Secure Element Applet Access Isolation for External Applications
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing solutions for managing access to secure elements in user devices, such as mobile phones, fail to ensure secure and differentiated access for external applications, leading to potential unauthorized access and complexity in deployment.
Innovation Solution
A secure element with a first security applet that allows external applications to register and become local administrators, granting permission-based access to their own data, with optional token authorization, ensuring secure messaging sessions and compartmentalized storage.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Ease of operation
If external applications are granted access to the SE using GlobalPlatform Secure Element Access, then applications can communicate with the SE, but any data may be accessed by third parties without fine-grained control
Solution Approach 1:
The patent implements fine-grained access control where each external application is granted permission to access only its own specific data (local quality) rather than all data in the SE. The security applet distinguishes between different applications and their respective data, ensuring that application A can access only data A while being blocked from data B, thus resolving the contradiction between ease of access and data security.
2Reliability
If Secure Channel Protocols are used with keys stored in the Security Domain, then communication is ciphered, but any authenticated application can access any SE Applet data
Solution Approach 1:
The patent segments the Security Domain into multiple isolated data spaces, each associated with a specific external application. Instead of a single SD controlling all SE Applets, the system creates application-specific security contexts that allow each application to authenticate only to its own data. This segmentation resolves the contradiction by maintaining communication security through authentication while preventing unauthorized access to other applications' data.
3Reliability
If multiple Security Domains are created to isolate SE Applications, then illegal access from different applications is avoided, but deployment becomes more complicated
Solution Approach 1:
The patent enables external applications to self-register and obtain their own security contexts without requiring complex pre-deployment configuration by the service provider. The system allows applications to autonomously establish their security domains and authenticate to the SE, eliminating the need for manual SD key distribution and reducing deployment complexity while maintaining access isolation.
4Ease of manufacture
If SD keys are distributed through third-party TSM entities, then key management is facilitated, but service providers may not trust that keys have passed through secure channels
Solution Approach 1:
The patent extracts the key distribution function from third-party TSM entities and implements it directly within the secure element system. Service providers can directly provision security contexts and keys to their own applications without intermediary TSMs, eliminating the trust issue while maintaining ease of key management. The SE itself manages the secure distribution of cryptographic material to authenticated applications.
Data Source
AI summary
A secure element for a device includes an operative system the secure element including a first security applet configure to communicate with the device operative system, wherein the first security applet is configure to accept any first external application, after performing a key registration, as a local administrator application for some first data provided by the first external application, so that no other external application may access the first data without a permission of the first external application. The disclosure also provides a telecommunications device and a method of management of secure information in such a secure element.


