Secure Element Session Reset via Automatic Terminal Commands

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current wireless communications devices face challenges in managing secure elements, such as SIM cards, when changes occur in values associated with active applications, requiring complex procedures and user intervention, like re-entering PINs, during session resets.

Innovation Solution

A method and apparatus that involve receiving a refresh message for session resets, sending status and application selection messages to securely reactivate applications without requiring user intervention, using a universal subscriber identity module application session reset command, and managing changes to international mobile subscriber identity values.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If a session reset procedure is executed when IMSI value changes, then security is improved, but user operation complexity increases due to requiring PIN re-entry

Engineering Contradiction:
ImprovesecurityVSAvoiduser operation complexity
Core Design Contradiction:
ReliabilityVSEase of operation

Solution Approach 1:

The terminal automatically performs the session reset procedure by sending the RESET SESSION command in response to receiving a session reset message from the secure element, eliminating the need for manual user intervention and PIN re-entry while maintaining security requirements

Inventive Principle:
Principle #25Self-service

2Reliability

If a complete UICC initialization procedure is performed, then security is ensured, but time consumption increases

Engineering Contradiction:
ImprovesecurityVSAvoidtime consumption
Core Design Contradiction:
ReliabilityVSLoss of time

Solution Approach 1:

Instead of performing a complete UICC initialization procedure, the terminal executes a partial session reset procedure by sending the RESET SESSION command, which achieves the necessary security objective of resetting the application session without the overhead of full initialization

Inventive Principle:
Principle #16Partial or excessive action

Solution Approach 2:

The terminal is pre-configured to automatically send the RESET SESSION command upon receiving a session reset message from the secure element, eliminating the need for manual user initiation and reducing the overall time required for the session reset process

Inventive Principle:
Principle #10Preliminary action

Data Source

PatentEP2559273B1Method and apparatus for secure element management
Publication Date: 2018.12.12 NOKIA TECHNOLOGIES OY
  • EP2559273B1 patent drawingFigure 1
  • EP2559273B1 patent drawingFigure 2
  • EP2559273B1 patent drawingFigure 3

AI summary

In accordance with an example embodiment of the present invention, a method comprises receiving at a terminal a refresh message sent by a secure element, wherein said refresh message comprises a request for a session reset in response to at least one value associated with a current active application on said secure element is changed. The method further comprises sending by said terminal a status message to said secure element, wherein said status message notifies said current active application on said secure element that an application session reset procedure will be executed. The method further comprises sending by said terminal an application selection message to said secure element, wherein said application selection message instructs said secure element to reactivate said current active application with at least said new value.