Remote Smart Card Personalization for Network Operator Switching
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Mobile devices and equipment with embedded UICC cards face challenges in easily changing mobile network operators without manual intervention, as existing methods require physical replacement of the card, which is costly or impractical for devices like sensors and vending machines.
Innovation Solution
A method for remote personalization of a smart card, allowing users to change their mobile network operator by establishing a secured session between application servers in different telecommunication networks, enabling the smart card to update its credentials without manual intervention, using a personalization command and admin code to replace the existing identity and authentication keys with new ones.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If physical replacement of UICC card is used to change mobile network operator, then network operator change is achieved, but device complexity and cost increase due to manual intervention requirements
Solution Approach 1:
The patent replaces the mechanical system of physical UICC card removal and insertion with an electronic/remote personalization system. Application servers communicate over telecommunication networks to transmit personalization commands that reconfigure the UICC card's credentials remotely, eliminating the need for physical card replacement while achieving operator change.
Solution Approach 2:
The system enables self-service operator changes through automated remote personalization. The application server on the user's device receives personalization commands and executes them locally on the UICC card without requiring manual intervention or third-party involvement, allowing users to change operators independently.
2Adaptability or versatility
If physical UICC card replacement is implemented, then operator subscription changes are possible, but ease of operation deteriorates due to accessibility issues with embedded cards
Solution Approach 1:
The patent replaces the mechanical access method (physical card removal) with an electronic remote personalization system. Personalization commands are transmitted electronically over telecommunication networks and executed by the application server on the embedded UICC card, making operator changes as easy as sending a message without requiring physical device disassembly.
3Reliability
If third party intervention is used for credential exchange, then security is maintained, but loss of time increases due to additional exchange steps
Solution Approach 1:
The patent extracts the credential exchange process from the traditional third-party mediation model. The application server on the user's device directly communicates with the UICC card and receives personalization commands without involving external third parties, reducing the number of communication steps while maintaining security through encrypted telecommunication network channels.
Solution Approach 2:
The system enables self-service credential management where the application server on the user's device autonomously receives and processes personalization commands locally. This eliminates the need for time-consuming third-party mediation while maintaining security through the use of admin codes and encrypted communications over telecommunication networks.
Data Source
AI summary
A method and apparatus for personalizing a smart card (SC) in a communication device of a subscriber of a first telecommunication network (TN), who wishes to become a subscriber of a second TN, is disclosed. A first identity and authentication key (AK) are stored in the SC. A first application server (AS) in the first TN receives a request of subscription change comprising an identifier of the second TN, establishes a secured session with a second AS of the second TN, and sends a message comprising the first identity and AK to the second AS so the SC can access the second TN. The second AS sends a second message including a personalization command, admin code, second identity and second AK to the communication device, which executes the personalization command to replace the first identity and AK with the second identity and the second AK if the admin code is valid.


