、 管理程序、 驱动, 其中后两项是可选的, 在歩骤 601中, 终端 设备通过服务选择信息也可以告诉分发设备, 其是否已经预先安装了虚拟用 户识别数据的管理程序和驱动。
歩骤 603、 分发设备向终端设备返回所请求的内容。
歩骤 604、 终端设备调用本机操作系统的能力, 安装管理程序和驱动, 执行管理程序导入虚拟用户识别数据的订购关系数据。如果终端设备预先安 装了管理程序和导入了驱动, 则本歩骤只需导入虚拟用户识别数据的订购关 系数据。
歩骤 605、 终端设备把处理结果报告给分发设备。
歩骤 606、 分发设备根据接收的报告, 更新本地存储的虚拟用户识别数 据。 其中, 可以修改虚拟用户识别数据的状态表如: 表 4中虚拟用户识别数 据的状态; 修改分类标识与可分发号码对应表如表 2中可用号段的信息, 将 已经分发成功的虚拟用户识别数据的订购关系数据, 从虚拟用户识别数据的 状态表如: 表 5中删除。
歩骤 607、 分发设备向虚拟用户识别数据服务器报告分发结果。 虚拟用 户识别数据服务器修改已分发虚拟用户识别数据的状态, 为提供运营服务做 准备。
本实施例的虚拟用户识别数据获取方法, 分发设备可以基于近距离通讯 协议将虚拟用户识别数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该 虚拟用户识别数据的订购关系数据, 达到访问运营商网络的目的。 实施例七
图 7为本发明实施例七的分发设备的结构框图。 所述分发设备与终端设 备采用近距离通讯协议连接, 如图 7所示, 该分发设备可以包括:
存储单元 71, 用于存储虚拟用户识别数据;
接收单元 72,用于基于近距离通讯协议接收终端设备发送的虚拟用户识 别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户 识别数据的服务选择信息;
处理单元 73, 用于根据所述服务选择信息, 确定与所述服务选择信息匹 配的虚拟用户识别数据的订购关系数据;
发送单元 74,用于基于所述近距离通讯协议向所述终端设备发送所述订 购关系数据。
本实施例中, 参见图 lb, 虚拟用户识别数据可以包括管理程序 11、 驱动 13和订购关系数据 15。 分发设备通过管理程序 11、 驱动 13可以访问订购关系 数据 15, 可以实现物理用户识别模块的功能。 本实施例中的分发设备, 例如 可以是手机, 也可以个人电脑, 分发设备的存储单元 71上可以预先存储大量 的虚拟用户识别数据, 如果用户需要下载虚拟用户识别数据, 可以通过终端 设备例如手机通过近距离通讯协议例如: 蓝牙、 WiFi、 直连式无线保真 WiFi-Direct, NFC等与分发设备建立近距离通讯后, 可以向分发设备发送虚 拟用户识别数据获取请求, 该分发设备的接收单元 72接收到终端设备发送的 虚拟用户识别数据获取请求后, 可以由处理单元 73根据虚拟用户识别数据获 取请求中携带的服务选择信息确定匹配的虚拟用户识别数据的订购关系数 据, 由发送单元 74将处理单元确定的数据发送给终端设备。 其中, 服务选择 信息相当于一种过滤条件,可以表示用户通过终端设备期望获取的虚拟用户 识别数据所能提供服务的类型, 例如: 通信网络速度、 运营商、 资费、 服务 区域等, 这些期望可以在人机交互的界面上由使用终端设备的用户自己选 择。
本实施例的分发设备,发送单元可以基于近距离通讯协议将处理单元确 定的虚拟用户识别数据的订购关系数据分发给所需的终端设备, 不需要通信 网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数 据,然后启用该虚拟用户识别的订购关系数据,达到访问运营商网络的目的。
实施例八
图 8为本发明实施例八的分发设备的结构框图。 所述分发设备与终端设 备采用近距离通讯协议连接, 如图 8所示, 该分发设备可以包括:
存储单元 81, 用于存储虚拟用户识别数据;
接收单元 82,用于基于近距离通讯协议接收终端设备发送的虚拟用户识 别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户 识别数据的服务选择信息;
处理单元 83, 用于根据所述服务选择信息, 确定与所述服务选择信息匹 配的虚拟用户识别数据的订购关系数据;
发送单元 84,用于基于所述近距离通讯协议向所述终端设备发送所述订 购关系数据。
进一歩地, 在一种可能的实现方式中, 所述存储单元 81存储的虚拟用户 识别数据具体包括: 分类标识与服务选择信息的对应关系; 所述处理单元 83 还用于根据所述分类标识与服务选择信息的对应关系, 查找所述服务选择信 息对应的分类标识。
具体地, 参见表 1, 接收单元 82接收到终端设备发送的虚拟用户识别数 据请求数据后,处理单元 83根据接收到的服务选择信息包括的运营商、资费、 服务区等, 可以在如表 1所示的虚拟用户识别数据产品表中, 查找到匹配的 虚拟用户识别数据的分类标识, 分类标识可以按照运营商、 资费情况、 通信 网络速度进行分类, 也可以为其他分类方式。 进一歩地, 在一种可能的实现方式中, 所述存储单元 81存储的虚拟用户 识别数据具体还可以包括: 所述分类标识与可用号段的对应关系; 所述处理 单元 83还用于根据所述分类标识与可用号段的对应关系,查找所述分类标识 对应的可用号段, 根据所述可用号段, 获取分发号码匹配的虚拟用户识别数 据的订购关系数据。
具体地, 处理单元 83查找到的匹配的分类标识后, 根据所得到的分类标 识, 如表 2所示的分类标识与可分发号码对应表中, 查找例如: 可用号段之 类的匹配信息, 然后从中选择匹配的可用信息例如: 可用虚拟用户识别数据 号码, 并获取该可用号码对应的订购关系数据。虚拟用户识别数据的订购关 系数据可以为使用了数字证书等加密的数据, 可以唯一代表用户与服务提供 者的一个订购关系。 这个虚拟用户识别数据号码可以类似于表 2中的电话号 码, 也可以采用其他的表现形式。 最后, 处理单元 83将订购关系数据交给发 送单元 84通过近距离通讯协议发送给终端设备。
进一歩地, 在一种可能的实现方式中, 所述存储单元 81存储的虚拟用户 识别数据具体还包括: 所述分类标识、 特征信息、 管理程序和驱动的对应关 系, 参见表 3 ; 所述虚拟用户识别数据获取请求还包括所述终端设备的特征 信息, 所述处理单元 83还用于根据所述分类标识和所述终端设备的特征信 息,确定与所述终端设备所支持的软硬件系统匹配的虚拟用户识别数据的管 理程序和驱动; 所述发送单元 84还用于基于所述近距离通讯协议向所述终端 设备发送所述虚拟用户识别数据的管理程序和驱动。
进一歩地, 在一种可能的实现方式中, 所述处理单元 83还用于根据分发 结果更新本地存储的虚拟用户识别数据, 即将已经分发的虚拟用户识别数据 的订购关系数据从本地存储的虚拟用户识别数据中删除或者将其状态更新, 参见表 4和表 5。
进一歩地, 在一种可能的实现方式中, 所述处理单元还用于将分发结果 上报给虚拟用户识别数据服务器, 以便虚拟用户识别数据服务器修改已分发 的虚拟用户识别数据的状态, 为提供运营服务做准备。
更进一歩地, 在一种可能的实现方式中, 所述存储单元 81包括: 设定了 访问权限的安全存储区, 用于保存所述虚拟用户识别数据的订购关系数据。
本实施例的分发设备,发送单元可以基于近距离通讯协议将处理单元确 定的虚拟用户识别数据的订购关系数据分发给所需的终端设备, 不需要通信 网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购关系数 据,然后启用该虚拟用户识别的订购关系数据,达到访问运营商网络的目的。
实施例九
图 9为本发明实施例九的终端设备的结构框图。 如图 9所示, 该终端设备 可以包括:
发送单元 91,用于基于近距离通讯协议向所述分发设备发送虚拟用户识 别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户 识别数据的服务选择信息;
接收单元 92,用于接收所述分发设备基于所述近距离通讯协议返回的与 所述服务选择信息匹配的虚拟用户识别数据的订购关系数据。
具体地, 分发设备存储虚拟用户识别数据, 所述分发设备与终端设备采 用近距离通讯协议连接, 终端设备需要下载虚拟用户识别数据的订购关系数 据时, 首先通过近距离通讯协议例如: 蓝牙、 WiFi、 WiFi-Direct、 NFC与分 发设备建立近距离通讯, 然后发送单元 91发送终端设备所需要的虚拟用户识 别数据获取请求,在所述虚拟用户识别数据获取请求中会携带终端设备想要 获取的虚拟用户识别数据的服务选择信息; 待所述分发设备确定与所述服务 选择信息匹配的虚拟用户识别数据的订购关系数据后, 利用接收单元 92接收 所述匹配的虚拟用户识别数据的订购关系数据。 其中, 服务选择信息以及虚 拟用户识别数据的订购关系数据的具体确定方法可以参照上述虚拟用户识 别数据分发方法实施例中的相关描述。
本发明实施例获取虚拟用户识别数据的终端设备,接收单元可以基于近 距离通讯协议从分发设备获取所需的虚拟用户识别数据的订购关系数据, 不 需要通信网络的支持, 终端设备也能够获得所需的虚拟用户识别数据的订购 关系数据, 然后启用该虚拟用户识别数据的订购关系数据, 达到访问运营商 网络的目的。
实施例十
图 10为本发明实施例十的终端设备的结构框图, 如图 10所示, 该终端设 备可以包括:
发送单元 111, 用于基于近距离通讯协议向所述分发设备发送虚拟用户 识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用 户识别数据的服务选择信息;
接收单元 112, 用于接收所述分发设备基于所述近距离通讯协议返回的 与所述服务选择信息匹配的虚拟用户识别数据的订购关系数据。
其中, 该终端设备的发送单元 111的虚拟用户识别数据获取请求还可以 携带所述终端设备的特征信息, 所述接收单元 112还用于基于所述近距离通 讯协议接收所述分发设备发送的所述管理程序和驱动,所述管理程序和驱动 与所述终端设备的特征信息所支持的软硬件系统匹配。
具体地, 可以预先安装虚拟用户识别数据的管理程序和驱动, 则虚拟用 户识别数据获取请求就可以不用携带所述终端设备的特征信息。如果没有预 先安装, 则可以从分发设备获取虚拟用户识别数据的管理程序和驱动。
进一歩地, 在一种可能的实现方式中, 所述终端设备还包括: 安全存储区 113, 所述安全存储区设定了访问权限, 用于存储接收到的 虚拟用户识别数据的订购关系数据;
处理单元 114, 用于执行所述管理程序和驱动, 将所述虚拟用户识别数 据的订购关系数据导入所述终端设备的安全存储区。
本实施例的终端设备,接收单元可以基于近距离通讯协议从分发设备获 取所需的虚拟用户识别数据的订购关系数据, 不需要通信网络的支持, 终端 设备也能够获得所需的虚拟用户识别数据的订购关系数据,然后启用该虚拟 用户识别数据的订购关系数据, 达到访问运营商网络的目的。
实施例 ^一
图 11为本发明实施例十一的分发设备和终端设备应用场景的示意图。如 图 11所示, 分发设备的处理单元可以通过处理器和文件传输模块实现, 发送 单元和接收单元可以设置在近距离通讯模块中, 安全存储区可以设置在存储 模块中; 终端设备的处理单元可以通过处理器和文件传输模块实现, 发送单 元和接收单元可以设置在近距离通讯模块中, 安全存储区可以设置在存储模 块中。
其中, 终端设备可以包括以下模块:
第一处理器 1001, 用于控制终端设备上的第一存储器 1002、 第一文件传 输模块 1003、 第一接收器 1004、 第一发射器 1005以及虚拟用户识别数据的管 理程序和驱动的运行。 其中, 上述终端设备实施例中的处理单元 114的功能 可以通过第一处理器 1001实现。
第一存储器 1002,用于保存接收到的虚拟用户识别数据管理程序、驱动, 其中有一块安全存储区 113, 可以保存虚拟用户识别数据的订购关系数据。
第一文件传输模块 1003,通过第一接收器 1004从分发设备接收订购关系 数据, 或者也可以接收虚拟用户识别数据管理程序、 驱动, 完成与分发设备 的文件传输。
第一接收器 1004, 可以支持蓝牙、 WiFi、 WiFi-Direct、 NFC等一种或者 多种协议。 上述终端设备实施例中的接收单元 112的功能可以通过第一接收 器 1004实现。 第一发射器 1005, 可以支持蓝牙、 WiFi、 WiFi-Direct、 NFC等一种或者 多种协议。 上述终端设备实施例中的发送单元 111的功能可以通过第一发射 器 1005实现。
分发设备可以包括以下模块:
第二处理器 2001, 用于控制分发设备上的第二存储器 2002、 第二文件传 输模块 2003、 第二接收器 2004以及下发虚拟用户识别数据的订购关系数据、 管理程序和驱动的运行, 分发设备的处理单元 73的功能可以通过第二处理器 2001实现。
第二存储器 2002, 用于保存待发送的虚拟用户识别数据的管理程序、 驱 动、 订购关系数据。 分发设备的存储单元 71可以设置在存储模块 2002中, 其 上是否用安全存储区存储虚拟用户识别数据的订购关系数据为可选。
第二文件传输模块 2003,通过从第二存储器 2002获取需要发送的订购关 系数据, 或者同时获取虚拟用户识别数据管理程序、 驱动, 通过第二发射器 2005发送给终端设备, 完成与终端设备的文件传输。
第二接收器 2004, 可以支持蓝牙、 WiFi、 WiFi-Direct、 NFC等一种或者 多种协议。上述分发设备实施例中的接收单元 72可以通过第二接收器 2004实 现。
第二发射器 2005, 可以支持蓝牙、 WiFi、 WiFi-Direct、 NFC等一种或者 多种协议。上述终端设备实施例中的发送单元 74可以通过第一发射器 2005实 现。
本实施例的分发设备,可以基于近距离通讯协议将虚拟用户识别数据的 订购关系数据分发给所需的终端设备, 不需要通信网络的支持, 终端设备也 能够获得所需的虚拟用户识别数据的订购关系数据, 然后启用该虚拟用户识 别的订购关系数据, 达到访问运营商网络的目的。
本领域普通技术人员可以意识到,本文所描述的实施例中的各示例性单 元及算法歩骤,能够以电子硬件、或者计算机软件和电子硬件的结合来实现。 这些功能究竟以硬件还是软件形式来实现,取决于技术方案的特定应用和设 计约束条件。专业技术人员可以针对特定的应用选择不同的方法来实现所描 述的功能, 但是这种实现不应认为超出本发明的范围。
如果以计算机软件的形式来实现所述功能并作为独立的产品销售或使 用时, 则在一定程度上可认为本发明的技术方案的全部或部分(例如对现有 技术做出贡献的部分)是以计算机软件产品的形式体现的。 该计算机软件产 品通常存储在计算机可读取的存储介质中,包括若干指令用以使得计算机设 备(可以是个人计算机、 服务器、 或者网络设备等)执行本发明各实施例方 法的全部或部分歩骤。 而前述的存储介质包括 U盘、 移动硬盘、 只读存储器 ( ROM, Read-Only Memory )、 随机存取存储器 (RAM, Random Access Memory), 磁碟或者光盘等各种可以存储程序代码的介质。
以上所述, 仅为本发明的具体实施方式, 但本发明的保护范围并不局限 于此, 任何熟悉本技术领域的技术人员在本发明揭露的技术范围内, 可轻易 想到变化或替换, 都应涵盖在本发明的保护范围之内。 因此, 本发明的保护 范围应所述以权利要求的保护范围为准。

Claims

权利要求
1、 一种虚拟用户识别数据分发方法, 其特征在于, 分发设备存储虚拟 用户识别数据, 所述分发设备与终端设备采用近距离通讯协议连接, 所述方 法包括:
所述分发设备基于近距离通讯协议接收所述终端设备发送的虚拟用户 识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用 户识别数据的服务选择信息;
根据所述服务选择信息, 确定与所述服务选择信息匹配的虚拟用户识别 数据的订购关系数据;
所述分发设备基于所述近距离通讯协议向所述终端设备发送所述订购 关系数据。
2、 根据权利要求 1所述的虚拟用户识别数据分发方法, 其特征在于, 所 述分发设备存储虚拟用户识别数据具体包括:所述分发设备存储分类标识与 服务选择信息的对应关系;
所述根据所述服务选择信息,确定与所述服务选择信息匹配的虚拟用户 识别数据的订购关系数据具体包括:所述分发设备根据所述分类标识与服务 选择信息的对应关系, 查找所述服务选择信息对应的分类标识。
3、 根据权利要求 2所述的虚拟用户识别数据分发方法, 其特征在于, 所 述分发设备存储虚拟用户识别数据具体还包括:所述分发设备存储所述分类 标识与可用号段的对应关系;
所述根据所述服务选择信息,确定与所述服务选择信息匹配的虚拟用户 识别数据的订购关系数据具体还包括:所述分发设备根据所述分类标识与可 用号段的对应关系,查找所述分类标识对应的可用号段,根据所述可用号段, 获取与分发号码匹配的虚拟用户识别数据的订购关系数据。
4、 根据权利要求 2或 3所述的虚拟用户识别数据分发方法, 其特征在于, 所述分发设备存储虚拟用户识别数据具体还包括:所述分发设备存储分类标 识、 特征信息、 管理程序和驱动的对应关系;
所述虚拟用户识别数据获取请求还包括所述终端设备的特征信息,所述 虚拟用户识别数据分发方法还包括:所述分发设备根据所述分类标识和所述 终端设备的特征信息, 确定与所述终端设备所支持的软硬件系统匹配的虚拟 用户识别数据的管理程序和驱动;所述分发设备基于所述近距离通讯协议向 所述终端设备发送所述虚拟用户识别数据的管理程序和驱动。
5、 根据权利要求 1-4中任一项所述的虚拟用户识别数据分发方法, 其特 征在于, 还包括:
根据分发结果更新本地存储的虚拟用户识别数据。
6、 根据权利要求 1-5中任一项所述的虚拟用户识别数据分发方法, 其特 征在于, 还包括:
将所述订购关系数据存储在分发设备的设定了访问权限的安全存储区。
7、 一种虚拟用户识别数据获取方法, 其特征在于, 分发设备存储虚拟 用户识别数据, 所述分发设备与终端设备采用近距离通讯协议连接, 所述方 法包括:
所述终端设备基于近距离通讯协议向所述分发设备发送虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
接收所述分发设备基于所述近距离通讯协议返回的与所述服务选择信 息匹配的虚拟用户识别数据的订购关系数据。
8、 根据权利要求 7所述的虚拟用户识别数据获取方法, 其特征在于, 所 述虚拟用户识别数据获取请求还包括所述终端设备的特征信息,所述虚拟用 户识别数据获取方法还包括:
所述终端设备基于所述近距离通讯协议接收所述分发设备发送的管理 程序和驱动,所述管理程序和驱动与所述终端设备的特征信息所支持的软硬 件系统匹配。
9、 根据权利要求 7或 8所述的虚拟用户识别数据获取方法, 其特征在于, 还包括:
执行所述管理程序和驱动,将所述虚拟用户识别数据的订购关系数据导 入所述终端设备的设定了访问权限的安全存储区。
10、一种分发设备,其特征在于,与终端设备采用近距离通讯协议连接, 所述分发设备包括:
存储单元, 用于存储虚拟用户识别数据;
接收单元,用于基于近距离通讯协议接收终端设备发送的虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
处理单元, 用于根据所述服务选择信息, 确定与所述服务选择信息匹配 的虚拟用户识别数据的订购关系数据;
发送单元,用于基于所述近距离通讯协议向所述终端设备发送所述订购 关系数据。
11、 根据权利要求 10所述的分发设备, 其特征在于,
所述存储单元存储的虚拟用户识别数据具体包括: 分类标识与服务选择 信息的对应关系;
所述处理单元还用于根据所述分类标识与服务选择信息的对应关系, 查 找所述服务选择信息对应的分类标识。
12、 根据权利要求 11所述的分发设备, 其特征在于,
所述存储单元存储的虚拟用户识别数据具体还包括:所述分类标识与可 用号段的对应关系;
所述处理单元还用于根据所述分类标识与可用号段的对应关系, 查找所 述分类标识对应的可用号段, 根据所述可用号段, 获取分发号码匹配的虚拟 用户识别数据的订购关系数据。
13、 根据权利要求 11或 12所述的分发设备, 其特征在于, 所述存储单元 存储的虚拟用户识别数据具体还包括: 所述分类标识、 特征信息、 管理程序 和驱动的对应关系;
所述虚拟用户识别数据获取请求还包括所述终端设备的特征信息,所述 处理单元还用于根据所述分类标识和所述终端设备的特征信息, 确定与所述 终端设备所支持的软硬件系统匹配的虚拟用户识别数据的管理程序和驱动; 所述发送单元还用于基于所述近距离通讯协议向所述终端设备发送所 述虚拟用户识别数据的管理程序和驱动。
14、 根据权利要求 10-13中任一项所述的分发设备, 其特征在于, 所述 处理单元还用于根据分发结果更新本地存储的虚拟用户识别数据。
15、 根据权利要求 10-14中任一项所述的分发设备, 其特征在于, 所述 存储单元包括: 设定了访问权限的安全存储区, 用于保存所述虚拟用户识别 数据的订购关系数据。
16、 一种终端设备, 其特征在于, 分发设备存储虚拟用户识别数据, 所 述分发设备与终端设备采用近距离通讯协议连接, 所述终端设备包括: 发送单元,用于基于近距离通讯协议向所述分发设备发送虚拟用户识别 数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户识 别数据的服务选择信息;
接收单元,用于接收所述分发设备基于所述近距离通讯协议返回的与所 述服务选择信息匹配的虚拟用户识别数据的订购关系数据。
17、 根据权利要求 16所述的终端设备, 其特征在于, 所述虚拟用户识别 数据获取请求还包括所述终端设备的特征信息, 所述终端设备还包括: 所述发送单元还用于基于所述近距离通讯协议接收所述分发设备发送 的管理程序和驱动,所述管理程序和驱动与所述终端设备的特征信息所支持 的软硬件系统匹配。
18、 根据权利要求 16或 17所述的终端设备, 其特征在于, 所述终端设备 还包括:
处理单元, 用于执行所述管理程序和驱动, 将所述虚拟用户识别数据的 订购关系数据导入所述终端设备的设定了访问权限的安全存储区。
19、 一种终端, 其特征在于, 所述终端采用近距离通讯协议与存储虚拟 用户识别数据的分发设备连接, 所述终端包括: 处理器 1001, 接收器 1004, 以及发射器 1005, 其中,
所述发射器 1005用于基于近距离通讯协议向所述分发设备发送虚拟用 户识别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟 用户识别数据的服务选择信息;
所述接收器 1004用于接收所述分发设备基于所述近距离通讯协议返回 的与所述服务选择信息匹配的虚拟用户识别数据的订购关系数据;
所述处理器 1001, 用于控制接收器 1004、 发射器 1005以及虚拟用户识别 数据的管理程序和驱动的运行。
20、 根据权利要求 19所述的终端, 其特征在于, 所述终端还包括存储器 1002,所述存储器 1002用于保存接收到的虚拟用户识别数据管理程序、驱动, 以及虚拟用户识别数据的订购关系数据;
21、 一种分发设备, 其特征在于, 所述分发设备与终端设备采用近距离 通讯协议连接, 所述分发设备包括:
接收器 2004,用于基于近距离通讯协议接收终端设备发送的虚拟用户识 别数据获取请求,所述虚拟用户识别数据获取请求携带需要获取的虚拟用户 识别数据的服务选择信息;
发射器 2005,用于基于所述近距离通讯协议向所述终端设备发送所述订 购关系数据;
处理器 2001, 用于根据所述服务选择信息, 确定与所述服务选择信息匹 配的虚拟用户识别数据的订购关系数据。
22、 根据权利要求 21所述的分发设备, 其特征在于, 所述分发设备还包 括存储器 2002, 所述存储器 2002用于存储虚拟用户识别数据, 以及虚拟用户 识别数据的管理程序、 驱动、 订购关系数据。
PCT/CN2014/076303 2013-06-05 2014-04-26 虚拟用户识别数据分发方法、获取方法和设备 WO2014194731A1 (zh)

Priority Applications (3)

Application Number Priority Date Filing Date Title
EP14790475.9A EP2861002B1 (en) 2013-06-05 2014-04-26 Virtual user identification data distributing method and obtaining method, and devices
ES14790475.9T ES2604183T3 (es) 2013-06-05 2014-04-26 Método de distribución y método de obtención de datos de identificación de usuario virtual y dispositivos
US14/539,755 US9485648B2 (en) 2013-06-05 2014-11-12 Method for distributing virtual user identification data, method for acquiring virtual user identification data, and device

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201310221077.7A CN103347257B (zh) 2013-06-05 2013-06-05 虚拟用户识别数据分发方法、获取方法和设备
CN201310221077.7 2013-06-05

Related Child Applications (1)

Application Number Title Priority Date Filing Date
US14/539,755 Continuation US9485648B2 (en) 2013-06-05 2014-11-12 Method for distributing virtual user identification data, method for acquiring virtual user identification data, and device

Publications (1)

Publication Number Publication Date
WO2014194731A1 true WO2014194731A1 (zh) 2014-12-11

Family

ID=49282027

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2014/076303 WO2014194731A1 (zh) 2013-06-05 2014-04-26 虚拟用户识别数据分发方法、获取方法和设备

Country Status (5)

Country Link
US (1) US9485648B2 (zh)
EP (2) EP2861002B1 (zh)
CN (1) CN103347257B (zh)
ES (1) ES2604183T3 (zh)
WO (1) WO2014194731A1 (zh)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016188319A1 (zh) * 2015-05-28 2016-12-01 努比亚技术有限公司 虚拟sim卡信息管理方法、装置及移动终端

Families Citing this family (19)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US9998911B2 (en) * 2012-10-02 2018-06-12 Razer (Asia-Pacific) Pte. Ltd. Transferring information to a mobile device
CN103347257B (zh) * 2013-06-05 2016-08-24 华为技术有限公司 虚拟用户识别数据分发方法、获取方法和设备
EP3621332B1 (en) * 2014-04-18 2023-11-01 Huawei Technologies Co., Ltd. Method, terminal device, management server and system for distributing data of virtual subscriber identity module
CN104142841B (zh) * 2014-07-31 2018-01-23 广州金山网络科技有限公司 一种应用程序安装方法和装置
FR3030818B1 (fr) * 2014-12-23 2016-12-23 Valeo Comfort & Driving Assistance Procede de transmission securisee d'une cle virtuelle et methode d'authentification d'un terminal mobile
CN106034320A (zh) * 2015-03-19 2016-10-19 中兴通讯股份有限公司 虚拟sim卡切换方法和装置
CN106375996B (zh) * 2015-07-24 2021-05-18 西安中兴新软件有限责任公司 一种虚拟用户身份识别卡保护方法、应用处理器及终端
CN105208176B (zh) * 2015-08-31 2019-01-18 小米科技有限责任公司 联系人记录处理方法及装置
CN105120450B (zh) * 2015-09-07 2018-09-14 中国联合网络通信集团有限公司 Sim卡中卡数据选择方法及用户终端
CN105120451A (zh) * 2015-09-07 2015-12-02 广东欧珀移动通信有限公司 实现无卡移动终端的方法、运营商业务平台及移动终端
CN105262723B (zh) * 2015-09-08 2018-03-23 北京元心科技有限公司 一种对终端设备安全进行双认证的方法及系统
CN105306466A (zh) * 2015-10-29 2016-02-03 东莞酷派软件技术有限公司 服务业务的执行方法、服务业务的执行系统和移动终端
US10057272B2 (en) * 2015-12-15 2018-08-21 At&T Mobility Ii Llc Universal subscriber identity recognition and data classification
CN105933888B (zh) * 2016-06-28 2019-06-11 宇龙计算机通信科技(深圳)有限公司 一种基于NFC的eSIM卡烧录方法及装置
US10277283B2 (en) * 2016-09-14 2019-04-30 Sony Corporation NFC device, reader/writer device and methods for authorizing and performing an update
CN108040349A (zh) * 2017-12-05 2018-05-15 深圳鼎智通讯股份有限公司 基于虚拟sim卡的内置多虚拟sim卡方法
CN115175163A (zh) * 2021-04-01 2022-10-11 思博控股有限公司 应用于可携式设备的vSIM模块
CN114143111A (zh) * 2021-12-08 2022-03-04 北京中电普华信息技术有限公司 一种配网抢修过程中的通讯管理方法及相关装置
CN115037354B (zh) * 2022-06-06 2023-03-28 中国人民解放军32039部队 一种空间数据分发服务平台及方法

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101222723A (zh) * 2008-01-31 2008-07-16 熊文俊 一种虚拟sim卡多号单/双模手机及其实现方法与系统
WO2012104477A1 (en) * 2011-01-31 2012-08-09 Nokia Corporation Subscriber identity module provisioning
CN102870443A (zh) * 2010-06-14 2013-01-09 苹果公司 用于在无线网络中提供用户标识数据的装置和方法
CN103347257A (zh) * 2013-06-05 2013-10-09 华为技术有限公司 虚拟用户识别数据分发方法、获取方法和设备

Family Cites Families (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6845448B1 (en) * 2000-01-07 2005-01-18 Pennar Software Corporation Online repository for personal information
US8615272B2 (en) * 2004-05-26 2013-12-24 Nokia Corporation Method and system for associating subscriber identity module
JP4041118B2 (ja) * 2004-11-24 2008-01-30 株式会社東芝 ゲートウェイ装置、ネットワークシステム、通信プログラム及び通信方法
US8639629B1 (en) * 2005-02-02 2014-01-28 Nexus Payments, LLC System and method for accessing an online user account registry via a thin-client unique user code
CN101400180B (zh) * 2007-09-25 2010-10-13 中兴通讯股份有限公司 一种利用虚拟数据卡代替传统手机卡的方法
US8583781B2 (en) * 2009-01-28 2013-11-12 Headwater Partners I Llc Simplified service network architecture
US8811969B2 (en) 2009-06-08 2014-08-19 Qualcomm Incorporated Virtual SIM card for mobile handsets
US8738729B2 (en) * 2010-07-21 2014-05-27 Apple Inc. Virtual access module distribution apparatus and methods
EP2455922B1 (fr) * 2010-11-17 2018-12-05 Inside Secure Procédé et système de transaction NFC
JP5657364B2 (ja) * 2010-12-08 2015-01-21 フェリカネットワークス株式会社 情報処理装置および方法、プログラム、並びに情報処理システム
EP2701414B1 (en) * 2012-08-22 2015-10-07 BlackBerry Limited Near field communications-based soft subscriber identity module
US9479923B2 (en) * 2013-04-17 2016-10-25 Nokia Technologies Oy Provisioning wireless subscriptions using software-based subscriber identity modules

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101222723A (zh) * 2008-01-31 2008-07-16 熊文俊 一种虚拟sim卡多号单/双模手机及其实现方法与系统
CN102870443A (zh) * 2010-06-14 2013-01-09 苹果公司 用于在无线网络中提供用户标识数据的装置和方法
WO2012104477A1 (en) * 2011-01-31 2012-08-09 Nokia Corporation Subscriber identity module provisioning
CN103347257A (zh) * 2013-06-05 2013-10-09 华为技术有限公司 虚拟用户识别数据分发方法、获取方法和设备

Non-Patent Citations (1)

* Cited by examiner, † Cited by third party
Title
See also references of EP2861002A4 *

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2016188319A1 (zh) * 2015-05-28 2016-12-01 努比亚技术有限公司 虚拟sim卡信息管理方法、装置及移动终端

Also Published As

Publication number Publication date
EP2861002A1 (en) 2015-04-15
EP2861002A4 (en) 2015-08-12
CN103347257B (zh) 2016-08-24
US9485648B2 (en) 2016-11-01
ES2604183T3 (es) 2017-03-03
EP3122080B1 (en) 2017-09-27
US20150072616A1 (en) 2015-03-12
EP2861002B1 (en) 2016-08-31
EP3122080A1 (en) 2017-01-25
CN103347257A (zh) 2013-10-09

Similar Documents

Publication Publication Date Title
WO2014194731A1 (zh) 虚拟用户识别数据分发方法、获取方法和设备
US11197150B2 (en) Method and apparatus for supporting transfer of profile between devices in wireless communication system
US10768918B2 (en) Method and device for downloading profile of operator
JP6135963B2 (ja) 複数の端末が仮想simカードを共有するための方法、端末、サーバおよびシステム
EP3565369B1 (en) Esim card activation method, wireless router and computer storage medium
US20180041893A1 (en) Method and system of multi-terminal mapping to a virtual sim card
CN108353278B (zh) 嵌入式通用集成电路卡eUICC的管理方法及装置
WO2015085943A1 (zh) 数据业务传输方法及终端
JP2002530772A (ja) 移動電話による自動pcログオン
US9940618B2 (en) Method and apparatus for transmitting wallets between mobile devices
CN109618392B (zh) 网络共享的方法、装置、设备及计算机可读存储介质
US9591485B2 (en) Provisioning subscriptions to user devices
EP4152791A1 (en) Electronic device and method for electronic device to provide ranging-based service
CN113632513A (zh) 无线通信系统的装置变换方法和设备
US11832348B2 (en) Data downloading method, data management method, and terminal
US20220174495A1 (en) Method and device for changing euicc terminal
US12022571B2 (en) Profile between devices in wireless communication system
EP3993343A1 (en) Method and device for moving bundle between devices
KR20210116169A (ko) 기기 간 번들 또는 프로파일 온라인 이동 방법 및 장치
KR20210034460A (ko) 기기 간 번들 또는 프로파일 이동 시 기기 간 상호 인증 방법 및 장치

Legal Events

Date Code Title Description
REEP Request for entry into the european phase

Ref document number: 2014790475

Country of ref document: EP

WWE Wipo information: entry into national phase

Ref document number: 2014790475

Country of ref document: EP

121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 14790475

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE