OTA Server Data Transmission via SMS Notification
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
The existing OTA mechanism for transmitting data to identification modules in mobile radio terminals is limited by the small size of SMS messages, leading to transmission errors when large data volumes are split into multiple messages.
Innovation Solution
A method and system that utilize a data center to backup and transmit data to identification modules, allowing for secure and reliable transfer of large data volumes using channels other than the OTA server, while maintaining security through cryptographic keys stored on the OTA server.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Quantity of substance
If data is transmitted using SMS-based OTA messages, then security is maintained through cryptographic keys, but the data volume is limited to 160 characters per message
Solution Approach 1:
The patent segments the transmission process into two parts: first, a notification message is sent via SMS containing a reference to the data location; second, the actual large-volume data is transmitted through a different channel (email, MMS, or direct download). This segmentation allows the secure SMS channel to be used for authentication while bypassing its size limitation for the bulk data transfer.
Solution Approach 2:
The patent introduces an intermediary mechanism where the SMS message does not contain the actual data but rather a reference or notification about data availability. This intermediary approach allows the system to use the secure SMS channel for initiating the transfer while utilizing alternative channels for the actual data transmission, thus resolving the contradiction between security and data volume.
2Quantity of substance
If large data volumes are divided into multiple SMS messages, then the data volume limitation is bypassed, but transmission errors occur due to incorrect restoration of information
Solution Approach 1:
Instead of segmenting the data itself into multiple SMS messages, the patent segments the transmission process into notification and data transfer phases. The notification SMS is a single message containing reference information, while the actual data is transmitted as a complete unit through alternative channels, avoiding the restoration errors that occur when reassembling fragmented SMS messages.
Solution Approach 2:
The patent uses the SMS message as a copy or reference to the actual data rather than transmitting the data directly through SMS. The SMS contains metadata or a reference that points to the location of the complete data, allowing the receiving device to retrieve the full, unfragmented data without the errors associated with reassembling multiple SMS segments.
3Adaptability or versatility
If security features are moved outside the OTA server, then data transmission flexibility is improved, but unauthorized access becomes possible
Solution Approach 1:
The patent extracts only the necessary authentication elements (cryptographic keys for verifying the notification message) from the secure OTA server, while keeping the actual data transmission process flexible and external. The security-critical authentication function remains within the secure boundary, while the data transfer itself can use various external channels, thus maintaining both security and flexibility.
Solution Approach 2:
The patent uses the cryptographic key verification as an intermediary step that bridges the secure OTA server and the flexible external data channels. The SMS notification with cryptographic verification acts as a secure mediator that authorizes subsequent flexible data transmission through alternative channels, maintaining security while enabling transmission versatility.
Data Source
Figure 1
Figure 2
AI summary
The invention relates to a method for transmitting data to an identification module (105) in a mobile radio terminal (102), which can be connected to a mobile radio network (101), using an OTA-Server (106) having a database (107) with security information for a plurality of identification modules and having a first interface (109) for communicating protected information, more particularly OTA messages, to the identification modules (105). The data are protected in the OTA server (106) by means of security information stored in the database (107), and the protected data are transferred via a second interface (111) of the OTA server to a data centre (110) connected to the OTA server. The data are transmitted from the data centre (110) to the identification module (105). Furthermore, the invention relates to a system for carrying out the method.