Smart Card Certificate Import via Self-Service Detection

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Smart cards require complex operations to initialize certificates for new purposes, and existing systems face challenges when computerized devices are upgraded, leading to potential loss of certificate information.

Innovation Solution

A method that allows users to select and import certificates from a smart card using a smart card reader and computerized device, prompting for passwords and storing selected certificates, even if the device has been upgraded, ensuring seamless functionality for new purposes.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Reliability

If dedicated personnel use dedicated equipment to initialize certificates on smart cards, then security and control are improved, but complexity and time consumption increase

Engineering Contradiction:
ImprovesecurityVSAvoidcomplexity
Core Design Contradiction:
ReliabilityVSDevice complexity

Solution Approach 1:

The system enables users to independently select and import certificates from their smart cards without requiring dedicated personnel or specialized equipment. The computerized device automatically detects the smart card, presents available certificates, and facilitates their import through user-friendly interfaces, transforming a previously expert-only process into a self-service operation.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The patent creates a copy of the certificate import function within the computerized device itself, eliminating the need for external dedicated equipment. The device contains built-in capabilities to read, detect, and import certificates directly from smart cards, replicating the functionality of specialized initialization equipment in a general-purpose device.

Inventive Principle:
Principle #26Copying

2Ease of operation

If certificates are stored on computerized devices, then accessibility is improved, but risk of data loss during upgrades increases

Engineering Contradiction:
ImproveaccessibilityVSAvoiddata loss
Core Design Contradiction:
Ease of operationVSLoss of information

Solution Approach 1:

The system performs preliminary detection and identification of certificates on the smart card before any import operation occurs. By scanning and cataloging available certificates in advance, the system creates a reference list that can be restored if data loss occurs during upgrades, ensuring continuity of certificate availability.

Inventive Principle:
Principle #10Preliminary action

Solution Approach 2:

The patent introduces an intermediary mechanism that maintains a mapping between smart card certificates and their corresponding entries in the computerized device. This intermediary layer acts as a buffer during device upgrades, allowing the system to detect and restore certificate references without requiring direct persistence of certificate data in volatile memory.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Adaptability or versatility

If multiple certificates are stored on smart cards, then versatility is improved, but difficulty in selecting appropriate certificates increases

Engineering Contradiction:
ImproveversatilityVSAvoidease of selection
Core Design Contradiction:
Adaptability or versatilityVSEase of operation

Solution Approach 1:

The system provides feedback to users by detecting the type of operation being performed (e.g., authentication, encryption, signing) and automatically filtering or highlighting appropriate certificates based on their purposes. This feedback mechanism guides users in selecting the correct certificate without requiring them to manually review multiple options, making the selection process intuitive and context-aware.

Inventive Principle:
Principle #23Feedback

Data Source

PatentEP1890246B1Enabling use of a certificate stored in a smart card
Publication Date: 2011.10.19 BLACKBERRY LTD
  • EP1890246B1 patent drawingFigure 1~3
  • EP1890246B1 patent drawingFigure 4
  • EP1890246B1 patent drawingFigure 5

AI summary

If a smart card (102, 400) is to be used for a particular purpose, and there is no certificate initialized on the smart card (102, 400) for this purpose, a computerized device (108, 200) coupled to a smart card reader (104, 300) enables a user to select one of the certificates (420) already installed in the smart card (102, 400) for the particular purpose. The selected certificate may be imported into the computerized device (108, 200).