A personalized processing system for user identity recognition module
By designing a personalized processing system including cloud platform, server and terminal, the user identity identification module is realized without limit personalized processing after leaving the factory or shipment, solving the problem that existing systems cannot adapt to wireless communication equipment, and meeting the needs of the Internet of Things, Internet of Vehicles and Industrial Intelligence Network.
Patent Information
- Application Number
- CN202310144438.6
- Authority / Receiving Office
- CN · China
- Patent Type
- Patents(China)
- Current Assignee / Owner
- Filing Date
- 2023-02-10
- Publication Date
- 2025-08-12
- Estimated Expiration
- 2043-02-10
AI Technical Summary
The existing user identity identification module personalized processing system cannot connect with wireless communication devices operated by the real network, cannot provide terminal firmware and personalized software that are adapted to various wireless communication devices, and cannot realize unlimited secondary personalized processing of the user identity identification module after leaving the factory or shipment.
A personalized processing system including a first cloud platform, a plurality of first personalized servers, a plurality of first personalized devices and a plurality of first personalized terminals is designed. The terminal firmware, personalized software and module information are managed through the database and server of the first cloud platform, and locally installed and personalized processing is carried out through the first personalized device and terminal to realize the secondary personalization of the user identity identification module.
It realizes that the user identity identification module can be processed without limits after leaving the factory or shipment, solves the problem that existing systems cannot adapt to various wireless communication devices, and meets the application needs of the Internet of Things, Internet of Vehicles and Industrial Intelligent Network.
Smart Images

Figure CN116155878B_ABST
Abstract
Description
Technical Field
[0001] The present invention relates to the technical field of data processing, and in particular to a personalized processing system for a user identity recognition module. Background Art
[0002] A subscriber identity module (SIM) is a software or hardware processing module embedded or pre-installed on wireless communication devices in the field of telecommunications for processing device network login. SIMs come in a variety of forms, such as SIM (Subscriber Identity Module, SIM) cards, UICC (Universal Integrated Circuit Card, UICC) cards, eSIM (Embedded-SIM, eSIM) cards, vSIM (virtual-SIM, vSIM) cards, and IoT-SIM (Internet of Things SIM, IoT-SIM) cards. Each SIM needs to be personalized before processing network login interactions. Personalization involves writing a set of personalized data used for network login interactions onto the SIM. Generally, the personalization process for SIMs used in personal communication devices (such as mobile phones) is completed before the module leaves the factory or is shipped at the operator's counter, and no secondary personalization operation is required. However, with the rapid development of the Internet of Things (IoT), the Internet of Vehicles (IoV), and the Industrial Intelligence Network (IIoT), some operating platforms require that user identity modules installed on various wireless communication devices within these networks be able to be personalized an unlimited number of times after the modules leave the factory or are shipped over the counter by the operator. Conventional user identity module personalization systems are unable to meet these requirements because they cannot connect to all wireless communication devices in real-world operation and lack personalized software compatible with all types of wireless communication devices or terminal firmware compatible with all versions of the personalized software. Summary of the Invention
[0003] The present invention addresses the shortcomings of the prior art and provides a user identity module personalization processing system, comprising: a first cloud platform, multiple first personalized servers, multiple first personalized devices, multiple first personalized terminals, and multiple first user identity modules; the first cloud platform includes a first configuration server, a first terminal firmware database, a first personalized software database, a first terminal information database, and a first module information database; the first personalized terminal is the real-network wireless communication device mentioned above, and each first personalized terminal corresponds one-to-one with the first user identity module. The first cloud platform manages the terminal firmware and personalized software compatible with each first personalized terminal through the first terminal firmware database and the first personalized software database, manages the device of each first personalized terminal through the first terminal information database, and manages the personalized data of the first user identity module on each first personalized terminal through the first module information database. The first configuration server pushes new versions of terminal firmware, personalized software, and module personalized data to the first personalized terminals that need to be updated through the first personalized servers and the first personalized devices. The first personalized terminal then installs terminal firmware and personalized software locally, and uses the installed personalized software to perform secondary personalized processing on the built-in user identification module based on the module personalized data pushed by the first cloud platform. This invention solves the problems of conventional personalized processing systems being unable to connect with wireless communication devices operating on a real network and unable to provide terminal firmware and personalized software compatible with various wireless communication devices. This allows each user identification module to be personalized unlimited times through the wireless communication device it is installed in, even after it leaves the factory or is shipped.
[0004] To achieve the above-mentioned object, an embodiment of the present invention provides a user identity module personalization processing system, the system comprising: a first cloud platform, a plurality of first personalization servers, a plurality of first personalization devices, a plurality of first personalization terminals, and a plurality of first user identity modules; the first personalization terminals correspond one-to-one to the first user identity modules;
[0005] The first cloud platform includes a first configuration server, a first terminal firmware database, a first personalized software database, a first terminal information database, and a first module information database; the first configuration server is respectively connected to the first terminal firmware database, the first personalized software database, the first terminal information database, the first module information database, and each of the first personalized servers;
[0006] The first configuration server is configured to perform personalized data configuration processing on the user identity module to generate a corresponding first server identifier and a first configuration data packet; encrypt first plaintext data consisting of the first server identifier and the first configuration data packet to obtain a corresponding first encrypted configuration data packet, and transmit the data to the first personalized server corresponding to the first server identifier; receive a first module encrypted report sent back by the first personalized server; decrypt the first module encrypted report to obtain a corresponding first module personalized report; and perform personalized task status update processing based on the first configuration data packet and the first module personalized report.
[0007] The first personalization server is connected to each of the plurality of first personalization devices; the first personalization server is configured to perform data packet verification and parsing on the first encrypted configuration data packet to generate a corresponding first verification result and a first parsed data packet; and when the first verification result is successful, extract the corresponding first device identifier and first device data packet from the first parsed data packet, and send the first device data packet to the first personalization device corresponding to the first device identifier; receive the first module personalization report sent back by the first personalization device; perform data encryption on the first module personalization report to generate a corresponding first module encrypted report, and send the encrypted report back to the first cloud platform;
[0008] The first personalization device is connected to multiple first personalization terminals, each of which is connected to a first user identity recognition module. The first personalization device is configured to extract a corresponding first terminal data group, a first terminal firmware data group, a first personalized software data group, and a first module data group from the first device data packet; extract a corresponding first terminal identifier from the first terminal data group, and use the first personalized terminal that matches the first terminal identifier as the corresponding first matching terminal; perform terminal verification processing on the first matching terminal based on the first terminal data group to generate a corresponding first processing result; if the first processing result is successful, perform terminal firmware and personalized software upgrade processing on the first matching terminal based on the first terminal firmware data group and the first personalized software data group to generate a corresponding second processing result; if the second processing result is successful, perform module personalization processing on the first user identity recognition module based on the first module data group via the first matching terminal to generate a corresponding third processing result; perform module personalization report configuration processing based on the first, second, and third processing results to generate a corresponding first module personalization report; and send the first module personalization report back to the first personalization server.
[0009] Preferably, the first terminal firmware database includes a plurality of first terminal firmware data records; the first terminal firmware data record includes a first firmware identification field, a first firmware version field, a first firmware chip model field, a first firmware terminal model field and a first firmware program field;
[0010] The first personalized software database includes a plurality of first personalized software data records; the first personalized software data record includes a first software identification field, a first software version field, a first software chip model field, a first software terminal model field, and a first software program field;
[0011] The first terminal information database includes a plurality of first terminal information data records; the first terminal information data record includes a first terminal identification field, a first terminal model field, a first terminal chip model field, a first terminal IMEI field, a first terminal firmware version field, a first terminal personalized software version field, a first terminal module identification field, a first terminal upper device identification field, and a first terminal upper server identification field;
[0012] The first module information database includes a plurality of first module information data records; the first module information data records include a first module identification field, a first ICCID field, a first module personalized data field, and a first module processing status field; the first module personalized data field includes a plurality of first personalized data items, each of which includes a first data item name and a first data item content; the first module processing status field includes an unprocessed status, a processing failure status, and a processing success status;
[0013] The first configuration data packet includes the first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group;
[0014] The first device data packet includes the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group;
[0015] The first terminal data group includes the first terminal identifier, the first terminal model, the first terminal chip model, and the first terminal IMEI; the first terminal firmware data group includes the first terminal firmware version and the first firmware program; the first personalized software data group includes the first terminal personalized software version and the first personalized software program; the first module data group includes the first module ICCID, the first module personalized data, and the first token data; the first module personalized data includes a plurality of the first personalized data items;
[0016] The first module personalization report includes the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data; the second module personalized data field includes multiple second personalized data items, each of which includes a second data item name and a second data item content.
[0017] Preferably, the first configuration server is specifically configured to monitor whether the record content of each first terminal information data record in the first terminal information database is updated during the personalized data configuration processing of the user identity recognition module; and whenever the record content of a first terminal information data record is monitored to be updated, extract the first terminal identification field, the first terminal model field, the first terminal chip model field, the first terminal IMEI field, the first terminal firmware version field, the first terminal personalized software version field, the first terminal module identification field, the first terminal upper-level device identification field, and the first terminal upper-level server identification field of the current first terminal information data record as the corresponding first terminal identification, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first terminal module identification, the first device identification, and the first server identification; and form a corresponding first terminal data group with the obtained first terminal identification, the first terminal model, the first terminal chip model, and the first terminal IMEI;
[0018] and extracting the first firmware program field of the first terminal firmware data record in the first terminal firmware database, in which the first firmware version field matches the first terminal firmware version, the first firmware chip model field matches the first terminal chip model, and the first firmware terminal model field matches the first terminal model, as the corresponding first firmware program; and forming the corresponding first terminal firmware data group with the obtained first terminal firmware version and the first firmware program;
[0019] and extracting the first software program field from the first personalized software data record in the first personalized software database, in which the first software version field matches the first terminal personalized software version, the first software chip model field matches the first terminal chip model, and the first software terminal model field matches the first terminal model, as the corresponding first personalized software program; and composing the corresponding first personalized software data group with the obtained first terminal personalized software version and the first personalized software program;
[0020] and taking the first module information data record whose first module identification field in the first module information database matches the first terminal module identifier as the corresponding current module information data record; and identifying whether the first module processing status field of the current module information data record is in a processing success state; if so, setting the corresponding first module data group to empty; if not, extracting the first ICCID field and the first module personalized data field of the current module information data record as the corresponding first module ICCID and first module personalized data, performing a digital digest calculation on the first module personalized data to generate the corresponding first token data, and forming the corresponding first module data group with the obtained first module ICCID, first module personalized data, and first token data;
[0021] and forming a corresponding first configuration data packet from the obtained first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group;
[0022] The obtained first server identifier and the first configuration data packet are output as corresponding user identity recognition module personalized data configuration processing results.
[0023] Preferably, the first configuration server is specifically configured to identify whether the first module personalized report is empty when performing the personalized task status update process according to the first configuration data packet and the first module personalized report;
[0024] If the personalized report of the first module is empty, then the current personalized task status update process is terminated;
[0025] If the personalization report of the first module is not empty, a data comparison is performed on the personalization report of the first module and the first configuration data packet; during the comparison, if the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data of the personalization report of the first module respectively match the first terminal identifier, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first module ICCID and the first module personalization number corresponding to the first configuration data packet, the corresponding first comparison result is set to match; if the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, If the second module ICCID or the second module personalized data does not match the first terminal identifier, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first module ICCID or the first module personalized number corresponding to the first configuration data packet, the corresponding first comparison result is set to no match; and whether the obtained first comparison result is a match is identified; if the first comparison result is a match, the first module processing status field of the first module information data record where the first ICCID field in the first module information database matches the first module ICCID is updated to a successful processing status; if the first comparison result is a mismatch, the first module processing status field of the first module information data record where the first ICCID field in the first module information database matches the first module ICCID is updated to a failed processing status.
[0026] Preferably, the first personalized server is specifically used to perform data decryption processing on the first encrypted configuration data packet to obtain the corresponding first plaintext data when performing data packet verification and parsing processing on the first encrypted configuration data packet; and extract the corresponding first server identifier and the first configuration data packet from the first plaintext data; and identify whether the first server identifier matches its own preset server identifier; if so, set the corresponding first verification result to verification success, and extract the corresponding first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group and the first module data group from the first configuration data packet, and form the corresponding first device data packet with the obtained first terminal data group, the first terminal firmware data group, the first personalized software data group and the first module data group, and form the corresponding first parsing data packet with the obtained first device identifier and the first device data packet, and output the obtained first verification result and the first parsing data packet as the corresponding data packet verification and parsing processing results.
[0027] Preferably, the first personalization device is specifically used to send a first basic information query instruction to the first matching terminal and receive the first instruction feedback data sent back by the first matching terminal when terminal verification processing is performed on the first matching terminal according to the first terminal data group; and when the first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information of the first instruction feedback data match the corresponding first terminal identification, first terminal model, first terminal chip model and first terminal IMEI in the first terminal data group, set the corresponding first processing result to success; and when the first terminal identification information, first terminal model information, first terminal chip model information or first terminal IMEI information of the first instruction feedback data do not match the corresponding first terminal identification, first terminal model, first terminal chip model or first terminal IMEI in the first terminal data group, set the corresponding first processing result to failure; the first instruction feedback data includes the first terminal identification information, the first terminal model information, the first terminal chip model information and the first terminal IMEI information.
[0028] Preferably, the first personalization device is specifically configured to, when performing terminal firmware and personalized software upgrade processing on the first matching terminal according to the first terminal firmware data group and the first personalized software data group, send a first firmware version query instruction to the first matching terminal and receive first firmware version information sent back by the first matching terminal; and send a first personalized software version query instruction to the first matching terminal and receive first personalized software version information sent back by the first matching terminal;
[0029] and when the first firmware version information matches the first terminal firmware version of the first terminal firmware data group and the first personalized software version information matches the first terminal personalized software version of the first personalized software data group, setting the corresponding first firmware installation status and first personalized software installation status to success status;
[0030] and, when the first firmware version information does not match the first terminal firmware version of the first terminal firmware data group, sending a first firmware installation instruction carrying the first terminal firmware data group to the first matching terminal, and identifying a first installation status sent back by the first matching terminal; if the first installation status is successful, setting the corresponding first firmware installation status to a successful status; and if the first installation status is failed, setting the corresponding first firmware installation status to a failed status;
[0031] and, when the first personalized software version information does not match the first terminal personalized software version of the first personalized software data group, sending a first personalized software installation instruction carrying the first personalized software data group to the first matching terminal, and identifying a second installation status sent back by the first matching terminal; if the second installation status is successful, setting the corresponding first personalized software installation status to a successful status; and if the second installation status is failed, setting the corresponding first personalized software installation status to a failed status;
[0032] It is also determined whether the obtained first firmware installation status and the obtained first personalized software installation status are both successful; if so, the corresponding second processing result is set to success; if not, the corresponding second processing result is set to failure.
[0033] Preferably, the first personalization device is specifically configured to, when performing module personalization processing on the first user identity module according to the first module data group through the first matching terminal, extract the corresponding first module ICCID, the first module personalized data, and the first token data from the first module data group; send a first module ICCID query instruction to the first matching terminal, and receive the first ICCID information returned by the first matching terminal; and perform a digital digest calculation on the first module personalized data to generate corresponding second token data;
[0034] and identifying whether the first ICCID information matches the first module ICCID; if so, setting the corresponding first comparison status to match; and if not, setting the corresponding first comparison status to mismatch; and identifying whether the first and second token data match; if so, setting the corresponding second comparison status to match; and if not, setting the corresponding second comparison status to mismatch;
[0035] and, when both the first and second comparison statuses are matched, sending a first module personalization instruction carrying the first module personalization data to the first matching terminal, and receiving a first personalization status sent back by the first matching terminal; if the first personalization status is a success status, setting the corresponding third processing result to success; and if the first personalization status is a failure status, setting the corresponding third processing result to failure;
[0036] When the first comparison status or the second comparison status is mismatch, the corresponding third processing result is set to failure.
[0037] Preferably, the first personalization device is specifically configured to identify whether the first, second and third processing results are all successful when performing module personalization report configuration processing according to the first, second and third processing results;
[0038] If the first, second or third processing result is failure, setting the corresponding first module personalized report to empty;
[0039] If the first, second and third processing results are all successful, a first basic information query instruction is sent to the first matching terminal, and the first instruction feedback data sent back by the first matching terminal is received, and the corresponding first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information are extracted from the first instruction feedback data as the corresponding second terminal identification, second terminal model, second terminal chip model and second terminal IMEI; a first firmware version query instruction is sent to the first matching terminal, and the first firmware version information sent back by the first matching terminal is received, and the obtained first firmware version information is used as the corresponding second terminal firmware version; a first personalized software version query instruction is sent to the first matching terminal, and the first personalized software version information sent back by the first matching terminal is received, and the obtained first personalized software version information is used as the corresponding second terminal personalized software version; a first module ICCID query instruction is sent to the first matching terminal, and the first module ICCID query instruction is received returned by the first matching terminal. an ICCID information, and uses the obtained first ICCID information as the corresponding second module ICCID; and extracts the first data item name of each first personalized data item in the first module personalized data as the corresponding second data item name, and sends the first module data item read instruction carrying each second data item name to the first matching terminal, and receives the first data item information returned by the first matching terminal, and uses each obtained first data item information as the corresponding second data item content, and each second data item name and the corresponding second data item content constitute the corresponding second personalized data item, and all the obtained second personalized data items constitute the corresponding second module personalized data; and the obtained second terminal identifier, second terminal model, second terminal chip model, second terminal IMEI, second terminal firmware version, second terminal personalized software version, second module ICCID and second module personalized data constitute the corresponding first module personalized report.
[0040] Preferably, the first personalized terminal is used to receive a sending instruction from the first personalized device and use the sending instruction received at that time as the corresponding first instruction;
[0041] and identifying the first instruction;
[0042] When the first instruction is a first basic information query instruction, the preset terminal identification parameter, terminal model parameter, terminal chip model parameter, and terminal IMEI parameter are read from the locally preset system parameter area as the corresponding first terminal identification information, first terminal model information, first terminal chip model information, and first terminal IMEI information to form corresponding first instruction feedback data and send it back to the first personalized device;
[0043] When the first instruction is a first firmware version query instruction, reading a preset terminal firmware version parameter from the system parameter area and sending it back to the first personalized device as the corresponding first firmware version information;
[0044] When the first instruction is a first personalized software version query instruction, reading the preset terminal personalized software version parameter from the system parameter area as the corresponding first personalized software version information and sending it back to the first personalized device;
[0045] When the first instruction is a first firmware installation instruction, the first terminal firmware data group corresponding to the first instruction is extracted from the first instruction; the terminal firmware version parameter in the system parameter area is backed up to generate the corresponding first backup data; the firmware program of the locally currently installed terminal firmware is backed up to generate the corresponding first backup program; the corresponding first terminal firmware version and the first firmware program are extracted from the first terminal firmware data group; the terminal firmware installation process is performed on the first firmware program based on a preset firmware installer to generate the corresponding first installation status; the first installation status is identified; if the first installation status is successful, the terminal firmware version parameter in the system parameter area is set to the first terminal firmware version, and the first backup data and the first backup program are deleted; if the first installation status is failed, the terminal firmware version parameter in the system parameter area is restored to the first backup data, and the locally currently installed terminal firmware is restored to the first backup program; and the first installation status is sent back to the first personalized device;
[0046] When the first instruction is a first personalized software installation instruction, the first personalized software data group corresponding to the first instruction is extracted from the first instruction; the terminal personalized software version parameter in the system parameter area is backed up to generate corresponding second backup data; the locally currently installed personalized software is backed up to generate a corresponding second backup program; the corresponding first terminal personalized software version and the first personalized software program are extracted from the first personalized software data group; the terminal personalized software installation process is performed on the first personalized software program based on a preset personalized software installer to generate a corresponding second installation state; the second installation state is identified; if the second installation state is successful, the terminal firmware version parameter in the system parameter area is set to the first terminal firmware version, and the first backup data and the first backup program are deleted; if the first installation state is failed, the terminal personalized software version parameter in the system parameter area is restored to the second backup data, and the locally currently installed personalized software is restored to the second backup program; and the second installation state is sent back to the first personalized device; the locally currently installed personalized software includes a personalized script assembly interface, a data item reading script assembly interface, and a script execution interface;
[0047] When the first instruction is a first module ICCID query instruction, sending a first ICCID read instruction to the first user identity recognition module; receiving first ICCID information sent back by the first user identity recognition module; and sending the first ICCID information back to the first personalization device;
[0048] When the first instruction is a first module personalization instruction, the corresponding first module personalization data is extracted from the first instruction; the first module personalization data is sent to the personalization script assembly interface of the currently installed local personalization software for personalization script assembly processing, and the personalization script returned by the personalization script assembly interface is used as the corresponding first script; the first script is sent to the script execution interface of the currently installed local personalization software to perform a corresponding personalization data write operation on the first user identity recognition module, and the processing status returned by the script execution interface is sent back to the first personalization device as the corresponding first personalization status; the first script includes multiple module operation instructions for the first user identity recognition module; the processing status includes a success status and a failure status;
[0049] When the first instruction is a first module data item read instruction, the corresponding second data item name is extracted from the first instruction; and the second data item name is sent to the data item read script assembly interface of the currently installed local personalized software for data item read script assembly processing, and the data item read script returned by the data item read script assembly interface is used as the corresponding second script; and the second script is sent to the script execution interface of the currently installed local personalized software to perform a corresponding personalized data read operation on the first user identity identification module, and the read data returned by the script execution interface is sent back to the first personalized device as the corresponding first data item information; the second script includes one or more module operation instructions of the first user identity identification module.
[0050] An embodiment of the present invention provides a user identity module personalization processing system, comprising: a first cloud platform, multiple first personalized servers, multiple first personalized devices, multiple first personalized terminals, and multiple first user identity modules; the first cloud platform includes a first configuration server, a first terminal firmware database, a first personalized software database, a first terminal information database, and a first module information database; the first personalized terminal is the real-network wireless communication device mentioned above, and the first personalized terminal corresponds one-to-one with the first user identity module. The first cloud platform manages the terminal firmware and personalized software compatible with each first personalized terminal through the first terminal firmware database and the first personalized software database, manages the device of each first personalized terminal through the first terminal information database, and manages the personalized data of the first user identity module on each first personalized terminal through the first module information database. The first configuration server pushes new versions of terminal firmware, personalized software, and module personalized data to the first personalized terminals that need to be updated through the first personalized servers and the first personalized devices. The first personalized terminal then installs terminal firmware and personalized software locally. This installed personalized software then performs secondary personalized processing on the built-in user identification module based on the module personalized data pushed by the first cloud platform. This invention overcomes the problems of conventional personalized processing systems being unable to interface with wireless communication devices operating on a real network and unable to provide terminal firmware and personalized software compatible with various wireless communication devices. This allows for unlimited personalized processing of each user identification module after it leaves the factory or is shipped. BRIEF DESCRIPTION OF THE DRAWINGS
[0051] Figure 1 A structural diagram of a personalized processing system for a user identity recognition module provided by an embodiment of the present invention. DETAILED DESCRIPTION
[0052] To make the objectives, technical solutions, and advantages of the present invention more apparent, the present invention will be further described in detail below with reference to the accompanying drawings. It should be understood that the embodiments described herein are merely some, rather than all, of the present invention. All other embodiments derived by persons of ordinary skill in the art based on the embodiments of the present invention without inventive effort are intended to fall within the scope of protection of the present invention.
[0053] Figure 1 A structural diagram of a personalized processing system for a user identity recognition module provided by an embodiment of the present invention is shown as follows: Figure 1 As shown, the system includes: a first cloud platform 1, multiple first personalized servers 2, multiple first personalized devices 3, multiple first personalized terminals 4 and multiple first user identity recognition modules 5; the first personalized terminals 4 correspond to the first user identity recognition modules 5 one by one.
[0054] (1) First Cloud Platform 1
[0055] The first cloud platform 1 includes a first configuration server 11, a first terminal firmware database 12, a first personalized software database 13, a first terminal information database 14 and a first module information database 15; the first configuration server 11 is respectively connected to the first terminal firmware database 12, the first personalized software database 13, the first terminal information database 14, the first module information database 15 and each first personalized server 2.
[0056] The first terminal firmware database 12 includes multiple first terminal firmware data records; the first terminal firmware data record includes a first firmware identification field, a first firmware version field, a first firmware chip model field, a first firmware terminal model field, and a first firmware program field. Here, the first terminal firmware database 12 on the first cloud platform 1 is used to store terminal firmware adapted to various types of first personalized terminals 4, and each first terminal firmware data record corresponds to one terminal firmware; the first firmware identification field in the record is the unique identification code of the corresponding terminal firmware, the first firmware version field is the version number of the corresponding terminal firmware, the first firmware chip model field is the terminal baseband chip model of the first personalized terminal 4 adapted to the corresponding terminal firmware, the first firmware terminal model field is the terminal model of the first personalized terminal 4 adapted to the corresponding terminal firmware, and the first firmware program field is the firmware program file of the corresponding terminal firmware.
[0057] The first personalized software database 13 includes multiple first personalized software data records; the first personalized software data records include a first software identification field, a first software version field, a first software chip model field, a first software terminal model field, and a first software program field. Here, the first personalized software database 13 on the first cloud platform 1 is used to store personalized software adapted for various types of first personalized terminals 4, and each first personalized software data record corresponds to a terminal personalized software; the first software identification field in the record is the unique identification code of the corresponding terminal personalized software, the first software version field is the version number of the corresponding terminal personalized software, the first software chip model field is the terminal baseband chip model of the first personalized terminal 4 adapted for the corresponding terminal personalized software, the first software terminal model field is the terminal model of the first personalized terminal 4 adapted for the corresponding terminal personalized software, and the first software program field is the software program file of the corresponding terminal personalized software.
[0058] The first terminal information database 14 includes a plurality of first terminal information data records; the first terminal information data record includes a first terminal identification field, a first terminal model field, a first terminal chip model field, a first terminal IMEI field, a first terminal firmware version field, a first terminal personalized software version field, a first terminal module identification field, a first terminal upper device identification field, and a first terminal upper server identification field. Here, the first terminal information database 14 on the first cloud platform 1 is used to store the terminal information of each first personalized terminal 4; each first personalized terminal 4 is actually the wireless communication device mentioned above that enters the real network operation / communication, such as a common mobile phone, a wireless communication handheld device, a POS machine, an industrial control wireless device, an Internet of Things wireless device, a vehicle network wireless device, an industrial network wireless device, etc.; each first terminal information data record corresponds to a first personalized terminal 4; the first terminal identification field in the record is the unique device code of the corresponding personalized terminal, the first terminal model field is the terminal model of the corresponding personalized terminal, the first terminal chip model field is the terminal baseband chip model of the corresponding personalized terminal, and the first terminal IMEI field is the International Mobile Equipment Identity (IME) of the corresponding personalized terminal. The first terminal firmware version field is the version number of the terminal firmware currently installed on the corresponding personalized terminal, the first terminal personalized software version field is the version number of the terminal personalized software currently installed on the corresponding personalized terminal, the first terminal module identification field is the unique identification code of the first user identity recognition module 5 preset on the corresponding personalized terminal, the first terminal upper device identification field is the unique identification code of the first personalized device 3 connected to the corresponding personalized terminal, and the first terminal upper server identification field is the unique identification code of the first personalized server 2 connected to the first personalized device 3 connected to the corresponding personalized terminal.
[0059] The first module information database 15 includes multiple first module information data records; the first module information data record includes a first module identification field, a first ICCID field, a first module personalized data field and a first module processing status field; the first module personalized data field includes multiple first personalized data items, each first personalized data item includes a first data item name and a first data item content; the first module processing status field includes an unprocessed state, a processing failure state and a processing success state. Here, the first module information database 15 on the first cloud platform 1 is used to store the module information of each first user identity identification module 5; each first user identity identification module 5 can have multiple forms of embodiment, including SIM card, UICC card, eSIM card, vSIM card, IoT-SIM card, etc.; each first module information data record corresponds to a first user identity identification module 5; the first module identification field in the record is the unique identification code of the corresponding user identity identification module, and the first ICCID field is the unique integrated circuit card identification code (Integrate circuit card identification code) of the corresponding user identity identification module. cardidentity, ICCID), the first module personalized data field is the latest personalized data of the corresponding user identity recognition module, and the first module processing status field is the personal processing status corresponding to the latest personalized data on the corresponding user identity recognition module, including three states: unprocessed state, processing failure state, and processing success state. If the first module processing status field is in the unprocessed state, it means that the latest personalized data has not been personalized on the corresponding user identity recognition module; if the first module processing status field is in the processing failure state, it means that the personalization processing of the latest personalized data on the corresponding user identity recognition module has failed; if the first module processing status field is in the processing success state, it means that the personalization processing of the latest personalized data on the corresponding user identity recognition module has been successful.
[0060] The first configuration server 11 is configured to perform personalized data configuration processing on the user identity module to generate a corresponding first server identifier and a first configuration data packet; encrypt first plaintext data consisting of the first server identifier and the first configuration data packet to obtain a corresponding first encrypted configuration data packet, and send the first encrypted configuration data packet to the first personalized server 2 corresponding to the first server identifier; receive a first module encrypted report sent back by the first personalized server 2; decrypt the first module encrypted report to obtain a corresponding first module personalized report; and perform personalized task status update processing based on the first configuration data packet and the first module personalized report;
[0061] The first configuration data packet includes a first device identifier, a first terminal data group, a first terminal firmware data group, a first personalized software data group, and a first module data group; the first terminal data group includes a first terminal identifier, a first terminal model, a first terminal chip model, and a first terminal IMEI; the first terminal firmware data group includes a first terminal firmware version and a first firmware program; the first personalized software data group includes a first terminal personalized software version and a first personalized software program; the first module data group includes a first module ICCID, first module personalized data, and first token data; the first module personalized data includes multiple first personalized data items;
[0062] The first module personalization report includes the second terminal identification, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data; the second module personalized data field includes multiple second personalized data items, each second personalized data item includes a second data item name and a second data item content.
[0063] In a specific implementation of the embodiment of the present invention, the first configuration server 11 is specifically configured to monitor whether the record content of each first terminal information data record in the first terminal information database 14 is updated when the user identity recognition module personalization data configuration is processed;
[0064] and whenever the content of a monitored first terminal information data record is updated, extracting the first terminal identification field, the first terminal model field, the first terminal chip model field, the first terminal IMEI field, the first terminal firmware version field, the first terminal personalized software version field, the first terminal module identification field, the first terminal upper-level device identification field, and the first terminal upper-level server identification field of the current first terminal information data record as the corresponding first terminal identification, first terminal model, first terminal chip model, first terminal IMEI, first terminal firmware version, first terminal personalized software version, first terminal module identification, first device identification, and first server identification; and forming a corresponding first terminal data group with the obtained first terminal identification, first terminal model, first terminal chip model, and first terminal IMEI;
[0065] and extracting the first firmware program field of the first terminal firmware data record in the first terminal firmware database 12, in which the first firmware version field matches the first terminal firmware version, the first firmware chip model field matches the first terminal chip model, and the first firmware terminal model field matches the first terminal model, as the corresponding first firmware program; and forming a corresponding first terminal firmware data group with the obtained first terminal firmware version and first firmware program;
[0066] and extracting the first software program field of the first personalized software data record in the first personalized software database 13, wherein the first software version field matches the first terminal personalized software version, the first software chip model field matches the first terminal chip model, and the first software terminal model field matches the first terminal model, as the corresponding first personalized software program; and forming a corresponding first personalized software data group with the obtained first terminal personalized software version and the first personalized software program;
[0067] and taking the first module information data record whose first module identification field in the first module information database 15 matches the first terminal module identification as the corresponding current module information data record; and identifying whether the first module processing status field of the current module information data record is in a processing success state; if so, setting the corresponding first module data group to empty; if not, extracting the first ICCID field and the first module personalized data field of the current module information data record as the corresponding first module ICCID and first module personalized data, performing a digital digest calculation on the first module personalized data to generate corresponding first token data, and forming the corresponding first module data group with the obtained first module ICCID, first module personalized data, and first token data;
[0068] The obtained first device identifier, first terminal data group, first terminal firmware data group, first personalized software data group and first module data group form a corresponding first configuration data packet; and the obtained first server identifier and first configuration data packet are output as the corresponding user identity module personalized data configuration processing result.
[0069] In another specific implementation of the embodiment of the present invention, the first configuration server 11 is specifically configured to identify whether the first module personalized report is empty when performing personalized task status update processing according to the first configuration data packet and the first module personalized report;
[0070] If the first module personalized report is empty, then the current personalized task status update process ends;
[0071] If the personalization report of the first module is not empty, a data comparison is performed on the personalization report of the first module and the first configuration data packet; during the comparison, if the second terminal identification, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data of the personalization report of the first module match the corresponding first terminal identification, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first module ICCID and the first module personalized data in the first configuration data packet respectively, then the corresponding first comparison result is set to match; if the second terminal identification, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the first module personalized data of the personalization report of the first module match respectively. If the CCID or the second module personalized data does not match the corresponding first terminal identifier, first terminal model, first terminal chip model, first terminal IMEI, first terminal firmware version, first terminal personalized software version, first module ICCID or first module personalized number in the first configuration data packet, the corresponding first comparison result is set to no match; and it is identified whether the obtained first comparison result is a match; if the first comparison result is a match, the first module processing status field of the first module information data record whose first ICCID field in the first module information database 15 matches the first module ICCID is updated to a successful processing status; if the first comparison result is a mismatch, the first module processing status field of the first module information data record whose first ICCID field in the first module information database 15 matches the first module ICCID is updated to a failed processing status.
[0072] To summarize, the first configuration server 11 in the embodiment of the present invention starts the corresponding user identity module personalized data configuration processing flow by monitoring whether the record content of each first terminal information data record in the first terminal information database 14 is updated, thereby obtaining the corresponding first server identifier and first configuration data packet; after obtaining the first server identifier and the first configuration data packet, the first configuration server 11 performs data encryption processing on the first plaintext data consisting of the first server identifier + the first configuration data packet to obtain the corresponding first encrypted configuration data packet, and sends the first encrypted configuration data packet to the first personalized server 2 whose server identifier is the first server identifier; and receives the first module encryption report sent back by the first personalized server 2, and performs data decryption processing on the first module encryption report to obtain the corresponding first module personalized report; and updates the first module processing status field of the corresponding first module information data record in the first module information database 15 according to the data comparison result between the first module personalized report and the first configuration data packet.
[0073] (2) The first personalized server 2
[0074] The first personalized server 2 is connected to a plurality of first personalized devices 3 respectively. The first personalized server 2 is configured to perform data packet verification and parsing processing on the first encrypted configuration data packet to generate a corresponding first verification result and a first parsed data packet. When the first verification result is successful, the first personalized server 2 extracts the corresponding first device identifier and first device data packet from the first parsed data packet, and sends the first device data packet to the first personalized device 3 corresponding to the first device identifier. The first personalized server 2 also receives a first module personalized report sent back by the first personalized device 3. The first personalized server 2 performs data encryption processing on the first module personalized report to generate a corresponding first module encrypted report and sends it back to the first cloud platform 1.
[0075] The first device data packet includes a first terminal data group, a first terminal firmware data group, a first personalized software data group and a first module data group.
[0076] Here, the encryption algorithm used by the first personalization server 2 to encrypt data of the first module personalized report matches the decryption algorithm used by the first configuration server 11 to decrypt data of the first module encrypted report.
[0077] In another specific implementation method of an embodiment of the present invention, the first personalized server 2 is specifically used to perform data decryption processing on the first encrypted configuration data packet to obtain the corresponding first plaintext data when performing data packet verification and parsing processing on the first encrypted configuration data packet; and extract the corresponding first server identifier and first configuration data packet from the first plaintext data; and identify whether the first server identifier matches its own preset server identifier; if so, set the corresponding first verification result to successful verification, and extract the corresponding first device identifier, first terminal data group, first terminal firmware data group, first personalized software data group and first module data group from the first configuration data packet, and the obtained first terminal data group, first terminal firmware data group, first personalized software data group and first module data group constitute the corresponding first device data packet, and the obtained first device identifier and first device data packet constitute the corresponding first parsing data packet, and output the obtained first verification result and first parsing data packet as the corresponding data packet verification and parsing processing results.
[0078] Here, the decryption algorithm used by the first personalized server 2 to decrypt the first encrypted configuration data packet matches the encryption algorithm used by the first configuration server 11 to encrypt the first plaintext data.
[0079] (3) The first personalized device 3
[0080] The first personalization device 3 is connected to multiple first personalization terminals 4 respectively, and each first personalization terminal 4 is connected to a first user identity recognition module 5; the first personalization device 3 is used to extract the corresponding first terminal data group, first terminal firmware data group, first personalization software data group and first module data group from the first device data packet; and extract the corresponding first terminal identifier from the first terminal data group, and use the first personalization terminal 4 matching the first terminal identifier as the corresponding first matching terminal; and perform terminal verification processing on the first matching terminal according to the first terminal data group to generate a corresponding first processing result; if the first processing result is successful, then perform terminal firmware and personalized software upgrade processing on the first matching terminal according to the first terminal firmware data group and the first personalization software data group to generate a corresponding second processing result; if the second processing result is successful, then perform module personalization processing on the first user identity recognition module 5 according to the first module data group through the first matching terminal to generate a corresponding third processing result; and perform module personalization report configuration processing according to the first, second and third processing results to generate a corresponding first module personalized report; and send the first module personalized report back to the first personalization server 2.
[0081] In another specific implementation of the embodiment of the present invention, the first personalization device 3 is specifically used to send a first basic information query instruction to the first matching terminal when performing terminal verification processing on the first matching terminal according to the first terminal data group, and receive the first instruction feedback data sent back by the first matching terminal; and when the first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information of the first instruction feedback data match the corresponding first terminal identification, first terminal model, first terminal chip model and first terminal IMEI in the first terminal data group, set the corresponding first processing result to success; and when the first terminal identification information, first terminal model information, first terminal chip model information or first terminal IMEI information of the first instruction feedback data does not match the corresponding first terminal identification, first terminal model, first terminal chip model or first terminal IMEI in the first terminal data group, set the corresponding first processing result to failure;
[0082] The first instruction feedback data includes the first terminal identification information, the first terminal model information, the first terminal chip model information and the first terminal IMEI information.
[0083] In another specific implementation of the embodiment of the present invention, the first personalized device 3 is specifically configured to, when performing terminal firmware and personalized software upgrade processing on the first matching terminal according to the first terminal firmware data group and the first personalized software data group, send a first firmware version query instruction to the first matching terminal and receive the first firmware version information sent back by the first matching terminal; and send a first personalized software version query instruction to the first matching terminal and receive the first personalized software version information sent back by the first matching terminal;
[0084] and when the first firmware version information matches the first terminal firmware version of the first terminal firmware data group and the first personalized software version information matches the first terminal personalized software version of the first personalized software data group, setting the corresponding first firmware installation status and first personalized software installation status to both be success status;
[0085] When the first firmware version information does not match the first terminal firmware version of the first terminal firmware data group, the first firmware installation instruction carrying the first terminal firmware data group is sent to the first matching terminal, and the first installation status sent back by the first matching terminal is identified; if the first installation status is successful, the corresponding first firmware installation status is set to a successful status; if the first installation status is failed, the corresponding first firmware installation status is set to a failed status;
[0086] When the first personalized software version information does not match the first terminal personalized software version of the first personalized software data group, the first personalized software installation instruction carrying the first personalized software data group is sent to the first matching terminal, and the second installation status sent back by the first matching terminal is identified; if the second installation status is successful, the corresponding first personalized software installation status is set to a successful status; if the second installation status is failed, the corresponding first personalized software installation status is set to a failed status;
[0087] It is also determined whether the obtained first firmware installation status and the obtained first personalized software installation status are both successful; if so, the corresponding second processing result is set to success; if not, the corresponding second processing result is set to failure.
[0088] In another specific implementation of the embodiment of the present invention, the first personalization device 3 is specifically configured to extract the corresponding first module ICCID, first module personalized data, and first token data from the first module data group when performing module personalization processing on the first user identity recognition module 5 according to the first module data group through the first matching terminal; send a first module ICCID query instruction to the first matching terminal, and receive the first ICCID information returned by the first matching terminal; and perform a digital digest calculation on the first module personalized data to generate corresponding second token data. Here, the digital digest algorithm used by the first personalization device 3 to calculate the digital digest of the first module personalized data matches the digital digest algorithm used by the first configuration server 11 to calculate the digital digest of the first module personalized data.
[0089] and identifying whether the first ICCID information matches the first module ICCID. If so, setting the corresponding first comparison state to match; otherwise, setting the corresponding first comparison state to mismatch; and identifying whether the first and second token data match. If so, setting the corresponding second comparison state to match; otherwise, setting the corresponding second comparison state to mismatch;
[0090] When both the first and second comparison states are matched, a first module personalization instruction carrying the first module personalization data is sent to the first matching terminal, and a first personalization state sent back by the first matching terminal is received; if the first personalization state is a success state, a corresponding third processing result is set to success; if the first personalization state is a failure state, a corresponding third processing result is set to failure;
[0091] When the first comparison status or the second comparison status is mismatched, the corresponding third processing result is set to failure.
[0092] In another specific implementation of the embodiment of the present invention, the first personalization device 3 is specifically configured to identify whether the first, second, and third processing results are all successful when performing module personalized report configuration processing according to the first, second, and third processing results;
[0093] If the first, second or third processing result is failure, then the corresponding first module personalized report is set to empty;
[0094] If the first, second and third processing results are all successful, a first basic information query instruction is sent to the first matching terminal, and the first instruction feedback data sent back by the first matching terminal is received, and the corresponding first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information are extracted from the first instruction feedback data as the corresponding second terminal identification, second terminal model, second terminal chip model and second terminal IMEI; a first firmware version query instruction is sent to the first matching terminal, and the first firmware version information sent back by the first matching terminal is received, and the obtained first firmware version information is used as the corresponding second terminal firmware version; a first personalized software version query instruction is sent to the first matching terminal, and the first personalized software version information sent back by the first matching terminal is received, and the obtained first personalized software version information is used as the corresponding second terminal personalized software version; a first module ICCID query instruction is sent to the first matching terminal, and the first matching terminal is received. The first ICCID information returned by the matching terminal is used, and the obtained first ICCID information is used as the corresponding second module ICCID; the first data item name of each first personalized data item in the first module personalized data is extracted as the corresponding second data item name, and the first module data item reading instruction carrying the each second data item name is sent to the first matching terminal, and the first data item information returned by the first matching terminal is received, and the obtained each first data item information is used as the corresponding second data item content, and the corresponding second personalized data item is composed of each second data item name and the corresponding second data item content, and the corresponding second module personalized data is composed of all the obtained second personalized data items; and the corresponding first module personalized report is composed of the obtained second terminal identifier, second terminal model, second terminal chip model, second terminal IMEI, second terminal firmware version, second terminal personalized software version, second module ICCID and second module personalized data.
[0095] (4) First personalized terminal 4, first user identity recognition module 5
[0096] The first personalization terminal 4 is used to receive the sending instruction of the first personalization device 3 and take the sending instruction received at that time as the corresponding first instruction; and identify the first instruction;
[0097] When the first instruction is a first basic information query instruction, the preset terminal identification parameter, terminal model parameter, terminal chip model parameter and terminal IMEI parameter are read from the locally preset system parameter area as the corresponding first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information to form the corresponding first instruction feedback data and send it back to the first personalization device 3;
[0098] When the first instruction is a first firmware version query instruction, the preset terminal firmware version parameter is read from the system parameter area and sent back to the first personalized device 3 as the corresponding first firmware version information;
[0099] When the first instruction is a first personalized software version query instruction, the preset terminal personalized software version parameter is read from the system parameter area as the corresponding first personalized software version information and sent back to the first personalized device 3;
[0100] When the first instruction is a first firmware installation instruction, a corresponding first terminal firmware data group is extracted from the first instruction; and the terminal firmware version parameter in the system parameter area is backed up to generate a corresponding first backup data; and a firmware program is backed up for the terminal firmware currently installed locally to generate a corresponding first backup program; and the corresponding first terminal firmware version and first firmware program are extracted from the first terminal firmware data group; and a terminal firmware installation process is performed on the first firmware program based on a preset firmware installer to generate a corresponding first installation state; and the first installation state is identified; if the first installation state is successful, the terminal firmware version parameter in the system parameter area is set to the first terminal firmware version, and the first backup data and the first backup program are deleted; if the first installation state is failed, the terminal firmware version parameter in the system parameter area is restored to the first backup data, and the terminal firmware currently installed locally is restored to the first backup program; and the first installation state is sent back to the first personalized device 3;
[0101] When the first instruction is a first personalized software installation instruction, a corresponding first personalized software data group is extracted from the first instruction; the terminal personalized software version parameter in the system parameter area is backed up to generate corresponding second backup data; the locally currently installed personalized software is backed up to generate a corresponding second backup program; the corresponding first terminal personalized software version and the first personalized software program are extracted from the first personalized software data group; the terminal personalized software installation process is performed on the first personalized software program based on a preset personalized software installer to generate a corresponding second installation state; the second installation state is identified; if the second installation state is successful, the terminal firmware version parameter in the system parameter area is set to the first terminal firmware version, and the first backup data and the first backup program are deleted; if the first installation state is failed, the terminal personalized software version parameter in the system parameter area is restored to the second backup data, and the locally currently installed personalized software is restored to the second backup program; and the second installation state is sent back to the first personalized device 3; wherein the locally currently installed personalized software includes a personalized script assembly interface, a data item reading script assembly interface, and a script execution interface;
[0102] When the first instruction is a first module ICCID query instruction, a first ICCID read instruction is sent to the first user identity recognition module 5; and the first ICCID information sent back by the first user identity recognition module 5 is received; and the first ICCID information is sent back to the first personalization device 3;
[0103] When the first instruction is a first module personalization instruction, the corresponding first module personalization data is extracted from the first instruction; the first module personalization data is sent to the personalization script assembly interface of the currently installed local personalization software for personalization script assembly processing, and the personalization script returned by the personalization script assembly interface is used as the corresponding first script; the first script is sent to the script execution interface of the currently installed local personalization software to perform a corresponding personalization data write operation on the first user identity recognition module 5, and the processing status returned by the script execution interface is sent back to the first personalization device 3 as the corresponding first personalization status; wherein the first script includes multiple module operation instructions of the first user identity recognition module 5; the processing status includes a success status and a failure status;
[0104] When the first instruction is a first module data item reading instruction, the corresponding second data item name is extracted from the first instruction; and the second data item name is sent to the data item reading script assembly interface of the locally currently installed personalized software for data item reading script assembly processing, and the data item reading script returned by the data item reading script assembly interface is used as the corresponding second script; and the second script is sent to the script execution interface of the locally currently installed personalized software to perform the corresponding personalized data reading operation on the first user identity recognition module 5, and the read data returned by the script execution interface is sent back to the first personalized device 3 as the corresponding first data item information; wherein, the second script includes one or more module operation instructions of the first user identity recognition module 5.
[0105] An embodiment of the present invention provides a user identity module personalization processing system, comprising: a first cloud platform, multiple first personalized servers, multiple first personalized devices, multiple first personalized terminals, and multiple first user identity modules; the first cloud platform includes a first configuration server, a first terminal firmware database, a first personalized software database, a first terminal information database, and a first module information database; the first personalized terminal is the real-network wireless communication device mentioned above, and the first personalized terminal corresponds one-to-one with the first user identity module. The first cloud platform manages the terminal firmware and personalized software compatible with each first personalized terminal through the first terminal firmware database and the first personalized software database, manages the device of each first personalized terminal through the first terminal information database, and manages the personalized data of the first user identity module on each first personalized terminal through the first module information database. The first configuration server pushes new versions of terminal firmware, personalized software, and module personalized data to the first personalized terminals that need to be updated through the first personalized servers and the first personalized devices. The first personalized terminal then installs terminal firmware and personalized software locally. This installed personalized software then performs secondary personalized processing on the built-in user identification module based on the module personalized data pushed by the first cloud platform. This invention overcomes the problems of conventional personalized processing systems being unable to interface with wireless communication devices operating on a real network and unable to provide terminal firmware and personalized software compatible with various wireless communication devices. This allows for unlimited personalized processing of each user identification module after it leaves the factory or is shipped.
[0106] Professionals should also be further aware that the units and algorithm steps of each example described in conjunction with the embodiments disclosed herein can be implemented in electronic hardware, computer software, or a combination of the two. In order to clearly illustrate the interchangeability of hardware and software, the above description has generally described the components and steps of each example according to their functions. Whether these functions are performed in hardware or software depends on the specific application and design constraints of the technical solution. Professionals and technicians can use different methods to implement the described functions for each specific application, but such implementation should not be considered to be beyond the scope of the present invention.
[0107] The steps of the methods or algorithms described in conjunction with the embodiments disclosed herein may be implemented using hardware, a software module executed by a processor, or a combination of the two. The software module may be placed in a random access memory (RAM), a memory, a read-only memory (ROM), an electrically programmable ROM, an electrically erasable programmable ROM, a register, a hard disk, a removable disk, a CD-ROM, or any other form of storage medium known in the art.
[0108] The specific implementation methods described above further illustrate the objectives, technical solutions and beneficial effects of the present invention in detail. It should be understood that the above description is only a specific implementation method of the present invention and is not intended to limit the scope of protection of the present invention. Any modifications, equivalent substitutions, improvements, etc. made within the spirit and principles of the present invention should be included in the scope of protection of the present invention.
Claims
1. A personalized processing system for a user identity recognition module, characterized in that: The system includes: a first cloud platform, a plurality of first personalized servers, a plurality of first personalized devices, a plurality of first personalized terminals, and a plurality of first user identity recognition modules; the first personalized terminals correspond one-to-one to the first user identity recognition modules; The first cloud platform includes a first configuration server, a first terminal firmware database, a first personalized software database, a first terminal information database, and a first module information database; the first configuration server is respectively connected to the first terminal firmware database, the first personalized software database, the first terminal information database, the first module information database, and each of the first personalized servers; The first configuration server is configured to perform personalized data configuration processing on the user identity module to generate a corresponding first server identifier and a first configuration data packet; encrypt first plaintext data consisting of the first server identifier and the first configuration data packet to obtain a corresponding first encrypted configuration data packet, and transmit the data to the first personalized server corresponding to the first server identifier; receive a first module encrypted report sent back by the first personalized server; decrypt the first module encrypted report to obtain a corresponding first module personalized report; and perform personalized task status update processing based on the first configuration data packet and the first module personalized report. The first personalization server is connected to each of the plurality of first personalization devices; the first personalization server is configured to perform data packet verification and parsing on the first encrypted configuration data packet to generate a corresponding first verification result and a first parsed data packet; and when the first verification result is successful, extract the corresponding first device identifier and first device data packet from the first parsed data packet, and send the first device data packet to the first personalization device corresponding to the first device identifier; receive the first module personalization report sent back by the first personalization device; perform data encryption on the first module personalization report to generate a corresponding first module encrypted report, and send the encrypted report back to the first cloud platform; The first personalization device is connected to a plurality of first personalization terminals, each of which is connected to a first user identity recognition module. The first personalization device is configured to extract a corresponding first terminal data group, a first terminal firmware data group, a first personalized software data group, and a first module data group from the first device data packet; extract a corresponding first terminal identifier from the first terminal data group, and use the first personalized terminal that matches the first terminal identifier as the corresponding first matching terminal; perform terminal verification processing on the first matching terminal based on the first terminal data group to generate a corresponding first processing result; if the first processing result is successful, perform terminal firmware and personalized software upgrade processing on the first matching terminal based on the first terminal firmware data group and the first personalized software data group to generate a corresponding second processing result; if the second processing result is successful, perform module personalization processing on the first user identity recognition module based on the first module data group via the first matching terminal to generate a corresponding third processing result; perform module personalization report configuration processing based on the first, second, and third processing results to generate a corresponding first module personalization report; and send the first module personalization report back to the first personalization server; The first terminal data group includes the first terminal identifier, the first terminal model, the first terminal chip model, and the first terminal IMEI; the first terminal firmware data group includes the first terminal firmware version and the first firmware program; the first personalized software data group includes the first terminal personalized software version and the first personalized software program; the first module data group includes the first module ICCID, the first module personalized data, and the first token data; the first module personalized data includes a plurality of the first personalized data items; The first personalized terminal is a wireless communication device that enters the real network operation / communication, including mobile phones, wireless communication handheld devices, POS machines, industrial control wireless devices, Internet of Things wireless devices, vehicle network wireless devices, and industrial network wireless devices; The first personalization device is specifically configured to, when performing terminal firmware and personalized software upgrade processing on the first matching terminal according to the first terminal firmware data group and the first personalized software data group, send a first firmware version query instruction to the first matching terminal and receive first firmware version information sent back by the first matching terminal; and send a first personalized software version query instruction to the first matching terminal and receive first personalized software version information sent back by the first matching terminal; and when the first firmware version information matches the first terminal firmware version of the first terminal firmware data group and the first personalized software version information matches the first terminal personalized software version of the first personalized software data group, setting the corresponding first firmware installation status and first personalized software installation status to success status; and, when the first firmware version information does not match the first terminal firmware version of the first terminal firmware data group, sending a first firmware installation instruction carrying the first terminal firmware data group to the first matching terminal, and identifying a first installation status sent back by the first matching terminal; if the first installation status is successful, setting the corresponding first firmware installation status to a successful status; and if the first installation status is failed, setting the corresponding first firmware installation status to a failed status; and, when the first personalized software version information does not match the first terminal personalized software version of the first personalized software data group, sending a first personalized software installation instruction carrying the first personalized software data group to the first matching terminal, and identifying a second installation status sent back by the first matching terminal; if the second installation status is successful, setting the corresponding first personalized software installation status to a successful status; and if the second installation status is failed, setting the corresponding first personalized software installation status to a failed status; It is also determined whether the obtained first firmware installation status and the obtained first personalized software installation status are both successful; if so, the corresponding second processing result is set to success; if not, the corresponding second processing result is set to failure.
2. The user identification module personalization processing system according to claim 1, characterized in that: The first terminal firmware database includes a plurality of first terminal firmware data records; the first terminal firmware data record includes a first firmware identification field, a first firmware version field, a first firmware chip model field, a first firmware terminal model field and a first firmware program field; The first personalized software database includes a plurality of first personalized software data records; the first personalized software data record includes a first software identification field, a first software version field, a first software chip model field, a first software terminal model field, and a first software program field; The first terminal information database includes a plurality of first terminal information data records; the first terminal information data record includes a first terminal identification field, a first terminal model field, a first terminal chip model field, a first terminal IMEI field, a first terminal firmware version field, a first terminal personalized software version field, a first terminal module identification field, a first terminal upper device identification field, and a first terminal upper server identification field; The first module information database includes a plurality of first module information data records; the first module information data records include a first module identification field, a first ICCID field, a first module personalized data field, and a first module processing status field; the first module personalized data field includes a plurality of first personalized data items, each of which includes a first data item name and a first data item content; the first module processing status field includes an unprocessed status, a processing failure status, and a processing success status; The first configuration data packet includes the first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group; The first device data packet includes the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group; The first module personalization report includes the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data; the second module personalized data field includes multiple second personalized data items, each of which includes a second data item name and a second data item content.
3. The user identification module personalization processing system according to claim 2, characterized in that: The first configuration server is specifically configured to monitor whether the record content of each first terminal information data record in the first terminal information database is updated during the configuration processing of the personalized data of the user identity recognition module; and whenever the content of a first terminal information data record is monitored to be updated, extracting the first terminal identification field, the first terminal model field, the first terminal chip model field, the first terminal IMEI field, the first terminal firmware version field, the first terminal personalized software version field, the first terminal module identification field, the first terminal upper-level device identification field, and the first terminal upper-level server identification field of the current first terminal information data record as the corresponding first terminal identification, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first terminal module identification, the first device identification, and the first server identification; and forming a corresponding first terminal data group with the obtained first terminal identification, the first terminal model, the first terminal chip model, and the first terminal IMEI; and extracting the first firmware program field of the first terminal firmware data record in the first terminal firmware database, in which the first firmware version field matches the first terminal firmware version, the first firmware chip model field matches the first terminal chip model, and the first firmware terminal model field matches the first terminal model, as the corresponding first firmware program; and forming the corresponding first terminal firmware data group with the obtained first terminal firmware version and the first firmware program; and extracting the first software program field from the first personalized software data record in the first personalized software database, in which the first software version field matches the first terminal personalized software version, the first software chip model field matches the first terminal chip model, and the first software terminal model field matches the first terminal model, as the corresponding first personalized software program; and composing the corresponding first personalized software data group with the obtained first terminal personalized software version and the first personalized software program; and taking the first module information data record in which the first module identification field in the first module information database matches the first terminal module identification as the corresponding current module information data record; and identifying whether the first module processing status field in the current module information data record is in a processing success state; and if so, setting the corresponding first module data group to empty; If not, extracting the first ICCID field and the first module personalized data field of the current module information data record as the corresponding first module ICCID and first module personalized data, performing a digital digest calculation on the first module personalized data to generate corresponding first token data, and forming a corresponding first module data group with the obtained first module ICCID, first module personalized data, and first token data; and forming a corresponding first configuration data packet from the obtained first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group, and the first module data group; The obtained first server identifier and the first configuration data packet are output as corresponding user identity recognition module personalized data configuration processing results.
4. The user identification module personalization processing system according to claim 2, characterized in that: The first configuration server is specifically configured to identify whether the first module personalized report is empty when performing the personalized task status update process according to the first configuration data packet and the first module personalized report; If the personalized report of the first module is empty, then the current personalized task status update process is terminated; If the personalization report of the first module is not empty, a data comparison is performed on the personalization report of the first module and the first configuration data packet; during the comparison, if the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, the second module ICCID and the second module personalized data of the personalization report of the first module respectively match the first terminal identifier, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first module ICCID and the first module personalization number corresponding to the first configuration data packet, the corresponding first comparison result is set to match; if the second terminal identifier, the second terminal model, the second terminal chip model, the second terminal IMEI, the second terminal firmware version, the second terminal personalized software version, If the second module ICCID or the second module personalized data does not match the first terminal identifier, the first terminal model, the first terminal chip model, the first terminal IMEI, the first terminal firmware version, the first terminal personalized software version, the first module ICCID or the first module personalized number corresponding to the first configuration data packet, the corresponding first comparison result is set to no match; and whether the obtained first comparison result is a match is identified; if the first comparison result is a match, the first module processing status field of the first module information data record where the first ICCID field in the first module information database matches the first module ICCID is updated to a successful processing status; if the first comparison result is a mismatch, the first module processing status field of the first module information data record where the first ICCID field in the first module information database matches the first module ICCID is updated to a failed processing status.
5. The user identity module personalization processing system according to claim 2, characterized in that: The first personalized server is specifically used to decrypt the first encrypted configuration data packet to obtain the corresponding first plaintext data when performing data packet verification and parsing on the first encrypted configuration data packet; and extract the corresponding first server identifier and the first configuration data packet from the first plaintext data; and identify whether the first server identifier matches its own preset server identifier; if so, set the corresponding first verification result to verification success, and extract the corresponding first device identifier, the first terminal data group, the first terminal firmware data group, the first personalized software data group and the first module data group from the first configuration data packet, and form the corresponding first device data packet with the obtained first terminal data group, the first terminal firmware data group, the first personalized software data group and the first module data group, and form the corresponding first parsed data packet with the obtained first device identifier and the first device data packet, and output the obtained first verification result and the first parsed data packet as the corresponding data packet verification and parsing processing results.
6. The user identity module personalization processing system according to claim 2, characterized in that: The first personalization device is specifically used to send a first basic information query instruction to the first matching terminal and receive the first instruction feedback data sent back by the first matching terminal when performing terminal verification processing on the first matching terminal according to the first terminal data group; and when the first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information of the first instruction feedback data match the corresponding first terminal identification, first terminal model, first terminal chip model and first terminal IMEI in the first terminal data group, set the corresponding first processing result to success; and when the first terminal identification information, first terminal model information, first terminal chip model information or first terminal IMEI information of the first instruction feedback data do not match the corresponding first terminal identification, first terminal model, first terminal chip model or first terminal IMEI in the first terminal data group, set the corresponding first processing result to failure; the first instruction feedback data includes the first terminal identification information, the first terminal model information, the first terminal chip model information and the first terminal IMEI information.
7. The user identity module personalization processing system according to claim 2, characterized in that: The first personalization device is specifically configured to extract the corresponding first module ICCID, the first module personalization data, and the first token data from the first module data group when performing module personalization processing on the first user identity module by the first matching terminal according to the first module data group; send a first module ICCID query instruction to the first matching terminal, and receive the first ICCID information returned by the first matching terminal; and perform a digital digest calculation on the first module personalization data to generate corresponding second token data; and identifying whether the first ICCID information matches the first module ICCID; if so, setting the corresponding first comparison status to match; and if not, setting the corresponding first comparison status to mismatch; and identifying whether the first and second token data match; if so, setting the corresponding second comparison status to match; and if not, setting the corresponding second comparison status to mismatch; and, when both the first and second comparison statuses are matched, sending a first module personalization instruction carrying the first module personalization data to the first matching terminal, and receiving a first personalization status sent back by the first matching terminal; if the first personalization status is a success status, setting the corresponding third processing result to success; and if the first personalization status is a failure status, setting the corresponding third processing result to failure; When the first comparison status or the second comparison status is mismatch, the corresponding third processing result is set to failure.
8. The user identity module personalization processing system according to claim 2, characterized in that: The first personalization device is specifically configured to identify whether the first, second, and third processing results are all successful when performing module personalization report configuration processing according to the first, second, and third processing results; If the first, second or third processing result is failure, setting the corresponding first module personalized report to empty; If the first, second and third processing results are all successful, a first basic information query instruction is sent to the first matching terminal, and first instruction feedback data sent back by the first matching terminal is received, and the corresponding first terminal identification information, first terminal model information, first terminal chip model information and first terminal IMEI information are extracted from the first instruction feedback data as the corresponding second terminal identification, second terminal model, second terminal chip model and second terminal IMEI; a first firmware version query instruction is sent to the first matching terminal, and the first firmware version information sent back by the first matching terminal is received, and the obtained first firmware version information is used as the corresponding second terminal firmware version; a first personalized software version query instruction is sent to the first matching terminal, and the first personalized software version information is received back by the first matching terminal, and the obtained first personalized software version information is used as the corresponding second terminal personalized software version; a first module ICCID query instruction is sent to the first matching terminal, and the first ICCID information returned by the first matching terminal is received, and the obtained first ICCID information is used as the corresponding second module ICCID; And extract the first data item name of each first personalized data item in the first module personalized data as the corresponding second data item name, and send the first module data item read instruction carrying each second data item name to the first matching terminal, and receive the first data item information returned by the first matching terminal, and use the obtained each first data item information as the corresponding second data item content, and each second data item name and the corresponding second data item content constitute the corresponding second personalized data item, and all the obtained second personalized data items constitute the corresponding second module personalized data; and the obtained second terminal identifier, second terminal model, second terminal chip model, second terminal IMEI, second terminal firmware version, second terminal personalized software version, second module ICCID and second module personalized data constitute the corresponding first module personalized report.
9. The user identity module personalization processing system according to claim 1, characterized in that: The first personalized terminal is used to receive the sending instruction of the first personalized device and use the sending instruction received at that time as the corresponding first instruction; and identify the first instruction; When the first instruction is a first basic information query instruction, the preset terminal identification parameter, terminal model parameter, terminal chip model parameter, and terminal IMEI parameter are read from the locally preset system parameter area as the corresponding first terminal identification information, first terminal model information, first terminal chip model information, and first terminal IMEI information to form corresponding first instruction feedback data and send it back to the first personalized device; When the first instruction is a first firmware version query instruction, reading a preset terminal firmware version parameter from the system parameter area and sending it back to the first personalized device as the corresponding first firmware version information; When the first instruction is a first personalized software version query instruction, reading the preset terminal personalized software version parameter from the system parameter area as the corresponding first personalized software version information and sending it back to the first personalized device; When the first instruction is a first firmware installation instruction, extracting the corresponding first terminal firmware data group from the first instruction; and backing up the terminal firmware version parameters in the system parameter area to generate corresponding first backup data; and performing a firmware program backup on the terminal firmware currently installed locally to generate a corresponding first backup program; and extracting the corresponding first terminal firmware version and first firmware program from the first terminal firmware data group; and performing terminal firmware installation processing on the first firmware program based on a preset firmware installer to generate the corresponding first installation state; and identifying the first installation state; If the first installation status is successful, setting the terminal firmware version parameter in the system parameter area to the first terminal firmware version, and deleting the first backup data and the first backup program; If the first installation status is failure, restoring the terminal firmware version parameter in the system parameter area to the first backup data, and restoring the terminal firmware currently installed locally to the first backup program; and sending the first installation status back to the first personalized device; When the first instruction is a first personalized software installation instruction, extracting the corresponding first personalized software data group from the first instruction; and backing up the terminal personalized software version parameters in the system parameter area to generate corresponding second backup data; and backing up the currently installed personalized software locally to generate a corresponding second backup program; and extracting the corresponding first terminal personalized software version and the first personalized software program from the first personalized software data group; performing terminal personalized software installation processing on the first personalized software program based on a preset personalized software installer to generate the corresponding second installation state; and identifying the second installation state; If the second installation status is successful, setting the terminal firmware version parameter in the system parameter area to the first terminal firmware version, and deleting the first backup data and the first backup program; If the first installation status is failure, restoring the terminal personalized software version parameters in the system parameter area to the second backup data, and restoring the locally currently installed personalized software to the second backup program; and sending the second installation status back to the first personalized device; the locally currently installed personalized software includes a personalized script assembly interface, a data item reading script assembly interface, and a script execution interface; When the first instruction is a first module ICCID query instruction, sending a first ICCID read instruction to the first user identity recognition module; receiving first ICCID information sent back by the first user identity recognition module; and sending the first ICCID information back to the first personalization device; When the first instruction is a first module personalization instruction, extracting corresponding first module personalization data from the first instruction; and sending the personalized data of the first module to the personalized script assembly interface of the locally installed personalized software for personalized script assembly processing, and using the personalized script returned by the personalized script assembly interface as the corresponding first script; The first script is sent to the script execution interface of the currently installed local personalization software to perform a corresponding personalized data write operation on the first user identification module, and a processing status returned by the script execution interface is sent back to the first personalization device as the corresponding first personalized status; the first script includes multiple module operation instructions for the first user identification module; the processing status includes a success status and a failure status; When the first instruction is a first module data item read instruction, the corresponding second data item name is extracted from the first instruction; and the second data item name is sent to the data item read script assembly interface of the currently installed local personalized software for data item read script assembly processing, and the data item read script returned by the data item read script assembly interface is used as the corresponding second script; and the second script is sent to the script execution interface of the currently installed local personalized software to perform a corresponding personalized data read operation on the first user identity identification module, and the read data returned by the script execution interface is sent back to the first personalized device as the corresponding first data item information; the second script includes one or more module operation instructions of the first user identity identification module.
Citation Information
Patent Citations
Number portability method, device and system
CN112203276A