会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明公开
    • VERFAHREN ZUR ÄNDERUNG EINER IN EINER CHIPKARTE GESPEICHERTEN DATENSTRUKTUR, SIGNATURVORRICHTUNG UND ELEKTRONISCHES SYSTEM
    • VERFAHREN ZURÄNDERUNGEINER IN EINER CHIPKARTE GESPEICHERTEN DATENSTRUKTUR,SIGNATURVORRICHTUNG UND ELEKTRONISCHES SYSTEM
    • EP3215977A1
    • 2017-09-13
    • EP15787586.5
    • 2015-10-29
    • Bundesdruckerei GmbH
    • SCHOLZE, SteffenMÜLLER, FrankSCHWAN, MatthiasWIRTH, Klaus-DieterFILZHUTH, Elke
    • G06F21/64G07F7/08
    • G06F21/64G07F7/082
    • The invention relates to a method for altering a data structure (124) stored in a protected memory area (104) of a chip card (100), the data structure containing multiple data groups (DG1, DG2,... DGi, DG N). A security object (126) for the data structure is stored in the protected memory area, said object containing a hash value for each of the data groups and a signature (128) by means of a combination (K) of the hash values, said signature having been generated using a private key (130) of a signature device (112). The method comprises the following steps: authentication of a chip card terminal (110) in relation to the chip card; establishment of a first channel (134) between the chip card terminal and the chip card, alteration of at least one of the data groups (DG' i) of the data structure stored in the chip card by means of write-access by the chip card terminal to the protected memory area via the first channel; establishment of a second channel (146) to the signature device via a network; transmission of at least those hash values of the data groups of the data structure of the security object that are not affected by the alteration, in addition to transmission of the altered data group (DG' i) and/or a hash value (Hash' DG'i) of the altered data group to the signature device via the second channel; generation by the signature device of an updated security object (126') for the altered data structure (124'); transmission of the updated security object from the signature device to the chip card; storage of the updated security object of the altered structure in the secure memory area of the chip card.
    • 本发明涉及一种用于改变存储在芯片卡(100)的受保护存储区(104)中的数据结构(124)的方法,该数据结构包含多个数据组(DG1,DG2,... DGi,DG N )。 用于数据结构的安全对象(126)被存储在受保护的存储区中,所述对象包含每个数据组的散列值和借助于散列值的组合(K)的签名(128),所述 签名是使用签名设备(112)的私钥(130)生成的。 该方法包括以下步骤:与芯片卡相关的芯片卡终端(110)的认证; 在芯片卡终端和芯片卡之间建立第一信道(134),通过芯片的写入访问来改变存储在芯片卡中的数据结构的至少一个数据组(DG'i) 卡终端​​通过第一通道连接到受保护的存储区域; 经由网络建立到签名设备的第二信道(146); 除了发送改变后的数据组(DG'i)和/或散列值(Hash')之外,还至少发送不受改变影响的安全对象的数据结构的数据组的散列值的那些散列值, DG'i)经由第二信道发送给签名设备; 由签名设备为更改后的数据结构(124')生成更新的安全对象(126'); 更新的安全对象从签名设备传输到芯片卡; 将更改的结构的更新的安全对象存储在芯片卡的安全存储区中。