ENHANCED SHORT MESSAGE AND METHOD FOR SYNCHRONISING AND ENSURING SECURITY OF ENHANCED SHORT MESSAGES EXCHANGED IN A CELLULAR RADIO COMMUNICATION SYSTEM
    1.
    发明申请
    ENHANCED SHORT MESSAGE AND METHOD FOR SYNCHRONISING AND ENSURING SECURITY OF ENHANCED SHORT MESSAGES EXCHANGED IN A CELLULAR RADIO COMMUNICATION SYSTEM 审中-公开
    增强的短消息和方法,用于同步和保护在无线电通信系统中交换的增强短消息的安全性

    公开(公告)号:WO1998003026A1

    公开(公告)日:1998-01-22

    申请号:PCT/FR1997001298

    申请日:1997-07-11

    Inventor: GEMPLUS S.C.A.

    Abstract: The invention concerns a particular structure of enhanced short message, and a method for synchronising and ensuring the security of exchanged enhanced short messages having this structure. Conventionally, an enhanced message is transmitted by a message service centre to a subscriber identification module (or SIM module) of a mobile station. The body (2) of this enhanced message contains in particular a first field (3) for remote commands pertaining to a remote application. This body (2) also contains a second field (4) for storing the current value of a synchronising counter, to be compared to a previous value of the synchronising counter, stored in the SIM module. The body (2) can contain another field (6) for storing a certificate, the body signature, for proving the authenticity of the enhanced message and the identity of its transmitter. The enhanced message is accepted or refused by the SIM module depending on the coherence of these values with the internal status of the SIM module.

    Abstract translation: 本发明涉及增强的短消息的特定结构,以及用于同步并确保具有该结构的交换的增强短消息的安全性的方法。 通常,消息服务中心将增强消息发送到移动台的用户识别模块(或SIM模块)。 该增强消息的主体(2)特别包含用于与远程应用有关的远程命令的第一字段(3)。 本体(2)还包含用于存储与存储在SIM模块中的同步计数器的先前值进行比较的同步计数器的当前值的第二字段(4)。 身体(2)可以包含用于存储证书的另一个字段(6),身体签名,用于证明增强消息的真实性和其发送者的身份。 增强型消息被SIM模块接受或拒绝,这取决于这些值与SIM模块的内部状态的一致性。

    METHOD OF PROTECTING A MOBILE-TELEPHONE-TYPE TELECOMMUNICATION TERMINAL
    4.
    发明申请
    METHOD OF PROTECTING A MOBILE-TELEPHONE-TYPE TELECOMMUNICATION TERMINAL 审中-公开
    保护移动电话型电信终端的方法

    公开(公告)号:WO2004084525A2

    公开(公告)日:2004-09-30

    申请号:PCT/EP2004050333

    申请日:2004-03-19

    CPC classification number: H04W12/12 H04W88/02

    Abstract: The invention relates to a method of protecting a telecommunication terminal comprising a chip-card-type personal component which is required for telecommunication network access. The aforementioned terminal comprises a processing unit, at least one operating memory element containing the information necessary to the operation of the terminal, i.e. a terminal operating program, and the data necessary to said program. According to the invention, the method consists in: a) encrypting the contents of the operating memory element of the telecommunication terminal using a pre-determined key K which is necessary for decryption; and b) allowing the terminal to commence decryption once said terminal has been started up using a start-up program that is saved in a secure memory element (21) and once the key for decryption has been calculated by same.

    Abstract translation: 本发明涉及一种保护通信终端的方法,该通信终端包括电信网络接入所需的芯片卡型个人部件。 上述终端包括处理单元,至少一个操作存储元件,其包含终端操作所需的信息,即终端操作程序以及所述程序所需的数据。 根据本发明,该方法包括:a)使用解密所需的预定密钥K对通信终端的操作存储元件的内容进行加密; 以及b)一旦所述终端已经使用保存在安全存储元件(21)中的启动程序启动并且一旦解密密钥已经被计算,则允许终端开始解密。

    COMMUNICATION SYSTEM FOR MANAGING SAFELY AND INDEPENDENTLY A PLURALITY OF APPLICATIONS BY EACH USER CARD AND CORRESPONDING USER CARD AND MANAGEMENT METHOD
    5.
    发明申请
    COMMUNICATION SYSTEM FOR MANAGING SAFELY AND INDEPENDENTLY A PLURALITY OF APPLICATIONS BY EACH USER CARD AND CORRESPONDING USER CARD AND MANAGEMENT METHOD 审中-公开
    用于每个用户卡和相关用户卡和管理方法管理各种应用程序的通信系统

    公开(公告)号:WO1997044762A1

    公开(公告)日:1997-11-27

    申请号:PCT/FR1997000871

    申请日:1997-05-16

    Inventor: GEMPLUS, S.C.A.

    Abstract: The invention features a communication system comprising multiple terminal equipment (1), each consisting of a terminal (4) co-operating with a microprocessor-driven user card (SIM module; 5). Each user card includes data memorising means (8) comprising a plurality of objects and serving as medium to at least two separate applications, the user card comprising means (6, 7) for executing instructions pertaining to the applications. Each object contained in the user card data memorising means is associated with a first defined access control policy by a set of first access conditions. Each object is also associated with at least another access control policy defined by a set of at least one alternative access condition. Each alternative access condition is applicable, for the said object, to a group of at least one instruction pertaining to the application(s) using the said other defined access control policy. Each object is also associated with a plurality of access control policy indicators each indicating, for one of the applications, which access control policy to use with the application, the control access policy indicators being stored in the data memorising means (8).

    Abstract translation: 本发明的特征在于包括多个终端设备(1)的通信系统,每个终端设备(1)由与微处理器驱动的用户卡(SIM模块; 5)协作的终端(4)组成。 每个用户卡包括包括多个对象并用作中至至少两个单独的应用的数据存储装置(8),所述用户卡包括用于执行与应用有关的指令的装置(6,7)。 包含在用户卡数据存储装置中的每个对象通过一组第一访问条件与第一定义的访问控制策略相关联。 每个对象还与由一组至少一个替代访问条件定义的至少另一个访问控制策略相关联。 对于所述对象,每个替代访问条件适用于使用所述其他定义的访问控制策略的与所述应用有关的至少一个指令的组。 每个对象还与多个访问控制策略指示符相关联,每个指示符针对应用程序之一指示与应用一起使用的访问控制策略,控制访问策略指示符被存储在数据存储装置(8)中。

    TRANSMISSION SECURISEE DE DONNEES ENTRE DEUX MODULES
    7.
    发明申请
    TRANSMISSION SECURISEE DE DONNEES ENTRE DEUX MODULES 审中-公开
    两个模块之间的安全数据传输

    公开(公告)号:WO2004105304A1

    公开(公告)日:2004-12-02

    申请号:PCT/EP2004/050815

    申请日:2004-05-14

    CPC classification number: H04L9/004 H03M13/05 H03M13/51 H04L9/003 H04L2209/125

    Abstract: L'invention porte sur un procédé de transmission sécurisée de données sur des connexions entre deux modules fonctionnels (CPU, PERIPH) d'un composant électronique, comprenant les étapes de: -codage injectif par un premier module, d'un message de k bits en un mot de code de n bits présentant un poids de Hamming constant de w; -émission du mot de code vers un second module; -génération d'un signal d'erreur lorsque le poids de Hamming du mot de code de n bits reçu par le second module est différent de w; -décodage en absence d'erreur; k, w et n sont des entiers ainsi définis : (I) . L'invention porte également sur un circuit électronique correspondant.

    Abstract translation: 本发明涉及一种用于电子单元的两个功能模块(CPU,PERIPH)之间的连接中的安全数据传输的方法,包括以下步骤:由n位代码的字中的k位的消息的注入编码 具有w的恒定汉明权重,将代码字传送到第二模块,当由第二模块接收到的n位代码字的汉明权重与w不同时产生错误信号,解码为 没有错误,其中k,w和n是如下定义的整数:(I)。 本发明还涉及相应的电子电路。

    SECURITY TOKEN FOR SECURELY EXECUTING AN APPLICATION ON A HOST COMPUTER
    9.
    发明申请
    SECURITY TOKEN FOR SECURELY EXECUTING AN APPLICATION ON A HOST COMPUTER 审中-公开
    安全机构执行在主机计算机上执行应用程序

    公开(公告)号:WO2011144488A3

    公开(公告)日:2014-04-10

    申请号:PCT/EP2011057474

    申请日:2011-05-10

    Abstract: The invention relates to a security token (ST) comprising: -a communication interface (USB-C, USB-DC) adapted to communicate with a host computer (HC); -a security module (SM), comprising encryption based security features (CR); -a non volatile memory (RO) storing at least an application (OA) to be uploaded and executed in a host computer, said application making use of said security features when executed in a host computer in communication with the communication interface. The security token is adapted (AMM) to modify the content of the application as uploaded or its execution parameters at successive connexions of the security token (ST) to a host computer (HC).

    Abstract translation: 本发明涉及一种安全令牌(ST),包括: - 适于与主机(HC)通信的通信接口(USB-C,USB-DC); - 安全模块(SM),包括基于加密的安全特征(CR); - 至少存储要在主计算机中上传和执行的应用(OA)的非易失性存储器(RO),所述应用在与所述通信接口通信的主计算机中执行时利用所述安全特征。 安全令牌被适配(AMM),以将安全令牌(ST)的连续连接上载的应用程序的内容或其执行参数修改到主计算机(HC)。

Patent Agency Ranking