Method and system for establishing a remote connection to a personal security device

a security device and remote connection technology, applied in the field of personal security devices, can solve the problems of unnecessarily tied client resources such as disk space, memory and computing resources, and the inability to install and maintain apdu interfaces for a large number of local clients, and achieve the effect of less susceptible and easy maintenan

Inactive Publication Date: 2002-10-31
ACTIVCARD
View PDF30 Cites 72 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Benefits of technology

[0005] This invention resides in a method of generating a communications pipe between a personal security device (PSD) and a Remote Computer System over a network without requiring APDU interface software and / or security mechanism to be installed on a local Client in which a PSD is connected. The improvements comprising relocation of APDU interface and security mechanisms from local Clients in which the PSD is connected to one or more Remote Computer Systems; using a local Client as a host which allows a connected PSD to communicate with one or more Remote Computer Systems over a network. By moving APDU interface and security mechanisms from numerous local Clients to a few secure Remote Computer Systems, the overall data processing system is much easier to maintain and significantly less susceptible to unauthorized access or compromise.

Problems solved by technology

Installing and maintaining APDU Interfaces for a large number of local Clients can be a substantial and costly challenge in a multi-user organization.
In addition, Client resources such as disk space, memory and computing resources are unnecessarily tied up by the software, which could be better utilized for other purposes.
Another significant limitation of the current art is that security mechanisms are implemented on a local Client to gain access to secure functions contained within a connected PSD.
The potential exposure of secure information weakens the basic functionality of current PSDs, which is to protect private keys and other proprietary information from being unnecessarily disclosed.
The limitations of the current art are such that localized key generating mechanisms, APDU interface software and transactions involving this software are potentially vulnerable to compromise by unauthorized programs running on the local Client or by other illicit means intending to monitor the key generation process and thus gaining access to security codes, algorithms and other sensitive data contained within the PSD or elsewhere, These limitations are magnified in a multi-user environment where the ability to control unauthorized access to local Clients and vulnerable software contained therein are limited.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Method and system for establishing a remote connection to a personal security device
  • Method and system for establishing a remote connection to a personal security device
  • Method and system for establishing a remote connection to a personal security device

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0022] This invention provides a method and system to establish a remote communications pipe over a network between a Remote Computer System and a personal security device connected to a host local Client. In this invention, personal security devices (PSD) are intelligent devices such as smart cards, biometric devices, subscriber identification module (SIM) cards, or combinations thereof having a microprocessor, runtime operating environment, an input / output communication port, memory storage including nonvolatile memory and random access memory and embedded software applications.

[0023] Two embodiments of the invention are described; the first embodiment in which security mechanisms are not employed and the second embodiment where security mechanisms are employed.

[0024] Referring now to FIG. 1, a generalized system block diagram of the invention is depicted. The various layers shown are based on the Open System Interconnection model (OSI.) For simplicity, certain layers common to bo...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

System and method for establishing a remote connection over a network with a personal security device connected to a local client without using a local APDU interface or local cryptography.

Description

[0001] The present invention relates to a data processing method and system for establishing a communications path (the "pipe") over a communications network between a Personal Security Device (PSD) and a Remote Computer System in a way that does not require localized APDU generation to communicate with a PSD nor discloses the security mechanisms implemented in the PSD to a local Client computer.BACKGROUND OF INVENTION[0002] The current art involving the use of personal security devices (PSD), for example, smart cards, subscriber identity module (SIM) cards, biometric devices, or combinations thereof, requires specialized messaging software or firmware to be installed on a local Client in which the PSD is connected. These specialized routines are used to translate from higher level messaging formats into low-level messaging packets and are generally known in the art as an Application Protocol Data Unit (APDU) Interface. Installing and maintaining APDU Interfaces for a large number o...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(United States)
IPC IPC(8): H04L9/10H04L12/46H04L29/06H04L29/08
CPCG06Q20/3672H04L12/4633H04L29/06H04L63/0807G06F21/6218H04L63/20H04L69/08H04L69/32H04L63/0853H04L63/10H04L67/141H04W12/06H04L69/323H04L69/085H04L69/329H04L9/40H04L63/0428H04L63/0876
Inventor AUDEBERT, YVES LOUIS GABRIELCLEMOT, OLIVIER
Owner ACTIVCARD
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products