Partially delegated over-the-air provisioning of a secure element
First Claim
1. A method of provisioning a secure element on a mobile device, comprising:
- receiving a provisioning service request associated with a credit card from a first trusted service manager associated with the credit card;
establishing a secure connection with the secure element of the mobile device, wherein at least a portion of the secure connection is provided by a wireless link;
receiving a request over the secure connection from an over-the-air client of the mobile device;
in response to the request, transmitting a command over the secure connection to the over-the-air client, the command relating to at least a portion of the services identified in the provisioning service request;
receiving a command result over the secure connection from the over-the-air client;
closing the secure connection with the secure element of the mobile device;
transmitting a status of the provisioning service request, wherein the receiving the request, the transmitting the command, the receiving the command result, and the transmitting the status are performed by a second trusted service manager associated with a wireless service provider, and wherein the secure connection is between the secure element of the mobile device and the second trusted service manager;
receiving, by the second trusted service manager, a new provisioning service request from the first trusted service manager, wherein the new provisioning service request is a request to provision personalization information of the credit card to the secure element;
transmitting, by the second trusted service manager, a message to the over-the-air client on the mobile device;
based on the message, establishing a new secure connection between the secure element on the mobile device and the first trusted service manager, wherein at least a portion of the new secure connection is provided by another wireless link;
requesting, by the over-the-air client, a new command from the first trusted service manager, the new command relating to at least a portion of the services identified in the new provisioning service request;
receiving, by the over-the-air client, the new command from the first trusted service manager;
providing, by the over-the-air client, the new command to the secure element for processing; and
transmitting, by the over-the-air client, the result of the secure element processing the new command to the first trusted service manager.
6 Assignments
0 Petitions
Accused Products
Abstract
A system for provisioning a secure element on a mobile device is provided. The system comprises a first trusted service manager associated with a credit card, a second trusted service manager associated with a wireless service provider, and a mobile device. The mobile device has a secure element to hold the credit card and an over-the-air client to communicate wirelessly with the first trusted service manager and the second trusted service manager. When the second trusted service manager receives a message from the first trusted service manager to provision a personalization information for the credit card to the mobile device, the second trusted service manager transmits to the over-the-air client a message to initiate transfer of the personalization information for the credit card.
-
Citations
17 Claims
-
1. A method of provisioning a secure element on a mobile device, comprising:
-
receiving a provisioning service request associated with a credit card from a first trusted service manager associated with the credit card; establishing a secure connection with the secure element of the mobile device, wherein at least a portion of the secure connection is provided by a wireless link; receiving a request over the secure connection from an over-the-air client of the mobile device; in response to the request, transmitting a command over the secure connection to the over-the-air client, the command relating to at least a portion of the services identified in the provisioning service request; receiving a command result over the secure connection from the over-the-air client; closing the secure connection with the secure element of the mobile device; transmitting a status of the provisioning service request, wherein the receiving the request, the transmitting the command, the receiving the command result, and the transmitting the status are performed by a second trusted service manager associated with a wireless service provider, and wherein the secure connection is between the secure element of the mobile device and the second trusted service manager; receiving, by the second trusted service manager, a new provisioning service request from the first trusted service manager, wherein the new provisioning service request is a request to provision personalization information of the credit card to the secure element; transmitting, by the second trusted service manager, a message to the over-the-air client on the mobile device; based on the message, establishing a new secure connection between the secure element on the mobile device and the first trusted service manager, wherein at least a portion of the new secure connection is provided by another wireless link; requesting, by the over-the-air client, a new command from the first trusted service manager, the new command relating to at least a portion of the services identified in the new provisioning service request; receiving, by the over-the-air client, the new command from the first trusted service manager; providing, by the over-the-air client, the new command to the secure element for processing; and transmitting, by the over-the-air client, the result of the secure element processing the new command to the first trusted service manager. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14)
-
-
15. A method of, provisioning a secure element on a mobile device, comprising:
-
receiving a provisioning service request associated with a credit card from a first trusted service manager associated with the credit card; establishing a secure connection with the secure element of the mobile device, wherein at least a portion of the secure connection is provided by a wireless link; receiving a request over the secure connection from an over-the-air client of the mobile device; in response to the request, transmitting a command over the secure connection to the over-the-air client, the command relating to at least a portion of the services identified in the provisioning service request; receiving a command result over the secure connection from the over-the-air client; closing the secure connection with the secure element of the mobile device; transmitting a status of the provisioning service request, wherein the receiving the request, the transmitting the command, the receiving the command result, and the transmitting the status are performed by a second trusted service manager associated with a wireless service provider, and wherein the secure connection is between the secure element of the mobile device and the second trusted service manager; receiving, by the second trusted service manager, a new provisioning service request from the first trusted service manager, wherein the new provisioning service request is a request to provision personalization information of the credit card to the secure element; transmitting, by the second trusted service manager, a message to the over-the-air client on the mobile device; based on the message, establishing a new secure connection between the secure element on the mobile device and the first trusted service manager, wherein at least a portion of the new secure connection is provided by another wireless link; requesting, by the over-the-air client, a new command from the first trusted service manager, the new command relating to at least a portion of the services identified in the new provisioning service request; receiving, by the over-the-air client, the new command from the first trusted service manager; providing, by the over-the-air client, the new command to the secure element for processing; and transmitting, by the over-the-air client, the result of the secure element processing the new command to the first trusted service manager, wherein the personalization information comprises personal credit card information.
-
-
16. A method of provisioning a secure element on a mobile device, comprising:
-
receiving a provisioning service request associated with a credit card from a first trusted service manager associated with the credit card; establishing a secure connection with the secure element of the mobile device, wherein at least a portion of the secure connection is provided by a wireless link; receiving a request over the secure connection from an over-the-air client of the mobile device; in response to the request, transmitting a command over the secure connection to the over-the-air client, the command relating to at least a portion of the services identified in the provisioning service request; receiving a command result over the secure connection from the over-the-air client; closing the secure connection with the secure element of the mobile device; transmitting a status of the provisioning service request, wherein the receiving the provisioning service request is performed by a second trusted service manager associated with a wireless service provider, wherein the receiving the request, the transmitting the command, the receiving the command result, and the transmitting the status are performed by the first trusted service manager, wherein the secure connection is between the secure element of the mobile device and the first trusted service manager, and wherein the provisioning service request is a request to provision personalization information of the credit card to the secure element; receiving, by the second trusted service manager, a new provisioning service request from the first trusted service manager, wherein the new provisioning service request comprises one of downloading the credit card, locking the credit card, suspending the credit card, modifying the credit card, and deleting the credit card; establishing a new secure connection between the secure element of the mobile device and the second trusted service manager, wherein at least a portion of the new secure connection is provided by a wireless link; receiving, by the second trusted service manager, a new request over the secure connection from an over-the-air client of the mobile device; in response to the new request, transmitting, by the second trusted service manager, a new command over the new secure connection to the over-the-air client, the new command relating to at least a portion of the services identified in the new provisioning service request; receiving, by the second trusted service manager, a new command result over the new secure connection from the over-the-air client; closing the new secure connection with the secure element of the mobile device; and transmitting, by the second trusted service manager, a status of the new provisioning service request to the first trusted service manager. - View Dependent Claims (17)
-
Specification