Mass Storage Secure Controller for MegaSIM Security

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

MegaSIM cards lack security for mass storage memory, as standard mass storage protocols do not support secure access, and existing secure protocols like TrustedFlash™ require specific software agents and are not supported by current mobile terminals, failing to allow mobile network operators to control the content securely.

Innovation Solution

Integrating security mechanisms from the ISO file system with the mass storage file system, using a mass storage secure controller to associate files with security configurations, hide content, and reveal it only when access requirements are met, eliminating the need for intermediate firmware and supporting secure access without additional software agents.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Ease of operation

If standard mass storage protocols are used for MegaSIM cards, then ease of operation and compatibility are improved, but security is worsened because these protocols do not support secure access control

Engineering Contradiction:
Improveease of operationVSAvoidsecurity
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent introduces a security controller as an intermediary component between the mass storage controller and the mass storage memory. This security controller intercepts access requests, validates security conditions, and controls data access accordingly. The security controller acts as a mediator that enables secure access control without requiring changes to the standard mass storage protocols or mobile terminal software, thus resolving the contradiction between ease of operation and security.

Inventive Principle:
Principle #24Intermediary (Mediator)

2Reliability

If existing secure protocols like TrustedFlash™ are implemented, then security is improved, but device complexity increases and compatibility with current mobile terminals is worsened due to requiring specific software agents

Engineering Contradiction:
ImprovesecurityVSAvoiddevice complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The security controller serves as a self-contained intermediary that implements security functions independently within the MegaSIM card. It handles authentication, authorization, and access control internally without requiring external software agents in the mobile terminal. This approach provides robust security while maintaining compatibility with existing mobile terminals and avoiding increased device complexity.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The security controller implements self-service security mechanisms by autonomously managing authentication and access control within the MegaSIM card. It independently validates security conditions and controls data access without requiring external assistance from mobile terminal software agents, thereby simplifying the overall system while maintaining high security standards.

Inventive Principle:
Principle #25Self-service

3Productivity

If mass storage memory is made accessible through high-speed interfaces, then productivity is improved, but security is worsened because the memory becomes more vulnerable to unauthorized access

Engineering Contradiction:
ImproveproductivityVSAvoidsecurity
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The security controller acts as an intermediary layer between the high-speed mass storage interface and the actual data storage. It enables high-speed data transfer while simultaneously enforcing security controls by validating access requests and controlling data exposure. This allows the system to maintain both high productivity through fast interfaces and security through the intermediary security controller.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS8868929B2Method of mass storage memory management for large capacity universal integrated circuit cards
Publication Date: 2014.10.21 MICROELECTRONICSA ESPANOLA
  • US8868929B2 patent drawing
  • US8868929B2 patent drawing
  • US8868929B2 patent drawing

AI summary

In one embodiment, a method for managing information in a large capacity UICC is provided comprising storing content of a file in a mass storage file system of the large capacity UICC, associating the file in the mass storage file system with a file in an ISO file system of the large capacity UICC, wherein the ISO file is associated with a security configuration defining security requirements for allowing its access; and hiding the content of the file in the mass storage file system in order to make it inaccessible. The method can further comprise requesting access from the mass storage file system to content of a file in the mass storage file system; and, if hidden, delivering security requirements to the ISO file system and determining whether the delivered security requirements agree with the security configuration of the file in the ISO file system associated with the file in the mass storage file system; and, if so, revealing the content to make it accessible.