Secure Element Application Access Control via Function-Specific Signing

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing methods for controlling application access to secure functions on mobile devices are inefficient, as they often require over-the-air updates and OEM/MNO interaction for certificate management, and do not allow for dynamic adjustment of application permissions without updating the operating system.

Innovation Solution

A method involving the generation of unique cryptographic keys for each mobile device function, where applications are signed with specific keys corresponding to needed functions, and access rules are transmitted to a Secure Element for secure management without requiring operating system updates.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If applications are given access to all secure functions, then application functionality is improved, but security is worsened due to excessive access permissions

Engineering Contradiction:
Improveapplication functionalityVSAvoidsecurity
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent segments secure functions into distinct categories (NFC, SE, camera, microphone, location, etc.) and creates separate access certificates for each category. This allows the system to grant applications access to only the specific secure functions they need rather than all secure functions, thereby maintaining security while enabling necessary functionality.

Inventive Principle:
Principle #1Segmentation

2Reliability

If access certificates are pre-installed in the operating system, then application authentication is improved, but certificate management flexibility is worsened requiring OTA updates

Engineering Contradiction:
Improveapplication authenticationVSAvoidcertificate management flexibility
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent extracts certificate management from the operating system and relocates it to the Secure Element. The Secure Element independently stores and manages access certificates, allowing the TSM to update, add, or remove certificates without requiring operating system updates. This separation enables flexible certificate management while maintaining authentication reliability.

Inventive Principle:
Principle #2Taking out (Extraction)

3Adaptability or versatility

If different TSMs use different access certificates in different geographical regions, then regional customization is improved, but device complexity is worsened requiring different operating system image builds

Engineering Contradiction:
Improveregional customizationVSAvoidoperating system image builds
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent creates a universal certificate management system where the Secure Element can store and manage multiple access certificates from different TSMs simultaneously. A single operating system image can support multiple regions and TSMs by loading the appropriate certificates into the Secure Element, eliminating the need for region-specific operating system builds while maintaining regional customization capabilities.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9226143B2Controlling application access to mobile device functions
Publication Date: 2015.12.29 NXP BV
  • US9226143B2 patent drawing
  • US9226143B2 patent drawing
  • US9226143B2 patent drawing

AI summary

There is described a method of controlling application access to predetermined functions of a mobile device (240), the method comprising (a) providing a set of keys, each key corresponding to one of the predetermined functions, (b) receiving (225) an application from an application provider (220, 221, 222, 223) together with information identifying a set of needed functions, (c) generating a signed application by signing the received application with each of the keys that correspond to one of the needed functions identified by the received information, and (d) transmitting (227) information identifying the needed functions and the signed application and a set of access rules to a Secure Element of the mobile device (240). There is also described a device for controlling application access and a system for controlling and authenticating application access. Furthermore, there is described a computer program and a computer program product.