Mass Storage Secure Controller for MegaSIM Security
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
MegaSIM cards lack security for mass storage memory, as standard mass storage protocols do not support secure access, and existing secure protocols like TrustedFlash™ require specific software agents and are not supported by current mobile terminals, failing to allow mobile network operators to control the content securely.
Innovation Solution
Integrating security mechanisms from the ISO file system with the mass storage file system, using a mass storage secure controller to associate files with security configurations, hide content, and reveal it only when access requirements are met, eliminating the need for intermediate firmware and supporting secure access without additional software agents.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If standard mass storage protocols are used for MegaSIM cards, then ease of operation and compatibility are improved, but security is worsened because these protocols do not support secure access control
Solution Approach 1:
The patent introduces a security controller as an intermediary component between the mass storage controller and the mass storage memory. This security controller intercepts access requests, validates security conditions, and controls data access accordingly. The security controller acts as a mediator that enables secure access control without requiring changes to the standard mass storage protocols or mobile terminal software, thus resolving the contradiction between ease of operation and security.
2Reliability
If existing secure protocols like TrustedFlash™ are implemented, then security is improved, but device complexity increases and compatibility with current mobile terminals is worsened due to requiring specific software agents
Solution Approach 1:
The security controller serves as a self-contained intermediary that implements security functions independently within the MegaSIM card. It handles authentication, authorization, and access control internally without requiring external software agents in the mobile terminal. This approach provides robust security while maintaining compatibility with existing mobile terminals and avoiding increased device complexity.
Solution Approach 2:
The security controller implements self-service security mechanisms by autonomously managing authentication and access control within the MegaSIM card. It independently validates security conditions and controls data access without requiring external assistance from mobile terminal software agents, thereby simplifying the overall system while maintaining high security standards.
3Productivity
If mass storage memory is made accessible through high-speed interfaces, then productivity is improved, but security is worsened because the memory becomes more vulnerable to unauthorized access
Solution Approach 1:
The security controller acts as an intermediary layer between the high-speed mass storage interface and the actual data storage. It enables high-speed data transfer while simultaneously enforcing security controls by validating access requests and controlling data exposure. This allows the system to maintain both high productivity through fast interfaces and security through the intermediary security controller.
Data Source
AI summary
In one embodiment, a method for managing information in a large capacity UICC is provided comprising storing content of a file in a mass storage file system of the large capacity UICC, associating the file in the mass storage file system with a file in an ISO file system of the large capacity UICC, wherein the ISO file is associated with a security configuration defining security requirements for allowing its access; and hiding the content of the file in the mass storage file system in order to make it inaccessible. The method can further comprise requesting access from the mass storage file system to content of a file in the mass storage file system; and, if hidden, delivering security requirements to the ISO file system and determining whether the delivered security requirements agree with the security configuration of the file in the ISO file system associated with the file in the mass storage file system; and, if so, revealing the content to make it accessible.


