SIM Card Access Control via Device Identifier and Software Version Verification

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Conventional equipment identity registers (EIRs) are ineffective in preventing access to mobile telecommunications networks for stolen, defective, or malicious devices, especially when devices connect over non-mobile networks or lack IMEI blacklisting, and can be circumvented by altering the IMEI.

Innovation Solution

A smartcard, such as a SIM card, is used to determine and compare device identifiers and software versions with an internal pattern to control access, allowing or denying network access based on the classification, and can autonomously shut down or report compromised terminals.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If conventional EIRs are used to blacklist individual stolen handsets, then access control for reported stolen devices is improved, but the system becomes ineffective against counterfeit devices, defective batches, and devices connecting over non-mobile networks

Engineering Contradiction:
Improveaccess control effectivenessVSAvoidcoverage against different types of undesirable devices
Core Design Contradiction:
ReliabilityVSAdaptability or versatility

Solution Approach 1:

The patent changes the parameters checked by the access control system from only IMEI to include software version data and device identifier combinations. This allows the system to identify and block counterfeit devices, defective batches, and other undesirable devices that may have valid IMEIs but fail other verification criteria.

Inventive Principle:
Principle #35Parameter changes

Solution Approach 2:

The patent segments the access control functionality between network-based EIR (for traditional IMEI blacklisting) and SIM card-based verification (for software version and device identifier checking). This segmentation allows each component to specialize in different aspects of device verification, improving overall effectiveness against various types of undesirable devices.

Inventive Principle:
Principle #1Segmentation

2Reliability

If IMEI blacklisting is used to prevent unauthorized access, then stolen device blocking is achieved, but the method can be circumvented by altering the IMEI carried by the equipment

Engineering Contradiction:
Improvestolen device blockingVSAvoidIMEI alteration circumvention
Core Design Contradiction:
ReliabilityVSObject-affected harmful factors

Solution Approach 1:

The patent introduces software version data as an intermediary verification layer between the device and the network. The SIM card verifies both the device identifier and software version, creating a dual-verification mechanism that prevents circumvention through IMEI alteration alone, as the software version provides an additional check that cannot be easily changed.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If extensive EIR entries are maintained to cover all undesirable devices, then comprehensive access control is achieved, but the complexity and resource requirements of the network system increase

Engineering Contradiction:
Improvecoverage of undesirable devicesVSAvoidnetwork system complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent performs preliminary verification of device identifiers and software versions at the SIM card level before network connection is established. This preliminary action filters out undesirable devices early in the access process, reducing the need for extensive network-based EIR entries and lowering overall system complexity.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The SIM card performs self-service verification by checking device identifiers and software versions against stored criteria locally. This self-service capability at the SIM level reduces the burden on the network system, allowing comprehensive device verification without requiring extensive network resources or complex EIR management.

Inventive Principle:
Principle #25Self-service

4Ease of operation

If network-based EIR is used for access control, then centralized management is achieved, but the system is ineffective when handsets connect over non-mobile networks or networks without EIRs

Engineering Contradiction:
Improvecentralized access managementVSAvoideffectiveness across different network types
Core Design Contradiction:
Ease of operationVSAdaptability or versatility

Solution Approach 1:

The patent makes the SIM card universally applicable across different network types by implementing verification functionality directly in the SIM. The SIM card can verify device identifiers and software versions independently of the network type, allowing access control to function effectively whether the device connects to mobile networks, non-mobile networks, or networks without traditional EIRs.

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS9210174B2Method and device for controlling access to mobile telecommunications networks
Publication Date: 2015.12.08 VODAFONE IP LICENSING LTD

AI summary

To control access by any given mobile terminal to a mobile telecommunications network, a smartcard (i.e. a SIM) is arranged to include a list of device identifiers corresponding to one or more mobile terminals together with an indication of their respective access categories (i.e. black-list, grey-list or white-list). This list is constructed from an updated list of identifiers of mobile devices into which the smartcard has been inserted. This may be enhanced with a limited number of generic excluded identifiers. The smartcard thus maintains a local database of banned devices and/or devices that need to be monitored by the network.