Secure Element Multi-Profile Browsing via Unique Root File IDs

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current secure elements can only browse the logical tree structure of the active profile, limiting access to other profiles.

Innovation Solution

A secure element configured to enable browsing of a targeted logical tree structure by using unique root file identifiers different from 0x3F00, and a selecting module to select the root file of the currently activated profile in response to a Select file command, allowing access to different profiles without changing the active profile.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If the secure element only allows browsing the logical tree structure of the active profile, then the system maintains simplicity and compatibility with existing protocols, but access to other profiles is limited

Engineering Contradiction:
Improveaccess to multiple profilesVSAvoidprofile management complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent introduces an intermediary mechanism (the Select File command with root file identifier) that mediates between the host device and multiple profiles. This intermediary allows the host to select and access specific profile root files without requiring changes to the active profile status, thus enabling multi-profile access while maintaining system simplicity and compatibility with existing protocols

Inventive Principle:
Principle #24Intermediary (Mediator)

2Adaptability or versatility

If the root file identifier 0x3F00 is used for the active profile, then compatibility with existing protocols is maintained, but access to other profile root files becomes ambiguous

Engineering Contradiction:
Improveprofile selection capabilityVSAvoidprotocol compatibility
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent applies local quality by assigning unique root file identifiers to different profiles while preserving the special meaning of 0x3F00 for the active profile. Each profile's root file has its own specific identifier, allowing the host to selectively access any profile's logical tree structure by using the corresponding root file identifier in the Select File command, thus enabling profile selection capability without compromising protocol compatibility

Inventive Principle:
Principle #3Local quality

3Ease of operation

If the secure element allows browsing of non-active profile root files, then access flexibility is improved, but the risk of accidentally altering active profile status increases

Engineering Contradiction:
Improveprofile access easeVSAvoidactive profile status stability
Core Design Contradiction:
Ease of operationVSReliability

Solution Approach 1:

The patent segments the profile access mechanism by separating the concept of profile selection from active profile status changes. The Select File command with root file identifier allows the host to browse and access files in any profile's logical tree structure without triggering a profile status change. This segmentation enables easy profile access while maintaining active profile status stability, as the operation is confined to file browsing within the selected profile's logical structure

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP3180735B8Method of managing several profiles in a secure element
Publication Date: 2019.10.02 THALES DIS FRANCE SA

AI summary

The invention is a method for managing profiles in a secure element that has several profiles comprising files organized in respective logical tree structures comprising respective root files. The root files have identifiers whose values are different from 0x3F00 and the method comprises the step of enabling browsing of the logical tree structure comprising a targeted root file in response to the receipt of a Select file command aiming at selecting said targeted root file.