会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 1. 发明申请
    • DELEGATED MANAGEMENT OF SMART CARD APPLICATIONS
    • 代理智能卡应用程序的管理
    • WO0025278A9
    • 2000-09-28
    • PCT/US9925103
    • 1999-10-26
    • VISA INT SERVICE ASSWENTKER DAVID CGUNGL KLAUS P
    • WENTKER DAVID CGUNGL KLAUS P
    • G07F7/10
    • G07F7/1008G06F8/60G06Q20/341G06Q20/3552G06Q20/3576
    • A smart card architecture (10) includes a run-time environment (102), a card manager (104), one or more security domains (106, 108), a provider application (114) and an issuer application (112). One or more APIs (110, 122) provide communication. The life cycle (200) of the card and card manager includes states: Pre-production, Ready, Initialized, Secured, Locked and Terminated. The life cycle (220) of an application includes states: Installed, Selectable, Personalized, Blocked, Locked and Deleted. A card registry (250) keeps track of card manager and application data elements. The functionality of a security domain on a smart card is extended to allow it to perform delegated management of smart card applications: delegated loading, installation (figures 7A-7D) and/or deletion of an application. A provider of an application is assured of more direct control and management of their application, yet an issuer still maintains some control over the management of the card. The card issuer empowers application providers to initiate changes to the issuer's smart cards that are pre-approved by the card issuer. A method of delegated loading of an application onto a smart card (604) first receives a load command (500) from an application provider via a card acceptance device. The load command includes an indication of an application to be loaded (516) an an appended command authentication pattern (514). Next, the load command is verified using the command authentication pattern. Then, an application (564) is received from an application provider via the card acceptance device; the application also includes an appended application authentication pattern (562) which is used to verify the application. Finally, the application is loaded into memory of the smart card (604).
    • 智能卡架构(10)包括运行时环境(102),卡管理器(104),一个或多个安全域(106,108),提供者应用(114)和发行者应用(112)。 一个或多个API(110,122)提供通信。 卡和卡管理器的生命周期(200)包括以下状态:预生产,就绪,初始化,安全,锁定和终止。 应用程序的生命周期(220)包括以下状态:已安装,可选,个性化,已阻止,已锁定和已删除。 卡注册表(250)跟踪卡管理器和应用程序数据元素。 智能卡上安全域的功能已扩展到允许它执行智能卡应用程序的委托管理:授权加载,安装(图7A-7D)和/或删除应用程序。 应用程序提供商可确保对其应用程序进行更直接的控制和管理,但发行人仍对卡的管理保持一定的控制权。 发卡机构授权应用提供商发起对发卡机构的智能卡进行更改,发卡机构已预先通过发卡机构的批准。 将应用委托加载到智能卡(604)上的方法首先通过卡接受设备从应用提供商接收加载命令(500)。 加载命令包括将被加载(516)附加命令认证模式(514)的应用的指示。 接下来,使用命令认证模式验证加载命令。 然后,经由卡接受装置从应用程序提供商接收应用程序(564) 该应用程序还包括用于验证应用程序的附加应用程序认证模式(562)。 最后,该应用程序被加载到智能卡的存储器中(604)。