Trusted Platform Module Emulating Chip Cards

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Users are burdened with carrying multiple chip cards for different applications, as existing solutions do not efficiently integrate multiple functionalities into a single portable device.

Innovation Solution

An electronic device with a communication interface and a Tamper Proof Module (TPM) that secures a program, allowing it to emulate a chip card, thereby eliminating the need for separate chip cards by providing a hardware token function, including identification and payment functionalities.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If multiple chip cards are used for different applications, then security and functionality are maintained, but user burden and complexity increase

Engineering Contradiction:
ImprovefunctionalityVSAvoidnumber of cards
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent combines multiple chip card functionalities into a single electronic device by integrating a TPM (Trusted Platform Module) that can securely store multiple cryptographic key pairs and execute applications. The TPM acts as a hardware token that consolidates what would otherwise require separate physical chip cards, merging identification, authentication, and other secure functions into one device.

Inventive Principle:
Principle #5Merging (Combining)

Solution Approach 2:

The TPM is designed as a universal security module that can perform multiple functions across different applications. It stores multiple asymmetric cryptographic key pairs and can execute different applications depending on which chip card interface is activated, making a single device capable of replacing multiple specialized chip cards.

Inventive Principle:
Principle #6Universality (Multi-functionality)

2Reliability

If chip cards are produced and distributed for each application, then security is ensured, but production and distribution costs increase

Engineering Contradiction:
ImprovesecurityVSAvoidproduction cost
Core Design Contradiction:
ReliabilityVSEase of manufacture

Solution Approach 1:

Instead of producing and distributing multiple physical chip cards, the system uses a single TPM that can be programmed with different applications and cryptographic keys. The TPM serves as a reusable template that can be configured for different purposes without requiring physical duplication, thereby eliminating production and distribution costs while maintaining security through cryptographic protection.

Inventive Principle:
Principle #26Copying

3Device complexity

If a TPM is integrated into the electronic device, then multiple chip card functions are consolidated, but device security requirements increase

Engineering Contradiction:
ImproveintegrationVSAvoidsecurity requirement
Core Design Contradiction:
Device complexityVSReliability

Solution Approach 1:

The security functionality is segmented into a separate TPM module that can be either integrated into the electronic device or used as a detachable hardware token. This segmentation allows the security-critical functions to be isolated in a dedicated module with its own security measures, while the main device benefits from consolidated functionality. The TPM can be permanently connected or detached, providing flexibility in security architecture.

Inventive Principle:
Principle #1Segmentation

Data Source

PatentEP2372599B1Electronic device, data processing system and method for reading data from an electronic device
Publication Date: 2018.11.07 BUNDESDRUCKEREI GMBH
  • EP2372599B1 patent drawingFigure 1
  • EP2372599B1 patent drawingFigure 2

AI summary

The electronic device has a communication-interface (108) and processor units (112) for executing a program (119), where the program includes executable program instructions (122) and a data file (124). A trusted platform module (116) is formed for protecting the program. The program is formed for processing a read command (134) and for outputting the data (128) of the data file by the communication-interface. The data is specified by the read command. The read command is received by the communication-interface. Independent claims are also included for the following: (1) a data processing system with a reading device; and (2) a method for reading the data of the electronic device.