Smart Card Key Management Server for Third-Party Applet Control

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

There is a need for an effective system and method to manage smart cards that allows a third organization to possess master keys for granting management rights, ensuring independent management of smart cards and securing additional services provided by affiliated companies.

Innovation Solution

A system comprising a key management server that generates installation and delete keys based on master keys, allowing a third organization to manage smart card applets, and a card management server that processes these keys for applet installation and deletion requests from mobile terminals.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If a mobile communication company and an affiliated company both manage smart cards with applets, then various additional services can be provided, but management rights collision and security conflicts occur

Engineering Contradiction:
Improveadditional servicesVSAvoidmanagement rights collision
Core Design Contradiction:
Adaptability or versatilityVSReliability

Solution Approach 1:

The patent introduces a Key Management Server as an intermediary between the mobile communication company and the affiliated company. This server manages master keys and generates installation keys and delete keys, acting as a neutral mediator that prevents direct conflicts over management rights while enabling both parties to provide services securely

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent segments the management functions into distinct key types: master keys managed by the Key Management Server, installation keys for applet installation, and delete keys for applet removal. This segmentation separates management rights into specific, non-overlapping functions, eliminating conflicts while maintaining service versatility

Inventive Principle:
Principle #1Segmentation

2Adaptability or versatility

If an affiliated company provides applets with independent management rights, then service independence is secured, but the system complexity increases

Engineering Contradiction:
Improveservice independenceVSAvoidsystem complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The Key Management Server performs multiple functions: managing master keys, generating installation keys, generating delete keys, and verifying applet installations. By consolidating these diverse functions into a single multi-functional server, the patent reduces system complexity while maintaining service independence

Inventive Principle:
Principle #6Universality (Multi-functionality)

3Productivity

If a third organization manages master keys for smart cards, then management effectiveness is improved, but key management security requirements increase

Engineering Contradiction:
Improvemanagement effectivenessVSAvoidkey management security
Core Design Contradiction:
ProductivityVSReliability

Solution Approach 1:

The patent implements feedback mechanisms where the Key Management Server verifies applet installations using installation keys and monitors delete operations using delete keys. This feedback ensures that key management actions are properly executed and recorded, enhancing both management effectiveness and security

Inventive Principle:
Principle #23Feedback

Data Source

PatentUS10360409B2System for controlling smart card and method thereof
Publication Date: 2019.07.23 KT CORP
  • US10360409B2 patent drawing
  • US10360409B2 patent drawing
  • US10360409B2 patent drawing

AI summary

A system for managing smart cards is disclosed. A system for managing smart cards, comprises a key management server for managing at least one master key used to grant the right to manage a smart card which operates in conjunction with a mobile terminal, and generates an installation key, used to grant the right to install or store a predetermined applet, based on the master key, and a card management server for receiving the generated installation key, and provides the applet to the mobile terminal based on the installation key in response to a request from the mobile terminal.