Secure Element Application Access Control via Function-Specific Signing
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing methods for controlling application access to secure functions on mobile devices are inefficient, as they often require over-the-air updates and OEM/MNO interaction for certificate management, and do not allow for dynamic adjustment of application permissions without updating the operating system.
Innovation Solution
A method involving the generation of unique cryptographic keys for each mobile device function, where applications are signed with specific keys corresponding to needed functions, and access rules are transmitted to a Secure Element for secure management without requiring operating system updates.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If applications are given access to all secure functions, then application functionality is improved, but security is worsened due to excessive access permissions
Solution Approach 1:
The patent segments secure functions into distinct categories (NFC, SE, camera, microphone, location, etc.) and creates separate access certificates for each category. This allows the system to grant applications access to only the specific secure functions they need rather than all secure functions, thereby maintaining security while enabling necessary functionality.
2Reliability
If access certificates are pre-installed in the operating system, then application authentication is improved, but certificate management flexibility is worsened requiring OTA updates
Solution Approach 1:
The patent extracts certificate management from the operating system and relocates it to the Secure Element. The Secure Element independently stores and manages access certificates, allowing the TSM to update, add, or remove certificates without requiring operating system updates. This separation enables flexible certificate management while maintaining authentication reliability.
3Adaptability or versatility
If different TSMs use different access certificates in different geographical regions, then regional customization is improved, but device complexity is worsened requiring different operating system image builds
Solution Approach 1:
The patent creates a universal certificate management system where the Secure Element can store and manage multiple access certificates from different TSMs simultaneously. A single operating system image can support multiple regions and TSMs by loading the appropriate certificates into the Secure Element, eliminating the need for region-specific operating system builds while maintaining regional customization capabilities.
Data Source
AI summary
There is described a method of controlling application access to predetermined functions of a mobile device (240), the method comprising (a) providing a set of keys, each key corresponding to one of the predetermined functions, (b) receiving (225) an application from an application provider (220, 221, 222, 223) together with information identifying a set of needed functions, (c) generating a signed application by signing the received application with each of the keys that correspond to one of the needed functions identified by the received information, and (d) transmitting (227) information identifying the needed functions and the signed application and a set of access rules to a Secure Element of the mobile device (240). There is also described a device for controlling application access and a system for controlling and authenticating application access. Furthermore, there is described a computer program and a computer program product.


