WO2017201804A1 - 终端防盗验证方法、终端和服务器 - Google Patents
终端防盗验证方法、终端和服务器 Download PDFInfo
- Publication number
- WO2017201804A1 WO2017201804A1 PCT/CN2016/087398 CN2016087398W WO2017201804A1 WO 2017201804 A1 WO2017201804 A1 WO 2017201804A1 CN 2016087398 W CN2016087398 W CN 2016087398W WO 2017201804 A1 WO2017201804 A1 WO 2017201804A1
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- terminal
- server
- processing request
- card
- management data
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Ceased
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04W—WIRELESS COMMUNICATION NETWORKS
- H04W12/00—Security arrangements; Authentication; Protecting privacy or anonymity
- H04W12/06—Authentication
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0807—Network architectures or network communication protocols for network security for authentication of entities using tickets, e.g. Kerberos
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
- H04L63/0853—Network architectures or network communication protocols for network security for authentication of entities using an additional device, e.g. smartcard, SIM or a different communication terminal
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/10—Network architectures or network communication protocols for network security for controlling access to devices or network resources
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/01—Protocols
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/2866—Architectures; Arrangements
- H04L67/30—Profiles
- H04L67/303—Terminal profiles
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L67/00—Network arrangements or protocols for supporting network services or applications
- H04L67/50—Network services
- H04L67/52—Network services specially adapted for the location of the user terminal
Definitions
- the present invention relates to the field of terminal technologies, and in particular, to a terminal anti-theft verification method, a terminal, and a server.
- an eSIM card embedded user identification card
- the eSIM card itself is a part of the terminal, at the time of shipment or when the user changes through the operator.
- the configuration is implemented to avoid the inconvenience of manual disassembly of the original SIM card.
- the invention is based on the above problems, and proposes a new technical solution, which can effectively deal with the anti-theft problem of the eSIM card terminal, enhance the security of the eSIM card terminal, and effectively protect the interests of the user.
- an aspect of the present invention provides a terminal anti-theft verification method, including: receiving a processing command for an eSIM card of a terminal; and transmitting, according to the processing command, a processing request to a server, according to the server Processing the request, detecting whether the terminal is a locked terminal by using the subscription management data route; receiving a detection result from the server, wherein when the detection result is that the terminal is the locked terminal, performing a corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal may send a processing request to the server. Verify that the terminal does not have an eSIM card If the server verification result is yes, it means that the terminal does not have the processing authority for the eSIM card, prohibits it from processing, and displays the alarm. Only when the server verification result is no, the eSIM of the terminal is allowed.
- the card performs change processing such as user profile changes.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the corresponding alert function includes: prohibiting processing of the eSIM card, uploading the real-time geographic location of the terminal to the server or other associated terminal, dialing a predetermined alerting call (such as an alarm call), and may also use
- the front camera captures the operator's face image or iris image. If the terminal has the fingerprint recognition function, the operator's fingerprint can be collected in real time, and the one or more kinds of biological information are uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it leaves the factory, or can be manually set and changed by the user, so that after the legitimate user of the terminal reports the loss of the terminal,
- the server can obtain the real-time status of the terminal through various ways, in order to find the terminal and protect the security of the user's property.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether the eSIM card has been reported to be lost or locked when the terminal receives the processing command for the eSIM card, thereby making the server
- the real-time status of the terminal can be obtained through various ways, the security of the terminal is enhanced, and the terminal is easily retrieved, thereby effectively protecting the interests of the user.
- the processing command of the eSIM card of the terminal comprises: a processing request for activating a user profile of the eSIM card; or a processing request for downloading a new user profile for the eSIM card.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user profile for activating the eSIM card or downloading a new user profile for the eSIM card, the anti-theft verification mode can be enabled, so that the server can verify whether the terminal is a locked terminal, thereby facilitating further judgment of the terminal receiving. Whether the processing request is legal.
- the processing command has the terminal a unique identification code of the eUICC card, wherein the server detects whether the unique identification code is stored in the database of the subscription management data route, wherein when the unique identification code is stored in the database, determining the The terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID, so that when the terminal receives the processing command for the eSIM card,
- the server can effectively determine whether it has been reported or lost according to the unique identification code of the eUICC card, so that the server can obtain the real-time status of the terminal through various ways, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting The interests of the user.
- a terminal comprising: a processing request receiving unit, receiving a processing command for an eSIM card of the terminal; and a sending unit, according to the processing command, sending a processing request to the server, for the server to The processing request, detecting, by the subscription management data route, whether the terminal is a locked terminal; the detection result receiving unit receiving the detection result from the server, wherein when the detection result is that the terminal is the locked terminal , perform the corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal may send a processing request to the server. Verify that the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits it from being processed, and displays the alarm, only the server verification result. If it is no, it is allowed to perform the change processing such as user profile change on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the corresponding alert function includes: prohibiting processing of the eSIM card, uploading the real-time geographic location of the terminal to the server or other associated terminal, dialing a predetermined alerting call (such as an alarm call), and may also use
- the front camera captures the operator's face image or iris image. If the terminal has the fingerprint recognition function, the operator's fingerprint can be collected in real time, and the one or more kinds of biological information are uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination, and the specific warning function can be selected.
- the server can obtain the real-time status of the terminal through various ways, so as to find the terminal. To protect the safety of users' property.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether the eSIM card has been reported to be lost or locked when the terminal receives the processing command for the eSIM card, thereby making the server
- the real-time status of the terminal can be obtained through various ways, the security of the terminal is enhanced, and the terminal is easily retrieved, thereby effectively protecting the interests of the user.
- the processing request receiving unit is specifically configured to: receive a processing request for activating a user profile of the eSIM card; or receive a processing request for downloading a new user profile for the eSIM card.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user profile for activating the eSIM card or downloading a new user profile for the eSIM card, the anti-theft verification mode can be enabled, so that the server can verify whether the terminal is a locked terminal, thereby facilitating further judgment of the terminal receiving. Whether the processing request is legal.
- the processing command has a unique identification code of the eUICC card of the terminal, where the server detects whether the unique identifier is stored in a database of the subscription management data route. a code, wherein when the unique identification code is stored in the database, determining that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID, so that when the terminal receives the processing command for the eSIM card,
- the server can effectively determine whether it has been reported or lost according to the unique identification code of the eUICC card, so that the server can obtain the real-time status of the terminal through various ways, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting The interests of the user.
- a terminal anti-theft verification method includes: receiving a processing request from an eSIM card of the terminal from the terminal; and performing a contracting according to the processing request The data routing detects whether the terminal is a locked terminal; when detecting that the terminal is the locked terminal, performing a corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal receives the processing command for the eSIM card
- the normal terminal may send a processing request to the server.
- the server verifies whether the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits the processing thereof, and displays the alarm, only in the server. If the verification result is no, the change processing such as user profile change is allowed to be performed on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether it has been reported or lost by the server when the terminal receives the processing command for the eSIM card.
- the server can obtain diversified information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- the processing request includes: a processing request for activating a user profile of the eSIM card, or a processing request for downloading a new user profile for the eSIM card, and the processing request A unique identification code of the eUICC card of the terminal.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user configuration file for activating the eSIM card or the processing command for downloading the new user profile for the eSIM card, the anti-theft verification mode is enabled, and the corresponding processing request is sent to the server, so that the server verifies whether the terminal is a locked terminal. Therefore, it is convenient to further judge whether the processing request received by the terminal is legal.
- the detecting, by the subscription management data route, whether the terminal is a locked terminal includes: The processing request, detecting the subscription management data path A unique identification code of the eUICC card of the terminal is stored in the database, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique numbered EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the server when the terminal receives the command to activate the user profile of the eSIM card, if the server effectively determines that the device has been reported to be lost or locked according to the unique identification code of the eUICC card, the server can obtain diverse information from the terminal to determine the The real-time status of the terminal facilitates the retrieval of the terminal, enhances the security of the terminal, and effectively protects the user's interests.
- the detecting, by the subscription management data route, whether the terminal is a locked terminal includes: Performing mutual authentication on the contract management data preparation device and the contract management data route; after the authentication is passed, transmitting, by the contract management data preparation device, the eUICC information set retrieval request to the contract management data route; and detecting the eUICC information set retrieval request according to the eUICC information set retrieval request
- a unique identification code of the eUICC card of the terminal is stored in the database of the contract management data route, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the SIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the SM-DP Contract Management Data Preparation Device
- the SM-SR Contract Management Data Routing
- the unique identifier of the eUICC card of the terminal is stored in the database of the SR. If it is stored, it indicates that the terminal has been reported to be lost or locked.
- the server can obtain diverse information from the terminal to determine the real-time status of the terminal. Retrieve the terminal, enhance the security of the terminal, and effectively protect the user's interest.
- the method further includes: receiving, when the terminal is the locked terminal, a unlocking command for the terminal; and routing, according to the unlocking command, the subscription management data
- the unique identifier code corresponding to the terminal is deleted in the database, so that when it is detected that the database does not have the unique identifier, it is determined that the terminal is not the locked terminal.
- the unique identification code of the eUICC card in the database of the contract management data routing may also be deleted to unlock the terminal, which is convenient for the user to use.
- Still another aspect of the present invention provides a server, comprising: a processing request receiving unit, receiving a processing request from an eSIM card of the terminal from the terminal; and a detecting unit, according to the processing request, by a subscription management data routing detection station Whether the terminal is a locked terminal; the warning unit, when detecting that the terminal is the locked terminal, performs a corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal receives the processing command for the eSIM card
- the normal terminal may send a processing request to the server.
- the server verifies whether the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits the processing thereof, and displays the alarm, only in the server. If the verification result is no, the change processing such as user profile change is allowed to be performed on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether it has been reported or lost by the server when the terminal receives the processing command for the eSIM card.
- the server can obtain diversified information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- the processing request receiving unit is specifically configured to: receive a processing request for activating a user profile of the eSIM card, or receive a processing request for downloading a new user profile for the eSIM card; And the processing request having the terminal The unique identifier of the eUICC card.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user configuration file for activating the eSIM card or the processing command for downloading the new user profile for the eSIM card, the anti-theft verification mode is enabled, and the corresponding processing request is sent to the server, so that the server verifies whether the terminal is a locked terminal. Therefore, it is convenient to further judge whether the processing request received by the terminal is legal.
- the detecting unit includes: a first retrieving unit, when the processing request is a processing request for activating a user profile of the eSIM card, detecting the location according to the processing request
- a unique identification code of the eUICC card of the terminal is stored in the database of the contract management data route, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique numbered EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the server when the terminal receives the command to activate the user profile of the eSIM card, if the server effectively determines that the device has been reported to be lost or locked according to the unique identification code of the eUICC card, the server can obtain diverse information from the terminal to determine the The real-time status of the terminal facilitates the retrieval of the terminal, enhances the security of the terminal, and effectively protects the user's interests.
- the detecting unit includes: an authentication unit, when the processing request is a processing request for downloading a new user profile by the eSIM card, the subscription management data preparation device and the contract management The data routing performs mutual authentication; the retrieval request sending unit sends an eUICC information set retrieval request to the subscription management data route through the subscription management data preparation device after the authentication is passed; the second retrieval unit detects the request according to the eUICC information set retrieval request A unique identification code of the eUICC card of the terminal is stored in the database of the contract management data route, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the SIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the SM-DP Contract Management Data Preparation Device
- the SM-SR Contract Management Data Routing
- the unique identifier of the eUICC card of the terminal is stored in the database of the SR. If it is stored, it indicates that the terminal has been reported to be lost or locked.
- the server can obtain diverse information from the terminal to determine the real-time status of the terminal. The terminal is retrieved to enhance the security of the terminal and effectively protect the interests of the user.
- the method further includes: a de-locking command receiving unit, when the terminal is the locking terminal, receiving an unlocking command for the terminal; and an identification code deleting unit, according to the solution a lock command, in the database of the subscription management data routing, deleting the unique identifier code corresponding to the terminal, so that when it is detected that the database does not have the unique identifier code, determining that the terminal is not the Lock the terminal.
- the unique identification code of the eUICC card in the database of the contract management data routing may also be deleted to unlock the terminal, which is convenient for the user to use.
- the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has the unique identification code feature, and can effectively determine whether it has been reported or lost by the server when the terminal receives the processing command for the eSIM card. Therefore, the server can obtain diversified information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- FIG. 1 shows a flow chart of a method for terminal anti-theft verification according to an embodiment of the present invention
- Figure 2 shows a block diagram of a terminal in accordance with one embodiment of the present invention
- FIG. 3 is a flow chart showing a method of terminal anti-theft verification according to another embodiment of the present invention.
- Figure 4 shows a block diagram of a server in accordance with one embodiment of the present invention
- FIG. 5 is a block diagram showing an eSIM card remote configuration management system according to an embodiment of the present invention.
- FIG. 6 is a flow chart showing terminal loss reporting according to an embodiment of the present invention.
- Figure 7 illustrates a flow chart for triggering an anti-theft function in accordance with one embodiment of the present invention
- FIG. 8 is a flow chart showing a triggering anti-theft function according to another embodiment of the present invention.
- Figure 9 illustrates a flow diagram for de-losing a terminal in accordance with one embodiment of the present invention.
- FIG. 1 shows a flow chart of a method of terminal anti-theft verification in accordance with one embodiment of the present invention.
- a terminal anti-theft verification method includes:
- Step 102 Receive a processing command for an eSIM card of the terminal.
- Step 104 Send, according to the processing command, a processing request to the server, for the server to detect, according to the processing request, whether the terminal is a locked terminal by using a subscription management data route;
- Step 106 Receive a detection result from the server, where when the detection result is that the terminal is the locked terminal, perform a corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal may send a processing request to the server. Verify that the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits it from being processed, and displays the alarm, only the server verification result. If it is no, it is allowed to perform the change processing such as user profile change on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or It is the designated other type of server dedicated to terminal anti-theft.
- the corresponding alert function includes: prohibiting processing of the eSIM card, uploading the real-time geographic location of the terminal to the server or other associated terminal, dialing a predetermined alerting call (such as an alarm call), and may also use
- the front camera captures the operator's face image or iris image. If the terminal has the fingerprint recognition function, the operator's fingerprint can be collected in real time, and the one or more kinds of biological information are uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it leaves the factory, or can be manually set and changed by the user, so that after the legitimate user of the terminal reports the loss of the terminal,
- the server can obtain the real-time status of the terminal through various ways, in order to find the terminal and protect the security of the user's property.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether the eSIM card has been reported to be lost or locked when the terminal receives the processing command for the eSIM card, thereby making the server
- the real-time status of the terminal can be obtained through various ways, the security of the terminal is enhanced, and the terminal is easily retrieved, thereby effectively protecting the interests of the user.
- the processing command of the eSIM card of the terminal comprises: a processing request for activating a user profile of the eSIM card; or a processing request for downloading a new user profile for the eSIM card.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user profile for activating the eSIM card or downloading a new user profile for the eSIM card, the anti-theft verification mode can be enabled, so that the server can verify whether the terminal is a locked terminal, thereby facilitating further judgment of the terminal receiving. Whether the processing request is legal.
- the processing command has a unique identification code of the eUICC card of the terminal, where the server detects whether the unique identifier is stored in a database of the subscription management data route. a code, wherein when the unique identification code is stored in the database, determining that the terminal is the locked terminal.
- the eUICC card has an eUICC card (embedded universal integrated power)
- the eUICC card has a unique identification code, that is, a global unique number EID, so that when the terminal receives the processing command for the eSIM card, the server can effectively determine whether it has been reported by the unique identification code of the eUICC card. Or locking, so that the server can obtain the real-time status of the terminal through various ways, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- Figure 2 shows a block diagram of a terminal in accordance with one embodiment of the present invention.
- a terminal 200 includes a processing request receiving unit 202, a transmitting unit 204, and a detection result receiving unit 206.
- the processing request receiving unit 202 is configured to receive a processing command for the eSIM card of the terminal, and the sending unit 204 is configured to send, according to the processing command, a processing request to the server, for the server to perform subscription management according to the processing request.
- the data routing detects whether the terminal is a locked terminal.
- the detection result receiving unit 206 is configured to receive a detection result from the server, where when the detection result is that the terminal is the locked terminal, performing a corresponding alert function .
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal may send a processing request to the server. Verify that the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits it from being processed, and displays the alarm, only the server verification result. If it is no, it is allowed to perform the change processing such as user profile change on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the corresponding alert function includes: prohibiting processing of the eSIM card, uploading the real-time geographic location of the terminal to the server or other associated terminal, dialing a predetermined alerting call (such as an alarm call), and may also use
- the front camera captures the operator's face image or iris image. If the terminal has the fingerprint recognition function, the operator's fingerprint can be collected in real time, and the one or more kinds of biological information are uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it is shipped from the factory, or can be manually set and changed by the user. After the legitimate user of the terminal reports the terminal, the server can obtain the real-time status of the terminal through various ways, so as to find the terminal and protect the security of the user.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether the eSIM card has been reported to be lost or locked when the terminal receives the processing command for the eSIM card, thereby making the server
- the real-time status of the terminal can be obtained through various ways, the security of the terminal is enhanced, and the terminal is easily retrieved, thereby effectively protecting the interests of the user.
- the processing request receiving unit 202 is specifically configured to: receive a processing request for activating a user profile of the eSIM card; or receive a processing request for downloading a new user profile for the eSIM card.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user profile for activating the eSIM card or downloading a new user profile for the eSIM card, the anti-theft verification mode can be enabled, so that the server can verify whether the terminal is a locked terminal, thereby facilitating further judgment of the terminal receiving. Whether the processing request is legal.
- the processing command has a unique identification code of the eUICC card of the terminal, where the server detects whether the unique identifier is stored in a database of the subscription management data route. a code, wherein when the unique identification code is stored in the database, determining that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID, so that when the terminal receives the processing command for the eSIM card,
- the server can effectively determine whether it has been reported or lost according to the unique identification code of the eUICC card, so that the server can obtain the real-time status of the terminal through various ways, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting The interests of the user.
- FIG. 3 is a flow chart showing a method of terminal anti-theft verification according to another embodiment of the present invention.
- a terminal anti-theft verification method include:
- Step 302 Receive a processing request from an end of the eSIM card of the terminal.
- Step 304 Detect, according to the processing request, whether the terminal is a locked terminal by using a subscription management data route.
- Step 306 when detecting that the terminal is the locked terminal, performing a corresponding alert function.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal receives the processing command for the eSIM card
- the normal terminal may send a processing request to the server.
- the server verifies whether the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits the processing thereof, and displays the alarm, only in the server. If the verification result is no, the change processing such as user profile change is allowed to be performed on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the technical solution utilizes the feature that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can effectively determine whether it has been reported or lost by the server when the terminal receives the processing command for the eSIM card.
- the server can obtain diversified information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- the processing request includes: a processing request for activating a user profile of the eSIM card, or a processing request for downloading a new user profile for the eSIM card, and the processing request A unique identification code of the eUICC card of the terminal.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user profile for activating the eSIM card or downloading a new user profile for the eSIM card, the anti-theft verification mode is enabled, and the corresponding processing request is sent to the server, so that the server verifies that the terminal is No is to lock the terminal, so as to further determine whether the processing request received by the terminal is legal.
- the step 304 specifically includes: detecting, according to the processing request, the subscription management data routing.
- a unique identification code of the eUICC card of the terminal is stored in the database, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique numbered EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the server when the terminal receives the command to activate the user profile of the eSIM card, if the server effectively determines that the device has been reported to be lost or locked according to the unique identification code of the eUICC card, the server can obtain diverse information from the terminal to determine the The real-time status of the terminal facilitates the retrieval of the terminal, enhances the security of the terminal, and effectively protects the user's interests.
- step 304 includes: performing mutual authentication on the subscription management data preparation device and the subscription management data route. After the authentication is passed, the eUICC information set retrieval request is sent to the subscription management data route by the subscription management data preparation device; and detecting whether the terminal of the subscription management data route is stored in the database according to the eUICC information set retrieval request A unique identification code of the eUICC card, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the SIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the SM-DP Contract Management Data Preparation Device
- the SM-SR Contract Management Data Routing
- the server can obtain diversified information from the terminal to determine the real-time status of the terminal, which is convenient for finding the terminal. Enhance the security of the terminal and effectively protect the interests of the users.
- the method further includes: receiving, when the terminal is the locked terminal, a unlocking command for the terminal; and routing, according to the unlocking command, the subscription management data
- the unique identifier code corresponding to the terminal is deleted in the database, so that when it is detected that the database does not have the unique identifier, it is determined that the terminal is not the locked terminal.
- the unique identification code of the eUICC card in the database of the contract management data routing may also be deleted to unlock the terminal, which is convenient for the user to use.
- Figure 4 shows a block diagram of a server in accordance with one embodiment of the present invention.
- a server 400 includes a processing request receiving unit 402, a detecting unit 404, and an alerting unit 406.
- the processing request receiving unit 402 is configured to receive a processing request from the terminal for the eSIM card of the terminal, and the detecting unit 404 is configured to detect, according to the processing request, whether the terminal is a locked terminal by using a subscription management data route;
- the unit 406 is configured to perform a corresponding alert function when detecting that the terminal is the locked terminal.
- the locked terminal refers to a terminal after the legitimate user of the terminal performs the operation such as loss reporting or permission limitation at the operator.
- the ordinary terminal receives the processing command for the eSIM card
- the normal terminal may send a processing request to the server.
- the server verifies whether the terminal is a locked terminal that does not have the processing authority for the eSIM card. If the server verification result is yes, the terminal does not have the processing authority for the eSIM card, prohibits the processing thereof, and displays the alarm, only in the server. If the verification result is no, the change processing such as user profile change is allowed to be performed on the eSIM card of the terminal.
- the server may be an operator server associated with the eSIM card of the terminal, or may be other types of servers designated for terminal anti-theft.
- the technical solution utilizes the characteristic that the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has a unique identification code, and can be passed when the terminal receives the processing command for the eSIM card.
- the server effectively determines whether it has been reported or lost, so that the server can obtain diverse information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the interests of the user.
- the processing request receiving unit 402 is specifically configured to: receive a processing request for activating a user profile of the eSIM card, or receive a processing request for downloading a new user profile for the eSIM card;
- the processing request has a unique identification code of the eUICC card of the terminal.
- the illegal user after the terminal is lost or stolen, the illegal user generally performs an operation of activating the user profile or downloading a new user profile for the eSIM card of the terminal. Therefore, in order to effectively prevent theft, the security of the user is protected.
- the terminal receives the user configuration file for activating the eSIM card or the processing command for downloading the new user profile for the eSIM card, the anti-theft verification mode is enabled, and the corresponding processing request is sent to the server, so that the server verifies whether the terminal is a locked terminal. Therefore, it is convenient to further judge whether the processing request received by the terminal is legal.
- the detecting unit 404 includes: a first retrieving unit 4042, when the processing request is a processing request for activating a user profile of the eSIM card, detecting the location according to the processing request A unique identification code of the eUICC card of the terminal is stored in the database of the contract management data route, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the eSIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique numbered EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the server when the terminal receives the command to activate the user profile of the eSIM card, if the server effectively determines that the device has been reported to be lost or locked according to the unique identification code of the eUICC card, the server can obtain diverse information from the terminal to determine the The real-time status of the terminal facilitates the retrieval of the terminal, enhances the security of the terminal, and effectively protects the user's interests.
- the detecting unit 404 includes an authentication unit 4044, a retrieval request transmitting unit 4046, and a second retrieval unit 4048.
- the authentication unit 4044 is configured to perform mutual authentication on the subscription management data preparation device and the subscription management data route when the processing request is a processing request for downloading a new user profile for the eSIM card; the retrieval request sending unit 4046 is configured to: After the authentication is passed, the eUICC information set retrieval request is sent to the subscription management data route by the subscription management data preparation device.
- the second retrieval unit 4048 is configured to detect, according to the eUICC information set retrieval request, whether the database of the subscription management data routing is detected. A unique identification code of the eUICC card of the terminal is stored, wherein when the unique identification code is stored in the database, it is determined that the terminal is the locked terminal.
- the SIM card terminal has an eUICC card (embedded universal integrated circuit card), and the eUICC card has a unique identification code, that is, a global unique number EID.
- the server is requested to lock the terminal, and the server can record the unique identification code of the eUICC card of the terminal in the database of the contract management data routing.
- the SM-DP Contract Management Data Preparation Device
- the SM-SR Contract Management Data Routing
- the unique identifier of the eUICC card of the terminal is stored in the database of the SR. If it is stored, it indicates that the terminal has been reported to be lost or locked.
- the server can obtain diverse information from the terminal to determine the real-time status of the terminal. The terminal is retrieved to enhance the security of the terminal and effectively protect the interests of the user.
- the method further includes: a de-locking command receiving unit 408, when the terminal is the locked terminal, receiving an unlocking command for the terminal; the identifier code deleting unit 410, according to the Deleting the lock command, deleting the unique identification code corresponding to the terminal in the database of the subscription management data routing, so that when it is detected that the database does not have the unique identification code, determining that the terminal is not The locking terminal.
- the unique identification code of the eUICC card in the database of the contract management data routing may also be deleted to unlock the terminal, which is convenient for the user to use.
- FIG. 5 shows an architectural diagram of an eSIM card remote configuration management system in accordance with one embodiment of the present invention.
- the eSIM card remote configuration management system is based on the standard procedures of eSIM technology. Constructed. Each eUICC card is registered at SM-SR (Contract Management Data Routing) just after leaving the factory, so that the complete lifecycle related data of eUICC is saved in the SM-SR database; on the other hand, one download per terminal When the eSIM information is used, the SM-SR needs to determine whether the corresponding terminal has the capability to download the eSIM.
- SM-SR Content Management Data Routing
- the scheme fully utilizes the management capabilities of the eUICC by the SM-SR and the SM-DP (the contract management data preparation device), and utilizes the unique identifier code of the eUICC.
- the system indicates in the SM-SR database.
- the corresponding terminal of the eUICC is a stolen terminal, and the locking device can be implemented, so that the terminal cannot use the eSIM function.
- the system automatically alarms and locates the terminal location.
- Figure 6 illustrates a flow diagram for terminal loss reporting in accordance with one embodiment of the present invention.
- the process for performing terminal loss reporting according to an embodiment of the present invention includes:
- Step 6.1 The user sends a loss report to the MNO (operator) to request a loss of a terminal.
- the user may be a biological entity, directly requesting the operator to perform the loss reporting service, or may refer to other authenticated terminals to the operator.
- the server sends a loss request.
- step 6.2 the MNO performs a loss reporting process on the SM-DP (the contract management data preparation device).
- step 6.3 the SM-DP and the SM-SR (signed management data routing) perform mutual authentication.
- Step 6.4 After the authentication is completed, the SM-SR records the loss information in the database. Specifically, the unique identifier of the eUICC card of the terminal is marked as a loss flag.
- step 6.5.1 the SM-SR feeds back the loss confirmation to the SM-DP.
- step 6.5.2 the SM-SR feeds back the loss confirmation to the MNO.
- step 6.5.1 and step 6.5.2 can be executed simultaneously, or one of the steps can be executed first, and then the other is executed.
- step 6.6 the MNO feeds back the loss confirmation to the user.
- the content triggered by SM-SR is not limited to uploading location information, but also other warning functions, such as prohibiting the processing of eSIM cards, making scheduled alert calls (such as alarm calls), and using the front camera to capture the operator's surface.
- the image or the iris image if the terminal has the fingerprint recognition function, can also collect the operator's fingerprint in real time and upload the above one or more kinds of biological information to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it leaves the factory. It is manually set and changed by the user, so that after the legitimate user of the terminal reports the loss of the terminal, the server can obtain the real-time status of the terminal through various ways, so as to find the terminal and protect the security of the user.
- the unique identifier of the eUICC card of the terminal can be marked with a loss flag, so that the server can determine the unique identification code of the corresponding eUICC card as the report loss status when receiving the eSIM card processing command of the terminal. It is a loss reporting terminal, thereby facilitating further prohibition of operations related to its eSIM card and obtaining real-time location information of the terminal, etc., which is beneficial to terminal recovery.
- Figure 7 illustrates a flow chart for triggering an anti-theft function in accordance with one embodiment of the present invention.
- the process of triggering the anti-theft function is as follows:
- Step 7.1 After receiving the profile (user profile) download command of the terminal, the MNO sends a profile activation request to the SM-SR, where the profile is a user profile of the eSIM card.
- step 7.2 the EID (the unique identifier of the eUICC card) in the database discovery activation request belongs to the stolen terminal, and the database here refers to the database of the SM-SR.
- step 7.3.1 the SM-SR sends a terminal stolen prompt to the MNO.
- Step 7.3.2 the SM-SR triggers the positioning function of the terminal.
- Step 7.3.1 and step 7.3.2 can be executed at the same time, or one of the steps can be executed first, and then the other can be executed.
- Step 7.4 The terminal reports the location information to the SM-SR.
- the reported location information may be the real-time geographic location of the uploading terminal to the server or other associated terminal, but the content triggered by the SM-SR is not limited to the uploading location information, but may also be other warning functions, for example, prohibiting the processing and dialing of the eSIM card.
- Scheduled warning calls (such as alarm calls), you can also use the front camera to capture the operator's face image or iris image, if the terminal has fingerprint recognition function, you can also collect the operator's fingerprint in real time, and one or more of the above Biometric information is uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it leaves the factory, or can be manually set and changed by the user, so that after the legitimate user of the terminal reports the loss of the terminal,
- the server can obtain the real-time status of the terminal through various ways, in order to find the terminal and protect the security of the user's property.
- FIG. 8 shows a flow chart of triggering an anti-theft function in accordance with another embodiment of the present invention.
- the process of triggering the anti-theft function includes:
- Step 8.1 After receiving the profile (user profile) download command of the terminal, the MNO sends a profile download request to the SM-DP, where the profile is a user profile of the eSIM card.
- step 8.2 the SM-SR and the SM-DP mutually authenticate.
- Step 8.3 After the authentication is passed, the SM-DP sends an EIS (eUICC Information Set) request to the SM-SR, requesting to search for the unique identification code of the eUICC card of the terminal.
- EIS eUICC Information Set
- Step 8.4 retrieve the EIS and find that the terminal is a stolen terminal, that is, when the unique identifier of the eUICC card of the terminal is found in the database that retrieves the SM-SR, the terminal is a stolen terminal.
- step 8.5.1 the SM-SR sends a stunt prompt to the SM-DP.
- step 8.5.2 the SM-SR sends a terminal stolen prompt to the MNO.
- Steps 8.5.1 and 8.5.2 can be performed simultaneously, or one of the steps can be executed first, and then the other.
- step 8.6 the SM-SR triggers the positioning function of the terminal.
- Step 8.7 The terminal reports the location information to the SM-SR.
- the reported location information may be the real-time geographic location of the uploading terminal to the server or other associated terminal, but the content triggered by the SM-SR is not limited to the uploading location information, but may also be other alerting functions, for example, prohibiting the processing and dialing of the eSIM card.
- Scheduled warning calls (such as alarm calls), you can also use the front camera to capture the operator's face image or iris image, if the terminal has fingerprint recognition function, you can also collect the operator's fingerprint in real time, and one or more of the above Biometric information is uploaded to the server or other associated terminal.
- the above various warning functions can be used alone or in combination.
- the specific warning function can be selected by the terminal when it leaves the factory, or can be manually set and changed by the user, so that after the legitimate user of the terminal reports the loss of the terminal,
- the server can obtain the real-time status of the terminal through various ways, in order to find the terminal and protect the security of the user's property.
- Figure 9 illustrates a flow diagram for de-losing a terminal in accordance with one embodiment of the present invention.
- step 9.1 the user sends a request for loss reporting to the MNO.
- the user may be a biological individual, directly requesting the operator to perform the loss reporting service, or may refer to other authenticated terminals, and send an unlocking request to the operator server.
- step 9.2 the MNO invokes the SM-DP to perform the loss reporting process.
- step 9.3 the SM-SR and the SM-DP authenticate each other.
- Step 9.4 After the authentication is passed, the SM-SR eliminates the corresponding loss reporting data in the database, that is, eliminates the loss flag of the unique identifier of the eUICC card of the terminal.
- step 9.5.1 the SM-SR sends an acknowledgement loss report to the SM-DP.
- step 9.5.2 the SM-SR sends an error report to the MNO.
- the MNO sends a report of the loss of the report to the user.
- the user here may be another authenticated terminal, or may be the retrieved lost report terminal.
- the eUICC card (embedded universal integrated circuit card) in the eSIM card terminal has the unique identification code characteristic, and the eSIM card can be received at the terminal.
- the server can effectively determine whether it has been reported or lost, so that the server can obtain diverse information from the terminal to determine the real-time status of the terminal, enhance the security of the terminal, and facilitate the recovery of the terminal, thereby effectively protecting the terminal. User's interest.
Landscapes
- Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Computer Security & Cryptography (AREA)
- Computer Hardware Design (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Telephonic Communication Services (AREA)
- Mobile Radio Communication Systems (AREA)
- Financial Or Insurance-Related Operations Such As Payment And Settlement (AREA)
- Alarm Systems (AREA)
Abstract
本发明提出了一种终端防盗验证方法、一种终端和一种服务器,其中,终端防盗验证方法包括:接收对终端的eSIM卡的处理命令;根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。通过本发明的技术方案,利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,保障了用户的利益。
Description
本发明涉及终端技术领域,具体而言,涉及一种终端防盗验证方法、一种终端和一种服务器。
目前,相关技术中提供了eSIM卡(嵌入式用户身份识别卡)以取代原有的SIM卡(用户身份识别卡),eSIM卡本身为终端的一部分,在出厂时或用户经运营商进行变更时进行配置,避免了原有SIM卡手动拆卸不便的缺陷。
然而,如果eSIM卡的终端被盗时,由于被盗终端的eSIM卡很可能被重新配置,则对于被盗终端的信息安全保护及寻回非常不利。
因此,如何处理eSIM卡终端的防盗问题,成为目前亟待解决的技术问题。
发明内容
本发明正是基于上述问题,提出了一种新的技术方案,可以有效处理eSIM卡终端的防盗问题,增强eSIM卡终端的安全性,有效保障用户的利益。
有鉴于此,本发明的一方面提出了一种终端防盗验证方法,包括:接收对终端的eSIM卡的处理命令;根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,以验证本终端是否为不具有对eSIM卡
的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
另外,在确定该终端为锁定终端时,对应的警示功能包括:禁止对eSIM卡的处理、上传终端的实时地理位置至服务器或其他关联终端、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述对终端的eSIM卡的处理命令包括:激活所述eSIM卡的用户配置文件的处理请求;或为所述eSIM卡下载新的用户配置文件的处理请求。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理请求时,即可开启防盗验证模式,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,所述处理命令中具有所述终端的
eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,这样,就可以在终端接收到对eSIM卡的处理命令时,通过服务器根据其eUICC卡的唯一标识码有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
本发明的另一方面提出了一种终端,包括:处理请求接收单元,接收对终端的eSIM卡的处理命令;发送单元,根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;检测结果接收单元,接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,以验证本终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
另外,在确定该终端为锁定终端时,对应的警示功能包括:禁止对eSIM卡的处理、上传终端的实时地理位置至服务器或其他关联终端、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功
能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述处理请求接收单元具体用于:接收激活所述eSIM卡的用户配置文件的处理请求;或接收为所述eSIM卡下载新的用户配置文件的处理请求。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理请求时,即可开启防盗验证模式,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,所述处理命令中具有所述终端的eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,这样,就可以在终端接收到对eSIM卡的处理命令时,通过服务器根据其eUICC卡的唯一标识码有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
本发明的再一方面提出了一种终端防盗验证方法,包括:接收来自终端的对所述终端的eSIM卡的处理请求;根据所述处理请求,通过签约管
理数据路由检测所述终端是否为锁定终端;当检测到所述终端为所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,由服务器来验证该终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述处理请求包括:激活所述eSIM卡的用户配置文件的处理请求,或为所述eSIM卡下载新的用户配置文件的处理请求,以及所述处理请求中具有所述终端的eUICC卡的唯一标识码。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理命令时,即可开启防盗验证模式,向服务器发送对应的处理请求,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,所述通过签约管理数据路由检测所述终端是否为锁定终端,包括:根据所述处理请求,检测所述签约管理数据路
由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,就可以在终端接收到激活eSIM卡的用户配置文件的命令时,如果服务器根据其eUICC卡的唯一标识码有效判断已被挂失或锁定,即可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,所述通过签约管理数据路由检测所述终端是否为锁定终端,包括:对签约管理数据准备装置与签约管理数据路由进行相互认证;在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,SIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,在终端接收到为eSIM卡下载新的用户配置文件的命令时,可以经SM-DP(签约管理数据准备装置)向SM-SR(签约管理数据路由)进行eUICC信息集检索,以检测SM-SR的数据库中是否存储了该终端的eUICC卡的唯一标识码,如果已存储,说明该终端已被挂失或锁定,服务器可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的
利益。
在上述任一技术方案中,优选地,还包括:在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
在该技术方案中,还可以对签约管理数据路由的数据库中的eUICC卡的唯一标识码进行删除,以对终端进行解锁,方便用户的使用。
本发明的还一方面提出了一种服务器,包括:处理请求接收单元,接收来自终端的对所述终端的eSIM卡的处理请求;检测单元,根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;警示单元,当检测到所述终端为所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,由服务器来验证该终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述处理请求接收单元具体用于:接收激活所述eSIM卡的用户配置文件的处理请求,或接收为所述eSIM卡下载新的用户配置文件的处理请求;以及所述处理请求中具有所述终端的
eUICC卡的唯一标识码。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理命令时,即可开启防盗验证模式,向服务器发送对应的处理请求,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,所述检测单元包括:第一检索单元,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,根据所述处理请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,就可以在终端接收到激活eSIM卡的用户配置文件的命令时,如果服务器根据其eUICC卡的唯一标识码有效判断已被挂失或锁定,即可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,所述检测单元包括:认证单元,当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,对签约管理数据准备装置与签约管理数据路由进行相互认证;检索请求发送单元,在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;第二检索单元,根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,SIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,在终端接收到为eSIM卡下载新的用户配置文件的命令时,可以经SM-DP(签约管理数据准备装置)向SM-SR(签约管理数据路由)进行eUICC信息集检索,以检测SM-SR的数据库中是否存储了该终端的eUICC卡的唯一标识码,如果已存储,说明该终端已被挂失或锁定,服务器可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,还包括:解锁定命令接收单元,在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;标识码删除单元,根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
在该技术方案中,还可以对签约管理数据路由的数据库中的eUICC卡的唯一标识码进行删除,以对终端进行解锁,方便用户的使用。
通过以上技术方案,利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
图1示出了根据本发明的一个实施例的终端防盗验证方法的流程图;
图2示出了根据本发明的一个实施例的终端的框图;
图3示出了根据本发明的另一个实施例的终端防盗验证方法的流程图;
图4示出了根据本发明的一个实施例的服务器的框图;
图5示出了根据本发明的一个实施例的eSIM卡远程配置管理系统的架构图;
图6示出了根据本发明的一个实施例的进行终端挂失的流程图;
图7示出了根据本发明的一个实施例的触发防盗功能的流程图;
图8示出了根据本发明的另一个实施例的触发防盗功能的流程图;
图9示出了根据本发明的一个实施例的为终端进行解挂失的流程图。
为了能够更清楚地理解本发明的上述目的、特征和优点,下面结合附图和具体实施方式对本发明进行进一步的详细描述。需要说明的是,在不冲突的情况下,本申请的实施例及实施例中的特征可以相互组合。
在下面的描述中阐述了很多具体细节以便于充分理解本发明,但是,本发明还可以采用其他不同于在此描述的其他方式来实施,因此,本发明的保护范围并不受下面公开的具体实施例的限制。
图1示出了根据本发明的一个实施例的终端防盗验证方法的流程图。
如图1所示,根据本发明的一个实施例的终端防盗验证方法,包括:
步骤102,接收对终端的eSIM卡的处理命令;
步骤104,根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;
步骤106,接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,以验证本终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可
以是指定的专用于终端防盗的其他类型的服务器。
另外,在确定该终端为锁定终端时,对应的警示功能包括:禁止对eSIM卡的处理、上传终端的实时地理位置至服务器或其他关联终端、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述对终端的eSIM卡的处理命令包括:激活所述eSIM卡的用户配置文件的处理请求;或为所述eSIM卡下载新的用户配置文件的处理请求。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理请求时,即可开启防盗验证模式,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,所述处理命令中具有所述终端的eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电
路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,这样,就可以在终端接收到对eSIM卡的处理命令时,通过服务器根据其eUICC卡的唯一标识码有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
图2示出了根据本发明的一个实施例的终端的框图。
如图2所示,根据本发明的一个实施例的终端200,包括:处理请求接收单元202、发送单元204和检测结果接收单元206。
其中,处理请求接收单元202用于接收对终端的eSIM卡的处理命令;发送单元204用于根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;检测结果接收单元206用于接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,以验证本终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
另外,在确定该终端为锁定终端时,对应的警示功能包括:禁止对eSIM卡的处理、上传终端的实时地理位置至服务器或其他关联终端、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便
于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,处理请求接收单元202具体用于:接收激活所述eSIM卡的用户配置文件的处理请求;或接收为所述eSIM卡下载新的用户配置文件的处理请求。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理请求时,即可开启防盗验证模式,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,所述处理命令中具有所述终端的eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,这样,就可以在终端接收到对eSIM卡的处理命令时,通过服务器根据其eUICC卡的唯一标识码有效判断其是否已被挂失或锁定,从而使服务器能够通过多样化的途径获取该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
图3示出了根据本发明的另一个实施例的终端防盗验证方法的流程图。
如图3所示,根据本发明的另一个实施例的终端防盗验证方法,包
括:
步骤302,接收来自终端的对所述终端的eSIM卡的处理请求;
步骤304,根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;
步骤306,当检测到所述终端为所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,由服务器来验证该终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,所述处理请求包括:激活所述eSIM卡的用户配置文件的处理请求,或为所述eSIM卡下载新的用户配置文件的处理请求,以及所述处理请求中具有所述终端的eUICC卡的唯一标识码。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理命令时,即可开启防盗验证模式,向服务器发送对应的处理请求,以便服务器验证本终端是
否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,步骤304具体包括:根据所述处理请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,就可以在终端接收到激活eSIM卡的用户配置文件的命令时,如果服务器根据其eUICC卡的唯一标识码有效判断已被挂失或锁定,即可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,步骤304包括:对签约管理数据准备装置与签约管理数据路由进行相互认证;在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,SIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,在终端接收到为eSIM卡下载新的用户配置文件的命令时,可以经SM-DP(签约管理数据准备装置)向SM-SR(签约管理数据路由)进行eUICC信息集检索,以检测SM-SR的
数据库中是否存储了该终端的eUICC卡的唯一标识码,如果已存储,说明该终端已被挂失或锁定,服务器可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,还包括:在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
在该技术方案中,还可以对签约管理数据路由的数据库中的eUICC卡的唯一标识码进行删除,以对终端进行解锁,方便用户的使用。
图4示出了根据本发明的一个实施例的服务器的框图。
如图4所示,根据本发明的一个实施例的服务器400,包括:处理请求接收单元402、检测单元404和警示单元406。
其中,处理请求接收单元402用于接收来自终端的对所述终端的eSIM卡的处理请求;检测单元404用于根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;警示单元406用于当检测到所述终端为所述锁定终端时,执行对应的警示功能。
在该技术方案中,锁定终端是指终端的合法用户在运营商处进行挂失或权限限制等操作后的终端,当普通终端接收到对eSIM卡的处理命令时,可以向服务器发送处理请求,由服务器来验证该终端是否为不具有对eSIM卡的处理权限的锁定终端,如果服务器验证结果为是,则说明本终端不具有对eSIM卡的处理权限,禁止其进行处理,并示警,只有在服务器验证结果为否时,才允许对终端的eSIM卡进行用户配置文件更改等变更处理。
其中,服务器可以是与终端的eSIM卡相关联的运营商服务器,也可以是指定的专用于终端防盗的其他类型的服务器。
该技术方案利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过
服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
在上述技术方案中,优选地,处理请求接收单元402具体用于:接收激活所述eSIM卡的用户配置文件的处理请求,或接收为所述eSIM卡下载新的用户配置文件的处理请求;以及所述处理请求中具有所述终端的eUICC卡的唯一标识码。
在该技术方案中,终端丢失或被盗后,非法用户一般都会对终端的eSIM卡进行激活用户配置文件或下载新的用户配置文件的操作,因此,为了有效防盗,保护用户的财产安全,每当终端接收到激活eSIM卡的用户配置文件或为eSIM卡下载新的用户配置文件的处理命令时,即可开启防盗验证模式,向服务器发送对应的处理请求,以便服务器验证本终端是否为锁定终端,从而便于进一步判断终端接收到的处理请求是否合法。
在上述任一技术方案中,优选地,检测单元404包括:第一检索单元4042,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,根据所述处理请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,eSIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,就可以在终端接收到激活eSIM卡的用户配置文件的命令时,如果服务器根据其eUICC卡的唯一标识码有效判断已被挂失或锁定,即可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,检测单元404包括:认证单元4044、检索请求发送单元4046和第二检索单元4048。
其中,认证单元4044用于当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,对签约管理数据准备装置与签约管理数据路由进行相互认证;检索请求发送单元4046用于在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;第二检索单元4048用于根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
在该技术方案中,SIM卡终端中具有eUICC卡(嵌入式通用集成电路卡),eUICC卡具有唯一标识码也就是全球唯一编号EID,在终端的有效用户发现终端遗失或被盗时,可以在通过身份验证后,向运营商等服务器请求锁定该终端,服务器即可将该终端的eUICC卡的唯一标识码记录在签约管理数据路由的数据库中。这样,在终端接收到为eSIM卡下载新的用户配置文件的命令时,可以经SM-DP(签约管理数据准备装置)向SM-SR(签约管理数据路由)进行eUICC信息集检索,以检测SM-SR的数据库中是否存储了该终端的eUICC卡的唯一标识码,如果已存储,说明该终端已被挂失或锁定,服务器可从终端中获取多样化的信息来确定该终端的实时状况,便于寻回终端,增强终端的安全性,有效保障了用户的利益。
在上述任一技术方案中,优选地,还包括:解锁定命令接收单元408,在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;标识码删除单元410,根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
在该技术方案中,还可以对签约管理数据路由的数据库中的eUICC卡的唯一标识码进行删除,以对终端进行解锁,方便用户的使用。
图5示出了根据本发明的一个实施例的eSIM卡远程配置管理系统的架构图。
如图5所示,eSIM卡远程配置管理系统是根据eSIM技术的标准规程
构建的。每个eUICC卡刚出厂的时候就会在SM-SR(签约管理数据路由)处注册,从而eUICC的完整生命周期相关数据都在SM-SR数据库中有保存;另一方面,每次终端下载一个eSIM信息时,都需要SM-SR判断对应的终端是否有下载eSIM的能力。
本方案充分利用SM-SR和SM-DP(签约管理数据准备装置)对eUICC的管理能力,同时利用了eUICC存在唯一标识码的特点,当用户挂失终端后,通过在SM-SR数据库中注明该eUICC对应终端为被盗终端,可以实现锁定设备,使该终端无法使用eSIM功能,当有非法用户尝试使用该被盗终端下载新的eSIM时,系统自动报警,并定位终端位置。
图6示出了根据本发明的一个实施例的进行终端挂失的流程图。
如图6所示,根据本发明的一个实施例的进行终端挂失的流程包括:
步骤6.1,用户向MNO(运营商)发送挂失请求,请求挂失某终端,此处,用户可以是生物个体,直接请求运营商进行挂失服务,也可以指其他经身份验证后的终端,向运营商服务器发送挂失请求。
步骤6.2,MNO向SM-DP(签约管理数据准备装置)进行挂失处理。
步骤6.3,SM-DP与SM-SR(签约管理数据路由)进行相互认证。
步骤6.4,认证完成后,SM-SR将挂失信息记入数据库中,具体来说,是将该终端的eUICC卡的唯一标识码打上挂失的标记。
步骤6.5.1,SM-SR向SM-DP反馈挂失确认。
步骤6.5.2,SM-SR向MNO反馈挂失确认。其中,步骤6.5.1和步骤6.5.2可以同时执行,也可以先执行其中任一个步骤,再执行另一个。
步骤6.6,MNO向用户反馈挂失确认。
SM-SR触发的内容不仅限于上传位置信息,还可以是其他警示功能,比如,禁止对eSIM卡的处理、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以
由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
通过将终端挂失,可以在该终端的eUICC卡的唯一标识码打上挂失的标记,以便服务器接收到该终端的eSIM卡处理命令时,通过验证其对应的eUICC卡的唯一标识码为挂失状态来确定其为挂失终端,从而便于进一步禁止其eSIM卡相关的操作并获取该终端的实时位置信息等内容,有利于终端的寻回。
图7示出了根据本发明的一个实施例的触发防盗功能的流程图。
如图7所示,根据本发明的一个实施例,触发防盗功能的过程如下:
步骤7.1,MNO在接收到终端的Profile(用户配置文件)下载命令后,向SM-SR发送Profile激活请求,其中,Profile为eSIM卡的用户配置文件。
步骤7.2,查找数据库发现激活请求中的EID(eUICC卡的唯一标识码)属于被盗终端,这里的数据库指的是SM-SR的数据库。
步骤7.3.1,由SM-SR向MNO发送终端被盗提示。
步骤7.3.2,SM-SR触发终端的定位功能。步骤7.3.1与步骤7.3.2可以同时执行,也可以先执行其中任一个步骤,再执行另一个。
步骤7.4,终端向SM-SR上报位置信息。
其中,上报位置信息可以是上传终端的实时地理位置至服务器或其他关联终端,但SM-SR触发的内容不仅限于上传位置信息,还可以是其他警示功能,比如,禁止对eSIM卡的处理、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
图8示出了根据本发明的另一个实施例的触发防盗功能的流程图。
如图8所示,根据本发明的另一个实施例,触发防盗功能的过程包括:
步骤8.1,MNO在接收到终端的Profile(用户配置文件)下载命令后,向SM-DP发送Profile下载请求,其中,Profile为eSIM卡的用户配置文件。
步骤8.2,SM-SR与SM-DP相互认证。
步骤8.3,认证通过后,SM-DP向SM-SR发送EIS(eUICC信息集)请求,请求进行检索终端的eUICC卡的唯一标识码。
步骤8.4,检索EIS,发现该终端为被盗终端,即在检索到SM-SR的数据库中具有该终端的eUICC卡的唯一标识码时,说明该终端为被盗终端。
步骤8.5.1,SM-SR向SM-DP发送终端被盗提示。
步骤8.5.2,SM-SR向MNO发送终端被盗提示。步骤8.5.1与步骤8.5.2可以同时执行,也可以先执行其中任一个步骤,再执行另一个。
步骤8.6,SM-SR触发终端的定位功能。
步骤8.7,终端向SM-SR上报位置信息。
同样,上报位置信息可以是上传终端的实时地理位置至服务器或其他关联终端,但SM-SR触发的内容不仅限于上传位置信息,还可以是其他警示功能,比如,禁止对eSIM卡的处理、拨打预定警示电话(如报警电话),还可以使用前置摄像头拍摄操作者的面图图像或虹膜图像,如果终端具有指纹识别功能,还可以实时采集操作者的指纹,并将上述一种或多种生物信息上传至服务器或其他关联终端。以上多种警示功能可以单独使用,也可以结合使用,具体选择何种警示功能,可以由终端出厂时自带,也可以由用户手动进行设置和更改,从而便于在终端的合法用户挂失该终端后使服务器能够通过多样化的途径获取该终端的实时状况,以便寻回终端,保护用户的财产安全。
图9示出了根据本发明的一个实施例的为终端进行解挂失的流程图。
如图9所示,为终端进行解挂失的步骤如下:
步骤9.1,用户向MNO发送解挂失请求。此处,用户可以是生物个体,直接请求运营商进行解挂失服务,也可以指其他经身份验证后的终端,向运营商服务器发送解挂失请求。
步骤9.2,MNO调用SM-DP进行解挂失处理。
步骤9.3,SM-SR与SM-DP相互认证。
步骤9.4,认证通过后,SM-SR在数据库中消除对应的挂失数据,即消除对该终端的eUICC卡的唯一标识码的挂失标记。
步骤9.5.1,SM-SR向SM-DP发送解挂失确认。
步骤9.5.2,SM-SR向MNO发送解挂失确认。
步骤9.6,MNO向用户发送解挂失确认,这里的用户可以是其他经身份验证后的终端,也可以是已寻回的解挂失终端。
以上结合附图详细说明了本发明的技术方案,通过本发明的技术方案,利用eSIM卡终端中eUICC卡(嵌入式通用集成电路卡)具有唯一标识码的特性,可以在终端接收到对eSIM卡的处理命令时通过服务器有效判断其是否已被挂失或锁定,从而使服务器能够从终端中获取多样化的信息来确定该终端的实时状况,增强终端的安全性,便于寻回终端,有效保障了用户的利益。
以上所述仅为本发明的优选实施例而已,并不用于限制本发明,对于本领域的技术人员来说,本发明可以有各种更改和变化。凡在本发明的精神和原则之内,所作的任何修改、等同替换、改进等,均应包含在本发明的保护范围之内。
Claims (16)
- 一种终端防盗验证方法,其特征在于,包括:接收对终端的eSIM卡的处理命令;根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
- 根据权利要求1所述的终端防盗验证方法,其特征在于,所述对终端的eSIM卡的处理命令包括:激活所述eSIM卡的用户配置文件的处理请求;或为所述eSIM卡下载新的用户配置文件的处理请求。
- 根据权利要求1或2所述的终端防盗验证方法,其特征在于,所述处理命令中具有所述终端的eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 一种终端,其特征在于,包括:处理请求接收单元,接收对终端的eSIM卡的处理命令;发送单元,根据所述处理命令,向服务器发送处理请求,以供所述服务器根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;检测结果接收单元,接收来自所述服务器的检测结果,其中,当所述检测结果为所述终端是所述锁定终端时,执行对应的警示功能。
- 根据权利要求4所述的终端,其特征在于,所述处理请求接收单元具体用于:接收激活所述eSIM卡的用户配置文件的处理请求;或接收为所述eSIM卡下载新的用户配置文件的处理请求。
- 根据权利要求4或5所述的终端,其特征在于,所述处理命令中 具有所述终端的eUICC卡的唯一标识码,以供所述服务器检测所述签约管理数据路由的数据库中是否存储有所述唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 一种终端防盗验证方法,其特征在于,包括:接收来自终端的对所述终端的eSIM卡的处理请求;根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;当检测到所述终端为所述锁定终端时,执行对应的警示功能。
- 根据权利要求7所述的终端防盗验证方法,其特征在于,所述处理请求包括:激活所述eSIM卡的用户配置文件的处理请求,或为所述eSIM卡下载新的用户配置文件的处理请求,以及所述处理请求中具有所述终端的eUICC卡的唯一标识码。
- 根据权利要求8所述的终端防盗验证方法,其特征在于,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,所述通过签约管理数据路由检测所述终端是否为锁定终端,包括:根据所述处理请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 根据权利要求8或9所述的终端防盗验证方法,其特征在于,当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,所述通过签约管理数据路由检测所述终端是否为锁定终端,包括:对签约管理数据准备装置与签约管理数据路由进行相互认证;在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 根据权利要求8或9所述的终端防盗验证方法,其特征在于,还包括:在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
- 一种服务器,其特征在于,包括:处理请求接收单元,接收来自终端的对所述终端的eSIM卡的处理请求;检测单元,根据所述处理请求,通过签约管理数据路由检测所述终端是否为锁定终端;警示单元,当检测到所述终端为所述锁定终端时,执行对应的警示功能。
- 根据权利要求12所述的服务器,其特征在于,所述处理请求接收单元具体用于:接收激活所述eSIM卡的用户配置文件的处理请求,或接收为所述eSIM卡下载新的用户配置文件的处理请求;以及所述处理请求中具有所述终端的eUICC卡的唯一标识码。
- 根据权利要求13所述的服务器,其特征在于,所述检测单元包括:第一检索单元,当所述处理请求为激活所述eSIM卡的用户配置文件的处理请求时,根据所述处理请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 根据权利要求13或14所述的服务器,其特征在于,所述检测单元包括:认证单元,当所述处理请求为所述eSIM卡下载新的用户配置文件的处理请求时,对签约管理数据准备装置与签约管理数据路由进行相互认证;检索请求发送单元,在认证通过后,通过签约管理数据准备装置向签约管理数据路由发送eUICC信息集检索请求;第二检索单元,根据所述eUICC信息集检索请求,检测所述签约管理数据路由的数据库中是否存储有所述终端的eUICC卡的唯一标识码,其中,当所述数据库中存储有所述唯一标识码时,确定所述终端是所述锁定终端。
- 根据权利要求13或14所述的服务器,其特征在于,还包括:解锁定命令接收单元,在所述终端为所述锁定终端时,接收对所述终端的解锁定命令;标识码删除单元,根据所述解锁定命令,在所述签约管理数据路由的数据库中删除所述终端对应的所述唯一标识码,以供在检测到所述数据库中不具有所述唯一标识码时,确定所述终端不是所述锁定终端。
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| CN201610370605.9 | 2016-05-27 | ||
| CN201610370605.9A CN107438059B (zh) | 2016-05-27 | 2016-05-27 | 终端防盗验证方法、终端和服务器 |
Publications (1)
| Publication Number | Publication Date |
|---|---|
| WO2017201804A1 true WO2017201804A1 (zh) | 2017-11-30 |
Family
ID=60412679
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/CN2016/087398 Ceased WO2017201804A1 (zh) | 2016-05-27 | 2016-06-28 | 终端防盗验证方法、终端和服务器 |
Country Status (2)
| Country | Link |
|---|---|
| CN (1) | CN107438059B (zh) |
| WO (1) | WO2017201804A1 (zh) |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US12549941B2 (en) | 2022-12-01 | 2026-02-10 | T-Mobile Usa, Inc. | Secure tunnel as a service for 5G networks |
Families Citing this family (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN108650624A (zh) * | 2018-05-15 | 2018-10-12 | 珠海格力电器股份有限公司 | 一种终端防盗方法及终端 |
| CN108990047B (zh) * | 2018-07-03 | 2021-06-29 | 中国联合网络通信集团有限公司 | 签约关系管理数据准备平台的测试方法、装置及介质 |
| CN110636494B (zh) * | 2019-10-18 | 2022-05-20 | 深圳传音控股股份有限公司 | 虚拟sim卡的网络连接方法、装置及计算机可读存储介质 |
| CN112564915B (zh) * | 2020-11-27 | 2023-05-09 | 中国联合网络通信集团有限公司 | 验证方法和一号多终端管理服务器、终端 |
Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101835143A (zh) * | 2010-05-05 | 2010-09-15 | 中兴通讯股份有限公司 | 移动终端定位系统和方法、移动终端 |
| WO2012154600A1 (en) * | 2011-05-06 | 2012-11-15 | Apple Inc. | Methods and apparatus for providing management capabilities for access control clients |
| CN103731821A (zh) * | 2012-10-12 | 2014-04-16 | 华为终端有限公司 | 基于嵌入式通用集成电路卡的数据保密方法及设备 |
Family Cites Families (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US9100810B2 (en) * | 2010-10-28 | 2015-08-04 | Apple Inc. | Management systems for multiple access control entities |
| KR101651808B1 (ko) * | 2012-02-07 | 2016-08-26 | 애플 인크. | 네트워크 보조형 사기 검출 장치 및 방법 |
| JP5992632B2 (ja) * | 2012-11-21 | 2016-09-14 | アップル インコーポレイテッド | アクセス制御を管理するためのポリシーベース技法 |
-
2016
- 2016-05-27 CN CN201610370605.9A patent/CN107438059B/zh active Active
- 2016-06-28 WO PCT/CN2016/087398 patent/WO2017201804A1/zh not_active Ceased
Patent Citations (3)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| CN101835143A (zh) * | 2010-05-05 | 2010-09-15 | 中兴通讯股份有限公司 | 移动终端定位系统和方法、移动终端 |
| WO2012154600A1 (en) * | 2011-05-06 | 2012-11-15 | Apple Inc. | Methods and apparatus for providing management capabilities for access control clients |
| CN103731821A (zh) * | 2012-10-12 | 2014-04-16 | 华为终端有限公司 | 基于嵌入式通用集成电路卡的数据保密方法及设备 |
Cited By (1)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US12549941B2 (en) | 2022-12-01 | 2026-02-10 | T-Mobile Usa, Inc. | Secure tunnel as a service for 5G networks |
Also Published As
| Publication number | Publication date |
|---|---|
| CN107438059B (zh) | 2020-06-05 |
| CN107438059A (zh) | 2017-12-05 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| US12001857B2 (en) | Device locator disable authentication | |
| WO2017201804A1 (zh) | 终端防盗验证方法、终端和服务器 | |
| US9079554B2 (en) | Method and apparatus for vehicle hardware theft prevention | |
| KR101953547B1 (ko) | 보안 이벤트를 이용한 모바일 단말의 관리 제어 방법 및 그 장치 | |
| CN109600519B (zh) | 手机控制方法及系统 | |
| CN104200144A (zh) | 提高移动终端安全性的方法及系统 | |
| CN109840973B (zh) | 一种基于人脸识别的共享单车自动开锁方法及控制系统 | |
| KR101810150B1 (ko) | 모바일 단말과 IoT기기간 제3자 보안인증 시스템 및 방법 | |
| CN105447928A (zh) | 门禁控制方法及控制系统 | |
| WO2013166886A1 (en) | Anti-theft method, device and system for portable computer equipment | |
| CN103634477A (zh) | 具有指纹装置的手机的防盗方法及系统 | |
| CN109792601B (zh) | 一种eUICC配置文件的删除方法和设备 | |
| CN105913513A (zh) | 门锁系统的控制方法及其系统 | |
| WO2015085940A1 (zh) | 移动终端防盗方法及客户端 | |
| CN109389703A (zh) | 一种基于社交网络的智能门锁控制系统及其控制方法 | |
| AU2018291864B2 (en) | Method to recover data from a locked device for upload to a service | |
| AU2021282382A1 (en) | A Method and System for Reporting, Securing and Controlling Mobile Phones Which are Lost (Misplaced\Stolen) | |
| WO2015113351A1 (zh) | 处理信息的方法、终端、服务器以及通信方法、系统 | |
| JP6667726B1 (ja) | 無人飛行装置、管理装置、及び飛行管理方法 | |
| JP2014165580A (ja) | 利用制御機能付携帯型無線lan端末、携帯型無線lan端末利用制御方法および携帯型無線lan端末利用制御プログラム | |
| TWI630504B (zh) | 安全監控方法及系統 | |
| CN111086484A (zh) | 车主信息获取方法、车机及车辆 | |
| CN108182379B (zh) | 家电设备的防盗追踪方法、装置和系统 | |
| CN110225298B (zh) | 一种车联网中图像信息提供方法、装置和系统 | |
| JP7081215B2 (ja) | 盗難防止装置、盗難防止方法、プログラム |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 16902792 Country of ref document: EP Kind code of ref document: A1 |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 16902792 Country of ref document: EP Kind code of ref document: A1 |