eUICC Profile Management for Owner Authentication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Current systems fail to accurately identify the current owner of an information processing apparatus, such as a vehicle, after a change in ownership, due to the inability to rewrite electronic certificates stored in secure storage areas, preventing service providers from offering services tailored to the new owner.
Innovation Solution
An information processing apparatus equipped with an eUICC that can hold and rewrite profile information and electronic certificates, allowing the processor to acquire, store, and update authentication information and certificates from a certificate authority, enabling the server to authenticate and identify the current owner.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If electronic certificates are stored in secure storage areas, then security is improved, but the ability to update authentication information deteriorates
Solution Approach 1:
The patent divides the authentication system into two separate components: profile information stored in the eUICC and electronic certificates stored in the terminal device's secure storage. This segmentation allows the eUICC to be updated remotely while keeping the secure storage intact, resolving the contradiction between security and updatability.
Solution Approach 2:
The patent introduces profile information as an intermediary between the authentication system and the terminal device. The profile information acts as a mediator that can be updated in the eUICC without affecting the secure storage of certificates, enabling updates while maintaining security.
2Adaptability or versatility
If profile information is separated from electronic certificates, then updatability is improved, but system complexity deteriorates
Solution Approach 1:
The patent segments the authentication system into distinct components (profile information in eUICC, certificates in terminal secure storage) that operate independently. This segmentation enables separate management and updates of each component, improving updatability while the standardized interfaces keep complexity manageable.
Data Source
AI summary
An information processing apparatus includes an eUICC that holds first profile information that is used for connection to a first communication system, and a processor configured to connect to the first communication system by using the first profile information. The processor acquires, from a predetermined certificate authority, a first electronic certificate that certifies that first authentication information that is used for authentication by a first server is for a first owner, stores the first authentication information and the first electronic certificate in the eUICC, and receives authentication by the first server by using the first authentication information and the first electronic certificate. A default profile is stored in the eUICC, and the information processing apparatus connects to the first communication system by using the default profile while the information processing apparatus is being sold as a new product or a used product.


