WO2016106778A1 - 数据更新方法、装置及嵌入式通用集成电路卡 - Google Patents

数据更新方法、装置及嵌入式通用集成电路卡 Download PDF

Info

Publication number
WO2016106778A1
WO2016106778A1 PCT/CN2015/070060 CN2015070060W WO2016106778A1 WO 2016106778 A1 WO2016106778 A1 WO 2016106778A1 CN 2015070060 W CN2015070060 W CN 2015070060W WO 2016106778 A1 WO2016106778 A1 WO 2016106778A1
Authority
WO
WIPO (PCT)
Prior art keywords
application
profile
correspondence
private
identifier
Prior art date
Application number
PCT/CN2015/070060
Other languages
English (en)
French (fr)
Inventor
赵晓娜
常新苗
李国庆
Original Assignee
华为技术有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 华为技术有限公司 filed Critical 华为技术有限公司
Priority to CN201580038965.2A priority Critical patent/CN106664112B/zh
Priority to JP2017535732A priority patent/JP6785773B2/ja
Priority to EP15874471.4A priority patent/EP3242407B1/en
Priority to PCT/CN2015/070060 priority patent/WO2016106778A1/zh
Priority to KR1020177021980A priority patent/KR101972940B1/ko
Priority to US15/541,266 priority patent/US10423602B2/en
Publication of WO2016106778A1 publication Critical patent/WO2016106778A1/zh

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W4/00Services specially adapted for wireless communication networks; Facilities therefor
    • H04W4/60Subscription-based services using application servers or record carriers, e.g. SIM application toolkits
    • GPHYSICS
    • G06COMPUTING; CALCULATING OR COUNTING
    • G06FELECTRIC DIGITAL DATA PROCESSING
    • G06F16/00Information retrieval; Database structures therefor; File system structures therefor
    • G06F16/20Information retrieval; Database structures therefor; File system structures therefor of structured data, e.g. relational data
    • G06F16/23Updating
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04BTRANSMISSION
    • H04B1/00Details of transmission systems, not covered by a single one of groups H04B3/00 - H04B13/00; Details of transmission systems not characterised by the medium used for transmission
    • H04B1/38Transceivers, i.e. devices in which transmitter and receiver form a structural unit and in which at least one part is used for functions of transmitting and receiving
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/01Protocols
    • H04L67/10Protocols in which an application is distributed across nodes in the network
    • H04L67/1001Protocols in which an application is distributed across nodes in the network for accessing one among a plurality of replicated servers
    • H04L67/1004Server selection for load balancing
    • H04L67/1014Server selection for load balancing based on the content of a request
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/2866Architectures; Arrangements
    • H04L67/30Profiles
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W12/00Security arrangements; Authentication; Protecting privacy or anonymity
    • H04W12/02Protecting privacy or anonymity, e.g. protecting personally identifiable information [PII]
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04WWIRELESS COMMUNICATION NETWORKS
    • H04W8/00Network data management
    • H04W8/18Processing of user or subscriber data, e.g. subscribed services, user preferences or user profiles; Transfer of user or subscriber data

Definitions

  • the present invention relates to the field of communication security technologies, and in particular, to a data update method and apparatus, and an embedded Universal Integrated Circuit Card (eUICC).
  • eUICC embedded Universal Integrated Circuit Card
  • a Secure Element in the terminal to securely store and calculate user sensitive data.
  • the SE may be controlled by a Mobile Network Operator (MNO), and the physical carrier of the SE may be a UICC (Universal Integrated Circuit Card), or may be directly soldered inside the terminal and is not pluggable.
  • MNO Mobile Network Operator
  • UICC Universal Integrated Circuit Card
  • eUICC Universal Integrated Circuit Card
  • the profile is a collection of file structures, data, and applications related to the MNO, including profile type, ISD-P AID, ICCID, MSISDN, DPID, etc., which can be configured on the ISD-P in the air.
  • UICC SE is the implementation of security unit for MNO's dominance and control. Any application service provider needs to sign a commercial cooperation agreement with the operator before downloading and installing the application to UICC SE.
  • different MNOs or different in the same country can also use the same application in different MNO environments by signing cooperation agreements to facilitate users and promote the development of the industry. For example, in 2013, the three countries of China, Japan and Korea (China Mobile, NTT DOCOMO and KT) reached NFC International Roaming Agreement.
  • the remote configuration eUICC protocol established by the current GSMA does not create, delete, manage, and download and install the SE. Any operation such as updating is performed. Therefore, it is impossible to implement the normal use of some or all of the applications corresponding to the source profile after the profile is switched in the MNO environment corresponding to the target profile.
  • the embodiment of the present invention provides a data update method and device, and an eUICC, to solve the problem that the prior art can easily cause an application in the SE to be unavailable when the MNO in the eUICC is switched, thereby affecting the user's access to the application data in the SE.
  • a method for data update is provided, the method being for a universal integrated circuit card eUICC provided with a management device and at least one security unit SE, the at least one SE for saving at least one application corresponding to the profile profile
  • the management device is configured to manage the at least one SE, and the method includes:
  • the management device receives a profile activation request, where the profile activation request is used to switch the source profile to a target profile; the profile activation request includes identification information of the target profile, and the source profile is activated before the switching Profile of the state;
  • the management device updates the first correspondence to the second correspondence according to the profile activation request
  • the first correspondence is a correspondence between the first application set and the source profile
  • the first application set includes at least one application on the at least one SE
  • the second corresponding relationship is a second application.
  • the second application set includes at least one application in the first application set.
  • the first application set includes: an application that the source profile and the target profile jointly correspond to on the at least one SE.
  • the at least one security unit SE is at least one common SE
  • the at least one common SE is configured to save at least an application corresponding to the source profile and an application corresponding to the target profile.
  • the management device updates the first correspondence to the first one according to the profile activation request Before the second correspondence, the method further includes:
  • the management device saves the first correspondence, and the first correspondence includes a correspondence between the identifier of the first application set and the identification information of the source profile.
  • the management device according to the profile activation request, the first correspondence Updated to the second correspondence, specifically including:
  • the management device selects at least one application in the first application set according to the identification information of the target profile or according to the identification information of the target profile and the user indication;
  • the management device saves the first correspondence ,include:
  • the management device saves a first mapping table of the eUICC and at least one of the profiles, where the first mapping table at least includes identification information of the source profile;
  • the management device saves a second mapping table of the at least one application of the eUICC and the at least one public SE, and the at least one public SE;
  • the management device associates the first mapping table and the second mapping table to obtain the first correspondence.
  • the first mapping table further includes: an identifier of the eUICC; or an identifier of the eUICC, activation state information corresponding to the source profile, and identification information of the target profile and a deactivation state corresponding to the target profile information;
  • the second mapping table further includes: an identifier of the eUICC, an identifier of the at least one public SE, and an identifier of the at least one application; or an identifier of the eUICC, an identifier of the at least one public SE, Determining an identifier of the at least one application and activation or deactivation status information of the at least one application;
  • the management device updates the identification information of the source profile in the first mapping table to the identification information of the target profile; or the management device corresponds the source profile in the first mapping table
  • the activation state information is updated to the deactivation state information, and the deactivation state information corresponding to the target profile is updated to the activation state information;
  • the management device updates an identifier of the at least one application in the second mapping table to an identifier of at least one of the at least one application, or the management device uses the second mapping table
  • the state information of the at least one application is set to an active state, and the state information corresponding to the remaining applications is set to a deactivated state;
  • the management device associates the first mapping table and the second mapping table to obtain the second correspondence.
  • At least one application in the first application set includes: the management device determines at least one application determined from the first application set according to a preset of a user; or the management device is completed or completed according to a user during a handover of a profile The selection after the profile switch is from at least one application determined by the first application set.
  • the method further includes:
  • At least one application in the first application set is when the management device selects at least one application determined from the first application set according to a user's selection in a switch profile process or after completing a profile switch, the method further includes :
  • the management device outputs an application list to the terminal, where the application list includes the first application set saved on the public SE or at least one application in the first application set;
  • the management device determines at least one application from the application list according to a user's selection.
  • the at least one security unit SE includes the first a private SE and a second private SE, the first private SE is disposed in a corresponding first storage module, and the second private SE is disposed in a corresponding second storage module;
  • the first storage module is installed with the source profile, and the second storage module is installed with the target profile;
  • the first private SE saves at least one application corresponding to the source profile, and the second private SE saves at least one application corresponding to the target profile;
  • the first storage module and the second storage module are disposed in the eUICC and are managed by the management device.
  • the first application set is specifically corresponding to the source profile on the first private SE.
  • the management device updates the first correspondence to the second correspondence according to the profile activation request, including:
  • the management device determines information required to perform application and data migration, the information being information for migrating applications and data from the first private SE to the second SE;
  • the management device migrates at least one application in the first application set and related data of the at least one application to the second private SE according to the information, so that the first correspondence is updated to the The second correspondence.
  • the management apparatus according to the information, at least one of the first application set The application and related data of the application are migrated to the second private SE, including:
  • the management device obtains at least one application and related data of the at least one application from the first application set according to the information;
  • the management device migrates the obtained related data of the at least one application and the at least one application to the second private SE.
  • the at least one application in the first application set and the At least one application Relevant data includes:
  • the management device presets at least one application determined from the first application set and related data of the application according to a preset setting of the user; or the management device selects according to the user after switching the profile process or after completing the profile switching At least one application determined from the first application set and related data of the at least one application.
  • the determining from the first application set further includes: when the at least one application is determined by the management device from the first application set according to the user's selection in the process of switching the profile or after completing the profile switching, the method further includes:
  • the management device outputs a list of migrateable applications to the terminal, where the migratable application list includes an identifier of an application saved on the first private SE and usable when switching to the target profile;
  • the management device selects at least one application from the first application set according to the selection of the user in the list of migratable applications.
  • the second aspect provides a management device for data update, the management device is disposed on a universal integrated circuit card eUICC, the eUICC is further provided with at least one security unit SE, and the at least one SE is configured to save at least one profile profile Corresponding application, the management device is configured to manage the at least one SE, and the management device includes:
  • a first receiving unit configured to receive a profile activation request, where the profile activation request is used to switch the source profile to a target profile, where the profile activation request includes identification information of the target profile, and the source profile is the switch a profile that was previously active;
  • an update unit configured to update the first correspondence to the second correspondence according to the profile activation request, where the first correspondence includes a correspondence between the first application set and the source profile, and the first application
  • the set includes at least one application on the at least one SE;
  • the second correspondence is a correspondence between the second application set and the target profile, and the second application set includes at least one application in the first application set .
  • the at least one application that is updated by the update unit includes: an application that the source profile and the target profile jointly correspond to on the at least one SE.
  • the updating unit is specifically configured to: the at least one security unit SE is at least one common SE, and When the at least one common SE is configured to save at least the application corresponding to the source profile and the application corresponding to the target profile, update the first correspondence to the second correspondence according to the profile activation request.
  • the method further includes:
  • a storage unit configured to save the first correspondence after the update unit updates the first correspondence to the second correspondence according to the profile activation request, where the first correspondence includes the first application The correspondence between the identifier of the set and the identification information of the source profile.
  • the updating unit includes:
  • a selecting unit configured to select at least one application in the first application set according to the identification information of the target profile, or the identification information of the target profile and a user indication;
  • a first updating unit configured to acquire an identifier of the selected at least one application from the first correspondence, and associate an identifier of the at least one application with identification information of the target profile to obtain a The second correspondence is described.
  • the storage unit includes:
  • a first storage unit configured to save a first mapping table of the eUICC and at least one of the profiles; the first mapping table includes at least identification information of the source profile;
  • a second storage unit configured to save a second mapping table of the eUICC and the at least one common SE, and the at least one application on the at least one common SE;
  • an association unit configured to associate the first mapping table and the second mapping table to obtain the first correspondence relationship.
  • the first mapping table saved by the first storage unit further includes: an identifier of the eUICC; or an identifier of the eUICC, activation state information corresponding to the source profile, and identification information of the target profile Deactivating state information corresponding to the target profile;
  • the second mapping table saved by the second storage unit further includes: an identifier of the eUICC, an identifier of the at least one public SE, and an identifier of the at least one application; or an identifier of the eUICC, the An identifier of the at least one public SE, an identifier of the at least one application, and activation or deactivation status information of the at least one application;
  • the first update unit is configured to update the first mapping table according to the profile activation request, where the identification information of the source profile in the first mapping table is updated to identify the target profile. Information; or, the activation state information corresponding to the source profile in the first mapping table is updated to the deactivation state information, and the deactivation state information corresponding to the target profile is updated to the activation state information; and, according to the The profile activation request updates the second mapping table, wherein the identifier of the at least one application in the second mapping table is updated to an identifier of at least one of the at least one application, or the second The state information corresponding to the at least one of the at least one application in the mapping table is set to an active state, and the state information corresponding to the remaining applications is set to a deactivated state; and the first mapping table and the second mapping are associated Table, the second correspondence is obtained.
  • At least one application in the first application set updated by the update unit includes: determining the determined at least one application from the first application set according to a preset of the user; or, according to the user during the process of switching the profile or completing the profile The selection after switching is from at least one application determined by the first application set.
  • Also includes:
  • a first output unit where the at least one application in the first application set that is updated by the update unit is configured by the management device from the first application set according to a selection of a user after switching a profile or after completing a profile switch And outputting, by the terminal, an application list, where the application list includes the first application set saved on the public SE or at least one application in the first application set;
  • the first determining unit is configured to determine at least one application from the application list according to a user's selection.
  • the at least one security unit SE includes a first private SE and a second private SE
  • the eUICC is further provided with at least a first storage module and a second storage module
  • the management device is further configured to manage the at least the first storage module and the second storage module, where the first storage module is installed with the source profile, and the second storage module is installed with the target profile Setting the first private SE in the first storage module, and setting the second private SE in the second storage module, where the first private SE is configured to save at least one corresponding to the source profile
  • the application, and the second private SE is configured to save at least one application corresponding to the target profile.
  • the first application set is specifically the at least the source profile corresponding to the first private SE An application;
  • the update unit includes:
  • a second determining unit configured to determine information that needs to be applied and data migrated, where the information is information used to migrate applications and data from the first private SE to the second private SE;
  • a migrating unit configured to migrate, according to the information, at least one application in the first application set and related data of the at least one application to the second private SE corresponding to the target profile, so that the first A correspondence is updated to the second correspondence.
  • An obtaining unit configured to obtain, according to the information, at least one application and related data of the at least one application from the first application set;
  • a first migration unit configured to migrate the obtained related data of the at least one application and the at least one application to the second private SE.
  • the acquiring unit obtains the first application set At least one application and related data of the at least one application include:
  • the method further includes:
  • a second output unit configured, by the acquiring unit, the at least one application determined from the first application set is selected by the management device according to a selection of a user after switching a profile or completing a profile switch And outputting, by the first application set, at least one application, to the terminal, a list of migrated applications, where the list of migrated applications includes an application saved on the first private SE and usable when switching to the target profile Identification
  • a third determining unit configured to determine at least one application from the first application set according to the selection of the user in the list of migratable applications.
  • the third aspect provides a universal integrated circuit card eUICC, including:
  • At least one security unit SE each SE for storing an application corresponding to at least one profile profile
  • a processor configured to manage at least one application stored on the at least one SE
  • a data interface configured to receive a profile activation request, where the profile activation request is used to switch the source profile to a target profile;
  • the profile activation request includes identification information of the target profile, where the source profile is in the Profile of the activation state;
  • the processor is further configured to update the first correspondence to the second correspondence according to the profile activation request, where the first correspondence is a correspondence between the first application set and the source profile, where The first application set includes at least one application on the at least one SE; the second correspondence is a correspondence between the second application set and the target profile, and the second application set includes the first At least one application in the application set.
  • the first application set managed by the processor includes: the source profile and an application that the target profile jointly corresponds to the at least one SE.
  • the at least one SE is at least one common SE; wherein the at least one public SE is used to at least And storing an application corresponding to the source profile and an application corresponding to the target profile.
  • a memory is configured to save the first correspondence, the first correspondence And including a correspondence between the identifier of the first application set and the identification information of the source profile.
  • the updating the first correspondence relationship according to the profile activation request includes:
  • the first correspondence includes: a first mapping table of the eUICC and at least one of the profiles, where the first mapping table includes at least identification information of the source profile; and the eUICC and the at least one a public SE, and a second mapping table of the at least one application on the at least one public SE;
  • the first mapping table further includes: an identifier of the eUICC; or an identifier of the eUICC, activation state information corresponding to the source profile, and identification information of the target profile and a deactivation state corresponding to the target profile information;
  • the second mapping table further includes: an identifier of the eUICC, an identifier of the at least one public SE, and an identifier of the at least one application; or an identifier of the eUICC, an identifier of the at least one public SE, Determining an identifier of the at least one application and activation or deactivation status information of the at least one application;
  • Obtaining the identifier of the selected at least one application from the first correspondence, associating the identifier of the at least one application with the identification information of the target profile, to obtain the second correspondence specifically include:
  • At least one application in the first application set includes:
  • the data interface is further configured to: at least one application in the first application set is at least one determined by the processor from the first application set according to a selection of a user during a handover profile process or after completing a profile switchover. And applying, to the terminal, an application list, where the application list includes the first application set saved on the public SE or at least one application in the first application set;
  • the processor is further configured to determine at least one application from the application list according to a user's selection.
  • the at least one SE includes a first private SE and a second private SE, where the first private SE is set in the first private storage device, and the second private The SE is set in the second private storage device, wherein
  • the processor is configured to manage the first private SE and the second private SE;
  • the first private SE is installed with the source profile, and the second private SE is installed with the target profile;
  • the first private SE is configured to save at least one application corresponding to the profile installed on the first private storage device;
  • the second private SE is configured to save at least one application corresponding to the profile installed on the second private storage device.
  • the processor is further configured to determine information that needs to be applied and data migration, where the information is information for migrating applications and data from the first private SE to the second private SE; according to the information At least one application in the first application set and related data of the at least one application are migrated to the second private SE, so that the first correspondence is updated to the second corresponding relationship.
  • the obtaining, by the first application set, the related data of the at least one application and the at least one application includes:
  • the data interface is further configured to: determine, by the first application set, the at least one application obtained from the first application set is determined by the processor according to a selection of a user after switching a profile or after completing a profile switch At least one application, outputting a list of migratable applications to the terminal, the list of migratable applications including an application saved on the first private memory corresponding to the source profile and usable when switching to the target profile Identification
  • the processor is further configured to determine, according to the selection of the user in the list of migratable applications, at least one of the applications corresponding to the source profile from the first application set.
  • the management device may update the correspondence between the at least one application (ie, the first application set) saved on the at least one SE and the source profile to the first application set according to the profile activation request.
  • Corresponding relationship between at least one application (ie, the second application set) and the target profile so as to ensure that some or all applications in the SE are not available without the subscription information of the bound MNO, thereby ensuring that the user is After the target profile is activated, it can be accessed normally, and some or all applications and data corresponding to the source profile in the SE are used.
  • FIG. 1 is a schematic structural diagram of an eUICC according to an embodiment of the present disclosure
  • FIG. 2 is a schematic structural diagram of a data update apparatus according to an embodiment of the present invention.
  • FIG. 3 is a flowchart of a data update method according to an embodiment of the present invention.
  • FIG. 4 is a flowchart of a first application example of a data update method according to an embodiment of the present invention.
  • FIG. 5 is a flowchart of a second application example of a data update method according to an embodiment of the present invention.
  • FIG. 6 is a flowchart of a third application example of a data update method according to an embodiment of the present invention.
  • the eUICC1 includes: at least one security unit SE (this embodiment takes a security unit 11 as an example), the processor 12 and the data Interface 13, wherein
  • Each of the at least one security unit 11 is configured to save an application corresponding to the at least one profile profile
  • the security unit 11 is configured to store an application corresponding to the profile profile on the eUICC.
  • the remote configuration eUICC specification defined by the GSMA it can correspond to an ISD-P (Issuer Security Domain Profile), where the profile is a collection of file structures, data, and applications related to the MNO, mainly including a profile type, ISD- The PAI (ISD-P Application Identifier) is used to identify the ISD-P, the ICCID (integrated circuit card ID) is used to uniquely identify the profile, and the MSISDN can be configured on the ISD-P in the air.
  • ISD-P Issuer Security Domain Profile
  • the profile is a collection of file structures, data, and applications related to the MNO, mainly including a profile type
  • ISD- The PAI ISD-P Application Identifier
  • the ICCID integrated circuit card ID
  • the MSISDN can be configured on the ISD-P in the air.
  • the management device is a module on the eUICC for performing some management commands such as ISD-P creation/deletion, profile activation/deactivation, etc., by way of example, at the GSMA In the defined remote configuration eUICC specification, it may correspond to an ISD-R (Issuer Security Domain Root); the at least one public security unit SE (Secure Element) is an application on the eUICC for saving and running the profile corresponding to the storage module. Space outside the storage module.
  • ISD-R Issuer Security Domain Root
  • SE Secure Element
  • the profile refers to a combination of file structure, data and application.
  • An Enabled Profile whose files and/or applications (such as network access applications) can be selected via the Universal IC Card-Terminal interface.
  • a profile is called a provisioning profile.
  • the Provisioning profile After the Provisioning profile is installed on the eUICC, it can be used to access the communication network to manage eUICC between the eUICC and remote entities (such as SM-SR, SM-DP).
  • Profile management provides transport capabilities.
  • One kind A profile is called an operational profile, and an Operational Profile contains one or more network access applications and associated network access credentials.
  • the processor 12 is configured to manage at least one application stored by the at least one security unit;
  • the data interface 13 is configured to receive a profile activation request, where the profile activation request is used to switch the source profile to a target profile, and the profile activation request includes identifier information of the target profile, where the source profile is Switching the profile that was previously active;
  • the processor 12 is further configured to: update the first correspondence to the second correspondence according to the profile activation request, where the first correspondence is a correspondence between the first application set and the source profile, where The first application set includes at least one application on the at least one SE; the second correspondence is a correspondence between the second application set and the target profile, and the second application set includes the first At least one application in the application set.
  • At least one application in the first application set that is, at least one application in at least one application, for example, a wallet application developed by an operator installed on the eUICC, a payment application developed by a third party such as a bank, a bank, etc.
  • the application in this embodiment is equally applicable in the following embodiments, and will not be described again.
  • the processor may update the correspondence between the at least one application (ie, the first application set) saved on the at least one SE and the source profile to the at least one application in the first application set according to the profile activation request (ie, The correspondence between the second application set and the target profile, so as to ensure that some or all applications in the SE are not available without the subscription information of the bound MNO, thereby ensuring that the user can be normal after activating the target profile. accessing and using the corresponding source Prof i le some or all of the applications and data in the SE.
  • the first application set includes an application that corresponds to the source profile and the target profile (that is, when the source profile or the target profile is activated, that is, corresponding to the source profile.
  • the second application set includes at least one application of the application corresponding to the source profile and the target profile, and may further include the target profile separately All applications (ie, applications that can be used normally when the target profile is activated, that is, in the MNO environment corresponding to the target profile).
  • the first application set includes an application that the source profile and the target profile jointly correspond to the at least one SE.
  • the source profile and the target profile jointly correspond to the at least one SE.
  • the first application set managed by the processor 12 includes: the source profile and the target profile in the at least A common application on the SE.
  • the application corresponding to the common application refers to an application that can be used in the MNO environment corresponding to the source profile and the target profile respectively.
  • the embodiment is based on the foregoing embodiment, the at least one SE11 is at least one common SE (not shown); wherein the at least one common SE is used for at least one The application corresponding to the source profile and the application corresponding to the target profile are saved.
  • the embodiment further includes: the memory, where the processor 12 updates the first correspondence to the first activation relationship according to the profile activation request. Before the second correspondence, the first correspondence is saved, where the first correspondence includes a correspondence between the identifier of the first application set and the identification information of the source profile.
  • the embodiment is that, according to the foregoing embodiment, the first correspondence is updated to the second correspondence according to the profile activation request, and specifically includes:
  • the identification information of the target profile may be any one of the ISD-P AID and the ICCID in the GSMA, and may even be a mobile phone number or an IMSI, but is not limited thereto.
  • the embodiment is based on the foregoing embodiment, where the first correspondence includes: a first mapping table of the eUICC and at least one of the profiles; a mapping table containing at least identification information of the source profile; and a second mapping table of the at least one public SE and the at least one application on the at least one public SE;
  • the processor 12 associates the first mapping table and the second mapping table to obtain the first correspondence.
  • the first mapping table further includes: the identifier of the eUICC; or the identifier of the eUICC, the source profile corresponding to the embodiment.
  • the second mapping table further includes: an identifier of the eUICC, an identifier of the at least one public SE, and an identifier of the at least one application; or an identifier of the eUICC, an identifier of the at least one public SE, Determining an identifier of the at least one application and activation or deactivation status information of the at least one application;
  • the method includes: updating the identification information of the source profile in the first mapping table to the identification information of the target profile; or updating the activation state information corresponding to the source profile in the first mapping table to Deactivating the status information, and the deactivation status information corresponding to the target profile is updated to the activation status information;
  • the management device associates the first mapping table and the second mapping table to obtain the second correspondence.
  • the embodiment is based on the foregoing embodiment, the at least one application in the first application set (ie, at least one of the at least one application) includes: according to a preset setting of the user. At least one application determined by the first application set; or at least one application determined from the first application set according to a user selection during a switch profile process or after completing a profile switch.
  • the embodiment is based on the foregoing embodiment, the data interface 13 is further configured to: at least one application in the first application set is the processor according to a user. And selecting, when the profile is switched or after completing the profile switch, the at least one application determined by the first application set, and outputting, to the terminal output terminal, an application list, where the application list includes the first saved on the public SE An application set or at least one application in the first application set;
  • the processor 12 is further configured to determine at least one application from the application list according to a user's selection.
  • the processor in the eUICC may update the correspondence between the at least one application saved on the at least one public SE and the source profile to be between the at least one application and the target profile according to the profile activation request. Corresponding relationship, so as to ensure that some or all applications in the public SE will not be unavailable with the subscription information of the bound MNO, so as to ensure that the user can normally access and use the source profile in the public SE after activating the target profile. Part or all of the application and data.
  • the embodiment is based on the foregoing embodiment, the at least one SE11 includes a first private SE and a second private SE (not shown), the first private SE Set in the first private storage device, where the second private SE is set in the corresponding second private storage device, where
  • the processor is configured to manage the first private SE and the second private SE;
  • the first private SE is installed with the source profile; the second private SE is installed with the target profile;
  • the first private SE is configured to save at least one application corresponding to the profile installed on the first private storage device;
  • the second private SE is configured to save at least one application corresponding to the profile installed on the second private storage device.
  • the at least one SE11 includes at least two private SEs, that is, the first private SE and the second private SE, and may be two private SEs in one SE; or two SEs They are two private SEs, that is, one SE is the first private SE and the other SE is the second private SE.
  • the embodiment is based on the foregoing embodiment, the processor 12 is further configured to determine information that needs to be applied and data migration, where the information is used to Transmitting, by the first private SE, information of the application and the data to the second private SE; and migrating at least one application of the first application set and related data of the at least one application to the second private SE according to the information Up to update the first correspondence to the second correspondence. That is, the at least one application of the at least one application and the related data of the at least one application on the first private SE corresponding to the source profile are migrated to the target profile corresponding to the target profile according to the information. Updating, on the second private SE, the correspondence between the at least one application saved on the first private SE corresponding to the source profile and the source profile to at least one application and location in the at least one application The correspondence between the target profiles.
  • the processor 12 determines that there are multiple ways to perform application and data migration.
  • One or two methods are described as an example in the embodiment, where a determining manner is as shown in step 502 in FIG. 5 .
  • Step 510 is shown; another determination manner is shown in steps 603 to 609 in FIG. 6 , and details are not described herein again.
  • the embodiment is, according to the foregoing embodiment, the migrating the related data of the at least one application in the first application set and the at least one application according to the information to The second private SE corresponding to the target profile specifically includes: at least one application from the first application set and related data of the at least one application according to the information; and the at least one obtained The application and related data of the at least one application are migrated to the second private SE corresponding to the target profile.
  • the embodiment on the basis of the foregoing embodiment, the obtaining, by the first application set, the related data of the at least one application and the at least one application includes:
  • the first application sets the determined at least one application and related data of the at least one application.
  • the embodiment is based on the foregoing embodiment, the data interface 13 is further configured to: acquire the at least one application obtained from the first application set as the processor according to the user. And selecting, during the switching profile process or after completing the profile switching, the at least one application determined by the first application set, outputting, to the terminal, a migratable application list, where the migratable application list includes the location corresponding to the source profile An identifier of an application that is saved on the first private SE and that is usable when switching to the target profile;
  • the processor 12 is further configured to determine, according to the selection of the user in the migratable application list, at least one of the applications corresponding to the source profile from the first application set.
  • the processor in the eUICC may migrate at least one application and related data on the first private SE on a memory (such as a source memory) corresponding to the source profile to the target according to the determined migration information.
  • the second private SE on the other memory (such as the target memory) corresponding to the profile, so that the application and data in the source memory are not available with the deactivation of the source profile, thereby ensuring that the user activates the target profile. It is possible to normally access the department corresponding to the source profile in the public SE. Part or all of the application and data.
  • the embodiment of the present invention further provides a data update management apparatus, which is shown in FIG. 2, the management apparatus 21 is disposed on a universal integrated circuit card eUICC2, and the eUICC2 is further provided with at least one security unit.
  • SE22 this embodiment takes an SE as an example
  • the at least one SE22 is used to store an application corresponding to at least one profile profile
  • the management device 21 is configured to manage the at least one SE22
  • the management device 21 includes: a receiving unit 211 and an updating unit 212, wherein
  • the first receiving unit 211 is configured to receive a profile activation request, where the profile activation request is used to switch the source profile to the target profile, and the profile activation request includes the identifier information of the target profile, where the source profile is a profile that is in an active state before the switching;
  • the updating unit 212 is configured to update the first correspondence to the second correspondence according to the profile activation request, where the first correspondence includes a correspondence between the first application set and the source profile,
  • the first application set includes at least one application on the at least one SE;
  • the second correspondence is a correspondence between the second application set and the target profile, and the second application set includes the first application set At least one application.
  • the at least one application that is updated by the update unit 212 includes: an application that the source profile and the target profile jointly correspond to on the at least one SE.
  • the embodiment is based on the foregoing embodiment, where the updating unit 212 is specifically configured to: at least one common SE in the at least one security unit SE22, in this embodiment And the at least one common SE is configured to update the first correspondence to the second correspondence according to the profile activation request when at least the application corresponding to the source profile and the application corresponding to the target profile are saved.
  • the device further includes: a storage unit (not shown), wherein the storage unit is configured to: in the update unit, the first correspondence according to the profile activation request Before the relationship is updated to the second correspondence, the first correspondence is saved, where the first correspondence includes a correspondence between the identifier of the first application set and the identification information of the source profile.
  • a storage unit (not shown), wherein the storage unit is configured to: in the update unit, the first correspondence according to the profile activation request Before the relationship is updated to the second correspondence, the first correspondence is saved, where the first correspondence includes a correspondence between the identifier of the first application set and the identification information of the source profile.
  • the updating unit 212 includes: a selecting unit and a first updating unit (not shown), wherein the selecting unit is configured to use, according to the identification information of the target profile, Or the identification information of the target profile and the user indication, selecting at least one application in the first application set; a first updating unit, configured to acquire an identifier of the selected at least one application from the first correspondence, and associate an identifier of the at least one application with identification information of the target profile to obtain The second correspondence.
  • the storage unit includes: a first storage unit, a second storage unit, and an associated unit, where the first storage unit is configured to save the eUICC and at least one of the foregoing a first mapping table of the profile; the first mapping table includes at least identification information of the source profile; the second storage unit is configured to save the eUICC and the at least one public SE, and the at least one public a second mapping table of the at least one application on the SE; the association unit is configured to associate the first mapping table and the second mapping table to obtain the first correspondence.
  • the first mapping table saved by the first storage unit further includes: an identifier of the eUICC; or an identifier of the eUICC, an activation state corresponding to the source profile The information, the identification information of the target profile, and the deactivation state information corresponding to the target profile;
  • the second mapping table saved by the second storage unit further includes: an identifier of the eUICC, the at least one public SE And an identifier of the at least one application; or an identifier of the eUICC, an identifier of the at least one public SE, an identifier of the at least one application, and activation or deactivation status information of the at least one application;
  • the first update unit is configured to update the first mapping table according to the profile activation request, where the identification information of the source profile in the first mapping table is updated to identify the target profile. Information; or, the activation state information corresponding to the source profile in the first mapping table is updated to the deactivation state information, and the deactivation state information corresponding to the target profile is updated to the activation state information; and, according to the The profile activation request updates the second mapping table, wherein the identifier of the at least one application in the second mapping table is updated to an identifier of at least one of the at least one application, or the second The state information corresponding to the at least one of the at least one application in the mapping table is set to an active state, and the state information corresponding to the remaining applications is set to a deactivated state; and the first mapping table and the second mapping are associated Table, the second correspondence is obtained.
  • the at least one application in the first application set that is updated by the update unit 212 includes: at least one application determined from the first application set according to a preset of a user; or And selecting at least one application determined from the first application set according to a selection of the user during the switching of the profile or after completing the profile switching.
  • the apparatus may further include: a first output unit and a first determining unit (not shown), wherein the first output unit is configured to be in the updating unit Updating the at least one application in the first application set to the management device to output an application to the terminal according to the at least one application determined by the user from the first application set during the switching of the profile process or after completing the profile switching a list, the application list includes the first application set saved on the public SE or at least one application in the first application set; the first determining unit is configured to select from the user according to the user's selection Identify at least one application in the application list.
  • the embodiment is based on the embodiment of FIG. 2, the at least one security unit SE includes a first private SE and a second private SE, and the eUICC is further configured with at least a a storage module and a second storage module; the management device is further configured to manage the at least the first storage module and the second storage module, where the first storage module is installed with the source profile, the first The second storage module is configured with the target profile; the first private SE is set in the first storage module, and the second private SE is set in the second storage module, where the first private SE is used. And storing at least one application corresponding to the source profile, and the second private SE is configured to save at least one application corresponding to the target profile.
  • the first storage module may be a source storage module
  • the second storage module may be a target storage module
  • the at least one application may be an application corresponding to the source profile and the target profile, and the corresponding one may be one
  • the same application may be a plurality of the same applications, and the embodiment is not limited.
  • the first application set is specifically at least one application corresponding to the source profile on the first private SE;
  • the update unit includes: a second determining unit and a migration unit (not shown in the figure), wherein the second determining unit is configured to determine information that needs to be applied and data migration, and the information is to migrate applications and data from the first private SE to the second private SE Information;
  • the migrating unit is configured to migrate, according to the information, at least one application in the first application set and related data of the at least one application to the second private SE corresponding to the target profile, so that The first correspondence relationship is updated to the second correspondence.
  • the at least one application of the at least one application and the related data of the application on the first private SE corresponding to the source profile are migrated to the corresponding to the target profile according to the information. Updating, on the second private SE, the correspondence between the at least one application saved on the first private SE corresponding to the source profile and the source profile to at least one application of the at least one application and the target Correspondence of the profile.
  • the data migration information may include at least the identification information of the target profile or the identification information of the private SE corresponding to the target profile, where the identification information of the target profile may be an identifier of the target profile (eg, the ICCID defined by the GSMA) ), may also be the identification information of the storage module of the target profile (such as the ISD-P AID defined by the GSMA), or other information that can identify the target profile (such as mobile phone number or IMSI); the private SE corresponding to the target profile
  • the identification information may be an identification of the private SE (such as SEID).
  • the migration information may also include other identification information, which is not limited in this embodiment.
  • the migrating unit includes: an obtaining unit and a first migrating unit, where the acquiring unit obtains at least one application and related data of the at least one application from the first application set according to the information.
  • the first migration unit is configured to migrate the obtained related data of the at least one application and the at least one application to the second private SE.
  • the at least one application in the first application set and the related data of the at least one application acquired by the acquiring unit include: collecting from the first application according to presets of a user At least one application and related data of the at least one application; or at least one application and the at least one determined from the first application set according to a user's selection during a switch profile or after completing a profile switch Relevant data for the application.
  • the apparatus may further include: a second output unit and a third determining unit (not shown), wherein the second output unit is configured to be in the acquiring unit Obtaining the at least one application determined from the first application set is when the management device selects at least one application determined from the first application set according to a selection of a user after switching a profile or after completing a profile switch, Outputting a list of migrateable applications to the terminal, the list of migratable applications including an identifier of an application saved on the first private SE and usable when switching to the target profile;
  • the third determining unit is configured to use the at least one application determined from the first application set according to the selection of the user in the migratable application list.
  • the management device may migrate at least one application on the private SE of the source storage module corresponding to the source profile and its related data to the private SE of the target storage module corresponding to the target profile, according to the determined migration information, thereby
  • the application and data in the source storage module are not available with the deactivation of the source profile, so as to ensure that the user can normally access some or all applications and data corresponding to the source profile in the public SE after activating the target profile.
  • the embodiment of the present invention further provides a data update method, where a flowchart is shown in FIG. 3, where the method is used for a universal integrated circuit card eUICC provided with a management device and at least one security unit SE.
  • the at least one SE is configured to save an application corresponding to the at least one profile profile, where the management device is configured to manage the at least one SE, where the method includes:
  • Step 301 The management device receives a profile activation request, where the profile activation request is used to switch the source profile to a target profile; the profile activation request includes identifier information of the target profile, and the source profile is the switch a profile that was previously active;
  • Step 302 The management device updates the first correspondence to the second correspondence according to the profile activation request, where the first correspondence is a correspondence between the first application set and the source profile, where the An application set includes at least one application on the at least one SE; the second correspondence is a correspondence between a second application set and the target profile, and the second application set includes at least the first application set An application.
  • the first application set includes: an application that the source profile and the target profile jointly correspond to on the at least one SE.
  • the application corresponding to the common application refers to an application that can be used in the MNO environment corresponding to the source profile and the target profile respectively.
  • the at least one security unit SE is at least one public SE
  • the at least one common SE is configured to save at least an application corresponding to the source profile and an application corresponding to the target profile.
  • the method before the management device updates the first correspondence to the second correspondence according to the profile activation request, the method further include:
  • the management device saves the first correspondence, and the first correspondence includes a correspondence between the identifier of the first application set and the identification information of the source profile.
  • the embodiment is that, according to the foregoing embodiment, the management device updates the first correspondence to the second correspondence according to the profile activation request, and specifically includes:
  • the management device is configured according to the identification information of the target profile or according to the knowledge of the target profile Selecting at least one application in the first application set by the information and the user indication;
  • the managing device saves the first correspondence, including:
  • the management device saves a first mapping table of the eUICC and at least one of the profiles, where the first mapping table at least includes identification information of the source profile;
  • the management device saves a second mapping table of the at least one application of the eUICC and the at least one public SE, and the at least one public SE;
  • the management device associates the first mapping table and the second mapping table to obtain the first correspondence.
  • the first mapping table further includes: the identifier of the eUICC; or the identifier of the eUICC, the source profile corresponding to the embodiment.
  • the second mapping table further includes: an identifier of the eUICC, an identifier of the at least one public SE, and an identifier of the at least one application; or an identifier of the eUICC, an identifier of the at least one public SE, Determining an identifier of the at least one application and activation or deactivation status information of the at least one application;
  • the management device updates the identification information of the source profile in the first mapping table to the identification information of the target profile; or the management device corresponds the source profile in the first mapping table
  • the activation state information is updated to the deactivation state information, and the deactivation state information corresponding to the target profile is updated to the activation state information;
  • the management device updates an identifier of the at least one application in the second mapping table to an identifier of at least one of the at least one application, or the management device uses the second mapping table Said at least The status information of one application is set to the active state, and the status information corresponding to the remaining applications is set to the deactivated state;
  • the management device associates the first mapping table and the second mapping table to obtain the second correspondence.
  • the at least one application in the first application set includes: the management device determines the at least one application determined from the first application set according to a preset setting of the user; or the management device switches the profile according to the user. Selecting at least one application determined from the first application set during or after completion of the profile switch.
  • the embodiment is, on the basis of the foregoing embodiment, the at least one application in the first application set is the management device, according to the user, in the process of switching the profile or after completing the profile switching.
  • the method further includes:
  • the management device outputs an application list to the terminal, where the application list includes the first application set saved on the public SE or at least one application in the first application set;
  • the management device determines at least one application from the application list according to a user's selection.
  • the embodiment is based on the foregoing embodiment, the at least one security unit SE includes a first private SE and a second private SE, and the first private SE is set in a corresponding In the first storage module, the second private SE is disposed in the corresponding second storage module;
  • the first storage module is installed with the source profile, and the second storage module is installed with the target profile;
  • the first private SE saves at least one application corresponding to the source profile, and the second private SE saves at least one application corresponding to the target profile;
  • the first storage module and the second storage module are disposed in the eUICC and are managed by the management device.
  • the embodiment is based on the foregoing embodiment, where the first application set is specifically at least one application corresponding to the source profile on the first private SE;
  • the management device updates the first correspondence to the second correspondence according to the profile activation request, including:
  • the management device determines information required to perform application and data migration, the information being used for the A private SE migrates information of applications and data to the second SE;
  • the management device migrates at least one application in the first application set and related data of the at least one application to the second private SE according to the information, so that the first correspondence is updated to the The second correspondence.
  • the embodiment is based on the foregoing embodiment, the management device, according to the information, migrating at least one application in the first application set and related data of the application to The second private SE includes:
  • the management device obtains at least one application and related data of the at least one application from the first application set according to the information;
  • the management device migrates the obtained related data of the at least one application and the at least one application to the second private SE.
  • the embodiment is based on the foregoing embodiment, where the at least one application in the first application set and the related data of the at least one application include:
  • the management device presets at least one application determined from the first application set and related data of the application according to a preset setting of the user; or the management device selects according to the user after switching the profile process or after completing the profile switching At least one application determined from the first application set and related data of the at least one application.
  • the embodiment is, according to the foregoing embodiment, the at least one application determined from the first application set is the management device, according to the user switching the profile process or completing the profile switch.
  • the method further includes:
  • the management device outputs a list of migrateable applications to the terminal, where the migratable application list includes an identifier of an application saved on the first private SE and usable when switching to the target profile;
  • the management device selects at least one application from the first application set according to the selection of the user in the list of migratable applications.
  • FIG. 4 is a flowchart of a first application example of a method for updating data according to an embodiment of the present invention.
  • the embodiment is described on the basis of a specification of a remote configuration eUICC established by the GSMA. .
  • This embodiment describes a process of updating a profile associated with an application in a public SE by using a specific application example.
  • the eUICC includes a management device, and the management device includes a maintenance and update module and a switching module as an example. , but not limited to this.
  • the specific update process includes:
  • Step 401 The eUICC maintains a SEID-EID mapping list and an EID-ICCID mapping list by using an application selection and query module.
  • the SEID is used to identify the security unit SE
  • the EID is used to identify the embedded universal integrated circuit card eUICC
  • the ICCID is used to identify the profile.
  • SE 1 which is identified as SEID 1
  • SEID 1 has n applications installed
  • AID 1 -AID k is the application corresponding to Profile 1
  • AID 1 and AID k can continue to be used after switching to Profile 2 (that is, AID 1 and AID k are applications of MNO corresponding to Profile 1 and MNO corresponding to Profile 2, that is, both applications can be used in these two MNO environments.
  • SEID-EID list is shown in Table 1:
  • Table 2 illustrates the ICCID identification profile as an example.
  • other identifiers such as ISD-P AID, mobile phone number, or IMSI can also be used.
  • the EID-ICCID list described in Table 2 contains the identifier of the eUICC (such as EID), the identifier of Profile 1 (such as ICCID 1 ) and its corresponding status information (such as activation status enabled), and the identifier of Profile 2 (such as ICCID 2 ) and its corresponding status information (such as the deactivated state disabled), after completing the profile switch, only need to update the corresponding state information of the profile in the list;
  • the EID-ICCID list may also only contain The identifier of the eUICC (such as EID) and the identifier of Profile1 (such as ICCID 1 ), after completing the profile switch, only need to update the identifier of the profile in the list.
  • Step 402 The MNO sends a Profile Enabling Request to the SM-SR, where the request includes an EID and a target ICCID.
  • the MNO sends the profile activation request to the SM-SR, which may be triggered by the user actively requesting the MNO, or may be automatically triggered by the MNO, which is not limited by the present invention.
  • Step 403 After completing the policy check (and mutual authentication with the eUICC), the SM-SR forwards the file activation request to the switching module in the eUICC, where the ISD-P AID corresponding to the target profile is included.
  • the eUICC Information Set (EIS) saved by the SM-SR includes relevant identification information of each profile (as shown in the EIS content below). Therefore, the SM-SR can find the ISD-P AID corresponding to its target profile according to the target ICCID in step 803.
  • EIS eUICC Information Set
  • the EIS content is as follows:
  • ⁇ Profile 0 Profile Type, ISD-P AID, ICCID, MSISDN, State, DPID,
  • Profile 1 Profile Type, ISD-P AID, ICCID, MSISDN, State, DPID,
  • the ISD-P AID ISD-P Application Identifier is used to identify the ISD-P.
  • the Integrated Circuit Card ID is generated by the SM-DP during the personalization of the profile and can be used to identify the profile.
  • MSISDN Mobile Subscriber International ISDN (Integrated Service Digital Network) number can be understood as the only number that can identify a mobile user in a telephone network. Therefore, it can also be used to identify a profile.
  • DPID ID of the relevant SM-DP for identifying the SM-DP.
  • SRID ID of the relevant SM-SR, which is used to identify the SM-SR.
  • Step 404 The switching module of the eUICC performs a profile switching operation after the policy check, that is, deactivates the source profile, and activates the target profile.
  • Step 405 The switching module of the eUICC sends a request for updating and maintaining the list to the maintenance and update module, where the target ICCID is included;
  • Step 406 The maintenance and update module of the eUICC maintains the SEID-EID list, and updates the EID-ICCID list to implement binding of some or all application AIDs of the source profile to the target profile.
  • the maintenance and update module maintains the SEID-EID list, and may maintain the list according to the AID(s) of the application to be bound (ie, some or all applications corresponding to the source profile) set in advance, or may be in real time according to the user.
  • the determined AID(s) of the application to be bound is selected to maintain the list. It should be noted that the foregoing actions in maintaining the SEID-EID list are not specifically shown in FIG. 8.
  • the EID-ICCID list is updated to:
  • the status information corresponding to the source profile (ICCID 1 ) in the EID-ICCID list needs to be updated from activated to disabled, target profile (ICCID 2 ).
  • the corresponding status information is updated from disabled to enabled.
  • the EID-ICCID list contains only the identifier of the eUICC (such as EID) and the identifier of Profile 1 (such as ICCID 1 ), the identifier of the profile needs to be updated from the source profile (ICCID 1 ) to the target profile (ICCID 2 ).
  • AIDs of the source profile can be bound to the target profile after updating the EID-ICCID list and determining the application to be bound.
  • how to determine part or all of the AIDs to be bound to the target profile from all the AIDs corresponding to the source profile may specifically include the following situations:
  • the setting action may be implemented when downloading and installing the application, or may be After all the applications are installed, the user can implement the settings again, that is, before step 802.
  • the application that can be bound to the target profile 2 is reported to the user through the terminal UI (such as the AID in Table 1). 1 and AID k ), and then determine the application to be bound via user selection;
  • the method similar to (2) may report the bindable application to the user and prompt the user to make a selection to determine the application to be bound.
  • Step 407 The maintenance and update module of the eUICC feeds back the EID-ICCID list update notification to the user through the UI, and applies the binding update result.
  • the SEID-EID list and the EID-ICCID list can be used to quickly update the subscription data for all applications bound to the target profile corresponding to the source profile, thereby ensuring that the user is After the target profile is activated, some or all of the applications and data corresponding to the source profile in the public SE can be accessed normally.
  • Step 408 The user sends a selection application request to the eUICC through the UI of the terminal, where the AID(s) of the application and the SEID of the eUICC where the application is located are included;
  • Step 409 The eUICC queries the current ICCID corresponding to the AID(s) based on the EID-ICCID list and the SEID-EID list maintained by the maintenance and update module.
  • Step 410 The eUICC feeds back a query notification to the user through the UI, where the AID and the ICCID may be included.
  • steps 408 to 410 are optional steps.
  • Steps 402 to 404 are the profile update phase; steps 405 and 407 are the list update phase; and steps 408 to 410 are the application selection and query phase.
  • the source profile is Profile 1 and the target profile is Profile 2 as an example.
  • the SEID-EID list shown in the above table 1 may also include only the application corresponding to the profile 1 and the profile 2, that is, may be included only in the MNO environment corresponding to the profile 1 and the profile. 2
  • the corresponding MNO environment can be used normally by the application AID 1 and AID k ;
  • the SEID-EID list can also include the application corresponding to Profile 1 and Profile 2, and the application AID 2 to AID k-1 corresponding to Profile1.
  • the SEID-EID list shown in Table 1 above may also include only some or all of the applications selected from the applications corresponding to the Profile 1 and Profile 2 functions. Such as AID 1 and / or AID k ; of course, in addition, the application AID corresponding to Profile 2 can be further included.
  • FIG. 5 is a flowchart of a second application embodiment of a data update method according to an embodiment of the present invention.
  • the embodiment is extended based on the GSMA remote configuration eUICC specification.
  • This embodiment describes a process of migration and update of applications and data in a private SE by using a specific application example.
  • the eUICC includes: ISD-R (ie, management device), ISD-P2 (including SE2) (ie, second storage module). Or the target storage module), ISD-P1 (including SE1) (that is, the first storage module or the source storage module) is taken as an example, but is not limited thereto.
  • the process of its migration update specifically includes:
  • the source profile is Profile 1, corresponding to the private security unit SE1, and the target profile is Profile 2, corresponding to the private security unit SE2;
  • AID 1 - AID m is the corresponding identifier of the m applications installed on SE1, where AID 1 .
  • the two applications corresponding to AID k can still be used normally when switching from Profile 1 to Profile 2 (that is, it can be understood that these two applications are two MNO cooperative subscription applications corresponding to Profile 1 and Profile 2, and they are in two MNOs. Can be used in the environment).
  • Step 500 The MNO sends a profile activation request to the SM-SR, where the EID and the target ICCID are included;
  • Step 501 The SM-SR performs a policy check (and mutual authentication with the eUICC), and then forwards the profile activation request to the ISD-R of the eUICC, where the ISD-P AID of the target file profile is included;
  • the policy check described herein is a policy check performed by the SM-SR in the remote configuration eUICC protocol established by the GSMA, and is not described here.
  • Mutual authentication is the meaning expressed in parentheses in this step.
  • Step 502 After performing the policy check, the ISD-R sends a migrateable application check request to the SE1.
  • the policy check described here is a policy check performed by the eUICC in the remote configuration eUICC protocol defined by the GSMA, and details are not described herein again.
  • the embodiment does not limit the use of the migratable application check request described in step 502 to trigger the following step 503, and may also deactivate the profile 1 of the ISD-P1 through the ISD-R after the eUICC completes the policy check. Operation to trigger step 503 below.
  • Step 503 SE1 performs a migration application check according to the received migratable application check request and generates a migratable application list AID_LIST. It should be noted that, in this embodiment, based on the assumption of the embodiment shown in FIG. 4, the migration is possible.
  • the applications included in the application list AID_LIST are AID 1 and AID k .
  • Step 504 The SE1 of the eUICC reports the migratable application list notification to the user through the UI, where the migratable application list includes the migrateable application list AID_LIST;
  • the SE1 may directly report the list of the migrated applications to the user, and may report the information to the user through the ISD-R.
  • Step 505 The user selects an AID(s) of the application from the list of migratable applications through the UI;
  • Step 506 The user feeds back the migrateable application confirmation to the SE1 of the eUICC through the UI, where the AID(s) of the selected application is included;
  • the terminal UI may directly feed back the user selection result to the SE1, and may also pass The ISD-R feeds back the user selection result to SE1.
  • step 504 to the step 506 are optional steps, that is, in this embodiment, the SE1 of the eUICC may not be reported to the user, but the ISD-R selects and determines the application AID to be migrated. (s), or determine the application AID(s) to be migrated according to the migrateable application selected by the user in advance.
  • Step 507 The SE1 of the eUICC sends an application migration request to the ISD-R.
  • the application migration request may include the identifier SEID1 of the source SE and/or the identifier SEID2 of the target SE, or may not include the SEID1 or the SEID2, because the profile enabled req received by the previous ISD-R There is an ISD-P AID corresponding to the target profile.
  • the AID(s) of the applications may be carried in the request in this step.
  • Step 508 The ISD-R of the eUICC performs a policy check.
  • the ISD-R performs the policy check mainly to check whether the eUICC supports the profile from an MNO through the ISD-R.
  • the corresponding private SE migrates the subscription application and its related data to another private SE corresponding to the profile of the MNO that has a cooperative contract relationship with the MNO.
  • the application here may be online and/or offline.
  • Payment applications such as bank card applications, bus card applications, etc., correspondingly, the relevant data of these applications may be data generated in the card personalization stage such as card number, card key, and transaction-related data generated in the use of the card, etc. Wait.
  • the present invention is not limited to the specific policy check manner.
  • Step 509 The ISD-R of the eUICC feeds back the application migration confirmation to the SE1 after performing the policy check.
  • the ISD-R feeds back the application migration confirmation to SE1 to inform the application that SE1 can determine before the transfer to the ISD-R (such as steps 504 to 506) related data.
  • Step 510 Perform application and data migration between the ISD-R and the SE1 of the eUICC;
  • SE1 migrates the application determined in steps 504 to 506 above and its related data into the ISD-R.
  • step 503 to step 506, or step 504 to step 506 It can also be performed between step 509 and step 510.
  • Step 511 The ISD-R of the eUICC performs a profile switching operation, that is, deactivating the source profile and activating the target profile.
  • this step may also be performed before step 510 or after step 512.
  • Step 512 The ISD-R of the eUICC sends an application migration request to the SE2.
  • Step 513 SE2 of the eUICC feeds back the application migration confirmation to the ISD-R.
  • Step 514 Perform application and data migration between the ISD-R and the SE2 of the eUICC;
  • the ISD-R migrates the selected application and its related data acquired from SE1 based on the above step 510 into SE2.
  • this step may also be completed in the process of the foregoing steps 512-513, that is, the application migration request sent by the ISD-R to the SE2 includes the application migrated in this step and related data.
  • Step 515 The ISD-R of the eUICC feeds back the application migration result notification to the user through the UI, where the AID(s) of the migrated application may be included.
  • the ISD-R included in the eUICC can be understood as a functional module in the management device; the ISD-P2 (SE2) can be understood as a functional module in the target storage module, and the ISD-P1 (SE1) can be It is understood as a functional module in the source storage module.
  • SM-DP the definitions of the SM-DP, ISD-R, SM-SR, ISD-P, and some related identifiers are all defined by parameters in the GSM Standards Organization (GSMA). I will not repeat them. ISD-R and ISD-P can be understood as logical entities rather than physical entities.
  • the purpose of migrating the application from the private SE corresponding to the source profile to the private SE corresponding to the target profile and related data may be implemented by other implementation manners, and other specific implementation manners include However, it is not limited to the following two examples:
  • the ISD-R may (after performing the policy check as in step 508) send an application migration request to the ISD-P1 (as in step 507 above); the ISD-P1 is based on the request. (After performing the policy check similar to step 508), perform a migration application check (such as step 503 above), and report the obtained migratable application list AID_LIST to the ISD-R; the ISD-R decides according to the AID_LIST The selected application or the requesting user decides the selected application, and feeds the application migration confirmation to the ISD-P1 (such as step 509 above); the ISD-P1 selects the corresponding application and its related data on the private SE (SE1) according to the selected application. Sent to the ISD-R (step 510 above). Specifically, a third application example is shown in FIG. 6;
  • step 601 to step 602 see steps 500 to 501;
  • Step 603 The ISD-R performs a migration application check.
  • Step 604 The ISD-R sends an application migration request to the SE1, where the identification information of the target profile is included.
  • Step 605 to step 608 are detailed in steps 503 to 506;
  • Step 609 SE1 feeds back an application confirmation to the ISD-R, where the selected application and its related data are included;
  • Step 610 to step 614 are detailed in steps 511 to 515.
  • the ISD-R may (after performing the policy check as in step 508) send a migratable application check request to the ISD-P1; the ISD-P1 is based on the request (in the similar).
  • the migration application check is performed (such as step 503 above), and the obtained migratable application list AID_LIST is reported to the ISD-R; the ISD-R decides the selected application or the request user according to the AID_LIST.
  • ISD-P1 may directly or after sending the application migration request to ISD-R (as in steps 507 and 509 above), The corresponding application on its private SE (SE1) and its associated data are sent to the ISD-R (step 510 above).
  • SE1 application on its private SE
  • the management device on the eUICC determines the migration information of the application and the data to be performed, in the embodiment of the present invention.
  • the migration information the at least one application and the related data on the private SE of the source storage module corresponding to the source profile are migrated to the private SE of the target storage module corresponding to the target profile, so that the application in the source storage module is The data is not available with the deactivation of the source profile, which ensures that the user can normally access some or all of the applications and data corresponding to the source profile after activating the target profile.
  • the techniques in the embodiments of the present invention can be implemented by means of software plus a necessary general hardware platform. Based on such understanding, the technical solution in the embodiments of the present invention may be embodied in the form of a software product in essence or in the form of a software product.
  • the product may be stored in a storage medium, such as a ROM/RAM, a magnetic disk, an optical disk, etc., including instructions for causing a computer device (which may be a personal computer, server, or network device, etc.) to perform various embodiments or implementations of the present invention.
  • a computer device which may be a personal computer, server, or network device, etc.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Databases & Information Systems (AREA)
  • Theoretical Computer Science (AREA)
  • General Engineering & Computer Science (AREA)
  • Physics & Mathematics (AREA)
  • General Physics & Mathematics (AREA)
  • Data Mining & Analysis (AREA)
  • Computer Security & Cryptography (AREA)
  • Stored Programmes (AREA)
  • User Interface Of Digital Computer (AREA)
  • Telephone Function (AREA)
  • Mobile Radio Communication Systems (AREA)

Abstract

本发明提供一种数据更新方法、装置及eUICC,所述方法用于设置有管理装置和至少一个SE的eUICC,至少一个SE用于保存至少一个轮廓Profile对应的应用,管理装置接收Profile激活请求,该激活请求用于将源Profile切换为目标Profile;该激活请求包含目标Profile的标识信息,源Profile为切换之前处于激活状态的Profile,根据该激活请求将第一对应关系更新为第二对应关系;第一对应关系为第一应用集与源Profile的对应关系,第一应用集包括至少一个SE上的至少一个应用;第二对应关系为第二应用集与目标Profile的对应关系,第二应用集包括第一应用集中的至少一个应用。

Description

数据更新方法、装置及嵌入式通用集成电路卡 技术领域
本发明涉及通信安全技术领域,特别涉及数据更新方法、装置及嵌入式通用集成电路卡(embedded Universal Integrated Circuit Card,eUICC)。
背景技术
随着移动终端的普及,移动支付业务逐渐兴起,为了提高移动支付业务的安全性,通常需要在终端内设置安全单元(Secure Element,SE),以便对用户敏感数据进行安全存储和运算。其中,SE可以由移动运营商(Mobile Network Operator,MNO)进行控制,SE的物理载体可以是UICC(Universal Integrated Circuit Card,通用集成电路卡),也可以是直接焊接在终端内部且不可插拔的eUICC。根据GSMA制定的远程配置eUICC协议,每个eUICC上可以配置多个MNO的多个文件(Profile),每个Profile被下载与安装在其所对应的MNO专属的主安全域(即GSMA在远程配置eUICC协议中定义的ISD-P(Issuer Security Domain))中,终端每次激活一个MNO的Profile,当需要切换MNO时,需要去激活原MNO的Profile(后面将称为源Profile),并激活新MNO的Profile(后面将称为目标Profile)。其中,Profile是与MNO相关的文件结构、数据和应用的集合,包括profile类型、ISD-P AID、ICCID、MSISDN、DPID等,可通过空中方式被配置到ISD-P上。
目前,UICC SE是MNO主导与控制的安全单元实现方案,任何应用服务提供商需要先与运营商签署商业合作协议,才能将应用下载并安装到UICC SE上;此外,同一国家的不同MNO或不同国家的不同MNO之间也可以通过签署合作协议实现在不同MNO环境下使用相同应用,以方便用户、推进行业发展,譬如2013年中日韩三国运营商(分别是中移动、NTT DOCOMO和KT)达成的NFC国际漫游协议。然而,当MNO相关的支付类应用所在SE的物理载体由UICC变为eUICC时,由于目前GSMA所制定的远程配置eUICC协议并没有针对SE的创建、删除、管理,以及其中应用的下载、安装、更新等操作进行任何规定,因此,也无法实现在切换Profile后源Profile对应的部分或全部应用在目标Profile对应的MNO环境下的正常使用。
发明内容
本发明实施例提供一种数据更新方法、装置及eUICC,以解决现有技术在切换eUICC中的MNO时容易导致SE内的应用不可用,从而影响用户对SE内应用数据进行访问的问题。
为了解决上述技术问题,本发明实施例公开了如下技术方案:
第一方面,提供了一种数据更新的方法,所述方法用于设置有管理装置和至少一个安全单元SE的通用集成电路卡eUICC,所述至少一个SE用于保存至少一个轮廓Profile对应的应用,所述管理装置用于管理所述至少一个SE,所述方法包括:
所述管理装置接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系;
其中,所述第一对应关系为第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
在第一方面的第一种可能的实现方式中,所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
结合第一方面或第一方面的第一种可能的实现方式,在第二种可能的实现方式中,所述至少一个安全单元SE为至少一个公共SE;
其中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用。
结合第一方面或第一方面的第一种或第二种可能的实现方式,在第三种可能的实现方式中,在所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,所述方法还包括:
所述管理装置保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
结合第一方面或第一方面的第一种或第二种或第三种可能的实现方式,在第四种可能的实现方式中,所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
所述管理装置根据所述目标Profile的识别信息,或者根据所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
结合第一方面或第一方面的第一种或第二种或第三种或第四种可能的实现方式,在第五种可能的实现方式中,所述管理装置保存所述第一对应关系,包括:
所述管理装置保存所述eUICC与至少一个所述Profile的第一映射表,所述第一映射表至少包含所述源Profile的识别信息;
所述管理装置保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;
所述管理装置关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
结合第一方面或第一方面的第一种或第二种或第三种或第四种或第五种可能的实现方式,在第六种可能的实现方式中,
所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与对应的目标Profile的识别信息进行关联,得到所述第二对应关系,包括:
所述管理装置将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,所述管理装置将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
所述管理装置将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,所述管理装置将所述第二映射表中的所述至少一个应用的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
所述管理装置关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
结合第一方面或第一方面的第一种或第二种或第三种或第四种或第五种或第六种可能的实现方式,在第七种可能的实现方式中,
所述第一应用集中的至少一个应用包括:所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
结合第一方面或第一方面的第一种或第二种或第三种或第四种或第五种或第六种或第七种可能的实现方式,在第八种可能的实现方式中,所述方法还包括:
在所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,所述方法还包括:
所述管理装置向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
所述管理装置根据用户的选择从所述应用列表中确定至少一个应用。
结合第一方面的第九种可能的实现方式中,所述至少一个安全单元SE包括第一 私有SE和第二私有SE,所述第一私有SE设置在对应的第一存储模块中,所述第二私有SE设置在对应的第二存储模块中;
所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;
所述第一私有SE保存所述源Profile对应的至少一个应用,所述第二私有SE保存所述目标Profile对应的至少一个应用;
所述第一存储模块和所述第二存储模块设置在所述eUICC中,且由所述管理装置管理。
结合第一方面或第一方面的第九种可能的实现方式中,在第十种可能的实现方式中,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,包括:
所述管理装置确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二个SE迁移应用和数据的信息;
所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
结合第一方面或第一方面的第九种或第十种可能的实现方式,在第十一种可能的实现方式中,所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述应用的相关数据迁移到所述第二私有SE上,包括:
所述管理装置根据所述信息从所述第一应用集中获得至少一个应用及所述至少一个应用的相关数据;
所述管理装置将获得的所述至少一个应用中及所述至少一个应用的相关数据迁移到所述第二私有SE上。
结合第一方面或第一方面的第九种或第十种或第十一种可能的实现方式,在第十二种可能的实现方式中,所述第一应用集中的至少一个应用及所述至少一个应用的 相关数据包括:
所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述应用的相关数据;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
结合第一方面或第一方面的第九种或第十种或第十一种或第十二种可能的实现方式,在第十三种可能的实现方式中,所述从第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中确定的至少一个应用时,所述方法还包括:
所述管理装置向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
所述管理装置根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定的至少一个应用。
第二方面提供了一种数据更新的管理装置,所述管理装置设置在通用集成电路卡eUICC上,所述eUICC还设置有至少一个安全单元SE,所述至少一个SE用于保存至少一个轮廓Profile对应的应用,所述管理装置用于管理所述至少一个SE,所述管理装置包括:
第一接收单元,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile,所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
更新单元,用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系包括第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
在第二方面的第一种可能的实现方式中,所述更新单元更新的所述至少一个应用包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
结合第二方面或第二方面的第一种可能的实现方式,在第二种可能的实现方式中,所述更新单元,具体用于在所述至少一个安全单元SE为至少一个公共SE,且所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用时,根据所述Profile激活请求将第一对应关系更新为第二对应关系。
结合第二方面或第二方面的第一种或第二种可能的实现方式,在第三种可能的实现方式中,还包括:
存储单元,用于在所述更新单元根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
结合第二方面或第二方面的第一种或第二种或第三种可能的实现方式,在第四种可能的实现方式中,所述更新单元包括:
选择单元,用于根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
第一更新单元,用于将从所述第一对应关系中获取所选择的所述至少一个应用的标识,并将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
结合第二方面或第二方面的第一种或第二种或第三种或第四种可能的实现方式,在第五种可能的实现方式中,所述存储单元包括:
第一存储单元,用于保存所述eUICC与至少一个所述Profile的第一映射表;所述第一映射表至少包含所述源Profile的识别信息;
第二存储单元,用于保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;
关联单元,用于关联所述第一映射表和第二映射表,得到所述第一对应关系。
结合第二方面或第二方面的第一种或第二种或第三种或第四种或第五种可能的实现方式,在第六种可能的实现方式中,
所述第一存储单元保存的所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
所述第二存储单元保存的所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
所述第一更新单元,具体用于根据所述Profile激活请求更新所述第一映射表;其中,将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;以及,根据所述Profile激活请求更新所述第二映射表,其中,将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,将所述第二映射表中的所述至少一个应用中的至少一个应用所对应的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
结合第二方面或第二方面的第一种或第二种或第三种或第四种或第五种或第六种可能的实现方式,在第七种可能的实现方式中,
所述更新单元更新的所述第一应用集中的至少一个应用包括:根据用户的预先设置从所述第一应用集中的所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
结合第二方面或第二方面的第一种或第二种或第三种或第四种或第五种或第六种或第七种可能的实现方式,在第八种可能的实现方式中,还包括:
第一输出单元,用于在所述更新单元更新的所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
第一确定单元,用于根据用户的选择从所述应用列表中确定至少一个应用。
在第二方面的第九种可能的实现方式中,所述至少一个安全单元SE包括第一私有SE和第二私有SE,所述eUICC上还设置有至少第一存储模块和第二存储模块;所述管理装置还用于管理所述至少所述第一存储模块和所述第二存储模块,所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;所述第一存储模块中设置所述第一私有SE,所述第二存储模块中设置所述第二私有SE,其中,所述第一私有SE用于保存所述源Profile对应的至少一个应用,以及所述第二私有SE用于保存所述目标Profile对应的至少一个应用。
结合第二方面或第二方面的第九种可能的实现方式,在第十种可能的实现方式中,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述更新单元包括:
第二确定单元,用于确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;
迁移单元,用于根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
结合第二方面或第二方面的第九种或第十种可能的实现方式,在第十一种可能的实现方式中,所述迁移单元包括:
获取单元,用于根据所述信息从所述第一应用集上获得至少一个应用及所述至少一个应用的相关数据;
第一迁移单元,用于将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上。
结合第二方面或第二方面的第九种或第十种或第十一种可能的实现方式,在第十二种可能的实现方式中,所述获取单元获取的所述第一应用集中的至少一个应用及所述至少一个应用的相关数据包括:
根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述至少一 个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
结合第二方面或第二方面的第九种或第十种或第十一种或第十二种可能的实现方式,在第十三种可能的实现方式中,还包括:
第二输出单元,用于在所述获取单元获取的所述从所述第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
第三确定单元,用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中确定的至少一个应用。
第三方面提供了一种通用集成电路卡eUICC,包括:
至少一个安全单元SE,每个SE用于保存至少一个轮廓Profile对应的应用;
处理器,用于管理所述至少一个SE上存储的至少一个应用;
数据接口,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
所述处理器,还用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系为包括第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为所述第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
在第三方面的第一种可能的实现方式中,所述处理器管理的所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
结合第三方面或第三方面的第一种可能的实现方式,在第二种可能的实现方式中,所述至少一个SE为至少一个公共SE;其中,所述至少一个公共SE用于至少保 存所述源Profile对应的应用和所述目标Profile对应的应用。
结合第三方面或第三方面的第一种或第二种可能的实现方式,在第三种可能的实现方式中,存储器,用于保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
结合第三方面或第三方面的第一种或第二种或第三种可能的实现方式,在第四种可能的实现方式中,所述根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
从所述第一对应关系中获取所选择的所述至少一个应用的标识,将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
结合第三方面或第三方面的第一种或第二种或第三种或第四种可能的实现方式,在第五种可能的实现方式中,
所述第一对应关系,具体包括:所述eUICC与至少一个所述Profile的第一映射表,所述第一映射表至少包含所述源Profile的识别信息;以及所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的所述至少一个应用的第二映射表;
关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
结合第三方面或第三方面的第一种或第二种或第三种或第四种或第五种可能的实现方式,在第六种可能的实现方式中,
所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
所述从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系,具体包括:
将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息,或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,将所述第二映射表中的所述至少一个应用中的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
结合第三方面或第三方面的第一种或第二种或第三种或第四种或第五种或第六种可能的实现方式,在第七种可能的实现方式中,
所述第一应用集中的至少一个应用包括:
根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
结合第三方面或第三方面的第一种或第二种或第三种或第四种或第五种或第六种或第七种可能的实现方式,在第八种可能的实现方式中,
所述数据接口,还用于在所述第一应用集中的至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
所述处理器,还用于根据用户的选择从所述应用列表中确定至少一个应用。
结合第三方面的第九种可能的实现方式中,所述至少一个SE包括第一私有SE和第二私有SE,所述第一私有SE设置在第一私有存储设备中,所述第二私有SE设置在第二私有存储设备中,其中,
所述处理器,用于管理所述第一私有SE和第二私有SE;
所述第一私有SE安装有所述源Profile,所述第二私有SE安装有所述目标Profile;
所述第一私有SE,用于保存所述第一私有存储设备上安装的Profile对应的至少一个应用;
所述第二私有SE,用于保存所述第二私有存储设备上安装的Profile对应的至少一个应用。
结合第三方面或第三方面的第九种可能的实现方式,在第十种可能的实现方式中,
所述处理器,还用于确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一的对应关系更新为所述第二对应关系。
结合第三方面或第三方面的第九种或第十种可能的实现方式,在第十一种可能的实现方式中,
所述根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,具体包括:
根据所述信息从所述第一应用集中获得所述至少一个应用及所述至少一个应用的相关数据;并将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上。
结合第三方面或第三方面的第九种或第十种或第十一种可能的实现方式,在第十二种可能的实现方式中,
所述从所述第一应用集中获得所述至少一个应用及所述至少一个应用的相关数据包括:
根据用户的预先设置从所述第一应用集中所所确定的所述至少一个应用及所述 至少一个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
结合第三方面或第三方面的第九种或第十种或第十一种或第十二种可能的实现方式,在第十三种可能的实现方式中,
所述数据接口,还用于在从第一应用集中获取的所述至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述源Profile对应的所述第一私有存储器上保存的且在切换至所述目标Profile时可使用的应用的标识;
所述处理器,还用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定所述源Profile对应的应用中的至少一个应用。
由上述实施例可见,本发明实施例中,管理装置可以根据Profile激活请求将至少一个SE上保存的至少一个应用(即第一应用集)与源Profile之间的对应关系更新为第一应用集中的至少一个应用(即第二应用集)与目标Profile之间的对应关系,从而保证SE内的部分或全部应用不会随着所绑定MNO的签约信息失效而不可用,以此保证用户在激活目标Profile后可以正常访问,并使用SE内的源Profile对应的部分或全部应用和数据。
附图说明
为了更清楚地说明本发明实施例或现有技术中的技术方案,下面将对实施例或现有技术描述中所需要使用的附图作简单地介绍,显而易见地,下面描述中的附图仅仅是本发明的一些实施例,对于本领域普通技术人员来讲,在不付出创造性劳动性的前提下,还可以根据这些附图获得其他的附图。
图1为本发明实施例提供的eUICC的一个架构示意图;
图2为为本发明实施例提供的一种数据更新装置的结构示意图;
图3为本发明实施例提供的一种数据更新方法的流程图;
图4为本发明实施例提供一种数据更新方法的第一应用实例的流程图;
图5为本发明实施例提供一种数据更新方法的第二应用实例的流程图;
图6为本发明实施例提供一种数据更新方法的第三应用实例的流程图。
具体实施方式
为了使本技术领域的人员更好地理解本发明实施例中的技术方案,并使本发明实施例的上述目的、特征和优点能够更加明显易懂,下面结合附图对本发明实施例中技术方案作进一步详细的说明。
参见图1,为本发明提供的一种通用电路集成卡eUICC的一种架构示意图:所述eUICC1包括:至少一个安全单元SE(本实施例以一个安全单元11为例),处理器12和数据接口13,其中,
所述至少一个安全单元中的每个安全单元11用于保存至少一个轮廓Profile对应的应用;
该实施例中,所述安全单元11用于存储eUICC上的轮廓Profile对应的应用。比如,在GSMA所定义的远程配置eUICC规范中,它可以对应ISD-P(Issuer Security Domain Profile),其中,Profile是与MNO相关的文件结构、数据和应用的集合,主要包括profile类型、ISD-P AID(ISD-P Application Identifier,用来标识ISD-P)、ICCID(Integrated Circuit Card ID,用于唯一地标识Profile)、MSISDN等,可通过空中方式被配置到ISD-P上,也可通过其他方式(如无线传输)配置到ISD-P上;所述管理装置是eUICC上用来执行一些诸如ISD-P创建/删除、Profile激活/去激活等管理命令的模块,示例地,在GSMA所定义的远程配置eUICC规范中,它可以对应ISD-R(Issuer Security Domain Root);所述至少一个公共安全单元SE(Secure Element)是eUICC上用来保存与运行所述存储模块中Profile对应的应用的、所述存储模块之外的空间。
其中,所述轮廓(Profile)是指文件结构、数据和应用的组合。一个被激活的轮廓(Enabled Profile),其文件和/或应用(如网络接入应用)可以通过通用集成电路卡-终端(UICC-Terminal)接口选择。一种Profile称为配置轮廓(Provisioning profile),Provisioning profile安装到eUICC上后,可以用于接入通信网络,从而为eUICC和远程实体(如SM-SR,SM-DP)之间的eUICC管理和Profile管理提供传输能力。一种 profile称为运营轮廓(operational profile),Operational Profile包含一个或多个网络接入应用和关联的网络接入凭证。
所述处理器12,用于管理所述至少一个安全单元存储的至少一个应用;
所述数据接口13,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
所述处理器12,还用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系为第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为所述第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
其中,第一应用集中的至少一个应用,也就是至少一个应用中的至少一个应用,例如,安装在eUICC上的由运营商开发的钱包应用、由银行等第三方开发的支付应用、由银行等第三方与多家运营商合作开发的支付应用等。本实施例中的应用在下面实施例中同样适用,后面将不再赘述。
本发明实施例中,处理器可以根据Profile激活请求将至少一个SE上保存的至少一个应用(即第一应用集)与源Profile之间的对应关系更新为第一应用集中的至少一个应用(即第二应用集)与目标Profile之间的对应关系,从而保证SE内的部分或全部应用不会随着所绑定MNO的签约信息失效而不可用,以此保证用户在激活目标Profile后可以正常访问,并使用SE内的Profile对应的部分或全部应用和数据。
需要说明的是,所述第一应用集包括所述源Profile和所述目标Profile共同对应的应用(即在所述源Profile或所述目标Profile被激活时、也就是在所述源Profile对应的MNO环境下或所述目标Profile对应的MNO环境下都可以正常使用的应用),还可能包括所述源Profile单独对应的所有应用(即只要在所述源Profile被激活时、也就是在所述源Profile对应的MNO环境下才能正常使用的应用);所述第二应用集包括所述源Profile和所述目标Profile共同对应的应用中的至少一个应用,还可能包括所述目标Profile单独对应的所有应用(即只要在所述目标Profile被激活时、也就是在所述目标Profile对应的MNO环境下才能正常使用的应用)。
为了更好地描述本发明方案,以所述第一应用集包括所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用为例,具体内容请见下述实施例。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述处理器12管理的所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
也就是说,共同对应的应用是指在源Profile、目标Profile分别对应的MNO环境下都可以使用的应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述至少一个SE11为至少一个公共SE(图中未示);其中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,还包括:所述存储器,用于在所述处理器12根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;以及,
从所述第一对应关系中获取所选择的所述至少一个应用的标识,将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
其中,目标profile的识别信息可以是GSMA中的ISD-P AID、ICCID中的任意一个,甚至还可以是手机号或IMSI等,但并不限于此。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一对应关系,具体包括:所述eUICC与至少一个所述Profile的第一映射表;所述第一映射表至少包含所述源Profile的识别信息;以及所述至少一个公共SE、以及所述至少一个公共SE上的所述至少一个应用的第二映射表;
所述处理器12关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识、以及所述至少一个应用的激活或去激活状态信息;
所述从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与对应的目标Profile的识别信息进行关联,得到所述第二对应关系,具体包括:将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,所述管理装置将所述第二映射表中的所述至少一个应用的的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
所述管理装置关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一应用集中的至少一个应用(即至少一个应用中的至少一个)包括:根据用户的预先设置从所述第一应用集中所所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述数据接口13,还用于在所述第一应用集中的至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
所述处理器12,还用于根据用户的选择从所述应用列表中确定至少一个应用。
进一步,上述实施例中,所述eUICC中的处理器可以根据Profile激活请求将至少一个公共SE上保存的至少一个应用与源Profile之间的对应关系更新为该至少一个应用与目标Profile之间的对应关系,从而保证公共SE内的部分或全部应用不会随着所绑定MNO的签约信息失效而不可用,以此保证用户在激活目标Profile后可以正常访问与使用公共SE内的源Profile对应的部分或全部应用和数据。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述至少一个SE11包括第一私有SE和第二私有SE(图中未示),所述第一私有SE设置在第一私有存储设备中,所述第二私有SE设置在对应的第二私有存储设备中,其中,
所述处理器,用于管理所述第一私有SE和第二私有SE;
所述第一私有SE安装有所述源Profile;所述第二私有SE安装有所述目标Profile;
所述第一私有SE,用于保存所述第一私有存储设备上安装的Profile对应的至少一个应用;
所述第二私有SE,用于保存所述第二私有存储设备上安装的Profile对应的至少一个应用。
需要说明的是,该实施例中,所述至少一个SE11包括至少两个私有SE,即第一私有SE和第二私有SE,可以是一个SE中的两个私有SE;也可以是两个SE分别为两个私有SE,即其中一个SE为第一私有SE,另一个SE为第二私有SE。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述处理器12,还用于确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一的对应关系更新为所述第二对应关系。也就是说,根据所述信息将所述源Profile对应的所述第一私有SE上的所述至少一个应用中的至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,以使所述源Profile对应的所述第一私有SE上保存的至少一个应用与所述源Profile的对应关系更新为所述至少一个应用中的至少一个应用与所述目标Profile的对应关系。
其中,该实施例中,处理器12确定需要进行应用与数据迁移的信息方式有多种,本实施例一两种方式为例来说明,其中,一种确定方式如图5中的步骤502至步骤510所示;另一种确定方式如图6中的步骤603至步骤609所示,在此不再赘述,具体详见下述。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,具体包括:根据所述信息从所述第一应用集中的至少一个应用及所述至少一个应用的相关数据;并将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述从所述第一应用集中获得所述至少一个应用及所述至少一个应用的相关数据包括:
根据用户的预先设置从所述第一应用集中所所确定的所述至少一个应用及所述至少一个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述数据接口13,还用于从第一应用集中获取的所述至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述源Profile对应的所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
所述处理器12,还用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定所述源Profile对应的应用中的至少一个应用。
进一步,本发明实施例中,eUICC中的处理器可以根据确定迁移信息,将源Profile对应的一个存储器(比如源存储器)上的第一私有SE上的至少一个应用及其相关的数据迁移到目标Profile对应的另一存储器(比如目标存储器)上的第二私有SE上,从而使得源存储器内的应用和数据不会随着源Profile的去激活而不可用,以此保证用户在激活目标Profile后可以正常访问与使用公共SE内的源Profile对应的部 分或全部应用和数据。
相应的,本发明实施例还提供一种数据更新的管理装置,其结构示意图如图2所示,所述管理装置21设置在通用集成电路卡eUICC2上,所述eUICC2还设置有至少一个安全单元SE22(本实施例以一个SE为例),所述至少一个SE22用于保存至少一个轮廓Profile对应的应用,所述管理装置21用于管理所述至少一个SE22,所述管理装置21包括:第一接收单元211和更新单元212,其中,
所述第一接收单元211,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile,所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
所述更新单元212,用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系包括第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
可选的,所述更新单元212更新的所述至少一个应用包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述更新单元212,具体用于在所述至少一个安全单元SE22为至少一个公共SE,在该实施例中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用时,根据所述Profile激活请求将第一对应关系更新为第二对应关系。
可选的,在另一实施例中,所述装置还包括:存储单元(图中未示),其中,所述存储单元,用于在所述更新单元根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
可选的,在另一实施例中,所述更新单元212包括:选择单元和第一更新单元(图中未示),其中,所述选择单元,用于根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;所 述第一更新单元,用于将从所述第一对应关系中获取所选择的所述至少一个应用的标识,并将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
可选的,在另一实施例中,所述存储单元包括:第一存储单元,第二存储单元和关联单元,其中,所述第一存储单元,用于保存所述eUICC与至少一个所述Profile的第一映射表;所述第一映射表至少包含所述源Profile的识别信息;所述第二存储单元,用于保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;所述关联单元,用于关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
可选的,在另一实施例中,所述第一存储单元保存的所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;所述第二存储单元保存的所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
所述第一更新单元,具体用于根据所述Profile激活请求更新所述第一映射表;其中,将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;以及,根据所述Profile激活请求更新所述第二映射表,其中,将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,将所述第二映射表中的所述至少一个应用中的至少一个应用所对应的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
可选的,在另一实施例中,所述更新单元212更新的所述第一应用集中的至少一个应用包括:根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
可选的,在另一实施例中,所述装置还可以包括:第一输出单元和第一确定单元(图中未示),其中,所述第一输出单元,用于在所述更新单元更新的所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;所述第一确定单元,用于根据用户的选择从所述应用列表中确定至少一个应用。
可选的,在另一实施例中,该实施例在图2实施例的基础上,所述至少一个安全单元SE包括第一私有SE和第二私有SE,所述eUICC上还设置有至少第一存储模块和第二存储模块;所述管理装置还用于管理所述至少所述第一存储模块和所述第二存储模块,所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;所述第一存储模块中设置所述第一私有SE,所述第二存储模块中设置所述第二私有SE,其中,所述第一私有SE用于保存所述源Profile对应的至少一个应用,以及所述第二私有SE用于保存所述目标Profile对应的至少一个应用。
也就是说,该实施例中,第一存储模块可以源存储模块,第二存储模块可以是目标存储模块;所述至少一个应用可以是源Profile和目标Profile对应的应用,其对应的可以是一个相同的应用,也可以是多个相同的应用,本实施例不作限制。
可选的,在另一实施例中,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述更新单元包括:第二确定单元和迁移单元(图中未示),其中,所述第二确定单元,用于确定需要进行应用与数据迁移的信息,所述信息为从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;
所述迁移单元,用于根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
也就是说,根据所述信息将所述源Profile对应的所述第一私有SE上的所述至少一个应用中的至少一个应用及所述应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,以使所述源Profile对应的所述第一私有SE上保存的至少一个应用与所述源Profile的对应关系更新为所述至少一个应用中的至少一个应用与所述目标Profile的对应关系。
其中,所述数据迁移的信息可以至少包含所述目标Profile的识别信息或者所述目标Profile对应的私有SE的识别信息,其中,目标Profile的识别信息可以是目标Profile的标识(如GSMA定义的ICCID),也可以是目标Profile所述存储模块的标识信息(如GSMA定义的ISD-P AID),还可以是其他能标识目标Profile的信息(如手机号或IMSI等);目标Profile对应的私有SE的识别信息可以是该私有SE的标识(如SEID)。当然,所述迁移信息还可以包括其他识别信息,本实施例不作限制。
可选的,所述迁移单元包括:获取单元和第一迁移单元,其中,所述获取单元,根据所述信息从所述第一应用集上获得至少一个应用及所述至少一个应用的相关数据;所述第一迁移单元,用于将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上。
可选的,在另一实施例中,所述获取单元获取的所述第一应用集中的至少一个应用及所述至少一个应用的相关数据包括:根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
可选的,在另一实施例中,所述装置还可以包括:第二输出单元和第三确定单元(图中未示),其中,所述第二输出单元,用于在所述获取单元获取的所述从所述第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
所述第三确定单元,用于用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中确定的至少一个应用。
本发明实施例中管理装置可以根据确定迁移信息,将源Profile对应的源存储模块的私有SE上的至少一个应用及其相关的数据迁移到目标Profile对应的目标存储模块的私有SE上,从而使得源存储模块内的应用和数据不会随着源Profile的去激活而不可用,以此保证用户在激活目标Profile后可以正常访问与使用公共SE内的源Profile对应的部分或全部应用和数据。
基于上述装置的实现过程,本发明实施例还提供一种数据更新的方法,其流程图如图3所示,所述方法用于设置有管理装置和至少一个安全单元SE的通用集成电路卡eUICC,所述至少一个SE用于保存至少一个轮廓Profile对应的应用,所述管理装置用于管理所述至少一个SE,所述方法包括:
步骤301:所述管理装置接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
步骤302:所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系;其中,所述第一对应关系为第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
其中,所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。其共同对应的应用是指在源Profile、目标Profile分别对应的MNO环境下都可以使用的应用。
可选的,所述至少一个安全单元SE为至少一个公共SE;
其中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,在所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,所述方法还包括:
所述管理装置保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
所述管理装置根据所述目标Profile的识别信息,或者根据所述目标Profile的识 别信息和用户指示,选择所述第一应用集中的至少一个应用;
所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述管理装置保存所述第一对应关系,包括:
所述管理装置保存所述eUICC与至少一个所述Profile的第一映射表,所述第一映射表至少包含所述源Profile的识别信息;
所述管理装置保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;
所述管理装置关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与对应的目标Profile的识别信息进行关联,得到所述第二对应关系,包括:
所述管理装置将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,所述管理装置将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
所述管理装置将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,所述管理装置将所述第二映射表中的所述至少 一个应用的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
所述管理装置关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
可选的,所述第一应用集中的至少一个应用包括:所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,在所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,所述方法还包括:
所述管理装置向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
所述管理装置根据用户的选择从所述应用列表中确定至少一个应用。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述至少一个安全单元SE包括第一私有SE和第二私有SE,所述第一私有SE设置在对应的第一存储模块中,所述第二私有SE设置在对应的第二存储模块中;
所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;
所述第一私有SE保存所述源Profile对应的至少一个应用,所述第二私有SE保存所述目标Profile对应的至少一个应用;
所述第一存储模块和所述第二存储模块设置在所述eUICC中,且由所述管理装置管理。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,包括:
所述管理装置确定需要进行应用与数据迁移的信息,所述信息为用于从所述第 一私有SE向所述第二个SE迁移应用和数据的信息;
所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述应用的相关数据迁移到所述第二私有SE上,包括:
所述管理装置根据所述信息从所述第一应用集中获得至少一个应用及所述至少一个应用的相关数据;
所述管理装置将获得的所述至少一个应用中及所述至少一个应用的相关数据迁移到所述第二私有SE上。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述第一应用集中的至少一个应用及所述至少一个应用的相关数据包括:
所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述应用的相关数据;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
可选的,在另一实施例中,该实施例在上述实施例的基础上,所述从第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中确定的至少一个应用时,所述方法还包括:
所述管理装置向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
所述管理装置根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定的至少一个应用。
为例便于本领域技术人员的理解,下面以具体的应用实例来说明。
还请参阅图4,图4为本发明实施例提供的一种数据更新的方法的第一应用实例的流程图,该实施例是在GSMA所制定的远程配置eUICC的规范的基础上进行说明的。该实施例通过一个具体的应用实例描述了对公共SE内的应用所关联的Profile进行更新的过程,在该过程中,eUICC包括管理装置,该管理装置以包括维护与更新模块和切换模块为例,但并不限于此。其具体更新过程包括:
步骤401:eUICC通过应用选择与查询模块维护SEID-EID映射列表和EID-ICCID映射列表;
其中,SEID用于标识安全单元SE,EID用于标识嵌入式通用集成电路卡eUICC,ICCID用于标识Profile。
一种示例中,假设eUICC上有多个公共SE,其中SE1(其标识为SEID1)已安装n个应用,其中AID1-AIDk为Profile 1所对应的应用,而其中AID1和AIDk可以在切换到Profile 2后继续使用(也就是说,AID1和AIDk是Profile 1对应的MNO与Profile2对应的MNO合作签约的应用,即这两个应用均可以在这两个MNO环境下使用,则SEID-EID列表如表1所示:
表1
Figure PCTCN2015070060-appb-000001
假设当前eUICC上Profile 1是激活的(enabled),其余Profile 2到Profilem全是去激活的(disabled),则EID-ICCID列表如表2所示:
表2
Figure PCTCN2015070060-appb-000002
Figure PCTCN2015070060-appb-000003
表2是以ICCID标识Profile为例进行说明的,其实也可以使用其他标识,如ISD-P AID、手机号或IMSI等。本示例中,表2所述的EID-ICCID列表包含eUICC的标识(如EID)、Profile 1的标识(如ICCID1)及其相应的状态信息(如激活状态enabled)、Profile 2的标识(如ICCID2)及其相应的状态信息(如去激活状态disabled)等,在完成Profile切换后,只需将该列表中Profile相应的状态信息进行更新即可;另外,EID-ICCID列表还可以仅包含eUICC的标识(如EID)和Profile1的标识(如ICCID1),在完成Profile切换后,只需将该列表中Profile的标识更新即可。
步骤402:MNO向SM-SR发送Profile激活请求(Profile Enabling Request),该请求中包括EID和目标ICCID;
需要说明的是,MNO向SM-SR发送Profile激活请求可以是用户主动请求MNO来触发的,也可以MNO自动触发的,本发明对此不进行限定。
步骤403:SM-SR在完成策略检查(并与eUICC进行相互认证)之后向eUICC中的切换模块转发该文件激活请求(Profile enabling request),其中包含目标Profile对应的ISD-P AID。
需要说明的是,根据GSMA所制定的远程配置eUICC的规范,由于SM-SR保存的eUICC信息集(eUICC Information Set,EIS)中包含每个Profile的相关识别信息(如下述EIS内容所示),因此,SM-SR可以根据步骤803中的目标ICCID查出其目标Profile所对应的ISD-P AID。
EIS内容如下:
EIS={EID,
Type,Version,Production Date,
Platform Management Credentials,Certificate,
SRID,
{Profile 0:Profile Type,ISD-P AID,ICCID,MSISDN,State,DPID,
Allocated Memory,POL2
Profile 1:Profile Type,ISD-P AID,ICCID,MSISDN,State,DPID,
Allocated Memory,POL2
……
Profile n:……
}
}
其中,ISD-P AID:ISD-P Application Identifier,用于标识ISD-P。
ICCID:Integrated Circuit Card ID,是SM-DP在Profile的个性化过程中生成的,可以用于标识Profile。
MSISDN:Mobile Subscriber International ISDN(Integrated Service Digital Network,综合业务数字网)number,在电话网络中可以理解为唯一能识别移动用户的号码,因此,也可以用于标识Profile。
DPID:ID of the relevant SM-DP,用于标识SM-DP。
SRID:ID of the relevant SM-SR,用于标识SM-SR。
步骤404:eUICC的切换模块在经过策略检查后进行Profile切换操作,即去激活源Profile,并激活目标Profile;
步骤405:eUICC的切换模块向维护与更新模块发送更新与维护列表的请求,其中包含目标ICCID;
步骤406:eUICC的维护与更新模块维护SEID-EID列表,更新EID-ICCID列表,以实现源Profile的部分或全部应用AID绑定到目标Profile;
具体地,维护与更新模块维护SEID-EID列表,可以根据提前设置的待绑定应用(即源Profile对应的部分或全部应用)的AID(s)来维护该列表,也可以是根据用户实时地选择所确定的待绑定应用的AID(s)来维护该列表。需要说明的是,前述关于维护SEID-EID列表中的动作在图8中并未具体示出。
示例地,假设目标Profile为Profile 2,则EID-ICCID列表更新为:
表3
Figure PCTCN2015070060-appb-000004
具体地,本示例中,按上述表2的内容,需要将该EID-ICCID列表中源Profile(ICCID1)对应的状态信息由激活(enabled)更新为去激活(disabled)、目标Profile(ICCID2)对应的状态信息由去激活(disabled)更新为激活(enabled)。另外,若该EID-ICCID列表仅包含eUICC的标识(如EID)和Profile 1的标识(如ICCID1),则需要将Profile的标识由源Profile(ICCID1)更新为目标Profile(ICCID2)。
需要说明的是,在更新EID-ICCID列表且确定待绑定的应用之后,才能将源Profile的部分或全部AID绑定到目标Profile。其中,关于如何从源Profile对应的全部AID中确定待绑定到目标Profile的部分或全部AID,具体可以包含下述几种情况:
(1)可以在请求切换Profile之前,即提前设置都有哪些AID(s)要绑定到目标Profile;需要说明的是,该设置动作可以是在下载与安装应用时实施的,也可以是在所有应用安装完后用户再统一设置实施的,即在步骤802之前设置。
(2)可以在更新EID-ICCID列表之前,例如,在eUICC收到profile激活请求之后或完成profile激活之后,通过终端UI向用户上报可绑定到目标Profile 2的应用(如表1中的AID1和AIDk),然后经由用户选择来确定待绑定的应用;
(3)可以在更新EID-ICCID列表之后,类似(2)的方法,向用户上报可绑定的应用并提示用户进行选择以确定待绑定的应用。
步骤407:eUICC的维护与更新模块通过UI向用户反馈EID-ICCID列表更新通知,以及应用绑定更新结果;
经过上述步骤401至407,可以通过SEID-EID列表和EID-ICCID列表为源Profile对应的所有绑定到目标Profile的应用迅速更新签约数据,以此保证用户在 激活目标Profile后可以正常访问与使用公共SE内的源Profile对应的部分或全部应用和数据。
步骤408:用户通过终端的UI向eUICC发送选择应用请求,其中包含应用的AID(s)与其所在eUICC的SEID;
步骤409:eUICC基于维护与更新模块所维护的EID-ICCID列表和SEID-EID列表查询该AID(s)当前对应的ICCID;
步骤410:eUICC通过UI向用户反馈查询通知,其中可包含AID和ICCID。
需要说明的是,上述实现过程中,步骤408至410是可选步骤。
步骤402至步骤404为Profile更新阶段;步骤405和步骤407为列表更新阶段;步骤408至步骤410为应用选择与查询阶段。
需要说明的是,还是以源Profile为Profile 1、目标Profile为Profile 2为例。那么,在Profile 1处于激活状态时,上述表1所示的SEID-EID列表中,也可以只包含Profile 1和Profile 2共同对应的应用,即可以只包含在Profile 1对应的MNO环境下与Profile 2对应的MNO环境都可以正常使用的应用AID1和AIDk;该SEID-EID列表中还可以包含Profile 1和Profile 2共同对应的应用、以及Profile1单独对应的应用AID2至AIDk-1。在Profile 1被去激活、Profile 2被激活后,相应地,上述表1所示的SEID-EID列表中也可以只包含从Profile 1和Profile 2功能对应的应用中选择出来的部分或全部应用,如AID1和/或AIDk;当然,除此之外,还可以再包括Profile 2单独对应的应用AID。
参见图5,为本发明实施例提供的数据更新方法的第二应用实施例流程图,该实施例是基于GSMA的远程配置eUICC规范扩展的。该实施例通过一个具体的应用实例对私有SE内应用和数据的迁移更新的过程进行描述,eUICC以包括:ISD-R(即管理装置),ISD-P2(含SE2)(即第二存储模块或目标存储模块),ISD-P1(含SE1)(即第一存储模块或源存储模块)为例,但并不限于此。其迁移更新的过程具体包括:
本示例中,假设源Profile为Profile 1,对应私有安全单元SE1,目标Profile为Profile 2,对应私有安全单元SE2;AID1-AIDm是SE1上安装的m个应用相应的标识,其中AID1、AIDk对应的两个应用在由Profile 1切换到Profile 2时仍可以正常 使用(即可以理解为这两个应用是Profile 1和Profile 2对应的两个MNO合作签约的应用,它们在两个MNO环境下都可以使用)。
步骤500:MNO向SM-SR发送文件激活请求(Profile enabling request),其中包含EID和目标ICCID;
步骤501:SM-SR进行策略检查(以及与eUICC进行相互认证)后向eUICC的ISD-R转发该Profile激活请求,其中包含目标文件Profile的ISD-P AID;
需要说明的是,此处所述策略检查为GSMA制定的远程配置eUICC协议中SM-SR进行的策略检查,在此不再赘述;另外,如果SM-SR与eUICC还未相互认证,则还需要进行相互认证,即本步骤括号中所表达的意思。
步骤502:在进行策略检查后,ISD-R向SE1发送可迁移应用检查请求;
需要说明的是,此处所述策略检查为GSMA制定的远程配置eUICC协议中eUICC进行的策略检查,在此不再赘述。另外,本实施例不限制一定要使用步骤502所述的可迁移应用检查请求来触发下面步骤503,还可以在eUICC完成所述策略检查后通过ISD-R进行去激活ISD-P1中Profile 1的操作来触发下面的步骤503。
步骤503:SE1根据所接收到的可迁移应用检查请求进行可迁移应用检查并生成可迁移应用列表AID_LIST;需要说明的是,本实施例中,基于前面图4所示实施例的假设,可迁移应用列表AID_LIST中包含的应用就是AID1和AIDk
步骤504:eUICC的SE1通过UI向用户上报可迁移应用列表通知,其中该可迁移应用列表包含可迁移的应用列表AID_LIST;
需要说明的是,本实施例中,SE1可以直接向用户上报所述可迁移应用列表,还可以通过ISD-R向用户上报。
步骤505:用户通过UI从可迁移应用列表中选择应用的AID(s);
步骤506:用户通过UI向eUICC的SE1反馈可迁移应用确认,其中包含所选应用的AID(s);
具体地,本实施例中,终端UI可以直接向SE1反馈用户选择结果,也可以通过 ISD-R向SE1反馈用户选择结果。
需要说明的是,步骤504至步骤506为可选步骤,也就是说,在该实施例中,eUICC的SE1也可以无需向用户上报,而是由ISD-R自行选择并确定待迁移的应用AID(s),或者根据用户提前选定好的可迁移应用确定待迁移的应用AID(s)。
步骤507:eUICC的SE1向ISD-R发送应用迁移请求;
需要说明的是,该应用迁移请求中可以包含源SE的标识SEID1和/或目标SE的标识SEID2,也可以不包含SEID1,或者不包含SEID2,这是因为之前ISD-R收到的profile enabling req中有目标Profile对应的ISD-P AID。另外,在上面步骤506中,若ISD-R不知道这些待迁移出去的可迁移应用有哪些,则本步骤的该请求中可以携带这些应用的AID(s)。
步骤508:eUICC的ISD-R进行策略检查;
需要说明的是,此处所述的策略检查与前面步骤501和502中所述的策略检查不同,ISD-R进行该策略检查主要是为了检查本eUICC是否支持通过ISD-R从一个MNO的Profile对应的私有SE向另一个与该MNO在应用上有合作签约关系的MNO的Profile对应的私有SE迁移这些签约应用及其相关数据,这里所说的应用可以是能进行线上和/或线下支付的应用,例如,银行卡应用、公交卡应用等,相应地,这些应用的相关数据可以是卡号、卡密钥等在卡片个性化阶段生成的数据以及卡片使用中生成的交易相关的数据等等。对于具体策略检查方式,本发明并不进行限定。
步骤509:eUICC的ISD-R在进行策略检查后向SE1反馈应用迁移确认;
具体地,基于上述步骤508,若策略检查的结果是支持,则ISD-R向SE1反馈应用迁移确认,以告知SE1可以向ISD-R转移之前(如步骤504至506)所确定的应用及其相关数据。
步骤510:eUICC的ISD-R与SE1之间进行应用和数据的迁移;
具体地,SE1将上述步骤504至506中所确定的应用及其相关数据迁移到ISD-R中。
需要说明的是,本实施例中,步骤503至步骤506,或者,步骤504至步骤506 还可以放在步骤509与步骤510之间执行。
步骤511:eUICC的ISD-R进行Profile切换操作,即去激活源Profile并激活目标Profile;
需要说明的是,本步骤还可以在步骤510之前或步骤512之后执行。
步骤512:eUICC的ISD-R向SE2发送应用迁移请求;
步骤513:eUICC的SE2向ISD-R反馈应用迁移确认;
步骤514:eUICC的ISD-R与SE2之间进行应用和数据的迁移;
具体地,ISD-R将基于上述步骤510从SE1处获取到的所选应用及其相关数据迁移到SE2中。另外,本步骤也可以在上述步骤512-513的过程中完成,即ISD-R向SE2发送的应用迁移请求中包含本步骤中所迁移的应用及其相关数据。
步骤515:eUICC的ISD-R通过UI向用户反馈应用迁移结果通知,其中可以包含已迁移应用的AID(s)。
当然,在该实施例中,eUICC包括的ISD-R可以理解为管理装置中的一个功能模块;ISD-P2(SE2)可以理解为目标存储模块中的一个功能模块,ISD-P1(SE1)可以理解为源存储模块中的一个功能模块。
需要说明的是,在该实施例中,所述SM-DP、ISD-R、SM-SR、ISD-P及其相关一些标识的定义均参考GSM标准组织(GSMA)中的参数定义,在此不再赘述,ISD-R、ISD-P可以理解为逻辑实体,而非物理实体。
本实施例中,除了图5所示的上述实施方式,还可以通过其他实施方式实现从源Profile对应的私有SE向目标Profile对应的私有SE迁移应用及其相关数据的目的,其他具体实施方式包含但不限于,下面以两种实施例为例:
第一种实施例,在图5中步骤502之后,ISD-R可以(在进行如步骤508的策略检查后)向ISD-P1发送应用迁移请求(如上述步骤507);ISD-P1根据该请求(在进行类似步骤508所述的策略检查后)进行可迁移应用检查(如上述步骤503),并向ISD-R报告检查所得的可迁移应用列表AID_LIST;ISD-R根据该AID_LIST自主决定 所选应用或者请求用户决定所选应用,并向ISD-P1反馈应用迁移确认(如上述步骤509);ISD-P1根据所选应用将其私有SE(SE1)上相对应的应用及其相关数据发送给ISD-R(如上述步骤510)。具体如图6所示的第三应用实例;
该图6中,步骤601至步骤602详见步骤500至步骤501;
步骤603:ISD-R进行可迁移应用检查;
步骤604:ISD-R向SE1发送应用迁移请求,其中包括目标Profile的识别信息;
步骤605至步骤608详见步骤503至步骤506;
步骤609:SE1向ISD-R反馈应用迁移确认,其中,包括所选应用及其相关数据;
步骤610至步骤614详见步骤511至步骤515。
第二种实施例,在图5中步骤502之后,ISD-R可以(在进行如步骤508的策略检查后)向ISD-P1发送可迁移应用检查请求;ISD-P1根据该请求(在进行类似步骤508所述的策略检查后)进行可迁移应用检查(如上述步骤503),并向ISD-R报告检查所得的可迁移应用列表AID_LIST;ISD-R根据该AID_LIST自主决定所选应用或者请求用户决定选择应用,并向ISD-P1反馈所选应用;ISD-P1根据所选应用可以直接,或者,经过向ISD-R发送应用迁移请求并得到确认(如上述步骤507和509)后,再将其私有SE(SE1)上相对应的应用及其相关数据发送给ISD-R(如上述步骤510)。
由上述实施例可知,对于eUICC上设置多个私有SE以分别保存每个Profile对应的应用和数据的情况,应用本发明实施例当eUICC上的管理装置确定需要进行的应用与数据的迁移信息,并根据该迁移信息,将源Profile对应的源存储模块的私有SE上的至少一个应用及其相关的数据迁移到目标Profile对应的目标存储模块的私有SE上,从而使得源存储模块内的应用和数据不会随着源Profile的去激活而不可用,以此保证用户在激活目标Profile后可以正常访问与使用源Profile对应的部分或全部应用和数据。
本领域的技术人员可以清楚地了解到本发明实施例中的技术可借助软件加必需的通用硬件平台的方式来实现。基于这样的理解,本发明实施例中的技术方案本质上或者说对现有技术做出贡献的部分可以以软件产品的形式体现出来,该计算机软件产 品可以存储在存储介质中,如ROM/RAM、磁碟、光盘等,包括若干指令用以使得一台计算机设备(可以是个人计算机,服务器,或者网络设备等)执行本发明各个实施例或者实施例的某些部分所述的方法。
本说明书中的各个实施例均采用递进的方式描述,各个实施例之间相同相似的部分互相参见即可,每个实施例重点说明的都是与其他实施例的不同之处。尤其,对于系统实施例而言,由于其基本相似于方法实施例,所以描述的比较简单,相关之处参见方法实施例的部分说明即可。
以上所述的本发明实施方式,并不构成对本发明保护范围的限定。任何在本发明的精神和原则之内所作的修改、等同替换和改进等,均应包含在本发明的保护范围之内。

Claims (42)

  1. 一种数据更新的方法,其特征在于,所述方法用于设置有管理装置和至少一个安全单元SE的通用集成电路卡eUICC,所述至少一个SE用于保存至少一个轮廓Profile对应的应用,所述管理装置用于管理所述至少一个SE,所述方法包括:
    所述管理装置接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
    所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系;
    其中,所述第一对应关系为第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
  2. 根据权利要求1所述的方法,其特征在于,
    所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
  3. 根据权利要求1或2所述的方法,其特征在于,所述至少一个安全单元SE为至少一个公共SE;
    其中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用。
  4. 根据权利要求3所述的方法,其特征在于,在所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,所述方法还包括:
    所述管理装置保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
  5. 根据权利要求3或4所述的方法,其特征在于,所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
    所述管理装置根据所述目标Profile的识别信息,或者根据所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
    所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
  6. 根据权利要求4或5所述的方法,其特征在于,所述管理装置保存所述第一对应关系,包括:
    所述管理装置保存所述eUICC与至少一个所述Profile的第一映射表,所述第一映射表至少包含所述源Profile的识别信息;
    所述管理装置保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;
    所述管理装置关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
  7. 根据权利要求5或6所述的方法,其特征在于,
    所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
    所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
    所述管理装置从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述至少一个应用的标识与对应的目标Profile的识别信息进行关联,得到所述第二对应关系,包括:
    所述管理装置将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,所述管理装置将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
    所述管理装置将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,所述管理装置将所述第二映射表中的 所述至少一个应用的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
    所述管理装置关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
  8. 根据权利要求1所述的方法,其特征在于,
    所述第一应用集中的至少一个应用包括:所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
  9. 根据权利要求8所述的方法,其特征在于,在所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,所述方法还包括:
    所述管理装置向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
    所述管理装置根据用户的选择从所述应用列表中确定至少一个应用。
  10. 根据权利要求1所述的方法,其特征在于,
    所述至少一个安全单元SE包括第一私有SE和第二私有SE,所述第一私有SE设置在对应的第一存储模块中,所述第二私有SE设置在对应的第二存储模块中;
    所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;
    所述第一私有SE保存所述源Profile对应的至少一个应用,所述第二私有SE保存所述目标Profile对应的至少一个应用;
    所述第一存储模块和所述第二存储模块设置在所述eUICC中,且由所述管理装置管理。
  11. 根据权利要求10所述的方法,其特征在于,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述管理装置根据所述Profile激活请求将第一对应关系更新为第二对应关系,包括:
    所述管理装置确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二个SE迁移应用和数据的信息;
    所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
  12. 根据权利要求10或11所述的方法,其特征在于,所述管理装置根据所述信息将所述第一应用集中的至少一个应用及所述应用的相关数据迁移到所述第二私有SE上,包括:
    所述管理装置根据所述信息从所述第一应用集中获得至少一个应用及所述至少一个应用的相关数据;
    所述管理装置将获得的所述至少一个应用中及所述至少一个应用的相关数据迁移到所述第二私有SE上。
  13. 根据权利要求11或12所述的方法,其特征在于,所述第一应用集中的至少一个应用及所述至少一个应用的相关数据包括:
    所述管理装置根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述应用的相关数据;或者,所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
  14. 根据权利要求13所述的方法,其特征在于,所述从第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中确定的至少一个应用时,所述方法还包括:
    所述管理装置向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
    所述管理装置根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定的至少一个应用。
  15. 一种数据更新的管理装置,其特征在于,所述管理装置设置在通用集成电路卡eUICC上,所述eUICC还设置有至少一个安全单元SE,所述至少一个SE用于保存至少一个轮廓Profile对应的应用,所述管理装置用于管理所述至少 一个SE,所述管理装置包括:
    第一接收单元,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile,所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
    更新单元,用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系包括第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
  16. 根据权利要求15所述的装置,其特征在于,所述更新单元更新的所述至少一个应用包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
  17. 根据权利要求15或16所述的装置,其特征在于,
    所述更新单元,具体用于在所述至少一个安全单元SE为至少一个公共SE,且所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用时,根据所述Profile激活请求将第一对应关系更新为第二对应关系。
  18. 根据权利要求17所述的装置,其特征在于,还包括:
    存储单元,用于在所述更新单元根据所述Profile激活请求将第一对应关系更新为第二对应关系之前,保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
  19. 根据权利要求17或18所述的装置,其特征在于,所述更新单元包括:
    选择单元,用于根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
    第一更新单元,用于将从所述第一对应关系中获取所选择的所述至少一个应用的标识,并将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
  20. 根据权利要求18或19所述的装置,其特征在于,所述存储单元包括:
    第一存储单元,用于保存所述eUICC与至少一个所述Profile的第一映射表;所述第一映射表至少包含所述源Profile的识别信息;
    第二存储单元,用于保存所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的至少一个应用的第二映射表;
    关联单元,用于关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
  21. 根据权利要求19或20所述的装置,其特征在于,
    所述第一存储单元保存的所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
    所述第二存储单元保存的所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
    所述第一更新单元,具体用于根据所述Profile激活请求更新所述第一映射表;其中,将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息;或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;以及,根据所述Profile激活请求更新所述第二映射表,其中,将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,将所述第二映射表中的所述至少一个应用中的至少一个应用所对应的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
  22. 根据权利要求15所述的装置,其特征在于,
    所述更新单元更新的所述第一应用集中的至少一个应用包括:根据用户的预先设置从所述第一应用集中的所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
  23. 根据权利要求22所述的装置,其特征在于,还包括:
    第一输出单元,用于在所述更新单元更新的所述第一应用集中的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
    第一确定单元,用于根据用户的选择从所述应用列表中确定至少一个应用。
  24. 根据权利要求15所述的装置,其特征在于,所述至少一个安全单元SE包括第一私有SE和第二私有SE,所述eUICC上还设置有至少第一存储模块和第二存储模块;所述管理装置还用于管理所述至少所述第一存储模块和所述第二存储模块,所述第一存储模块安装有所述源Profile,所述第二存储模块安装有所述目标Profile;所述第一存储模块中设置所述第一私有SE,所述第二存储模块中设置所述第二私有SE,其中,所述第一私有SE用于保存所述源Profile对应的至少一个应用,以及所述第二私有SE用于保存所述目标Profile对应的至少一个应用。
  25. 根据权利要求24所述的装置,其特征在于,所述第一应用集具体为所述第一私有SE上的所述源Profile对应的至少一个应用;所述更新单元包括:
    第二确定单元,用于确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;
    迁移单元,用于根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述目标Profile对应的所述第二私有SE上,以使所述第一对应关系更新为所述第二对应关系。
  26. 根据权利要求24或25所述的装置,其特征在于,所述迁移单元包括:
    获取单元,用于根据所述信息从所述第一应用集上获得至少一个应用及所述至少一个应用的相关数据;
    第一迁移单元,用于将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上。
  27. 根据权利要求25或26所述的装置,其特征在于,所述获取单元获取的 所述第一应用集中的至少一个应用及所述至少一个应用的相关数据包括:
    根据用户的预先设置从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
  28. 根据权利要求26所述的装置,其特征在于,还包括:
    第二输出单元,用于在所述获取单元获取的所述从所述第一应用集中确定的至少一个应用为所述管理装置根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述第一私有SE上保存的且在切换至所述目标Profile时可使用的应用的标识;
    第三确定单元,用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中确定的至少一个应用。
  29. 一种通用集成电路卡eUICC,其特征在于,包括:
    至少一个安全单元SE,每个SE用于保存至少一个轮廓Profile对应的应用;
    处理器,用于管理所述至少一个SE上存储的至少一个应用;
    数据接口,用于接收Profile激活请求,所述Profile激活请求用于将源Profile切换为目标Profile;所述Profile激活请求中包含所述目标Profile的标识信息,所述源Profile为所述切换之前处于激活状态的Profile;
    所述处理器,还用于根据所述Profile激活请求将第一对应关系更新为第二对应关系,其中,所述第一对应关系为包括第一应用集与所述源Profile的对应关系,所述第一应用集包括所述至少一个SE上的至少一个应用;所述第二对应关系为所述第二应用集与所述目标Profile的对应关系,所述第二应用集包括所述第一应用集中的至少一个应用。
  30. 根据权利要求29所述的eUICC,其特征在于,
    所述处理器管理的所述第一应用集包括:所述源Profile和所述目标Profile在所述至少一个SE上共同对应的应用。
  31. 根据权利要求29或30所述的eUICC,其特征在于,
    所述至少一个SE为至少一个公共SE;其中,所述至少一个公共SE用于至少保存所述源Profile对应的应用和所述目标Profile对应的应用。
  32. 根据权利要求31所述的eUICC,其特征在于,还包括:
    存储器,用于保存所述第一对应关系,所述第一个对应关系包括所述第一应用集的标识与所述源profile的识别信息的对应关系。
  33. 根据权利要求31或32所述的eUICC,其特征在于,
    所述根据所述Profile激活请求将第一对应关系更新为第二对应关系,具体包括:
    根据所述目标Profile的识别信息,或者所述目标Profile的识别信息和用户指示,选择所述第一应用集中的至少一个应用;
    从所述第一对应关系中获取所选择的所述至少一个应用的标识,将所述至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系。
  34. 根据权利要求32或33所述的eUICC,其特征在于,
    所述第一对应关系,具体包括:所述eUICC与至少一个所述Profile的第一映射表,所述第一映射表至少包含所述源Profile的识别信息;以及所述eUICC与所述至少一个公共SE、以及所述至少一个公共SE上的所述至少一个应用的第二映射表;
    关联所述第一映射表和所述第二映射表,得到所述第一对应关系。
  35. 根据权利要求34所述的eUICC,其特征在于,
    所述第一映射表还包括:所述eUICC的标识;或者,所述eUICC的标识、所述源Profile对应的激活状态信息、所述目标Profile的识别信息与所述目标Profile对应的去激活状态信息;
    所述第二映射表还包括:所述eUICC的标识、所述至少一个公共SE的标识以及所述至少一个应用的标识;或者,所述eUICC的标识、所述至少一个公共SE的标识、所述至少一个应用的标识以及所述至少一个应用的激活或去激活状态信息;
    所述从所述第一对应关系中获取所选择的所述至少一个应用的标识;将所述 至少一个应用的标识与所述目标Profile的识别信息进行关联,得到所述第二对应关系,具体包括:
    将所述第一映射表中的所述源Profile的识别信息更新为所述目标Profile的识别信息,或者,将所述第一映射表中的所述源Profile对应的激活状态信息更新为去激活状态信息,所述目标Profile对应的去激活状态信息更新为激活状态信息;
    将所述第二映射表中的所述至少一个应用的标识更新为所述至少一个应用中的至少一个的标识,或者,将所述第二映射表中的所述至少一个应用中的状态信息设为激活状态,其余应用所对应的状态信息设为去激活状态;
    关联所述第一映射表和所述第二映射表,得到所述第二对应关系。
  36. 根据权利要求29所述的eUICC,其特征在于,所述第一应用集中的至少一个应用包括:
    根据用户的预先设置从所述第一应用集中所确定的至少一个应用;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用。
  37. 根据权利要求36所述的eUICC,其特征在于,
    所述数据接口,还用于在所述第一应用集中的至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出应用列表,所述应用列表中包含所述公共SE上保存的所述第一应用集或者所述第一个应用集中的至少一个应用;
    所述处理器,还用于根据用户的选择从所述应用列表中确定至少一个应用。
  38. 根据权利要求37所述的eUICC,其特征在于,所述至少一个SE包括第一私有SE和第二私有SE,所述第一私有SE设置在第一私有存储设备中,所述第二私有SE设置在第二私有存储设备中,其中,
    所述处理器,用于管理所述第一私有SE和第二私有SE;
    所述第一私有SE安装有所述源Profile,所述第二私有SE安装有所述目标Profile;
    所述第一私有SE,用于保存所述第一私有存储设备上安装的Profile对应的至少一个应用;
    所述第二私有SE,用于保存所述第二私有存储设备上安装的Profile对应的至少一个应用。
  39. 根据权利要求38所述的eUICC,其特征在于,
    所述处理器,还用于确定需要进行应用与数据迁移的信息,所述信息为用于从所述第一私有SE向所述第二私有SE迁移应用和数据的信息;根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,以使所述第一的对应关系更新为所述第二对应关系。
  40. 根据权利要求38或39所述的eUICC,其特征在于,
    所述根据所述信息将所述第一应用集中的至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上,具体包括:
    根据所述信息从所述第一应用集中获得所述至少一个应用及所述至少一个应用的相关数据;并将获得的所述至少一个应用及所述至少一个应用的相关数据迁移到所述第二私有SE上。
  41. 根据权利要求39或40所述的eUICC,其特征在于,
    所述从所述第一应用集中获得所述至少一个应用及所述至少一个应用的相关数据包括:
    根据用户的预先设置从所述第一应用集中所所确定的所述至少一个应用及所述至少一个应用的相关数据;或者,根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用及所述至少一个应用的相关数据。
  42. 根据权利要求41所述的eUICC,其特征在于,
    所述数据接口,还用于在从第一应用集中获取的所述至少一个应用为所述处理器根据用户在切换Profile过程中或完成Profile切换之后的选择从所述第一应用集中所确定的至少一个应用时,向终端输出一个可迁移应用列表,所述可迁移应用列表包含所述源Profile对应的所述第一私有存储器上保存的且在切换至所述目标Profile时可使用的应用的标识;
    所述处理器,还用于根据所述用户在所述可迁移应用列表中的选择从所述第一应用集中所确定所述源Profile对应的应用中的至少一个应用。
PCT/CN2015/070060 2015-01-04 2015-01-04 数据更新方法、装置及嵌入式通用集成电路卡 WO2016106778A1 (zh)

Priority Applications (6)

Application Number Priority Date Filing Date Title
CN201580038965.2A CN106664112B (zh) 2015-01-04 2015-01-04 数据更新方法、装置及嵌入式通用集成电路卡
JP2017535732A JP6785773B2 (ja) 2015-01-04 2015-01-04 データ更新方法、装置、および埋め込まれた汎用集積回路カード
EP15874471.4A EP3242407B1 (en) 2015-01-04 2015-01-04 Data updating method and apparatus, and embedded universal integrated circuit card
PCT/CN2015/070060 WO2016106778A1 (zh) 2015-01-04 2015-01-04 数据更新方法、装置及嵌入式通用集成电路卡
KR1020177021980A KR101972940B1 (ko) 2015-01-04 2015-01-04 데이터 갱신 방법, 장치 및 내장형 범용 집적회로 카드
US15/541,266 US10423602B2 (en) 2015-01-04 2015-01-04 Data update method, apparatus, and embedded universal integrated circuit card

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
PCT/CN2015/070060 WO2016106778A1 (zh) 2015-01-04 2015-01-04 数据更新方法、装置及嵌入式通用集成电路卡

Publications (1)

Publication Number Publication Date
WO2016106778A1 true WO2016106778A1 (zh) 2016-07-07

Family

ID=56284039

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2015/070060 WO2016106778A1 (zh) 2015-01-04 2015-01-04 数据更新方法、装置及嵌入式通用集成电路卡

Country Status (6)

Country Link
US (1) US10423602B2 (zh)
EP (1) EP3242407B1 (zh)
JP (1) JP6785773B2 (zh)
KR (1) KR101972940B1 (zh)
CN (1) CN106664112B (zh)
WO (1) WO2016106778A1 (zh)

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106937274A (zh) * 2017-05-12 2017-07-07 东信和平科技股份有限公司 一种基于EUICC的Profile切换方法及装置
CN110475241A (zh) * 2019-08-08 2019-11-19 宇龙计算机通信科技(深圳)有限公司 Mbn文件的加载方法、装置和电子设备

Families Citing this family (13)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
FR3038421B1 (fr) * 2015-06-30 2017-08-18 Oberthur Technologies Procede de gestion de profils dans un element securise
US11290870B2 (en) * 2017-04-13 2022-03-29 Telefonaktiebolaget Lm Ericsson (Publ) Combined migration and remigration of a network subscription
EP3484198A1 (en) * 2017-11-09 2019-05-15 Gemalto Sa A method for a service provider to launch a targeted service implemented by an application belonging to a security domain of an euicc
US10477384B2 (en) * 2018-02-28 2019-11-12 T-Mobile Usa, Inc. ESIM profile state change
CN108924821B (zh) * 2018-08-10 2021-09-14 恒宝股份有限公司 一种管理与运营商无关应用的方法及其eUICC卡
US20220132317A1 (en) * 2019-02-19 2022-04-28 Telefonaktiebolaget Lm Ericsson (Publ) Safe user subscription profile modification for autonomous devices
US11617065B2 (en) * 2019-08-30 2023-03-28 Jio Platforms Limited System and method for remote profile provisioning
CN112631616A (zh) * 2019-09-24 2021-04-09 中国移动通信有限公司研究院 eSIM卡、卡应用的处理、设置方法、终端及平台设备
US11979940B2 (en) * 2020-10-14 2024-05-07 Flo Live Israel LTD. System and method for provisioning enhanced SIM profiles as standard eUICC profiles
US11392360B2 (en) * 2020-12-21 2022-07-19 Atlassian Pty Ltd. Systems and methods for redeploying source code builds
CN113127852B (zh) * 2021-03-25 2024-04-30 东信和平科技股份有限公司 基于芯片卡的se应用管理方法、装置及存储介质
CN114339721A (zh) * 2021-12-28 2022-04-12 武汉天喻信息产业股份有限公司 eSIM卡号码管理方法、存储介质、电子设备及装置
CN115955667B (zh) * 2022-12-16 2024-04-09 中国联合网络通信集团有限公司 一种基于eUICC的码号变更方法、装置及可读存储介质

Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
WO2013176499A2 (ko) * 2012-05-23 2013-11-28 주식회사 케이티 정책 규칙 관리 실행을 위한 방법 및 eUICC
CN103765934A (zh) * 2011-05-27 2014-04-30 电话有限公司 支持多个签约的个人设备的签约切换方法
US20140308991A1 (en) * 2011-11-04 2014-10-16 Kt Corporation Method for managing multiple profiles in an embedded uicc, and embedded uicc and terminal therefor

Family Cites Families (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US8782085B2 (en) * 2007-04-10 2014-07-15 Apertio Limited Variant entries in network data repositories
EP2378479A1 (en) * 2010-04-13 2011-10-19 Alcatel Lucent Method for managing the provisioning of an interactive application, a related system and related server
GB201021784D0 (en) 2010-12-22 2011-02-02 Vodafone Ip Licensing Ltd SIM Locking
CN102325210A (zh) 2011-05-19 2012-01-18 武汉天喻信息产业股份有限公司 兼容多个运营商的通用移动支付终端及其实现方法
US8560015B2 (en) 2011-07-18 2013-10-15 Nokia Corporation Application selection for multi-SIM environment
US8577337B2 (en) * 2012-03-05 2013-11-05 Rogers Communications Inc. Radio management method and system using embedded universal integrated circuit card
CN103312680B (zh) 2012-03-15 2016-10-05 中国移动通信集团公司 一种nfc终端应用的迁移方法、装置及系统
CN103634791B (zh) * 2012-08-27 2018-03-09 华为终端(东莞)有限公司 切换运营商网络的方法、用户设备及远程管理平台
EP2773077B1 (en) 2013-02-28 2019-08-07 IDEMIA France Notification mechanism

Patent Citations (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN103765934A (zh) * 2011-05-27 2014-04-30 电话有限公司 支持多个签约的个人设备的签约切换方法
US20140308991A1 (en) * 2011-11-04 2014-10-16 Kt Corporation Method for managing multiple profiles in an embedded uicc, and embedded uicc and terminal therefor
WO2013176499A2 (ko) * 2012-05-23 2013-11-28 주식회사 케이티 정책 규칙 관리 실행을 위한 방법 및 eUICC

Cited By (3)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN106937274A (zh) * 2017-05-12 2017-07-07 东信和平科技股份有限公司 一种基于EUICC的Profile切换方法及装置
CN106937274B (zh) * 2017-05-12 2020-06-09 东信和平科技股份有限公司 一种基于EUICC的Profile切换方法及装置
CN110475241A (zh) * 2019-08-08 2019-11-19 宇龙计算机通信科技(深圳)有限公司 Mbn文件的加载方法、装置和电子设备

Also Published As

Publication number Publication date
JP6785773B2 (ja) 2020-11-18
KR20170102959A (ko) 2017-09-12
US20180004736A1 (en) 2018-01-04
EP3242407A1 (en) 2017-11-08
CN106664112B (zh) 2019-08-20
EP3242407B1 (en) 2020-11-04
EP3242407A4 (en) 2018-08-15
JP2018503313A (ja) 2018-02-01
CN106664112A (zh) 2017-05-10
US10423602B2 (en) 2019-09-24
KR101972940B1 (ko) 2019-08-16

Similar Documents

Publication Publication Date Title
WO2016106778A1 (zh) 数据更新方法、装置及嵌入式通用集成电路卡
US20220095098A1 (en) Method and apparatus for supporting transfer of profile between devices in wireless communication system
US20210112402A1 (en) Method enabling migration of a subscription
CN110446201B (zh) 一种实现eSIM远程配置的通信模组、通信方法及系统
US10141966B2 (en) Update of a trusted name list
US9462457B2 (en) Subscription transfer method, apparatus, and system
WO2015176304A1 (zh) eUICC的管理方法、eUICC、SM平台和系统
WO2019007345A1 (zh) 网络切片的选择方法、装置及系统、存储介质
EP2815590B1 (en) M2m service enablement over access networks
CN109417696B (zh) 用于结束订阅的方法和实体
EP3171566B1 (en) Method, device and system for security domain management
WO2015127889A1 (zh) 一种Profile关联管理的方法及装置
EP3707923B1 (en) Subscription management service pairing
WO2014183260A1 (zh) 漫游场景下的数据业务处理方法、装置和系统
JP2016195382A (ja) 別個の認証アルゴリズムを動的にサポートするための技術
CN114631339A (zh) 无线通信系统中用于重新安装sim配置文件的方法和装置
JP7384920B2 (ja) 加入プロファイル、加入者idモジュール、および加入サーバを提供する方法
KR20210133009A (ko) 복수 심을 지원하는 전자 장치 및 그 동작 방법
KR102618287B1 (ko) eSIM Profile을 iSSP 장치에 핸들링하기 위한 방법 및 장치
KR20220018897A (ko) 복수 개의 eSIM 프로파일을 설치, 관리하는 방법 및 장치
WO2021053693A1 (en) Utilization of one type of rsp eco system for doing rsp (remote sim provisioning) on both m2m and consumer segment
CN115515218A (zh) 会话管理方法、系统和存储介质

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 15874471

Country of ref document: EP

Kind code of ref document: A1

WWE Wipo information: entry into national phase

Ref document number: 15541266

Country of ref document: US

ENP Entry into the national phase

Ref document number: 2017535732

Country of ref document: JP

Kind code of ref document: A

NENP Non-entry into the national phase

Ref country code: DE

REEP Request for entry into the european phase

Ref document number: 2015874471

Country of ref document: EP

ENP Entry into the national phase

Ref document number: 20177021980

Country of ref document: KR

Kind code of ref document: A