Secure Element Credential Reload via Online Resource

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Existing electronic devices with NFC components face challenges in securely and efficiently reloading funds for commerce credentials using online resources, as existing methods are infeasible for contactless proximity-based communications.

Innovation Solution

The system involves an electronic device with a secure element and an application processor that accesses an online resource to receive selection data, validate credentials, transmit initialization results, and adjust the balance of a reloadable credential applet based on received reload data, enabling secure and efficient reloading of funds through a remote subsystem.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Speed

If contactless proximity-based communication is used for financial transactions, then transaction speed and convenience are improved, but secure and efficient reloading of funds using online resources becomes infeasible

Engineering Contradiction:
Improvetransaction speedVSAvoidease of reloading funds
Core Design Contradiction:
SpeedVSEase of operation

Solution Approach 1:

The system separates the credential storage function (in secure element for contactless transactions) from the fund management function (accessible via online resource). This segmentation allows the credential to be used for fast contactless transactions while enabling secure online reloading through a different interface, resolving the contradiction between transaction speed and reloading convenience.

Inventive Principle:
Principle #1Segmentation

2Reliability

If credential validation is performed on the electronic device, then security is improved, but system complexity increases

Engineering Contradiction:
ImprovesecurityVSAvoidsystem complexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The secure element acts as an intermediary that handles credential validation internally without requiring the main processor to implement complex security protocols. The validation data is generated by the secure element and transmitted to the online resource, which performs the actual validation. This intermediary approach maintains high security while keeping the electronic device's system complexity low.

Inventive Principle:
Principle #24Intermediary (Mediator)

Data Source

PatentUS11120442B2Management of reloadable credentials on an electronic device using an online resource
Publication Date: 2021.09.14 APPLE INC
  • US11120442B2 patent drawing
  • US11120442B2 patent drawing
  • US11120442B2 patent drawing

AI summary

Systems, methods, and computer-readable media for using an online resource to manage reloadable credentials on an electronic device are provided. In one example embodiment, a method, at an electronic device, includes, inter alia, receiving selection data via an online resource, where the selection data may be indicative of a particular credential applet stored on a secure element of the electronic device, in response to the receiving the selection data, accessing validation data from the particular credential applet on the secure element, transmitting initialization results comprising the accessed validation data to a remote subsystem associated with the online resource, in response to the transmitting, receiving reload data from the remote subsystem, and adjusting a balance of the particular credential applet based on the received reload data. Additional embodiments are also provided.