Secure Memory Segmentation for Contactless Applications
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Conventional methods are impractical for supporting multiple contactless applications using different security keys on the same wireless smart device due to security concerns and limited memory space, making it difficult to share memory among applications without increased risk of misuse or fraud.
Innovation Solution
A secure sharing approach that initializes, reserves, and releases application memory using shared secret keys, providing a private and secure workspace for each application, allowing multiple applications to share memory without compromising security, by locking sectors with application-specific keys and using a set of shared secret keys to manage access.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Adaptability or versatility
If multiple contactless applications use different security keys on the same wireless smart device, then application versatility is improved, but security risk increases due to potential key exposure and unauthorized access
Solution Approach 1:
The patent segments the memory space into distinct sectors, each dedicated to a specific application. Each sector is protected by its own unique security key, preventing applications from accessing each other's memory. This segmentation allows multiple applications to coexist on the same device while maintaining security isolation, resolving the contradiction between versatility and security.
Solution Approach 2:
The patent introduces a key management system as an intermediary that handles security keys centrally. The system provides a secure environment for storing and managing multiple application-specific keys, preventing direct exposure of keys between applications. This intermediary mechanism enables multiple applications to share the same device without compromising individual security.
2Device complexity
If memory space is shared among multiple applications, then device complexity is reduced, but security vulnerability increases due to potential misuse or fraud
Solution Approach 1:
Instead of sharing memory space, the patent divides it into separate sectors for each application. Each sector has its own security key and access controls, preventing applications from accessing each other's memory. This segmentation simplifies security management by isolating potential vulnerabilities to individual sectors rather than requiring complex shared memory protection mechanisms.
Solution Approach 2:
The patent applies local quality by assigning unique security properties to each memory sector based on its specific application requirements. Each sector has customized access controls and encryption keys tailored to its purpose, allowing secure memory management without requiring system-wide complexity or shared security mechanisms.
3Reliability
If application-specific security keys are used for each contactless application, then security is improved, but memory space requirements increase
Solution Approach 1:
The patent segments memory into dedicated sectors for each application, with each sector containing its own security key and required memory space. This segmentation allows efficient memory utilization by allocating only the necessary space for each application's operational needs rather than providing excessive shared memory, thus managing security requirements without excessive memory consumption.
Solution Approach 2:
The patent implements partial action by providing each application with only the minimum necessary memory space and security keys required for its operation. Rather than allocating excessive memory or providing all applications with all keys, the system provides just enough resources for secure operation, optimizing the balance between security and memory efficiency.
Data Source
Figure 1
Figure 2
Figure 3
AI summary
Systems, methods, and computer program products for supporting multiple contactless applications using different security keys on a wireless smart device are disclosed. According to one aspect, the subject matter described herein includes a method for supporting multiple contactless applications using different security keys on a wireless smart device. The method includes, at a wireless smart device configured to communicate with a wireless smart device reader, the wireless device including a plurality of contactless applications and a contactless application memory for use by the plurality of contactless applications, initializing a portion of the memory such that access to the portion of memory requires the use of a shared secret key known to the plurality of contactless applications. The method includes reserving the portion of memory for use by one of the plurality of contactless applications by using the shared secret key to set access privileges for the portion of memory such that access to the portion of memory requires the use of a application-specific secret key associated with the one application and not known to the other applications.