eSIM Transfer Eligibility via Network-Based Target eUICC Trust Checks

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for mechanisms to check whether the transfer of electronic Subscriber Identity Modules (eSIMs) between wireless devices is permissible, considering the security requirements of the target device's embedded UICC (eUICC) to ensure compatibility and trustworthiness.

Innovation Solution

Eligibility checking is performed by communicating with network-based servers to determine if the target device's eUICC meets security requirements, including eUICC certification, root of trust configuration, and digital level of approval (DLOA) checks, using a white or black list of trusted entities, and obtaining transfer eligibility attestation results.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If eligibility checking is performed by communicating with network-based servers, then security requirements for eSIM transfer are improved, but device complexity and operational steps are increased

Engineering Contradiction:
Improvesecurity requirementsVSAvoidoperational steps
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The patent introduces network-based servers (SM-DP+, DLOA servers) as intermediary entities that perform eligibility checking between source and target devices. These servers act as mediators that verify eUICC trust configuration, certification status, and root of trust without requiring direct complex interactions between devices, thus improving security while managing operational complexity through centralized authorization.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent implements preliminary eligibility checking before the actual eSIM transfer operation. By performing trust configuration verification, certification status checking, and root of trust validation in advance through network servers, the system ensures security requirements are met prior to transfer, reducing the need for complex real-time verification during the transfer process itself.

Inventive Principle:
Principle #10Preliminary action

2Reliability

If multiple security checks (certification configuration, root of trust, DLOA) are performed, then transfer security is improved, but processing time is increased

Engineering Contradiction:
Improvetransfer securityVSAvoidprocessing time
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

The patent performs multiple security checks including eUICC certification configuration verification, root of trust configuration validation, and digital level of approval (DLOA) verification in advance before the transfer operation. By completing these verification steps preliminarily through network servers, the actual transfer process can proceed more quickly without needing to repeat these complex security validations during the transfer itself.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent implements a feedback mechanism where network servers provide eligibility attestation results to both source and target devices. This feedback allows the system to verify security requirements once and communicate the results to all parties, avoiding the need for each device to independently perform all security checks and reducing overall processing time through shared verification results.

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS12356200B2Electronic subscriber identity module transfer eligibility checking
Publication Date: 2025.07.08 APPLE INC
  • US12356200B2 patent drawing
  • US12356200B2 patent drawing
  • US12356200B2 patent drawing

AI summary

Embodiments described herein relate to eligibility checking for transfer of one or more electronic subscriber identity modules (eSIMs) between two mobile wireless devices. Eligibility to transfer an eSIM to an eUICC of a target device can depend on whether the eUICC of the target device satisfies certain security requirements for the eSIMs to be transferred. The mobile wireless devices can obtain a transfer eligibility result based on communication with one or more network-based servers that can determine compatibility for eSIM transfer.